Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

HDD neustále chroustá

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
TomiiKingu
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 30 črc 2013 13:21

HDD neustále chroustá

#1 Příspěvek od TomiiKingu »

Dobrý den HDD neustále chroustá a to aji když nic nedělám přikladám LOG

Logfile of random's system information tool 1.09 (written by random/random)
Run by Tomii at 2013-07-30 14:23:28
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 70 GB (61%) free of 114 GB
Total RAM: 1983 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:23:34, on 30.7.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hry\Grand Theft Auto 3\gta3.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Tomii\Plocha\RSIT.exe
C:\Program Files\trend micro\Tomii.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?SearchSource ... =ct3135048
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: CrossriderApp0035382 - {11111111-1111-1111-1111-110311531182} - C:\Program Files\hosts\hosts-bho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1935655697-1801674531-1417001333-1016\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2265139109
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 5919 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\DLL-Files.Com Fixer_MONTHLY.job
C:\WINDOWS\tasks\DLL-Files.Com Fixer_Updates.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\WGASetup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\Programy\VLC\npvlc.dll


C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\extensions\
05dd836e-2cbd-4204-9ff3-2f8a8665967d@a8876730-fb0c-4057-a2fc-f9c09d438e81.com
2gdxdb@ehqfe.net
itmkxh@cullqv-.net
uid_0pv@ea-jayoea.com
WebSiteRecommendation@weliketheweb.com
x1qjcphvf@y-ued.net

C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\searchplugins\
conduit.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}]
hosts - C:\Program Files\hosts\hosts-bho.dll [2013-07-30 748032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-01 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-01 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2013-06-24 20145368]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2013-01-31 15517472]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2013-01-31 1982312]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\4StoryPrePatch]
C:\Program Files\Hry\4Story_CZ\PrePatch.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2010-11-03 64104]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcWzrd]
C:\WINDOWS\ALCWZRD.EXE [2010-11-03 2815592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnTBMon]
C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Documents and Settings\Tomii\Data aplikací\Seznam.cz\szninstall.exe -c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.szndesktop]
C:\Documents and Settings\Tomii\Data aplikací\Seznam.cz\bin\wszndesktop.exe -q []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\Programy\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverUpdate]
C:\Program Files\DriverUpdate\DriverUpdate.exe -boot []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FixCleaner]
C:\Program Files\FixCleaner\FixCleaner.exe -boot []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GB_UPDATE]
C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe /AUTORUN []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NtVdmSrv]
C:\WINDOWS\inf\ntvdm.vbe [2013-06-20 1219]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /installquiet []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
C:\Program Files\OO Software\Defrag\oodtray.exe [2012-11-01 5029744]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RAM_DEFRAG]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RDReminder]
C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe -rem []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2013-06-24 20145368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2010-11-03 84584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WebCake Desktop]
C:\Documents and Settings\Tomii\Data aplikací\WebCake\WebCakeDesktop.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^O&O Defrag Tray.lnk]
C:\WINDOWS\Installer\{0C6CDC1E-F247-45FD-BEC7-47014D2698C1}\DefragIcon.exe [2013-07-01 292878]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WmiApSrv"=3
"WZCSVC"=2
"AdobeFlashPlayerUpdateSvc"=3
"gupdatem"=3
"gupdate"=2
"CiSvc"=3

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\PANDORA.TV\PanService\PanProcess.exe"="C:\Program Files\PANDORA.TV\PanService\PanProcess.exe:*:Enabled:PanProcess"
"C:\Program Files\PANDORA.TV\PanService\PandoraService.exe"="C:\Program Files\PANDORA.TV\PanService\PandoraService.exe:*:Enabled:PandoraService"
"C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Hry\GigaZone Klient\mvwrc32.dll"="C:\Program Files\Hry\GigaZone Klient\mvwrc32.dll:*:Enabled:mvwrc32"
"C:\Documents and Settings\Tomii\Plocha\DsLan-All_in_One_v1.9\All-in-One_v1.9\mysql\bin\mysqld.exe"="C:\Documents and Settings\Tomii\Plocha\DsLan-All_in_One_v1.9\All-in-One_v1.9\mysql\bin\mysqld.exe:*:Enabled:mysqld"
"C:\Documents and Settings\Tomii\Plocha\DsLan-All_in_One_v1.9\All-in-One_v1.9\apache\bin\apache.exe"="C:\Documents and Settings\Tomii\Plocha\DsLan-All_in_One_v1.9\All-in-One_v1.9\apache\bin\apache.exe:*:Enabled:Apache HTTP Server"
"C:\Program Files\Java\jre7\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre7\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Hry\WoT\WoTLauncher.exe"="C:\Program Files\Hry\WoT\WoTLauncher.exe:*:Enabled:World of Tanks Launcher"
"C:\Program Files\Hry\Mount&Blade Warband\mb_warband.exe"="C:\Program Files\Hry\Mount&Blade Warband\mb_warband.exe:*:Enabled:Mount&Blade: Warband"
"C:\Program Files\Hry\Diablo II\D2Loader-1.12.exe"="C:\Program Files\Hry\Diablo II\D2Loader-1.12.exe:*:Enabled:Diablo II"
"C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Launcher.patch.exe"="C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Launcher.patch.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Launcher.exe"="C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Temp\WoW-4.3-5.0.15890-enUS-Downloader.exe"="C:\Program Files\Hry\ICE\World of Warcraft ICE_WOW\Temp\WoW-4.3-5.0.15890-enUS-Downloader.exe:*:Enabled:Blizzard Downloader"
"C:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.1040\Agent.exe"="C:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.1040\Agent.exe:*:Enabled:Battle.net Update Agent"
"C:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2045\Agent.exe"="C:\Documents and Settings\All Users\Data aplikací\Battle.net\Agent\Agent.2045\Agent.exe:*:Enabled:Battle.net Update Agent"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2013-07-30 14:23:28 ----D---- C:\rsit
2013-07-30 14:23:28 ----D---- C:\Program Files\trend micro
2013-07-30 14:18:10 ----D---- C:\Program Files\MyDefrag v4.3.1
2013-07-30 13:59:17 ----D---- C:\Program Files\hosts
2013-07-29 00:06:30 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2013-07-28 11:23:12 ----D---- C:\Documents and Settings\Tomii\Data aplikací\ESET
2013-07-27 23:05:31 ----D---- C:\Program Files\CCleaner
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrszht.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrstr.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrsth.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrssv.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrssl.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrssk.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrsru.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrspt.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrspl.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrsno.dll
2013-07-27 22:10:45 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsko.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsja.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsit.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrshu.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrshe.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrses.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrseng.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsel.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsde.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsda.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrscs.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvrsar.dll
2013-07-27 22:10:44 ----A---- C:\WINDOWS\system32\nvcolor.exe
2013-07-27 22:10:43 ----A---- C:\WINDOWS\system32\nvmctray.dll
2013-07-27 22:10:43 ----A---- C:\WINDOWS\system32\nvcpl.dll
2013-07-27 22:10:35 ----A---- C:\WINDOWS\system32\nvwddi.dll
2013-07-27 22:06:51 ----A---- C:\WINDOWS\system32\nvopencl.dll
2013-07-27 22:06:51 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2013-07-27 22:06:50 ----A---- C:\WINDOWS\system32\nvdispgenco32.dll
2013-07-27 22:06:50 ----A---- C:\WINDOWS\system32\nvdispco32.dll
2013-07-27 22:06:49 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2013-07-27 22:06:49 ----A---- C:\WINDOWS\system32\nvcuvenc.dll
2013-07-27 22:06:49 ----A---- C:\WINDOWS\system32\nvcuda.dll
2013-07-27 22:06:34 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2013-07-27 22:06:34 ----A---- C:\WINDOWS\system32\nvapi.dll
2013-07-27 22:04:38 ----D---- C:\WINDOWS\system32\RTCOM
2013-07-27 22:04:29 ----A---- C:\WINDOWS\vncutil.exe
2013-07-27 22:04:29 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2013-07-27 22:04:29 ----A---- C:\WINDOWS\RtlUpd.exe
2013-07-27 22:04:27 ----A---- C:\WINDOWS\RTLCPL.EXE
2013-07-27 22:04:26 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2013-07-27 22:04:22 ----A---- C:\WINDOWS\RtkAudioService.exe
2013-07-27 22:04:16 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2013-07-27 22:04:16 ----A---- C:\WINDOWS\system32\drivers\Monfilt.sys
2013-07-27 22:04:16 ----A---- C:\WINDOWS\RTHDCPL.EXE
2013-07-27 22:04:16 ----A---- C:\WINDOWS\MicCal.exe
2013-07-27 22:04:13 ----D---- C:\Program Files\Realtek
2013-07-27 22:04:13 ----A---- C:\WINDOWS\system32\drivers\Ambfilt.sys
2013-07-27 22:04:13 ----A---- C:\WINDOWS\ALCWZRD.EXE
2013-07-27 22:04:13 ----A---- C:\WINDOWS\ALCMTR.EXE
2013-07-27 22:04:06 ----A---- C:\WINDOWS\RtlExUpd.dll
2013-07-27 22:03:45 ----D---- C:\Program Files\AMD
2013-07-27 22:03:45 ----A---- C:\WINDOWS\system32\drivers\AmdK8.sys
2013-07-27 22:02:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA Corporation
2013-07-27 22:01:38 ----RA---- C:\WINDOWS\system32\NEW1A.tmp
2013-07-27 22:01:38 ----RA---- C:\WINDOWS\system32\NEW19.tmp
2013-07-27 22:01:38 ----RA---- C:\WINDOWS\system32\fdco1ins.dll
2013-07-27 22:01:38 ----RA---- C:\WINDOWS\system32\fdco1.dll
2013-07-27 22:01:38 ----RA---- C:\WINDOWS\system32\drivers\NVENETFD.sys
2013-07-27 22:01:37 ----RA---- C:\WINDOWS\system32\cohelper.dll
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\nvconrm.dll
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\NEW11.tmp
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\drivers\nvnrm.sys
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\drivers\nvnetbus.sys
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\bdco1ins.dll
2013-07-27 22:01:35 ----RA---- C:\WINDOWS\system32\bdco1.dll
2013-07-27 22:01:32 ----RA---- C:\WINDOWS\system32\NVCOSMB.DLL
2013-07-27 21:52:45 ----A---- C:\WINDOWS\system32\OpenCL.dll
2013-07-27 21:07:40 ----D---- C:\Program Files\CPUID
2013-07-27 19:14:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Norton
2013-07-25 22:28:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\Battle.net
2013-07-25 22:24:56 ----D---- C:\Program Files\Common Files\Blizzard Entertainment
2013-07-25 21:52:12 ----A---- C:\WINDOWS\BlendSettings.ini
2013-07-24 20:27:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2834904_WM11$
2013-07-24 20:27:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2834886$
2013-07-24 20:27:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2850851$
2013-07-24 20:27:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2845187$
2013-07-23 02:21:02 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Unity
2013-07-21 23:23:42 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Mount&Blade Warband
2013-07-21 23:16:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Tarma Installer
2013-07-21 23:16:07 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Seznam.cz
2013-07-21 23:15:28 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-07-21 23:15:21 ----D---- C:\Documents and Settings\Tomii\Data aplikací\DAEMON Tools Lite
2013-07-21 23:14:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-07-21 22:39:43 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2013-07-21 22:39:42 ----A---- C:\WINDOWS\system32\drivers\PnkBstrK.sys
2013-07-21 22:39:34 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2013-07-21 21:35:39 ----D---- C:\Program Files\FreeRapid-0.9u2
2013-07-21 19:43:59 ----D---- C:\Documents and Settings\Tomii\Data aplikací\VitySoft
2013-07-21 18:57:46 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Python-Eggs
2013-07-21 18:57:34 ----D---- C:\Documents and Settings\Tomii\Data aplikací\BitLord
2013-07-21 18:57:34 ----A---- C:\Documents and Settings\Tomii\Data aplikací\bitlord_log.txt
2013-07-21 18:54:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\DealPlyLive
2013-07-21 18:54:54 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Dealply
2013-07-21 18:54:51 ----D---- C:\Documents and Settings\Tomii\Data aplikací\SimilarSites
2013-07-21 18:53:10 ----D---- C:\Documents and Settings\Tomii\Data aplikací\DownLite
2013-07-21 18:39:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\StarApp
2013-07-21 18:39:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\SeAArcuh-NewTaB
2013-07-21 18:38:59 ----D---- C:\Documents and Settings\Tomii\Data aplikací\EZDownloader
2013-07-21 18:38:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\sAfee ssavee
2013-07-21 18:33:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\SearchNewTab
2013-07-21 18:32:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\saffe savve
2013-07-21 18:31:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\InstallMate
2013-07-20 22:21:18 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Mozilla
2013-07-20 22:21:08 ----A---- C:\Mozilla Firefox.lnk
2013-07-20 22:21:07 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-07-20 22:21:07 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2013-07-12 00:51:23 ----A---- C:\WINDOWS\system32\cgd3d9.dll
2013-07-09 23:30:29 ----A---- C:\WINDOWS\system32\d3d8caps.dat
2013-07-09 18:20:57 ----A---- C:\WINDOWS\system32\d3d10core.dll
2013-07-09 18:18:36 ----D---- C:\Program Files\Lavalys
2013-07-09 18:01:21 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Help
2013-07-08 23:21:41 ----A---- C:\WINDOWS\system32\d3d10.dll
2013-07-08 23:21:18 ----D---- C:\Documents and Settings\Tomii\Data aplikací\dll-files.com
2013-07-08 22:41:22 ----A---- C:\WINDOWS\system32\msvcr110.dll
2013-07-08 22:40:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Logs
2013-07-08 22:40:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2013-07-08 22:40:32 ----A---- C:\WINDOWS\system32\roboot.exe
2013-07-07 19:59:13 ----D---- C:\Documents and Settings\Tomii\Data aplikací\vlc
2013-07-07 12:08:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2124261$
2013-07-07 12:06:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2013-07-07 12:06:02 ----D---- C:\WINDOWS\ie8updates
2013-07-07 12:05:37 ----D---- C:\WINDOWS\WBEM
2013-07-07 12:04:14 ----HDC---- C:\WINDOWS\ie8
2013-07-07 12:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2013-07-07 11:58:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2013-07-07 11:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2013-07-07 11:58:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2013-07-07 11:58:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2013-07-07 11:56:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2758857$
2013-07-07 11:55:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2013-07-07 11:55:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2013-07-07 11:55:48 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2013-07-07 11:55:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2013-07-07 11:55:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2013-07-07 11:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2013-07-07 11:51:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970483$
2013-07-07 11:48:56 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2013-07-07 11:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2013-07-07 11:45:03 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2013-07-07 11:44:36 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2013-07-06 19:39:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2013-07-03 23:40:27 ----D---- C:\Program Files\SpeedFan
2013-07-03 23:19:22 ----A---- C:\WINDOWS\system32\d3d9caps.dat
2013-07-03 15:02:48 ----D---- C:\WINDOWS\Minidump
2013-07-03 03:18:20 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2013-07-03 03:18:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2013-07-03 03:17:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2013-07-03 03:17:55 ----N---- C:\WINDOWS\system32\spmsg.dll
2013-07-03 03:17:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2779562$
2013-07-03 03:17:27 ----A---- C:\WINDOWS\system32\wmpns.dll
2013-07-03 03:16:51 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2013-07-03 03:15:53 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2013-07-03 03:15:08 ----D---- C:\WINDOWS\system32\drivers\UMDF
2013-07-03 03:15:00 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2013-07-03 03:11:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2013-07-03 03:11:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2013-07-03 03:11:30 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2013-07-03 03:08:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2013-07-03 03:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2013-07-03 03:02:24 ----A---- C:\WINDOWS\system32\RtkCoLDRXP.dll
2013-07-03 03:02:24 ----A---- C:\WINDOWS\system32\RtkCoInstIIXP.dll
2013-07-03 02:59:11 ----A---- C:\WINDOWS\system32\drivers\SWDUMon.sys
2013-07-03 02:59:01 ----D---- C:\Documents and Settings\Tomii\Data aplikací\FixCleaner
2013-07-03 02:52:19 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Thinstall
2013-07-02 22:05:19 ----A---- C:\WINDOWS\system32\GkSui18.EXE
2013-07-01 14:56:54 ----D---- C:\WINDOWS\system32\oodag
2013-07-01 14:54:55 ----D---- C:\Program Files\OO Software
2013-07-01 14:54:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\OO Software
2013-07-01 11:29:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2013-07-01 02:22:29 ----HD---- C:\WINDOWS\system32\GroupPolicy
2013-07-01 00:42:40 ----D---- C:\WINDOWS\Sun
2013-07-01 00:42:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2013-07-01 00:42:05 ----D---- C:\Program Files\Common Files\Java
2013-07-01 00:42:00 ----A---- C:\WINDOWS\system32\npDeployJava1.dll
2013-07-01 00:42:00 ----A---- C:\WINDOWS\system32\javaws.exe
2013-07-01 00:42:00 ----A---- C:\WINDOWS\system32\deployJava1.dll
2013-07-01 00:41:56 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-07-01 00:41:56 ----A---- C:\WINDOWS\system32\javaw.exe
2013-07-01 00:41:56 ----A---- C:\WINDOWS\system32\java.exe
2013-07-01 00:41:32 ----D---- C:\Program Files\Java
2013-07-01 00:38:43 ----D---- C:\Documents and Settings\Tomii\Data aplikací\Sun

======List of files/folders modified in the last 1 month======

2013-07-30 14:23:28 ----RD---- C:\Program Files
2013-07-30 14:18:59 ----RSH---- C:\boot.ini
2013-07-30 14:18:59 ----A---- C:\WINDOWS\win.ini
2013-07-30 14:18:59 ----A---- C:\WINDOWS\system.ini
2013-07-30 10:45:17 ----D---- C:\WINDOWS\system32
2013-07-30 10:45:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-07-30 10:41:20 ----D---- C:\WINDOWS\Temp
2013-07-29 12:43:06 ----D---- C:\WINDOWS
2013-07-28 23:08:11 ----HD---- C:\Program Files\InstallShield Installation Information
2013-07-28 23:07:27 ----D---- C:\Program Files\Hry
2013-07-28 12:34:00 ----HD---- C:\WINDOWS\inf
2013-07-28 12:33:59 ----D---- C:\WINDOWS\system32\drivers
2013-07-28 12:33:52 ----D---- C:\WINDOWS\system32\CatRoot2
2013-07-28 12:33:41 ----SHD---- C:\WINDOWS\Installer
2013-07-28 12:29:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Razer
2013-07-28 11:22:29 ----D---- C:\WINDOWS\system32\CatRoot
2013-07-27 22:11:17 ----D---- C:\Documents and Settings
2013-07-27 22:11:14 ----D---- C:\Program Files\NVIDIA Corporation
2013-07-27 22:11:03 ----D---- C:\WINDOWS\Help
2013-07-27 22:09:12 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-07-27 21:38:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA
2013-07-26 03:11:14 ----D---- C:\WINDOWS\SoftwareDistribution
2013-07-26 03:11:14 ----D---- C:\WINDOWS\Debug
2013-07-25 21:17:52 ----D---- C:\WINDOWS\system32\DirectX
2013-07-24 21:13:22 ----D---- C:\WINDOWS\Microsoft.NET
2013-07-24 21:13:22 ----D---- C:\WINDOWS\assembly
2013-07-24 20:28:25 ----D---- C:\WINDOWS\WinSxS
2013-07-24 20:25:22 ----A---- C:\WINDOWS\system32\MRT.exe
2013-07-24 20:25:19 ----D---- C:\WINDOWS\Prefetch
2013-07-24 20:25:13 ----D---- C:\Program Files\Internet Explorer
2013-07-24 20:20:13 ----HD---- C:\WINDOWS\$hf_mig$
2013-07-23 00:53:46 ----SD---- C:\WINDOWS\Tasks
2013-07-22 02:41:27 ----D---- C:\WINDOWS\Logs
2013-07-22 01:18:51 ----HD---- C:\WINDOWS\msdownld.tmp
2013-07-21 23:15:16 ----D---- C:\Program Files\Programy
2013-07-21 22:38:18 ----D---- C:\WINDOWS\system32\Logfiles
2013-07-21 18:05:42 ----D---- C:\WINDOWS\system
2013-07-21 15:47:10 ----D---- C:\WINDOWS\system32\inetsrv
2013-07-21 15:46:57 ----D---- C:\WINDOWS\Registration
2013-07-10 19:03:33 ----D---- C:\Program Files\Common Files\InstallShield
2013-07-09 23:06:06 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-07-09 15:25:43 ----D---- C:\WINDOWS\system32\config
2013-07-08 23:22:49 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2013-07-08 23:22:30 ----A---- C:\WINDOWS\system32\d3dx9_43.dll
2013-07-07 12:09:30 ----D---- C:\WINDOWS\system32\cs-cz
2013-07-07 12:05:29 ----D---- C:\WINDOWS\Media
2013-07-07 12:01:33 ----D---- C:\Program Files\Messenger
2013-07-03 23:09:45 ----D---- C:\WINDOWS\system32\Restore
2013-07-03 23:09:32 ----SHD---- C:\System Volume Information
2013-07-03 03:17:13 ----D---- C:\Program Files\Windows Media Player
2013-07-03 03:11:34 ----D---- C:\WINDOWS\security
2013-07-02 22:00:34 ----SD---- C:\Documents and Settings\Tomii\Data aplikací\Microsoft
2013-07-01 15:22:52 ----D---- C:\WINDOWS\pss
2013-07-01 00:42:05 ----D---- C:\Program Files\Common Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2010-04-09 168040]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-08-10 50688]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x); C:\WINDOWS\System32\drivers\sfsync03.sys [2005-12-06 35328]
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\WINDOWS\System32\drivers\sfvfs02.sys [2005-11-03 63488]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-07-21 242240]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2013-07-02 5473496]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-01-31 12648960]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2010-03-04 70912]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2010-03-04 13824]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2013-07-03 13024]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys []
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2013-01-31 156448]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-01-31 1259296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-07-01 182184]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-06-18 117144]
S3 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2012-11-01 2021744]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2007-10-19 63040]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-04-18 754856]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-09 257416]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-25 116648]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-25 116648]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: HDD neustále chroustá

#2 Příspěvek od JaRon »

vycisti s CCleanerom registre + vycisti s ADWcleanerom-volba delete + vloz log MBAM
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

TomiiKingu
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 30 črc 2013 13:21

Re: HDD neustále chroustá

#3 Příspěvek od TomiiKingu »

Tak vyčistil sem ccleanerem aji adwcleanerem a tady mi vyjel log po restartu pc

# AdwCleaner v2.306 - Log vytvooen 30/07/2013 v 14:59:05
# Aktualizováno 19/07/2013 Xplode
# Operaení systém : Microsoft Windows XP Service Pack 3 (32 bits)
# Uživatel : Tomii - TOMPC
# Spuštin systém : Normální
# Spuštino z : C:\Documents and Settings\Tomii\Plocha\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****


***** [Soubory / Složky] *****

Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\APN
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\DealPlyLive
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\sAfee ssavee
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\saffe savve
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\SeAArcuh-NewTaB
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\SearchNewTab
Složka Vymazáno : C:\Documents and Settings\All Users\Data aplikací\Tarma Installer
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\DealPly
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\extensions\2gdxdb@ehqfe.net
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\extensions\itmkxh@cullqv-.net
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\extensions\uid_0pv@ea-jayoea.com
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\extensions\x1qjcphvf@y-ued.net
Složka Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\SimilarSites
Složka Vymazáno : C:\Documents and Settings\Tomii\Local Settings\Data aplikací\DealPlyLive
Soubor Vymazáno : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\searchplugins\Conduit.xml
Soubor Vymazáno : C:\WINDOWS\system32\roboot.exe
Vymazáno poi restartu : C:\Documents and Settings\Tomii\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\adfgedbgfcfjinameapoggefokhamknc
Vymazáno poi restartu : C:\Documents and Settings\Tomii\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\fahmijdklinhnjajklickdhajfjahadm
Vymazáno poi restartu : C:\Documents and Settings\Tomii\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\odhnbpagkagobiklpghdikenadmklbhj

***** [Registry] *****

Klíe Vymazáno : HKCU\Software\AppDataLow\SProtector
Klíe Vymazáno : HKCU\Software\BI
Klíe Vymazáno : HKCU\Software\Cr_Installer
Klíe Vymazáno : HKCU\Software\Crossrider
Klíe Vymazáno : HKCU\Software\InstallCore
Klíe Vymazáno : HKCU\Software\InstalledBrowserExtensions
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E49E7F6-7EF0-3723-8A83-7F56AB9AD22F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4E34C12C-D89B-E95F-6E26-5B04E261658C}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E36FA32D-F6B7-F637-C640-1E58EFABCF56}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1E49E7F6-7EF0-3723-8A83-7F56AB9AD22F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E34C12C-D89B-E95F-6E26-5B04E261658C}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E36FA32D-F6B7-F637-C640-1E58EFABCF56}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311531182}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322532282}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035382.BHO.1
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CrossriderApp0035382.Sandbox.1
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355535582}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366536682}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344534482}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\bi_uninstaller
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}
Klíe Vymazáno : HKLM\Software\SProtector
Klíe Vymazáno : HKLM\Software\systweak
Klíe Vymazáno : HKLM\Software\Tarma Installer

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v8.0.6001.18702

Zaminino : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.conduit.com/?SearchSource=55&ctid=ct3135048 --> hxxp://www.google.com

-\\ Mozilla Firefox v22.0 (cs)

Soubor : C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\prefs.js

C:\Documents and Settings\Tomii\Data aplikací\Mozilla\Firefox\Profiles\llv75jfz.default\user.js ... Vymazáno !

[OK] Soubor je eistý.

-\\ Google Chrome v28.0.1500.72

Soubor : C:\Documents and Settings\Tomii\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

Soubor : C:\Documents and Settings\Ostatní\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Preferences

[OK] Soubor je eistý.

*************************

AdwCleaner[S1].txt - [5735 octets] - [30/07/2013 14:59:05]

########## EOF - C:\AdwCleaner[S1].txt - [5795 octets] ##########

Co dále ? :-))

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: HDD neustále chroustá

#4 Příspěvek od JaRon »

nuz po restarte vloz log z MBAM - rychla kontrola :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

TomiiKingu
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 30 črc 2013 13:21

Re: HDD neustále chroustá

#5 Příspěvek od TomiiKingu »

Tak rychla kontrola provedena zde je log:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.07.30.06

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Tomii :: TOMPC [administrátor]

Ochrana: Povolena

30.7.2013 15:08:09
MBAM-log-2013-07-30 (15-12-29).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 293952
Uplynulý čas: 4 minut, 1 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 1
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Špatný: (1) Dobrý: (0) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 2
C:\Documents and Settings\Tomii\Local Settings\Temp\ICReinstall_BitLordInstaller.exe (PUP.AdBundle) -> Nebyla provedena žádná instrukce.
C:\Documents and Settings\UpdatusUser\Local Settings\Temporary Internet Files\Content.IE5\AMN0JSST\upgrade[1].cab (Adware.OneStep) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: HDD neustále chroustá

#6 Příspěvek od JaRon »

najdene daj odstranit v MBAM a napis ci je to lepsie :???:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

TomiiKingu
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 30 črc 2013 13:21

Re: HDD neustále chroustá

#7 Příspěvek od TomiiKingu »

Promiň že jsem se dřív neozval ano už je to lepší díky :-) můžete LOCK

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15718
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: HDD neustále chroustá

#8 Příspěvek od JaRon »

v pohode :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno