Peklo pracovat na tomto pocitaci
Napsal: 19 dub 2013 19:23
Cauec vsichni.
Zrovna dneska jsem po dlouhe dobe dorazil na navstevu domu. Nechal jsem tu muj notas s tim, ze si na nem obcas hrajou decka moji segry nejaky online hry.
Potrebuji dneska pracovat - nicmoc narocnyho - pisu ve wordu nejaky veci, pdf, - proste klasika. Ale neco na tomto komplu stvorit je nadlidsky ukol. Hlavne nezvyk cekat na spousteni programu 15vterin. Mylsim, ze se zde usadila nejaka havet.
Prosim o pomoc. Prikladam log z DDS.
Diky za pomoc. Petr
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: BrowserJavaVersion: 10.17.2
Run by Cud at 20:18:57 on 2013-04-19
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1033.18.2046.703 [GMT 2:00]
.
AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
.
============== Running Processes ================
.
C:\PROGRA~1\AVG\AVG2013\avgrsx.exe
C:\Program Files\AVG\AVG2013\avgcsrvx.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\rundll32.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\AVG\AVG2013\avgidsagent.exe
C:\Program Files\AVG\AVG2013\avgwdsvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\snuvcdsm.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\PLFSetL.exe
C:\Program Files\AVG\AVG2013\avgnsx.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\AVG\AVG2013\avgemcx.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Launchy\Launchy.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\AIMP3\AIMP3.exe
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\msiexec.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Users\Cud\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.myheritage.com
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://search.myheritage.com
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: HistoryTriggerBHO Class: {21A88CB9-84D2-4020-A2D1-B25A21034884} - c:\program files\lg electronics\lg pc suite iv\linkair\LinkAirBrowserHelper.dll
BHO: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: {95B7759C-8C7F-4BF1-B163-73684A933233} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [SNUVCDSM] c:\windows\snuvcdsm.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [PLFSetL] c:\windows\PLFSetL.exe
mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY
mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\users\cud\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\cud\appdata\roaming\dropbox\bin\Dropbox.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\launchy.lnk - c:\program files\launchy\Launchy.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Se&nd to OneNote - /105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\26C6265636 : DHCPNameServer = 192.168.137.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\374756E65647 : DHCPNameServer = 213.250.192.1 213.250.194.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\37C657E616B6F66713 : DHCPNameServer = 192.168.0.1 10.10.10.10
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\6516C656E64716F546F6D616 : DHCPNameServer = 192.168.212.1 212.80.66.7
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\661627F6D266275656 : DHCPNameServer = 10.10.2.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\84F63707F64616024527562656C6F667963656E2E65647 : DHCPNameServer = 10.0.1.1 192.168.1.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\86F667E6F6 : DHCPNameServer = 10.0.0.138
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\15.1.0\ViProtocol.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\cud\appdata\roaming\mozilla\firefox\profiles\chpeypww.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\15.1.0\npsitesafety.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\cud\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npo1d.dll
FF - plugin: c:\users\cud\program files\dna\plugins\npbtdna.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_169.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-04-13 12:37; avg@toolbar; c:\programdata\avg secure search\firefoxext\15.1.0.2
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-2-8 60216]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-2-8 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-2-8 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-2-8 39224]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-2-26 208184]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22328]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-2-8 170808]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-2-14 182072]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-4-13 34592]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2013-2-27 4937264]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2013-2-19 282624]
R2 vToolbarUpdater15.1.0;vToolbarUpdater15.1.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.1.0\ToolbarUpdater.exe [2013-4-13 1008816]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\drivers\lgbtport.sys [2009-9-29 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\drivers\lgbtbus.sys [2009-9-29 10496]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\drivers\lgvmodem.sys [2009-9-29 12928]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\netw5v32.sys [2009-6-10 4231168]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\drivers\VSTAZL3.SYS [2009-7-14 207360]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\drivers\VSTDPV3.SYS [2009-7-14 980992]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\drivers\VSTCNXT3.SYS [2009-7-14 661504]
R3 V0520Vid;Creative Camera VF0520 Driver;c:\windows\system32\drivers\V0520Vid.sys [2011-9-2 244448]
S3 Andbus;LGE Android Platform Composite USB Device;c:\windows\system32\drivers\lgandbus.sys [2010-8-2 14336]
S3 AndDiag;LGE Android Platform USB Serial Port;c:\windows\system32\drivers\lganddiag.sys [2010-8-2 20864]
S3 AndGps;LGE Android Platform USB GPS NMEA Port;c:\windows\system32\drivers\lgandgps.sys [2010-8-2 19968]
S3 ANDModem;LGE Android Platform USB Modem;c:\windows\system32\drivers\lgandmodem.sys [2010-8-2 24960]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-1-25 54632]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 SMARTMouseFilterx86;HID-compliant mouse;c:\windows\system32\drivers\SMARTMouseFilterx86.sys [2008-7-30 11048]
S3 SMARTVHidMini2000x86;SMART HID Device;c:\windows\system32\drivers\SMARTVHidMini2000x86.sys [2008-7-30 14120]
S3 SMARTVTabletPCx86;SMART Virtual TabletPC;c:\windows\system32\drivers\SMARTVTabletPCx86.sys [2008-7-30 16808]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [2009-9-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [2009-9-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [2009-9-19 123648]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-8-28 1343400]
S3 zghsmdm;ZTE General Handset USB Modem Proprietary;c:\windows\system32\drivers\zghsmdm.sys [2011-1-13 106752]
.
=============== File Associations ===============
.
FileExt: .scr: AutoCADScriptFile="c:\windows\system32\notepad.exe" "%1"
.
=============== Created Last 30 ================
.
2013-04-19 12:00:49 -------- d-----w- c:\users\cud\appdata\roaming\AVG2013
2013-04-19 12:00:46 -------- d-----w- c:\users\cud\appdata\local\AVG Secure Search
2013-04-19 12:00:42 -------- d-----w- c:\users\cud\appdata\local\Avg2013
2013-04-13 17:38:47 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-04-13 10:37:01 -------- d-----w- c:\programdata\AVG Secure Search
2013-04-13 10:36:50 34592 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-04-13 10:36:45 -------- d-----w- c:\program files\common files\AVG Secure Search
2013-04-13 10:36:44 -------- d-----w- c:\program files\AVG Secure Search
2013-04-13 10:34:29 -------- d--h--w- C:\$AVG
2013-04-13 10:34:28 -------- d-----w- c:\programdata\AVG2013
2013-04-13 10:32:55 -------- d-----w- c:\program files\AVG
2013-04-13 10:05:39 -------- d--h--w- c:\programdata\Common Files
2013-04-13 10:05:39 -------- d-----w- c:\programdata\MFAData
2013-04-12 23:53:01 26520 ----a-w- c:\program files\mozilla firefox\plugin-hang-ui.exe
2013-04-12 23:31:15 -------- d-sh--w- C:\$RECYCLE.BIN
2013-04-12 17:49:42 -------- d-----w- c:\users\cud\appdata\local\temp
.
==================== Find3M ====================
.
2013-04-13 17:38:35 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-04-13 17:38:35 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-04-13 10:31:52 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-13 10:31:52 691592 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-01 08:32:20 22328 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-02-26 21:40:46 208184 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-02-14 01:52:46 182072 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-02-08 02:37:56 245048 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-02-08 02:37:52 60216 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-02-08 02:37:44 170808 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-02-08 02:37:40 39224 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
.
============= FINISH: 20:20:24,22 ===============
Zrovna dneska jsem po dlouhe dobe dorazil na navstevu domu. Nechal jsem tu muj notas s tim, ze si na nem obcas hrajou decka moji segry nejaky online hry.
Potrebuji dneska pracovat - nicmoc narocnyho - pisu ve wordu nejaky veci, pdf, - proste klasika. Ale neco na tomto komplu stvorit je nadlidsky ukol. Hlavne nezvyk cekat na spousteni programu 15vterin. Mylsim, ze se zde usadila nejaka havet.
Prosim o pomoc. Prikladam log z DDS.
Diky za pomoc. Petr
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: BrowserJavaVersion: 10.17.2
Run by Cud at 20:18:57 on 2013-04-19
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1033.18.2046.703 [GMT 2:00]
.
AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
.
============== Running Processes ================
.
C:\PROGRA~1\AVG\AVG2013\avgrsx.exe
C:\Program Files\AVG\AVG2013\avgcsrvx.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\rundll32.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\AVG\AVG2013\avgidsagent.exe
C:\Program Files\AVG\AVG2013\avgwdsvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\snuvcdsm.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\PLFSetL.exe
C:\Program Files\AVG\AVG2013\avgnsx.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\AVG\AVG2013\avgemcx.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Launchy\Launchy.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\AIMP3\AIMP3.exe
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\msiexec.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Users\Cud\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.myheritage.com
uDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://search.myheritage.com
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: HistoryTriggerBHO Class: {21A88CB9-84D2-4020-A2D1-B25A21034884} - c:\program files\lg electronics\lg pc suite iv\linkair\LinkAirBrowserHelper.dll
BHO: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: {95B7759C-8C7F-4BF1-B163-73684A933233} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\program files\windows live\toolbar\wltcore.dll
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [SNUVCDSM] c:\windows\snuvcdsm.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [PLFSetL] c:\windows\PLFSetL.exe
mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY
mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\users\cud\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\cud\appdata\roaming\dropbox\bin\Dropbox.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\launchy.lnk - c:\program files\launchy\Launchy.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Se&nd to OneNote - /105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\26C6265636 : DHCPNameServer = 192.168.137.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\374756E65647 : DHCPNameServer = 213.250.192.1 213.250.194.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\37C657E616B6F66713 : DHCPNameServer = 192.168.0.1 10.10.10.10
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\6516C656E64716F546F6D616 : DHCPNameServer = 192.168.212.1 212.80.66.7
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\661627F6D266275656 : DHCPNameServer = 10.10.2.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\84F63707F64616024527562656C6F667963656E2E65647 : DHCPNameServer = 10.0.1.1 192.168.1.1
TCP: Interfaces\{BDB78590-62F8-4C1A-B1FF-A4EB3A211FE7}\86F667E6F6 : DHCPNameServer = 10.0.0.138
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\15.1.0\ViProtocol.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\cud\appdata\roaming\mozilla\firefox\profiles\chpeypww.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\15.1.0\npsitesafety.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\cud\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\users\cud\appdata\roaming\mozilla\plugins\npo1d.dll
FF - plugin: c:\users\cud\program files\dna\plugins\npbtdna.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_169.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-04-13 12:37; avg@toolbar; c:\programdata\avg secure search\firefoxext\15.1.0.2
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-2-8 60216]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-2-8 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-2-8 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-2-8 39224]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-2-26 208184]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22328]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-2-8 170808]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-2-14 182072]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-4-13 34592]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2013-2-27 4937264]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2013-2-19 282624]
R2 vToolbarUpdater15.1.0;vToolbarUpdater15.1.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.1.0\ToolbarUpdater.exe [2013-4-13 1008816]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\drivers\lgbtport.sys [2009-9-29 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\drivers\lgbtbus.sys [2009-9-29 10496]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\drivers\lgvmodem.sys [2009-9-29 12928]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\netw5v32.sys [2009-6-10 4231168]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\drivers\VSTAZL3.SYS [2009-7-14 207360]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\drivers\VSTDPV3.SYS [2009-7-14 980992]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\drivers\VSTCNXT3.SYS [2009-7-14 661504]
R3 V0520Vid;Creative Camera VF0520 Driver;c:\windows\system32\drivers\V0520Vid.sys [2011-9-2 244448]
S3 Andbus;LGE Android Platform Composite USB Device;c:\windows\system32\drivers\lgandbus.sys [2010-8-2 14336]
S3 AndDiag;LGE Android Platform USB Serial Port;c:\windows\system32\drivers\lganddiag.sys [2010-8-2 20864]
S3 AndGps;LGE Android Platform USB GPS NMEA Port;c:\windows\system32\drivers\lgandgps.sys [2010-8-2 19968]
S3 ANDModem;LGE Android Platform USB Modem;c:\windows\system32\drivers\lgandmodem.sys [2010-8-2 24960]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-1-25 54632]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 SMARTMouseFilterx86;HID-compliant mouse;c:\windows\system32\drivers\SMARTMouseFilterx86.sys [2008-7-30 11048]
S3 SMARTVHidMini2000x86;SMART HID Device;c:\windows\system32\drivers\SMARTVHidMini2000x86.sys [2008-7-30 14120]
S3 SMARTVTabletPCx86;SMART Virtual TabletPC;c:\windows\system32\drivers\SMARTVTabletPCx86.sys [2008-7-30 16808]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [2009-9-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [2009-9-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [2009-9-19 123648]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-8-28 1343400]
S3 zghsmdm;ZTE General Handset USB Modem Proprietary;c:\windows\system32\drivers\zghsmdm.sys [2011-1-13 106752]
.
=============== File Associations ===============
.
FileExt: .scr: AutoCADScriptFile="c:\windows\system32\notepad.exe" "%1"
.
=============== Created Last 30 ================
.
2013-04-19 12:00:49 -------- d-----w- c:\users\cud\appdata\roaming\AVG2013
2013-04-19 12:00:46 -------- d-----w- c:\users\cud\appdata\local\AVG Secure Search
2013-04-19 12:00:42 -------- d-----w- c:\users\cud\appdata\local\Avg2013
2013-04-13 17:38:47 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-04-13 10:37:01 -------- d-----w- c:\programdata\AVG Secure Search
2013-04-13 10:36:50 34592 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-04-13 10:36:45 -------- d-----w- c:\program files\common files\AVG Secure Search
2013-04-13 10:36:44 -------- d-----w- c:\program files\AVG Secure Search
2013-04-13 10:34:29 -------- d--h--w- C:\$AVG
2013-04-13 10:34:28 -------- d-----w- c:\programdata\AVG2013
2013-04-13 10:32:55 -------- d-----w- c:\program files\AVG
2013-04-13 10:05:39 -------- d--h--w- c:\programdata\Common Files
2013-04-13 10:05:39 -------- d-----w- c:\programdata\MFAData
2013-04-12 23:53:01 26520 ----a-w- c:\program files\mozilla firefox\plugin-hang-ui.exe
2013-04-12 23:31:15 -------- d-sh--w- C:\$RECYCLE.BIN
2013-04-12 17:49:42 -------- d-----w- c:\users\cud\appdata\local\temp
.
==================== Find3M ====================
.
2013-04-13 17:38:35 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-04-13 17:38:35 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-04-13 10:31:52 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-13 10:31:52 691592 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-01 08:32:20 22328 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-02-26 21:40:46 208184 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-02-14 01:52:46 182072 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2013-02-08 02:37:56 245048 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-02-08 02:37:52 60216 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-02-08 02:37:44 170808 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-02-08 02:37:40 39224 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
.
============= FINISH: 20:20:24,22 ===============