Zpomalený start počítače
Napsal: 02 čer 2013 14:17
Dobrý den. Prosím o prověření počítače, pomalu se rozchází a občas se zpomalí i při běžném provozu. Nevím, jestli problém není v antiviru. Děkuji moc za prověření a mějte se krásně. Miloš
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_02
Run by MildaPe at 15:05:03 on 2013-06-02
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.895.350 [GMT 2:00]
.
AV: COMODO Antivirus *Enabled/Updated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
FW: ZoneAlarm Firewall *Disabled*
FW: ActiveArmor Firewall *Disabled*
FW: COMODO Firewall *Enabled*
.
============== Running Processes ================
.
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\windows\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\windows\System32\alg.exe
C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
C:\program files\analog devices\core\smax4pnp.exe
C:\Program Files\Microsoft LifeCam\LifeExp.exe
C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\Program Files\Microsoft LifeCam\LifeExp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k rpcss
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k WudfServiceGroup
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k HTTPFilter
C:\windows\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.cz/
uDefault_Page_URL = hxxp://isearch.glarysoft.com/?src=iehome
mStart Page = hxxp://isearch.glarysoft.com/?src=iehome
mDefault_Page_URL = hxxp://isearch.glarysoft.com/?src=iehome
uInternet Connection Wizard,ShellNext = iexplore
mURLSearchHooks: {855F3B16-6D32-4fe6-8A56-BBB695989046} - <orphaned>
mURLSearchHooks: <No Name>: - LocalServer32 - <no file>
dURLSearchHooks: {855F3B16-6D32-4fe6-8A56-BBB695989046} - <orphaned>
dURLSearchHooks: <No Name>: - LocalServer32 - <no file>
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [LifeCam] "c:\program files\microsoft lifecam\LifeExp.exe"
mRun: [KernelFaultCheck] c:\windows\system32\dumprep 0 -k
mRun: [KeePass 2 PreLoad] "c:\program files\keepass password safe 2\KeePass.exe" --preload
mRun: [COMODO Internet Security] c:\program files\comodo\comodo internet security\cistray.exe
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] c:\windows\system32\tscupgrd.exe
uPolicies-Explorer: NoDrives = dword:0
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Stáhnout Star Downloaderem - c:\program files\star downloader\sdie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdat ... 1345774078
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} - hxxp://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
TCP: NameServer = 172.21.2.1 8.8.8.8
TCP: Interfaces\{9252387A-8073-4047-AB0B-6965C875A270} : NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{9252387A-8073-4047-AB0B-6965C875A270} : DHCPNameServer = 172.21.2.1 8.8.8.8
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
AppInit_DLLs= c:\windows\system32\guard32.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
============= SERVICES / DRIVERS ===============
.
R1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\drivers\cmderd.sys [2013-1-16 18528]
R1 cmdGuard;COMODO Internet Security Driver;c:\windows\system32\drivers\cmdGuard.sys [2013-1-16 592384]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2013-1-16 32816]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2013-1-24 4443912]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2006-3-2 69120]
S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-6-7 160944]
S3 cmdvirth;COMODO Virtual Service Manager;c:\program files\comodo\comodo internet security\cmdvirth.exe [2013-1-24 127184]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\drivers\nx6000.sys [2011-9-20 30576]
S3 V0260VID;Live! Cam Vista IM;c:\windows\system32\drivers\V0260Vid.sys [2007-6-25 178913]
.
=============== File Associations ===============
.
.js: <filetype is not registered>
.
=============== Created Last 30 ================
.
2013-06-02 11:28:20 869376 ----a-w- c:\windows\isRS-000.tmp
2013-05-10 07:57:26 187456 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
.
==================== Find3M ====================
.
2013-05-16 04:40:29 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-16 04:40:28 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-23 14:04:10 348048 ----a-w- c:\windows\system32\guard32.dll
2013-04-16 22:26:49 920064 ----a-w- c:\windows\system32\wininet.dll
2013-04-16 22:26:22 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-04-16 22:26:20 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-04-15 17:38:59 32816 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2013-04-15 17:38:58 592384 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2013-04-15 17:38:58 18528 ----a-w- c:\windows\system32\drivers\cmderd.sys
2013-04-15 17:38:37 35488 ----a-w- c:\windows\system32\cmdcsr.dll
2013-04-15 17:38:25 276688 ----a-w- c:\windows\system32\cmdvrt32.dll
2013-04-15 17:38:24 40656 ----a-w- c:\windows\system32\cmdkbd32.dll
2013-04-14 10:42:38 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-14 10:42:38 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-14 10:42:33 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-12 23:28:55 385024 ----a-w- c:\windows\system32\html.iec
2013-04-12 14:01:40 1876352 ----a-w- c:\windows\system32\win32k.sys
2013-03-08 08:36:15 293376 ----a-w- c:\windows\system32\winsrv.dll
2013-03-07 15:56:56 2072192 ------w- c:\windows\system32\ntkrnlpa.exe
2013-03-07 15:56:55 2195584 ------w- c:\windows\system32\ntoskrnl.exe
.
============= FINISH: 15:09:12,65 ===============
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_02
Run by MildaPe at 15:05:03 on 2013-06-02
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.895.350 [GMT 2:00]
.
AV: COMODO Antivirus *Enabled/Updated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
FW: ZoneAlarm Firewall *Disabled*
FW: ActiveArmor Firewall *Disabled*
FW: COMODO Firewall *Enabled*
.
============== Running Processes ================
.
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\windows\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\windows\System32\alg.exe
C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
C:\program files\analog devices\core\smax4pnp.exe
C:\Program Files\Microsoft LifeCam\LifeExp.exe
C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\Program Files\Microsoft LifeCam\LifeExp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k rpcss
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k WudfServiceGroup
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k HTTPFilter
C:\windows\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.cz/
uDefault_Page_URL = hxxp://isearch.glarysoft.com/?src=iehome
mStart Page = hxxp://isearch.glarysoft.com/?src=iehome
mDefault_Page_URL = hxxp://isearch.glarysoft.com/?src=iehome
uInternet Connection Wizard,ShellNext = iexplore
mURLSearchHooks: {855F3B16-6D32-4fe6-8A56-BBB695989046} - <orphaned>
mURLSearchHooks: <No Name>: - LocalServer32 - <no file>
dURLSearchHooks: {855F3B16-6D32-4fe6-8A56-BBB695989046} - <orphaned>
dURLSearchHooks: <No Name>: - LocalServer32 - <no file>
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [LifeCam] "c:\program files\microsoft lifecam\LifeExp.exe"
mRun: [KernelFaultCheck] c:\windows\system32\dumprep 0 -k
mRun: [KeePass 2 PreLoad] "c:\program files\keepass password safe 2\KeePass.exe" --preload
mRun: [COMODO Internet Security] c:\program files\comodo\comodo internet security\cistray.exe
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] c:\windows\system32\tscupgrd.exe
uPolicies-Explorer: NoDrives = dword:0
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Stáhnout Star Downloaderem - c:\program files\star downloader\sdie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdat ... 1345774078
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_11-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} - hxxp://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
TCP: NameServer = 172.21.2.1 8.8.8.8
TCP: Interfaces\{9252387A-8073-4047-AB0B-6965C875A270} : NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{9252387A-8073-4047-AB0B-6965C875A270} : DHCPNameServer = 172.21.2.1 8.8.8.8
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
AppInit_DLLs= c:\windows\system32\guard32.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
============= SERVICES / DRIVERS ===============
.
R1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\drivers\cmderd.sys [2013-1-16 18528]
R1 cmdGuard;COMODO Internet Security Driver;c:\windows\system32\drivers\cmdGuard.sys [2013-1-16 592384]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2013-1-16 32816]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2013-1-24 4443912]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2006-3-2 69120]
S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-6-7 160944]
S3 cmdvirth;COMODO Virtual Service Manager;c:\program files\comodo\comodo internet security\cmdvirth.exe [2013-1-24 127184]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\drivers\nx6000.sys [2011-9-20 30576]
S3 V0260VID;Live! Cam Vista IM;c:\windows\system32\drivers\V0260Vid.sys [2007-6-25 178913]
.
=============== File Associations ===============
.
.js: <filetype is not registered>
.
=============== Created Last 30 ================
.
2013-06-02 11:28:20 869376 ----a-w- c:\windows\isRS-000.tmp
2013-05-10 07:57:26 187456 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
.
==================== Find3M ====================
.
2013-05-16 04:40:29 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-16 04:40:28 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-23 14:04:10 348048 ----a-w- c:\windows\system32\guard32.dll
2013-04-16 22:26:49 920064 ----a-w- c:\windows\system32\wininet.dll
2013-04-16 22:26:22 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-04-16 22:26:20 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-04-15 17:38:59 32816 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2013-04-15 17:38:58 592384 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2013-04-15 17:38:58 18528 ----a-w- c:\windows\system32\drivers\cmderd.sys
2013-04-15 17:38:37 35488 ----a-w- c:\windows\system32\cmdcsr.dll
2013-04-15 17:38:25 276688 ----a-w- c:\windows\system32\cmdvrt32.dll
2013-04-15 17:38:24 40656 ----a-w- c:\windows\system32\cmdkbd32.dll
2013-04-14 10:42:38 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-14 10:42:38 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-14 10:42:33 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-12 23:28:55 385024 ----a-w- c:\windows\system32\html.iec
2013-04-12 14:01:40 1876352 ----a-w- c:\windows\system32\win32k.sys
2013-03-08 08:36:15 293376 ----a-w- c:\windows\system32\winsrv.dll
2013-03-07 15:56:56 2072192 ------w- c:\windows\system32\ntkrnlpa.exe
2013-03-07 15:56:55 2195584 ------w- c:\windows\system32\ntoskrnl.exe
.
============= FINISH: 15:09:12,65 ===============