Log z rsit Opet zpomaleny PC
Napsal: 10 črc 2012 22:05
Ahoj nedavno jste mi pomohli vyresit problem s PC, ale uz zase beha pomalu.
Popis problemu:
Pocitac zapnu a jede jak ma, ale po delsi dobe behu i po 1 hodine je hodne pomaly. Problem pustit serial, nebo jit na web.
Prosim o kontrolu logu
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ondra at 2012-07-10 23:01:14
Microsoft Windows 7 Ultimate
System drive C: has 51 GB (66%) free of 78 GB
Total RAM: 2047 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:02:54, on 10.7.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Users\Ondra\AppData\Local\Google\Update\1.3.21.111\GoogleCrashHandler.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Apps\2.0\CPZ614WR.8QR\6OZ5YQ5L.2MA\czsh..tion_0000000000000000_0000.0000_4b0cea5ebb54b0d6\CZShareManager.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\Desktop\RSIT.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ondra.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: Download with &Media Finder - C:\Program Files\Media Finder\hook.html
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 3270 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1443169670-1317229146-775207768-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1443169670-1317229146-775207768-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2012-02-15 17146504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 229376]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvidvfw.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 3 months======
2012-07-03 21:41:44 ----D---- C:\CZshare
2012-06-21 00:02:48 ----D---- C:\Windows\temp
2012-06-20 04:08:00 ----D---- C:\Users\Ondra\AppData\Roaming\Maxthon3
2012-06-20 04:07:24 ----D---- C:\Program Files\Maxthon3
2012-06-19 23:59:27 ----D---- C:\TEMP
2012-06-19 22:39:00 ----SHD---- C:\$RECYCLE.BIN
2012-06-19 22:38:57 ----A---- C:\ComboFix.txt
2012-06-19 22:30:10 ----A---- C:\Windows\zip.exe
2012-06-19 22:30:10 ----A---- C:\Windows\SWSC.exe
2012-06-19 22:30:10 ----A---- C:\Windows\SWREG.exe
2012-06-19 22:30:10 ----A---- C:\Windows\sed.exe
2012-06-19 22:30:10 ----A---- C:\Windows\PEV.exe
2012-06-19 22:30:10 ----A---- C:\Windows\NIRCMD.exe
2012-06-19 22:30:10 ----A---- C:\Windows\MBR.exe
2012-06-19 22:30:10 ----A---- C:\Windows\grep.exe
2012-06-19 22:30:01 ----D---- C:\Qoobox
2012-06-19 22:29:39 ----D---- C:\Windows\erdnt
2012-06-19 00:45:52 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2012-06-18 22:32:59 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-06-18 22:32:57 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-06-18 22:32:47 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-06-18 22:32:43 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-06-18 22:32:40 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-06-18 22:32:30 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-06-18 22:28:59 ----A---- C:\Windows\avastSS.scr
2012-06-18 22:28:58 ----A---- C:\Windows\system32\aswBoot.exe
2012-06-18 22:28:47 ----D---- C:\ProgramData\AVAST Software
2012-06-18 22:28:47 ----D---- C:\Program Files\AVAST Software
2012-06-18 10:12:54 ----D---- C:\Program Files\trend micro
2012-06-18 10:12:53 ----D---- C:\rsit
2012-06-16 23:20:22 ----D---- C:\Users\Ondra\AppData\Roaming\Opera
2012-06-16 23:19:53 ----D---- C:\Program Files\Opera
2012-06-16 18:10:36 ----D---- C:\Config.Msi
2012-06-16 18:06:15 ----RASH---- C:\MSDOS.SYS
2012-06-16 18:06:15 ----RASH---- C:\IO.SYS
2012-06-12 05:49:38 ----D---- C:\Program Files\Conduit
2012-06-10 14:47:34 ----D---- C:\Sierra
2012-06-09 18:16:03 ----D---- C:\Users\Ondra\AppData\Roaming\Media Finder
2012-06-06 09:29:43 ----D---- C:\ProgramData\Tarma Installer
2012-06-06 09:29:07 ----D---- C:\Program Files\SweetIM
2012-06-06 09:28:46 ----D---- C:\Users\Ondra\AppData\Roaming\Mozilla
2012-06-06 09:28:31 ----D---- C:\Program Files\1ClickDownload
2012-06-06 09:28:10 ----D---- C:\Users\Ondra\AppData\Roaming\Python-Eggs
2012-06-06 09:28:05 ----D---- C:\Users\Ondra\AppData\Roaming\BitLord
2012-06-06 09:28:05 ----A---- C:\Users\Ondra\AppData\Roaming\bitlord_log.txt
2012-06-06 09:24:10 ----D---- C:\Program Files\BitLord 2
2012-05-31 22:24:33 ----D---- C:\Program Files\Microsoft Office
2012-05-31 22:23:47 ----D---- C:\Program Files\MSECache
2012-05-18 13:21:27 ----D---- C:\Users\Ondra\AppData\Roaming\Skype
2012-05-18 13:21:11 ----RD---- C:\Program Files\Skype
2012-05-18 13:21:11 ----D---- C:\ProgramData\Skype
2012-05-18 13:21:11 ----D---- C:\Program Files\Common Files\Skype
2012-04-26 21:38:19 ----D---- C:\Users\Ondra\AppData\Roaming\Malwarebytes
2012-04-26 21:38:04 ----D---- C:\ProgramData\Malwarebytes
2012-04-26 21:38:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-04-26 21:38:04 ----A---- C:\Windows\system32\drivers\mbam.sys
2012-04-26 21:36:31 ----D---- C:\Program Files\CCleaner
2012-04-26 21:35:38 ----D---- C:\Program Files\Google
2012-04-25 14:58:29 ----D---- C:\ProgramData\boost_interprocess
2012-04-25 14:50:36 ----D---- C:\ProgramData\Boss Media
2012-04-25 14:50:20 ----D---- C:\Program Files\ParadisePoker
2012-04-25 14:38:24 ----D---- C:\Program Files\PokerStars
2012-04-24 21:47:36 ----D---- C:\Users\Ondra\AppData\Roaming\Ashampoo
2012-04-24 11:27:51 ----D---- C:\Users\Ondra\AppData\Roaming\Media Player Classic
2012-04-24 11:12:30 ----A---- C:\Windows\system32\xvidvfw.dll
2012-04-24 11:12:30 ----A---- C:\Windows\system32\xvidcore.dll
2012-04-24 11:12:29 ----A---- C:\Windows\system32\unrar.dll
2012-04-24 11:12:25 ----A---- C:\Windows\system32\ff_vfw.dll
2012-04-24 11:12:22 ----D---- C:\Program Files\K-Lite Codec Pack
2012-04-22 22:49:48 ----D---- C:\Users\Ondra\AppData\Roaming\COWON
2012-04-22 22:14:40 ----D---- C:\Program Files\Kodek CZ
2012-04-22 22:07:09 ----D---- C:\Program Files\Common Files\COWON
2012-04-22 22:07:08 ----D---- C:\Program Files\JetAudio
2012-04-22 22:06:49 ----HD---- C:\Program Files\InstallShield Installation Information
2012-04-21 18:36:03 ----D---- C:\Users\Ondra\AppData\Roaming\WinRAR
2012-04-21 18:35:58 ----D---- C:\Program Files\WinRAR
2012-04-21 05:30:16 ----N---- C:\Windows\system32\MpSigStub.exe
2012-04-21 05:07:47 ----D---- C:\Program Files\Microsoft.NET
2012-04-21 04:49:36 ----D---- C:\Users\Ondra\AppData\Roaming\Macromedia
2012-04-21 04:49:36 ----D---- C:\Users\Ondra\AppData\Roaming\Adobe
2012-04-21 04:44:20 ----SHD---- C:\Windows\Installer
2012-04-21 02:42:51 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\PresentationHost.exe
2012-04-21 02:42:51 ----A---- C:\Windows\system32\netfxperf.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\mscoree.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\dfshim.dll
2012-04-21 02:37:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-20 21:40:15 ----D---- C:\Windows\Panther
2012-04-20 21:40:00 ----RASH---- C:\BOOTSECT.BAK
2012-04-20 21:39:57 ----D---- C:\Boot
2012-04-20 21:26:36 ----D---- C:\Users\Ondra\AppData\Roaming\Identities
2012-04-20 21:25:56 ----SD---- C:\Users\Ondra\AppData\Roaming\Microsoft
2012-04-20 21:25:56 ----D---- C:\Users\Ondra\AppData\Roaming\Media Center Programs
2012-04-20 21:22:53 ----SHD---- C:\ProgramData\Šablony
2012-04-20 21:22:53 ----D---- C:\Recovery
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Plocha
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Oblíbené položky
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Nabídka Start
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Dokumenty
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Data aplikací
2012-04-20 21:18:24 ----A---- C:\Windows\system32\atiicdxx.dat
2012-04-20 21:17:13 ----D---- C:\Windows\SoftwareDistribution
2012-04-20 21:13:35 ----D---- C:\Windows\Prefetch
2012-04-20 21:13:26 ----ASH---- C:\pagefile.sys
2012-04-20 21:13:24 ----SHD---- C:\System Volume Information
2012-04-20 21:13:24 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2012-07-09 10:17:52 ----D---- C:\Windows\System32
2012-07-09 10:17:52 ----D---- C:\Windows\inf
2012-07-09 08:18:47 ----D---- C:\Windows\system32\config
2012-07-09 01:00:08 ----D---- C:\Windows
2012-07-08 11:00:08 ----RD---- C:\Program Files
2012-06-20 04:08:12 ----RSD---- C:\Windows\Fonts
2012-06-20 04:08:09 ----D---- C:\Windows\system32\Tasks
2012-06-19 22:37:43 ----A---- C:\Windows\system.ini
2012-06-19 22:37:39 ----D---- C:\Windows\system32\drivers\etc
2012-06-19 22:35:38 ----D---- C:\Windows\system32\drivers
2012-06-19 22:35:38 ----D---- C:\Windows\AppPatch
2012-06-19 22:35:37 ----D---- C:\Program Files\Common Files
2012-06-19 19:57:56 ----D---- C:\Windows\Branding
2012-06-18 22:32:05 ----D---- C:\Windows\winsxs
2012-06-18 22:30:04 ----D---- C:\Program Files\Common Files\microsoft shared
2012-06-18 22:28:47 ----D---- C:\ProgramData
2012-06-16 17:03:45 ----D---- C:\Windows\system32\catroot2
2012-05-12 16:44:28 ----D---- C:\Windows\system32\wdi
2012-04-28 05:58:09 ----D---- C:\Windows\Tasks
2012-04-28 05:31:17 ----D---- C:\Windows\debug
2012-04-26 19:39:37 ----D---- C:\Windows\Microsoft.NET
2012-04-26 19:08:48 ----RSD---- C:\Windows\assembly
2012-04-26 19:06:06 ----D---- C:\Windows\system32\en-US
2012-04-23 00:00:02 ----SD---- C:\ProgramData\Microsoft
2012-04-22 23:58:07 ----D---- C:\Windows\system32\drivers\UMDF
2012-04-22 09:21:27 ----D---- C:\Windows\system32\LogFiles
2012-04-21 09:59:07 ----D---- C:\Windows\system32\catroot
2012-04-21 09:41:22 ----D---- C:\Windows\Logs
2012-04-21 05:10:12 ----D---- C:\Windows\system32\cs-CZ
2012-04-21 04:46:29 ----D---- C:\Windows\system32\CodeIntegrity
2012-04-21 02:42:25 ----D---- C:\Windows\system32\restore
2012-04-20 21:39:39 ----D---- C:\Windows\Setup
2012-04-20 21:25:56 ----RD---- C:\Users
2012-04-20 21:22:53 ----D---- C:\Program Files\Windows NT
2012-04-20 21:19:01 ----D---- C:\Windows\system32\sysprep
2012-04-20 21:14:48 ----D---- C:\Windows\CSC
2012-04-20 20:38:30 ----D---- C:\Windows\system32\wbem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 44376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 612184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337880]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 53848]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 20696]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 57688]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2009-07-14 43008]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-14 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Ondra\AppData\Local\Temp\catchme.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2012-06-19 40776]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-15 158856]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Popis problemu:
Pocitac zapnu a jede jak ma, ale po delsi dobe behu i po 1 hodine je hodne pomaly. Problem pustit serial, nebo jit na web.
Prosim o kontrolu logu
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ondra at 2012-07-10 23:01:14
Microsoft Windows 7 Ultimate
System drive C: has 51 GB (66%) free of 78 GB
Total RAM: 2047 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:02:54, on 10.7.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Program Files\Maxthon3\Bin\Maxthon.exe
C:\Users\Ondra\AppData\Local\Google\Update\1.3.21.111\GoogleCrashHandler.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Apps\2.0\CPZ614WR.8QR\6OZ5YQ5L.2MA\czsh..tion_0000000000000000_0000.0000_4b0cea5ebb54b0d6\CZShareManager.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Ondra\Desktop\RSIT.exe
C:\Users\Ondra\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ondra.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: Download with &Media Finder - C:\Program Files\Media Finder\hook.html
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 3270 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1443169670-1317229146-775207768-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1443169670-1317229146-775207768-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-03-07 1003704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2012-02-15 17146504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 229376]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvidvfw.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 3 months======
2012-07-03 21:41:44 ----D---- C:\CZshare
2012-06-21 00:02:48 ----D---- C:\Windows\temp
2012-06-20 04:08:00 ----D---- C:\Users\Ondra\AppData\Roaming\Maxthon3
2012-06-20 04:07:24 ----D---- C:\Program Files\Maxthon3
2012-06-19 23:59:27 ----D---- C:\TEMP
2012-06-19 22:39:00 ----SHD---- C:\$RECYCLE.BIN
2012-06-19 22:38:57 ----A---- C:\ComboFix.txt
2012-06-19 22:30:10 ----A---- C:\Windows\zip.exe
2012-06-19 22:30:10 ----A---- C:\Windows\SWSC.exe
2012-06-19 22:30:10 ----A---- C:\Windows\SWREG.exe
2012-06-19 22:30:10 ----A---- C:\Windows\sed.exe
2012-06-19 22:30:10 ----A---- C:\Windows\PEV.exe
2012-06-19 22:30:10 ----A---- C:\Windows\NIRCMD.exe
2012-06-19 22:30:10 ----A---- C:\Windows\MBR.exe
2012-06-19 22:30:10 ----A---- C:\Windows\grep.exe
2012-06-19 22:30:01 ----D---- C:\Qoobox
2012-06-19 22:29:39 ----D---- C:\Windows\erdnt
2012-06-19 00:45:52 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2012-06-18 22:32:59 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-06-18 22:32:57 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-06-18 22:32:47 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-06-18 22:32:43 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-06-18 22:32:40 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-06-18 22:32:30 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-06-18 22:28:59 ----A---- C:\Windows\avastSS.scr
2012-06-18 22:28:58 ----A---- C:\Windows\system32\aswBoot.exe
2012-06-18 22:28:47 ----D---- C:\ProgramData\AVAST Software
2012-06-18 22:28:47 ----D---- C:\Program Files\AVAST Software
2012-06-18 10:12:54 ----D---- C:\Program Files\trend micro
2012-06-18 10:12:53 ----D---- C:\rsit
2012-06-16 23:20:22 ----D---- C:\Users\Ondra\AppData\Roaming\Opera
2012-06-16 23:19:53 ----D---- C:\Program Files\Opera
2012-06-16 18:10:36 ----D---- C:\Config.Msi
2012-06-16 18:06:15 ----RASH---- C:\MSDOS.SYS
2012-06-16 18:06:15 ----RASH---- C:\IO.SYS
2012-06-12 05:49:38 ----D---- C:\Program Files\Conduit
2012-06-10 14:47:34 ----D---- C:\Sierra
2012-06-09 18:16:03 ----D---- C:\Users\Ondra\AppData\Roaming\Media Finder
2012-06-06 09:29:43 ----D---- C:\ProgramData\Tarma Installer
2012-06-06 09:29:07 ----D---- C:\Program Files\SweetIM
2012-06-06 09:28:46 ----D---- C:\Users\Ondra\AppData\Roaming\Mozilla
2012-06-06 09:28:31 ----D---- C:\Program Files\1ClickDownload
2012-06-06 09:28:10 ----D---- C:\Users\Ondra\AppData\Roaming\Python-Eggs
2012-06-06 09:28:05 ----D---- C:\Users\Ondra\AppData\Roaming\BitLord
2012-06-06 09:28:05 ----A---- C:\Users\Ondra\AppData\Roaming\bitlord_log.txt
2012-06-06 09:24:10 ----D---- C:\Program Files\BitLord 2
2012-05-31 22:24:33 ----D---- C:\Program Files\Microsoft Office
2012-05-31 22:23:47 ----D---- C:\Program Files\MSECache
2012-05-18 13:21:27 ----D---- C:\Users\Ondra\AppData\Roaming\Skype
2012-05-18 13:21:11 ----RD---- C:\Program Files\Skype
2012-05-18 13:21:11 ----D---- C:\ProgramData\Skype
2012-05-18 13:21:11 ----D---- C:\Program Files\Common Files\Skype
2012-04-26 21:38:19 ----D---- C:\Users\Ondra\AppData\Roaming\Malwarebytes
2012-04-26 21:38:04 ----D---- C:\ProgramData\Malwarebytes
2012-04-26 21:38:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-04-26 21:38:04 ----A---- C:\Windows\system32\drivers\mbam.sys
2012-04-26 21:36:31 ----D---- C:\Program Files\CCleaner
2012-04-26 21:35:38 ----D---- C:\Program Files\Google
2012-04-25 14:58:29 ----D---- C:\ProgramData\boost_interprocess
2012-04-25 14:50:36 ----D---- C:\ProgramData\Boss Media
2012-04-25 14:50:20 ----D---- C:\Program Files\ParadisePoker
2012-04-25 14:38:24 ----D---- C:\Program Files\PokerStars
2012-04-24 21:47:36 ----D---- C:\Users\Ondra\AppData\Roaming\Ashampoo
2012-04-24 11:27:51 ----D---- C:\Users\Ondra\AppData\Roaming\Media Player Classic
2012-04-24 11:12:30 ----A---- C:\Windows\system32\xvidvfw.dll
2012-04-24 11:12:30 ----A---- C:\Windows\system32\xvidcore.dll
2012-04-24 11:12:29 ----A---- C:\Windows\system32\unrar.dll
2012-04-24 11:12:25 ----A---- C:\Windows\system32\ff_vfw.dll
2012-04-24 11:12:22 ----D---- C:\Program Files\K-Lite Codec Pack
2012-04-22 22:49:48 ----D---- C:\Users\Ondra\AppData\Roaming\COWON
2012-04-22 22:14:40 ----D---- C:\Program Files\Kodek CZ
2012-04-22 22:07:09 ----D---- C:\Program Files\Common Files\COWON
2012-04-22 22:07:08 ----D---- C:\Program Files\JetAudio
2012-04-22 22:06:49 ----HD---- C:\Program Files\InstallShield Installation Information
2012-04-21 18:36:03 ----D---- C:\Users\Ondra\AppData\Roaming\WinRAR
2012-04-21 18:35:58 ----D---- C:\Program Files\WinRAR
2012-04-21 05:30:16 ----N---- C:\Windows\system32\MpSigStub.exe
2012-04-21 05:07:47 ----D---- C:\Program Files\Microsoft.NET
2012-04-21 04:49:36 ----D---- C:\Users\Ondra\AppData\Roaming\Macromedia
2012-04-21 04:49:36 ----D---- C:\Users\Ondra\AppData\Roaming\Adobe
2012-04-21 04:44:20 ----SHD---- C:\Windows\Installer
2012-04-21 02:42:51 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\PresentationHost.exe
2012-04-21 02:42:51 ----A---- C:\Windows\system32\netfxperf.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\mscoree.dll
2012-04-21 02:42:51 ----A---- C:\Windows\system32\dfshim.dll
2012-04-21 02:37:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-04-20 21:40:15 ----D---- C:\Windows\Panther
2012-04-20 21:40:00 ----RASH---- C:\BOOTSECT.BAK
2012-04-20 21:39:57 ----D---- C:\Boot
2012-04-20 21:26:36 ----D---- C:\Users\Ondra\AppData\Roaming\Identities
2012-04-20 21:25:56 ----SD---- C:\Users\Ondra\AppData\Roaming\Microsoft
2012-04-20 21:25:56 ----D---- C:\Users\Ondra\AppData\Roaming\Media Center Programs
2012-04-20 21:22:53 ----SHD---- C:\ProgramData\Šablony
2012-04-20 21:22:53 ----D---- C:\Recovery
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Plocha
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Oblíbené položky
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Nabídka Start
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Dokumenty
2012-04-20 21:22:52 ----SHD---- C:\ProgramData\Data aplikací
2012-04-20 21:18:24 ----A---- C:\Windows\system32\atiicdxx.dat
2012-04-20 21:17:13 ----D---- C:\Windows\SoftwareDistribution
2012-04-20 21:13:35 ----D---- C:\Windows\Prefetch
2012-04-20 21:13:26 ----ASH---- C:\pagefile.sys
2012-04-20 21:13:24 ----SHD---- C:\System Volume Information
2012-04-20 21:13:24 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 3 months======
2012-07-09 10:17:52 ----D---- C:\Windows\System32
2012-07-09 10:17:52 ----D---- C:\Windows\inf
2012-07-09 08:18:47 ----D---- C:\Windows\system32\config
2012-07-09 01:00:08 ----D---- C:\Windows
2012-07-08 11:00:08 ----RD---- C:\Program Files
2012-06-20 04:08:12 ----RSD---- C:\Windows\Fonts
2012-06-20 04:08:09 ----D---- C:\Windows\system32\Tasks
2012-06-19 22:37:43 ----A---- C:\Windows\system.ini
2012-06-19 22:37:39 ----D---- C:\Windows\system32\drivers\etc
2012-06-19 22:35:38 ----D---- C:\Windows\system32\drivers
2012-06-19 22:35:38 ----D---- C:\Windows\AppPatch
2012-06-19 22:35:37 ----D---- C:\Program Files\Common Files
2012-06-19 19:57:56 ----D---- C:\Windows\Branding
2012-06-18 22:32:05 ----D---- C:\Windows\winsxs
2012-06-18 22:30:04 ----D---- C:\Program Files\Common Files\microsoft shared
2012-06-18 22:28:47 ----D---- C:\ProgramData
2012-06-16 17:03:45 ----D---- C:\Windows\system32\catroot2
2012-05-12 16:44:28 ----D---- C:\Windows\system32\wdi
2012-04-28 05:58:09 ----D---- C:\Windows\Tasks
2012-04-28 05:31:17 ----D---- C:\Windows\debug
2012-04-26 19:39:37 ----D---- C:\Windows\Microsoft.NET
2012-04-26 19:08:48 ----RSD---- C:\Windows\assembly
2012-04-26 19:06:06 ----D---- C:\Windows\system32\en-US
2012-04-23 00:00:02 ----SD---- C:\ProgramData\Microsoft
2012-04-22 23:58:07 ----D---- C:\Windows\system32\drivers\UMDF
2012-04-22 09:21:27 ----D---- C:\Windows\system32\LogFiles
2012-04-21 09:59:07 ----D---- C:\Windows\system32\catroot
2012-04-21 09:41:22 ----D---- C:\Windows\Logs
2012-04-21 05:10:12 ----D---- C:\Windows\system32\cs-CZ
2012-04-21 04:46:29 ----D---- C:\Windows\system32\CodeIntegrity
2012-04-21 02:42:25 ----D---- C:\Windows\system32\restore
2012-04-20 21:39:39 ----D---- C:\Windows\Setup
2012-04-20 21:25:56 ----RD---- C:\Users
2012-04-20 21:22:53 ----D---- C:\Program Files\Windows NT
2012-04-20 21:19:01 ----D---- C:\Windows\system32\sysprep
2012-04-20 21:14:48 ----D---- C:\Windows\CSC
2012-04-20 20:38:30 ----D---- C:\Windows\system32\wbem
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-03-07 44376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-03-07 612184]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-03-07 337880]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-03-07 53848]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-03-07 20696]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-03-07 57688]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2009-07-14 43008]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-14 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\Ondra\AppData\Local\Temp\catchme.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2012-06-19 40776]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-15 158856]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------