Jen na netu zpomalený windows XP
Napsal: 30 srp 2013 08:55
Dobrý den,
prosím o kontrolu logu. Strašné zpomalení systému jen po připojení k internetu. Základní očistu ccleanerem jsem provedl.
Pro RSIT jsem nechal 1 měsíc, ale nevím od kdy je tento stav. NTB je mého nadřízeného.
Děkuji
---------------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by Admin SV MO at 2013-08-30 07:58:50
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 41 GB (83%) free of 50 GB
Total RAM: 503 MB (58% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\avast! Emergency Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast Business\aswWebRepIE.dll [2013-06-27 201784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast Business\aswWebRepIE.dll [2013-06-27 201784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-18 208952]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]
"SoundMAXPnP"=C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [2004-10-14 1388544]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2004-09-23 860160]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2004-11-16 155648]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2004-11-16 126976]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2004-08-24 88363]
"SynTPLpr"=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [2004-11-04 98394]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2004-11-04 688218]
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe [2004-09-07 213054]
"NWEReboot"= []
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2004-09-13 49152]
"avast"=C:\Program Files\AVAST Software\Avast Business\avastUI.exe [2013-06-27 4769352]
"PDFPrint"=C:\Program Files\PDF24\pdf24.exe [2013-03-20 162856]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2004-11-16 348160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{58f15d69-48fa-11e1-8cef-4d6564696130}]
shell\AutoRun\command - F:\AutoRun.exe
======List of files/folders created in the last 1 months======
2013-08-30 07:58:51 ----D---- C:\Program Files\trend micro
2013-08-30 07:58:50 ----D---- C:\rsit
2013-08-30 07:56:44 ----D---- C:\Program Files\CCleaner
2013-08-30 07:55:24 ----A---- C:\TDSSKiller.2.9.2.0_30.08.2013_07.55.24_log.txt
2013-08-30 06:49:14 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Malwarebytes
2013-08-30 06:48:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-08-29 11:37:39 ----D---- C:\Program Files\7-Zip
2013-08-29 11:35:30 ----D---- C:\Program Files\VideoLAN
2013-08-29 11:29:57 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Mozilla
2013-08-29 11:22:30 ----A---- C:\WINDOWS\system32\gcapi_dll.dll
2013-08-29 11:22:12 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Foxit Software
2013-08-29 11:22:10 ----D---- C:\Program Files\Foxit Software
2013-08-29 11:19:42 ----D---- C:\Program Files\Mozilla Firefox
2013-08-28 20:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2834902-v2_WM10$
2013-08-18 21:18:06 ----D---- C:\WINDOWS\system32\MRT
2013-08-18 21:16:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$
2013-08-18 21:16:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$
2013-08-18 21:16:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2863058$
2013-08-18 21:14:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2849470$
======List of files/folders modified in the last 1 months======
2013-08-30 07:58:51 ----RD---- C:\Program Files
2013-08-30 07:57:46 ----D---- C:\WINDOWS\Temp
2013-08-30 07:57:16 ----D---- C:\WINDOWS
2013-08-30 07:55:25 ----D---- C:\WINDOWS\system32\drivers
2013-08-30 07:54:26 ----D---- C:\WINDOWS\Prefetch
2013-08-30 07:54:08 ----SHD---- C:\System Volume Information
2013-08-30 07:54:08 ----D---- C:\WINDOWS\system32\Restore
2013-08-30 07:48:41 ----N---- C:\WINDOWS\SchedLgU.Txt
2013-08-30 07:11:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2834902_WM10$
2013-08-30 07:10:34 ----D---- C:\WINDOWS\system32\CatRoot2
2013-08-30 06:47:13 ----D---- C:\WINDOWS\system32
2013-08-29 12:26:03 ----SHD---- C:\WINDOWS\Installer
2013-08-29 12:26:01 ----HD---- C:\Config.Msi
2013-08-29 11:14:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-29 11:13:38 ----D---- C:\WINDOWS\Help
2013-08-29 11:13:27 ----D---- C:\WINDOWS\system32\inetsrv
2013-08-29 11:06:25 ----D---- C:\Program Files\SAGEM
2013-08-29 11:05:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-29 11:05:52 ----A---- C:\WINDOWS\adiras.ini
2013-08-29 11:05:46 ----HD---- C:\WINDOWS\inf
2013-08-29 10:49:41 ----D---- C:\Program Files\HPQ
2013-08-29 10:47:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-08-29 10:47:37 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-08-29 10:40:57 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\LibreOffice
2013-08-29 10:38:28 ----D---- C:\WINDOWS\SHELLNEW
2013-08-29 10:28:54 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Sonic
2013-08-29 10:28:08 ----D---- C:\Program Files\Common Files
2013-08-29 10:27:05 ----SD---- C:\WINDOWS\Tasks
2013-08-29 10:23:34 ----D---- C:\Program Files\Java
2013-08-29 10:04:51 ----D---- C:\Program Files\Google
2013-08-29 10:04:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-08-29 10:01:42 ----D---- C:\Program Files\GRETECH
2013-08-29 09:48:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-08-29 09:39:59 ----D---- C:\WINDOWS\Minidump
2013-08-29 09:39:59 ----D---- C:\WINDOWS\Debug
2013-08-20 15:38:49 ----A---- C:\WINDOWS\ModemLog_HUAWEI Mobile Connect - 3G Modem.txt
2013-08-20 14:35:55 ----A---- C:\WINDOWS\iltwain.ini
2013-08-18 21:22:25 ----D---- C:\Program Files\Internet Explorer
2013-08-18 21:22:05 ----D---- C:\WINDOWS\ie8updates
2013-08-18 21:17:41 ----A---- C:\WINDOWS\system32\MRT.exe
2013-07-31 06:56:12 ----A---- C:\WINDOWS\system32\wmvdmod.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2013-06-27 49760]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2013-06-27 765736]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2013-06-27 368176]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2013-06-27 62376]
R1 ClntMgmt.sys;ClntMgmt.sys; C:\WINDOWS\System32\Drivers\ClntMgmt.sys [2004-02-20 59044]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-06-27 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2004-11-08 127744]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-08-24 1268204]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller; C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys [2004-05-26 44928]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2004-11-16 754909]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2004-10-13 259840]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2004-11-04 186016]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 w29n51;Intel(R) PRO/Wireless 2200BG Network Connection Driver for Windows XP; C:\WINDOWS\system32\DRIVERS\w29n51.sys [2004-11-16 3222784]
S1 eabfiltr;EABFiltr; \??\C:\WINDOWS\system32\drivers\EABFiltr.sys []
S1 MpKsl54df9d24;MpKsl54df9d24; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09A395CD-6C4D-4791-AC2F-5C1BC78318B6}\MpKsl54df9d24.sys []
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\WINDOWS\System32\Drivers\adildr.sys []
S3 adiusbaw;USB ADSL WAN Adapter; C:\WINDOWS\system32\DRIVERS\adiusbaw.sys []
S3 adusbnet;Anydata USB-NDIS miniport; C:\WINDOWS\system32\DRIVERS\adusbnet.sys []
S3 adusbser;Anydata USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys []
S3 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-06-27 175176]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-12-15 51120]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-12-15 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-12-15 21744]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\WINDOWS\system32\DRIVERS\ewdcsc.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys []
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\WINDOWS\system32\DRIVERS\ewusbdev.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2004-08-11 18944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast Business\AvastSvc.exe [2013-06-27 45248]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-09-29 69632]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 hpqwmi;HP WMI Interface; C:\Program Files\HPQ\SHARED\HPQWMI.exe [2004-10-04 98304]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------
prosím o kontrolu logu. Strašné zpomalení systému jen po připojení k internetu. Základní očistu ccleanerem jsem provedl.
Pro RSIT jsem nechal 1 měsíc, ale nevím od kdy je tento stav. NTB je mého nadřízeného.
Děkuji
---------------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by Admin SV MO at 2013-08-30 07:58:50
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 41 GB (83%) free of 50 GB
Total RAM: 503 MB (58% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\avast! Emergency Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast Business\aswWebRepIE.dll [2013-06-27 201784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast Business\aswWebRepIE.dll [2013-06-27 201784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-18 208952]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-18 455168]
"SoundMAXPnP"=C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [2004-10-14 1388544]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2004-09-23 860160]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2004-11-16 155648]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2004-11-16 126976]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2004-08-24 88363]
"SynTPLpr"=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [2004-11-04 98394]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2004-11-04 688218]
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe [2004-09-07 213054]
"NWEReboot"= []
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2004-09-13 49152]
"avast"=C:\Program Files\AVAST Software\Avast Business\avastUI.exe [2013-06-27 4769352]
"PDFPrint"=C:\Program Files\PDF24\pdf24.exe [2013-03-20 162856]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2004-11-16 348160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{58f15d69-48fa-11e1-8cef-4d6564696130}]
shell\AutoRun\command - F:\AutoRun.exe
======List of files/folders created in the last 1 months======
2013-08-30 07:58:51 ----D---- C:\Program Files\trend micro
2013-08-30 07:58:50 ----D---- C:\rsit
2013-08-30 07:56:44 ----D---- C:\Program Files\CCleaner
2013-08-30 07:55:24 ----A---- C:\TDSSKiller.2.9.2.0_30.08.2013_07.55.24_log.txt
2013-08-30 06:49:14 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Malwarebytes
2013-08-30 06:48:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2013-08-29 11:37:39 ----D---- C:\Program Files\7-Zip
2013-08-29 11:35:30 ----D---- C:\Program Files\VideoLAN
2013-08-29 11:29:57 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Mozilla
2013-08-29 11:22:30 ----A---- C:\WINDOWS\system32\gcapi_dll.dll
2013-08-29 11:22:12 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Foxit Software
2013-08-29 11:22:10 ----D---- C:\Program Files\Foxit Software
2013-08-29 11:19:42 ----D---- C:\Program Files\Mozilla Firefox
2013-08-28 20:06:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2834902-v2_WM10$
2013-08-18 21:18:06 ----D---- C:\WINDOWS\system32\MRT
2013-08-18 21:16:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2850869$
2013-08-18 21:16:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2859537$
2013-08-18 21:16:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2863058$
2013-08-18 21:14:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2849470$
======List of files/folders modified in the last 1 months======
2013-08-30 07:58:51 ----RD---- C:\Program Files
2013-08-30 07:57:46 ----D---- C:\WINDOWS\Temp
2013-08-30 07:57:16 ----D---- C:\WINDOWS
2013-08-30 07:55:25 ----D---- C:\WINDOWS\system32\drivers
2013-08-30 07:54:26 ----D---- C:\WINDOWS\Prefetch
2013-08-30 07:54:08 ----SHD---- C:\System Volume Information
2013-08-30 07:54:08 ----D---- C:\WINDOWS\system32\Restore
2013-08-30 07:48:41 ----N---- C:\WINDOWS\SchedLgU.Txt
2013-08-30 07:11:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2834902_WM10$
2013-08-30 07:10:34 ----D---- C:\WINDOWS\system32\CatRoot2
2013-08-30 06:47:13 ----D---- C:\WINDOWS\system32
2013-08-29 12:26:03 ----SHD---- C:\WINDOWS\Installer
2013-08-29 12:26:01 ----HD---- C:\Config.Msi
2013-08-29 11:14:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-08-29 11:13:38 ----D---- C:\WINDOWS\Help
2013-08-29 11:13:27 ----D---- C:\WINDOWS\system32\inetsrv
2013-08-29 11:06:25 ----D---- C:\Program Files\SAGEM
2013-08-29 11:05:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-29 11:05:52 ----A---- C:\WINDOWS\adiras.ini
2013-08-29 11:05:46 ----HD---- C:\WINDOWS\inf
2013-08-29 10:49:41 ----D---- C:\Program Files\HPQ
2013-08-29 10:47:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-08-29 10:47:37 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-08-29 10:40:57 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\LibreOffice
2013-08-29 10:38:28 ----D---- C:\WINDOWS\SHELLNEW
2013-08-29 10:28:54 ----D---- C:\Documents and Settings\Admin SV MO\Data aplikací\Sonic
2013-08-29 10:28:08 ----D---- C:\Program Files\Common Files
2013-08-29 10:27:05 ----SD---- C:\WINDOWS\Tasks
2013-08-29 10:23:34 ----D---- C:\Program Files\Java
2013-08-29 10:04:51 ----D---- C:\Program Files\Google
2013-08-29 10:04:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2013-08-29 10:01:42 ----D---- C:\Program Files\GRETECH
2013-08-29 09:48:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-08-29 09:39:59 ----D---- C:\WINDOWS\Minidump
2013-08-29 09:39:59 ----D---- C:\WINDOWS\Debug
2013-08-20 15:38:49 ----A---- C:\WINDOWS\ModemLog_HUAWEI Mobile Connect - 3G Modem.txt
2013-08-20 14:35:55 ----A---- C:\WINDOWS\iltwain.ini
2013-08-18 21:22:25 ----D---- C:\Program Files\Internet Explorer
2013-08-18 21:22:05 ----D---- C:\WINDOWS\ie8updates
2013-08-18 21:17:41 ----A---- C:\WINDOWS\system32\MRT.exe
2013-07-31 06:56:12 ----A---- C:\WINDOWS\system32\wmvdmod.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2013-06-27 49760]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2013-06-27 765736]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2013-06-27 368176]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2013-06-27 62376]
R1 ClntMgmt.sys;ClntMgmt.sys; C:\WINDOWS\System32\Drivers\ClntMgmt.sys [2004-02-20 59044]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-06-27 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2004-11-08 127744]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-08-24 1268204]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller; C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys [2004-05-26 44928]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2004-11-16 754909]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2004-10-13 259840]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2004-11-04 186016]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 w29n51;Intel(R) PRO/Wireless 2200BG Network Connection Driver for Windows XP; C:\WINDOWS\system32\DRIVERS\w29n51.sys [2004-11-16 3222784]
S1 eabfiltr;EABFiltr; \??\C:\WINDOWS\system32\drivers\EABFiltr.sys []
S1 MpKsl54df9d24;MpKsl54df9d24; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09A395CD-6C4D-4791-AC2F-5C1BC78318B6}\MpKsl54df9d24.sys []
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\WINDOWS\System32\Drivers\adildr.sys []
S3 adiusbaw;USB ADSL WAN Adapter; C:\WINDOWS\system32\DRIVERS\adiusbaw.sys []
S3 adusbnet;Anydata USB-NDIS miniport; C:\WINDOWS\system32\DRIVERS\adusbnet.sys []
S3 adusbser;Anydata USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys []
S3 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-06-27 175176]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-12-15 51120]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-12-15 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-12-15 21744]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\WINDOWS\system32\DRIVERS\ewdcsc.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys []
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\WINDOWS\system32\DRIVERS\ewusbdev.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2004-08-11 18944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast Business\AvastSvc.exe [2013-06-27 45248]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-09-29 69632]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 hpqwmi;HP WMI Interface; C:\Program Files\HPQ\SHARED\HPQWMI.exe [2004-10-04 98304]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------