Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomalený PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Spomalený PC

#1 Příspěvek od ladir »

Zdravím, poprosím o kontrolu PC. Pred sviatkami mi začal PC veľmi dlho nabiehať, procesor je stále vyťažený na 80-100%, takisto aj reakcie na nejaké príkazy sú veľmi spomalené. Mám Avast. Skúšal som aj iné antiviry, ale nepomohlo.
vopred ďakujem.

Ladislav

Prikladám log zo RSIT

Logfile of random's system information tool 1.09 (written by random/random)
Run by Ladislav at 2014-01-03 10:13:46
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 15 GB (38%) free of 40 GB
Total RAM: 1023 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:13:59, on 3.1.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ASUS\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Common Files\Protexis\License Service\PSIService.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\IObit\Advanced SystemCare 7\RealTimeProtector.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Microsoft Office\Office14\EXCEL.EXE
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\Ladislav\Desktop\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\Ladislav.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {82774781-8F4E-11D1-AB1C-0000F8773BF0} (DLC Class) - https://transfers.ds.microsoft.com/FTM/ ... erCtrl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ASUS\Bluetooth Software\bin\btwdins.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Program Files\Common Files\Protexis\License Service\PSIService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 9043 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\GoforFilesUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Ladislav\Application Data\Mozilla\Firefox\Profiles\q1q5w233.default

prefs.js - "browser.startup.homepage" - "http://www.google.sk/"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@IObit.com/np_Asc_Plugin]
"Description"=Advanced SystemCare Surfing Protection
"Path"=C:\Program Files\IObit\Surfing Protection\BrowerProtect\np_Asc_plugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5]
"Description"=A component of your photo software powered by RocketLife
"Path"=C:\Documents and Settings\All Users\Application Data\Visan\plugins\npRLSecurePluginLayer.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


C:\Documents and Settings\Ladislav\Application Data\Mozilla\Firefox\Profiles\q1q5w233.default\extensions\
ascsurfingprotection@iobit.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2013-12-25 752448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-12-22 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-12-22 1138536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Browser Protection - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL [2013-11-25 665408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-12-22 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{10921475-03CE-4E04-90CE-E2E7EF20C814} - ExplorerWnd Helper - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2013-12-25 752448]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-08-12 339968]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920]
"ISUSPM Startup"=C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-12-22 3764024]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [2013-04-22 720064]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-08-13 86016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 239496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-03-09 4171464]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoThumbnailCache"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=28

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\BitTorrent\BitTorrent.exe"="C:\Program Files\BitTorrent\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\TeamViewer\Version7\TeamViewer.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Microsoft Office\Office14\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office14\GROOVE.EXE:*:Enabled:Microsoft SharePoint Workspace"
"C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\WINDOWS\system32\dmwu.exe"="C:\WINDOWS\system32\dmwu.exe:*:Enabled:dmwu"
"C:\WINDOWS\system32\ARFC\wrtc.exe"="C:\WINDOWS\system32\ARFC\wrtc.exe:*:Enabled:wrtc"
"C:\Documents and Settings\Ladislav\Application Data\uTorrent\uTorrent.exe"="C:\Documents and Settings\Ladislav\Application Data\uTorrent\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======List of files/folders created in the last 1 month======

2014-01-03 10:13:46 ----D---- C:\rsit
2014-01-02 11:06:22 ----A---- C:\Documents and Settings\All Users\Application Data\SMRResults410.dat
2014-01-01 17:37:26 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2013-12-30 13:09:53 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2013-12-30 08:43:38 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-12-25 14:50:34 ----A---- C:\WINDOWS\system32\RegistryDefragBootTime.exe
2013-12-25 13:52:04 ----D---- C:\Documents and Settings\All Users\Application Data\ProductData
2013-12-25 13:50:49 ----D---- C:\Documents and Settings\All Users\Application Data\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2013-12-25 13:49:24 ----D---- C:\Documents and Settings\Ladislav\Application Data\Apple Computer
2013-12-23 00:12:50 ----D---- C:\Documents and Settings\All Users\Application Data\IObit
2013-12-23 00:12:30 ----D---- C:\Documents and Settings\Ladislav\Application Data\IObit
2013-12-23 00:12:06 ----D---- C:\Program Files\IObit
2013-12-22 23:56:53 ----D---- C:\Program Files\Microsoft Silverlight
2013-12-22 23:51:31 ----D---- C:\Program Files\Common Files\Java
2013-12-22 23:49:35 ----A---- C:\WINDOWS\system32\javaws.exe
2013-12-22 23:49:16 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-12-22 23:49:16 ----A---- C:\WINDOWS\system32\javaw.exe
2013-12-22 23:49:16 ----A---- C:\WINDOWS\system32\java.exe
2013-12-22 22:54:45 ----D---- C:\Documents and Settings\Ladislav\Application Data\AVAST Software
2013-12-22 22:52:48 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2013-12-22 22:52:48 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-12-22 22:52:47 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2013-12-22 22:52:47 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-12-22 22:52:46 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2013-12-22 22:52:46 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2013-12-22 22:52:45 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-12-22 22:52:35 ----A---- C:\WINDOWS\system32\aswBoot.exe
2013-12-22 22:52:29 ----A---- C:\WINDOWS\avastSS.scr
2013-12-22 22:48:45 ----D---- C:\Program Files\AVAST Software
2013-12-22 19:11:33 ----SHD---- C:\found.000
2013-12-22 17:13:24 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-12-22 15:52:28 ----D---- C:\Program Files\Mozilla Firefox
2013-12-22 15:15:41 ----SHD---- C:\WINDOWS\CSC
2013-12-22 15:13:32 ----D---- C:\WINDOWS\pss
2013-12-16 20:23:10 ----D---- C:\Documents and Settings\Ladislav\Application Data\Malwarebytes
2013-12-16 20:22:56 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2013-12-16 20:22:54 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-12-12 22:09:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2898715$
2013-12-12 22:09:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2904266$
2013-12-12 22:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2893294$
2013-12-12 22:05:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2893984$
2013-12-12 22:05:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2892075$

======List of files/folders modified in the last 1 month======

2014-01-03 10:13:52 ----D---- C:\Program Files\trend micro
2014-01-03 10:13:51 ----D---- C:\WINDOWS\Prefetch
2014-01-03 09:57:56 ----D---- C:\WINDOWS\Temp
2014-01-02 13:48:13 ----HD---- C:\Config.Msi
2014-01-02 12:23:47 ----SHD---- C:\WINDOWS\Installer
2014-01-02 12:22:34 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2014-01-02 12:19:57 ----A---- C:\WINDOWS\win.ini
2014-01-02 11:06:22 ----D---- C:\WINDOWS\system32\drivers
2014-01-01 21:58:38 ----D---- C:\WINDOWS\system32\CatRoot2
2014-01-01 21:14:38 ----D---- C:\Documents and Settings\Ladislav\Application Data\vlc
2014-01-01 21:07:15 ----D---- C:\Documents and Settings\Ladislav\Application Data\Audacity
2014-01-01 20:13:33 ----A---- C:\WINDOWS\system.ini
2014-01-01 18:52:28 ----D---- C:\Documents and Settings\Ladislav\Application Data\MediaMonkey
2013-12-30 08:45:11 ----D---- C:\WINDOWS\SoftwareDistribution
2013-12-30 08:44:13 ----D---- C:\WINDOWS
2013-12-30 08:43:05 ----D---- C:\WINDOWS\Debug
2013-12-26 09:59:29 ----SD---- C:\WINDOWS\Tasks
2013-12-25 14:51:35 ----D---- C:\Documents and Settings\Ladislav\Application Data\DAEMON Tools Lite
2013-12-25 14:50:34 ----D---- C:\WINDOWS\system32
2013-12-25 14:46:44 ----D---- C:\WINDOWS\system32\config
2013-12-25 13:03:08 ----D---- C:\WINDOWS\system32\NtmsData
2013-12-24 17:46:20 ----D---- C:\Program Files\SUPERAntiSpyware
2013-12-24 14:35:46 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-23 11:06:39 ----D---- C:\Documents and Settings\All Users\Application Data\YTD Video Downloader
2013-12-23 08:34:18 ----D---- C:\Program Files
2013-12-23 00:22:56 ----D---- C:\Documents and Settings\Ladislav\Application Data\uTorrent
2013-12-22 23:58:12 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-12-22 23:53:29 ----D---- C:\Program Files\uTorrent
2013-12-22 23:51:31 ----D---- C:\Program Files\Common Files
2013-12-22 23:48:39 ----D---- C:\Program Files\WinRAR
2013-12-22 23:09:51 ----D---- C:\Documents and Settings\Ladislav\Application Data\BitTorrent
2013-12-22 22:46:17 ----D---- C:\Documents and Settings\All Users\Application Data\AVAST Software
2013-12-22 21:57:18 ----D---- C:\WINDOWS\Network Diagnostic
2013-12-22 17:03:11 ----D---- C:\Program Files\CCleaner
2013-12-22 15:59:06 ----D---- C:\WINDOWS\system32\wbem
2013-12-22 15:58:59 ----D---- C:\WINDOWS\Registration
2013-12-22 15:51:59 ----D---- C:\Program Files\Online Services
2013-12-22 15:51:04 ----D---- C:\WINDOWS\system32\Restore
2013-12-21 18:12:48 ----HD---- C:\WINDOWS\inf
2013-12-21 14:51:03 ----D---- C:\Program Files\MSN
2013-12-16 20:44:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2013-12-12 22:11:26 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-12-12 22:11:24 ----D---- C:\Program Files\Internet Explorer
2013-12-12 22:11:13 ----D---- C:\WINDOWS\ie8updates
2013-12-12 22:09:41 ----D---- C:\WINDOWS\system32\MRT
2013-12-12 22:06:04 ----A---- C:\WINDOWS\system32\MRT.exe
2013-12-11 17:04:42 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-10 19:04:55 ----D---- C:\Documents and Settings\Ladislav\Application Data\Skype
2013-12-10 16:18:36 ----D---- C:\Program Files\Mozilla Thunderbird

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2013-12-22 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2013-12-22 180248]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2005-01-26 20576]
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 aswTdi;aswTdi; \??\C:\WINDOWS\system32\drivers\aswTdi.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-12-03 243128]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-08-13 786944]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2008-02-04 37160]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2008-04-15 990632]
R3 cmudax;C-Media High Definition Audio Interface; C:\WINDOWS\system32\drivers\cmudax.sys [2005-05-11 1287296]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2012-09-04 10368]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2004-10-27 223104]
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2008-04-15 534440]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2007-09-20 156392]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2008-03-10 57384]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2008-03-27 47272]
S3 esmjepqb;esmjepqb; C:\WINDOWS\system32\drivers\esmjepqb.sys []
S3 HHTHid;HHT-Tech Hid Device; C:\WINDOWS\system32\DRIVERS\HHTHid.sys [2011-11-29 6400]
S3 HHTHid_ArtvhMouFiltr;HHT-Tech HHTHid Mouse Driver Service; C:\WINDOWS\system32\DRIVERS\HHTHidMouFiltr.sys [2011-11-29 5632]
S3 hhusb5;HHUsb5 - Kernel Driver 01/01/2010, 0.0.0.1; C:\WINDOWS\system32\DRIVERS\hhusb5.sys [2012-05-11 30264]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2005-03-08 51120]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-03-08 21744]
S3 silabenm;Silicon Labs CP210x USB to UART Bridge Serial Port Enumerator Driver; C:\WINDOWS\system32\DRIVERS\silabenm.sys [2012-05-11 47176]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver; C:\WINDOWS\system32\DRIVERS\silabser.sys [2012-05-11 58496]
S3 tap0901;avast! SecureLine TAP Adapter; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-04-30 35088]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S4 GMSIPCI;GMSIPCI; \??\F:\INSTALL\GMSIPCI.SYS []
S4 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
S4 NTACCESS;NTACCESS; \??\F:\NTACCESS.sys []
S4 SetupNTGLM7X;SetupNTGLM7X; \??\F:\NTGLM7X.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2013-05-23 119056]
R2 AdvancedSystemCareService7;Advanced SystemCare Service 7; C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe [2013-12-09 881440]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-08-13 389120]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-12-22 50344]
R2 btwdins;Bluetooth Service; C:\Program Files\ASUS\Bluetooth Software\bin\btwdins.exe [2008-04-14 342624]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2013-12-22 182696]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-09-29 69632]
R2 ProtexisLicensing;ProtexisLicensing; C:\Program Files\Common Files\Protexis\License Service\PSIService.exe [2006-11-02 174656]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-08-12 516096]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-30 116648]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2013-12-03 2151200]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-30 116648]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 30798512]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-05 119408]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]

-----------------EOF-----------------
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#2 Příspěvek od JaRon »

ahoj
no tymto si si pomohol - Advanced SystemCare 7 - odinstaluj to
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#3 Příspěvek od ladir »

Ahoj, odinštaloval som to, ale veľmi to nepomohlo..štart PC vyše 3 min, spustenie prehliadača vyše minuty, kým sa dá do neho niečo napísať.

Ladir
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#4 Příspěvek od JaRon »

ani som necakal zazraky, ale najprv musim odstranit debilny SW, aby malo zmysel pokracovat
Presun ComboFix
na plochu (ak tam este nie je)

otvor si Poznamkovy blok - notepad

do neho zkopiruj skript z nasledujiceho okna:

Kód: Vybrat vše

Driver::
esmjepqb


uloz vytvoreny textovy soubor ako CFScript.txt na plochu

po ulozeni uchop vytvoreny skript lavym tlacitkom mysi a presun ho nad ikonu Combofixu, nad nim skript upust:

Obrázek

po aplikacii by mal vzniknut dalsi log, ten vloz sem :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#5 Příspěvek od ladir »

Combofix som dal na plochu, ale po zadaní textu do notepad sa ukáže okno s textom že windows nemôže získať pristup k zadanému zariadeniu, ceste alebo súboru...neviem kde robím chybu
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#6 Příspěvek od JaRon »

netusim, kde robis chybu - nevadi - spust iba ComboFix bez scriptu
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#7 Příspěvek od ladir »

Combofix prebehol..prikladám z neho log

ComboFix 14-01-01.01 - Ladislav 03.01.2014 12:24:07.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1023.270 [GMT 1:00]
Running from: C:\Documents and Settings\Ladislav\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\Documents and Settings\All Users\Application Data\TEMP
C:\Documents and Settings\All Users\Start Menu\HP Image Zone .lnk
C:\Documents and Settings\Ladislav\Application Data\ACD Systems\ACDSee\ImageDB.ddf
C:\WINDOWS\ST6UNST.000
C:\WINDOWS\system32\download
C:\WINDOWS\system32\MUI\041b\tourstart.exe
C:\WINDOWS\wininit.ini


((((((((((((((((((((((((( Files Created from 2013-12-03 to 2014-01-03 )))))))))))))))))))))))))))))))


2014-01-03 10:40:50 . 2014-01-03 10:53:06 390 ----a-w- C:\WINDOWS\system32\drivers\SMR410.dat
2014-01-03 10:40:49 . 2014-01-03 10:40:49 98392 ----a-w- C:\WINDOWS\system32\drivers\SMR410.SYS
2014-01-03 09:13:46 . 2014-01-03 09:14:04 -------- d-----w- C:\rsit
2014-01-01 16:37:26 . 2014-01-03 10:53:22 -------- d-----w- C:\Documents and Settings\Ladislav\Local Settings\Application Data\NPE
2014-01-01 16:37:26 . 2014-01-01 16:37:47 -------- d-----w- C:\Documents and Settings\All Users\Application Data\Norton
2013-12-30 12:09:53 . 2013-04-04 13:50:32 22856 ----a-w- C:\WINDOWS\system32\drivers\mbam.sys
2013-12-25 13:50:34 . 2013-06-27 17:05:50 24384 ----a-w- C:\WINDOWS\system32\RegistryDefragBootTime.exe
2013-12-25 12:52:04 . 2014-01-02 10:09:32 -------- d-----w- C:\Documents and Settings\All Users\Application Data\ProductData
2013-12-25 12:50:49 . 2013-12-25 12:50:49 -------- d-----w- C:\Documents and Settings\All Users\Application Data\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2013-12-25 12:49:24 . 2013-12-25 12:52:18 -------- d-----w- C:\Documents and Settings\Ladislav\Application Data\Apple Computer
2013-12-23 07:24:07 . 2013-12-26 08:05:10 -------- d-----w- C:\WINDOWS\system32\config\systemprofile\Application Data\IObit
2013-12-22 23:25:06 . 2013-12-22 23:25:06 -------- d-----w- C:\Documents and Settings\Ladislav\AppData
2013-12-22 23:12:50 . 2013-12-25 12:50:46 -------- d-----w- C:\Documents and Settings\All Users\Application Data\IObit
2013-12-22 23:12:30 . 2013-12-25 12:52:20 -------- d-----w- C:\Documents and Settings\Ladislav\Application Data\IObit
2013-12-22 23:12:06 . 2014-01-03 09:54:29 -------- d-----w- C:\Program Files\IObit
2013-12-22 22:56:53 . 2013-12-23 13:34:07 -------- d-----w- C:\Program Files\Microsoft Silverlight
2013-12-22 22:51:31 . 2013-12-22 22:51:31 -------- d-----w- C:\Program Files\Common Files\Java
2013-12-22 22:49:35 . 2013-12-22 22:48:05 145408 ----a-w- C:\WINDOWS\system32\javacpl.cpl
2013-12-22 22:49:16 . 2013-12-22 22:48:20 94632 ----a-w- C:\WINDOWS\system32\WindowsAccessBridge.dll
2013-12-22 21:54:45 . 2013-12-22 21:54:45 -------- d-----w- C:\Documents and Settings\Ladislav\Application Data\AVAST Software
2013-12-22 21:52:48 . 2013-12-22 21:52:32 57672 ----a-w- C:\WINDOWS\system32\drivers\aswTdi.sys
2013-12-22 21:52:48 . 2013-12-22 21:52:32 180248 ----a-w- C:\WINDOWS\system32\drivers\aswVmm.sys
2013-12-22 21:52:47 . 2013-12-22 21:52:32 775952 ----a-w- C:\WINDOWS\system32\drivers\aswSnx.sys
2013-12-22 21:52:47 . 2013-12-22 21:52:31 410528 ----a-w- C:\WINDOWS\system32\drivers\aswSP.sys
2013-12-22 21:52:46 . 2013-12-22 21:52:31 67824 ----a-w- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2013-12-22 21:52:46 . 2013-12-22 21:52:31 49944 ----a-w- C:\WINDOWS\system32\drivers\aswRvrt.sys
2013-12-22 21:52:45 . 2013-12-22 21:52:31 54832 ----a-w- C:\WINDOWS\system32\drivers\aswRdr.sys
2013-12-22 21:52:35 . 2013-12-22 21:52:29 270240 ----a-w- C:\WINDOWS\system32\aswBoot.exe
2013-12-22 21:52:29 . 2013-12-22 21:52:29 43152 ----a-w- C:\WINDOWS\avastSS.scr
2013-12-22 21:48:45 . 2013-12-22 21:48:45 -------- d-----w- C:\Program Files\AVAST Software
2013-12-22 18:11:33 . 2013-12-22 18:11:33 -------- d-----w- C:\found.000
2013-12-22 16:13:24 . 2013-12-22 16:13:33 -------- d-----w- C:\Program Files\Mozilla Maintenance Service
2013-12-22 14:58:59 . 2013-12-22 14:58:59 -------- d-----w- C:\WINDOWS\system32\wbem\Repository
2013-12-16 19:23:10 . 2013-12-16 19:23:10 -------- d-----w- C:\Documents and Settings\Ladislav\Application Data\Malwarebytes
2013-12-16 19:22:56 . 2013-12-16 19:22:56 -------- d-----w- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2013-12-16 19:22:54 . 2013-12-30 12:10:01 -------- d-----w- C:\Program Files\Malwarebytes' Anti-Malware
.


(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

2013-12-26 09:41:38 . 2012-09-06 07:30:04 5018 --sha-w- C:\Documents and Settings\All Users\Application Data\KGyGaAvL.sys
2013-12-24 13:35:46 . 2012-09-02 18:09:14 692616 ----a-w- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-12-24 13:35:45 . 2012-09-02 18:09:14 71048 ----a-w- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-12-03 21:25:01 . 2013-12-03 21:25:01 243128 ----a-w- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-11-13 02:59:42 . 2008-04-14 12:00:00 150528 ----a-w- C:\WINDOWS\system32\imagehlp.dll
2013-11-07 05:38:51 . 2008-04-14 12:00:00 591360 ----a-w- C:\WINDOWS\system32\rpcrt4.dll
2013-11-06 01:03:31 . 2012-09-02 14:36:36 7168 ----a-w- C:\WINDOWS\system32\xpsp4res.dll
2013-10-31 06:46:14 . 2013-11-30 08:35:23 104752 ----a-w- C:\WINDOWS\system32\drivers\aswFW.sys
2013-10-30 02:26:17 . 2008-04-14 12:00:00 1879040 ----a-w- C:\WINDOWS\system32\win32k.sys
2013-10-29 07:57:34 . 2008-04-14 12:00:00 920064 ----a-w- C:\WINDOWS\system32\wininet.dll
2013-10-29 07:57:33 . 2008-04-14 12:00:00 43520 ------w- C:\WINDOWS\system32\licmgr10.dll
2013-10-29 07:57:33 . 2008-04-14 12:00:00 18944 ----a-w- C:\WINDOWS\system32\corpol.dll
2013-10-29 07:57:33 . 2008-04-14 12:00:00 1469440 ------w- C:\WINDOWS\system32\inetcpl.cpl
2013-10-29 00:45:02 . 2008-04-14 12:00:00 385024 ------w- C:\WINDOWS\system32\html.iec
2013-10-23 23:45:49 . 2008-04-14 12:00:00 172032 ----a-w- C:\WINDOWS\system32\scrrun.dll
2013-10-12 15:56:19 . 2008-04-14 12:00:00 278528 ----a-w- C:\WINDOWS\system32\oakley.dll
2013-10-09 13:12:48 . 2008-04-14 12:00:00 287744 ----a-w- C:\WINDOWS\system32\gdi32.dll
2013-10-07 10:59:21 . 2008-04-14 12:00:00 603136 ----a-w- C:\WINDOWS\system32\crypt32.dll


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-12-22 21:52:17 259464 ----a-w- C:\Program Files\AVAST Software\Avast\ashShell.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OfficeSyncProcess"="C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" [2013-04-22 08:05:32 720064]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe" [2013-10-28 08:29:38 3675352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-08-12 19:10:00 339968]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-08-11 15:30:30 81920]
"ISUSPM Startup"="C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-08-11 15:30:30 249856]
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe" [2013-12-22 21:52:14 3764024]
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [2013-07-02 08:16:26 254336]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoThumbnailCache"= 1 (0x1)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 22:36:36 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2013-10-28 08:29:38 3675352 ----a-w- C:\Program Files\DAEMON Tools Lite\DTLite.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\BitTorrent\\BitTorrent.exe"=
"C:\\Program Files\\TeamViewer\\Version7\\TeamViewer.exe"=
"C:\\Program Files\\TeamViewer\\Version7\\TeamViewer_Service.exe"=
"C:\\Program Files\\Opera\\opera.exe"=
"C:\\Program Files\\Microsoft Office\\Office14\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office14\\ONENOTE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office14\\OUTLOOK.EXE"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"C:\\WINDOWS\\system32\\dmwu.exe"=
"C:\\WINDOWS\\system32\\ARFC\\wrtc.exe"=
"C:\\Documents and Settings\\Ladislav\\Application Data\\uTorrent\\uTorrent.exe"=

R0 aswRvrt;avast! Revert;C:\WINDOWS\system32\drivers\aswRvrt.sys [22.12.2013 22:52:46 49944]
R0 aswVmm;avast! VM Monitor;C:\WINDOWS\system32\drivers\aswVmm.sys [22.12.2013 22:52:48 180248]
R0 SMR410;Symantec SMR Utility Service 4.1.0;C:\WINDOWS\system32\drivers\SMR410.SYS [3.1.2014 11:40:49 98392]
R1 aswSnx;aswSnx;C:\WINDOWS\system32\drivers\aswSnx.sys [22.12.2013 22:52:47 775952]
R1 aswSP;aswSP;C:\WINDOWS\system32\drivers\aswSP.sys [22.12.2013 22:52:47 410528]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\WINDOWS\system32\drivers\dtsoftbus01.sys [3.12.2013 22:25:01 243128]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv.sys [22.7.2011 17:27:02 12880]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [12.7.2011 22:55:22 67664]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore.exe [23.5.2013 21:11:42 119056]
R2 aswMonFlt;aswMonFlt;C:\WINDOWS\system32\drivers\aswMonFlt.sys [22.12.2013 22:52:46 67824]
R3 cmudax;C-Media High Definition Audio Interface;C:\WINDOWS\system32\drivers\cmudax.sys [2.9.2012 15:05:35 1287296]
R3 MBAMProtector;MBAMProtector;C:\WINDOWS\system32\drivers\mbam.sys [30.12.2013 13:09:53 22856]
S2 LiveUpdateSvc;LiveUpdate;C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [25.12.2013 13:51:31 2151200]
S2 MBAMService;MBAMService;C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [30.12.2013 13:09:55 701512]
S3 esmjepqb;esmjepqb; [x]
S3 HHTHid;HHT-Tech Hid Device;C:\WINDOWS\system32\drivers\HHTHid.sys [12.5.2013 15:00:11 6400]
S3 HHTHid_ArtvhMouFiltr;HHT-Tech HHTHid Mouse Driver Service;C:\WINDOWS\system32\drivers\HHTHidMouFiltr.sys [12.5.2013 15:00:12 5632]
S3 hhusb5;HHUsb5 - Kernel Driver 01/01/2010, 0.0.0.1;C:\WINDOWS\system32\drivers\hhusb5.sys [12.5.2013 15:00:10 30264]
S3 silabenm;Silicon Labs CP210x USB to UART Bridge Serial Port Enumerator Driver;C:\WINDOWS\system32\drivers\silabenm.sys [12.5.2013 15:00:10 47176]
S3 silabser;Silicon Labs CP210x USB to UART Bridge Driver;C:\WINDOWS\system32\drivers\silabser.sys [12.5.2013 15:00:10 58496]
S4 SetupNTGLM7X;SetupNTGLM7X;\??\F:\NTGLM7X.sys --> F:\NTGLM7X.sys [?]
S4 SkypeUpdate;Skype Updater;C:\Program Files\Skype\Updater\Updater.exe [13.7.2012 12:28:36 160944]

--- Other Services/Drivers In Memory ---

*NewlyCreated* - SMR410

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-12-06 16:30:24 1210320 ----a-w- C:\Program Files\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe

Contents of the 'Scheduled Tasks' folder

2014-01-03 C:\WINDOWS\Tasks\avast! Emergency Update.job
- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-12-22 21:52:13 . 2013-12-22 21:52:13]

2014-01-03 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-30 09:25:48 . 2013-11-30 09:25:41]

2014-01-03 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
- C:\Program Files\Google\Update\GoogleUpdate.exe [2013-11-30 09:25:48 . 2013-11-30 09:25:41]


------- Supplementary Scan -------

uStart Page = hxxp://www.google.com
IE: E&xportovať do programu Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&oslať do programu OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: Send to &Bluetooth Device... - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send To Bluetooth - C:\Program Files\ASUS\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 10.0.0.2
FF - ProfilePath - C:\Documents and Settings\Ladislav\Application Data\Mozilla\Firefox\Profiles\q1q5w233.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - ExtSQL: 2013-12-26 10:58; ascsurfingprotection@iobit.com; C:\Documents and Settings\Ladislav\Application Data\Mozilla\Firefox\Profiles\q1q5w233.default\extensions\ascsurfingprotection@iobit.com
FF - ExtSQL: 2013-12-26 10:58; iobitapps@mybrowserbar.com; C:\Program Files\IObit Apps Toolbar\FF
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.maxtextrun - 4095
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.switch.threshold - 1000000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
FF - user.js: dom.disable_window_status_change - true
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#8 Příspěvek od JaRon »

pouzi Avenger - jeho script:
Drivers to delete:
esmjepqb


a napis, ci su este problemy ?
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#9 Příspěvek od ladir »

Avenger som spustil, ale nepomohlo to ... stále PC dlho nabieha aj net
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#10 Příspěvek od JaRon »

1, vycisti PC s CCleanerom
2. http://forum.viry.cz/viewtopic.php?f=46&t=79325 cast 8
HDTune - vloz cisla z benchmark a napis aky je health status
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#11 Příspěvek od ladir »

HD Tune Pro: WDC WD1200JS-00MHB1 Benchmark

Test capacity: full

Read transfer rate
Transfer Rate Minimum : 2.6 MB/s
Transfer Rate Maximum : 3.3 MB/s
Transfer Rate Average : 3.2 MB/s
Access Time : 13.4 ms
Burst Rate : 3.2 MB/s
CPU Usage : 97.0%

HD Tune Pro: WDC WD1200JS-00MHB1 Health

ID Current Worst ThresholdData Status
(01) Raw Read Error Rate 200 200 51 1 ok
(03) Spin Up Time 187 185 21 3650 ok
(04) Start/Stop Count 98 98 0 2727 ok
(05) Reallocated Sector Count 200 200 140 0 ok
(07) Seek Error Rate 200 200 51 0 ok
(09) Power On Hours Count 85 85 0 11334 ok
(0A) Spin Retry Count 100 100 51 0 ok
(0B) Calibration Retry Count 100 100 51 0 ok
(0C) Power Cycle Count 98 98 0 2718 ok
(BE) Airflow Temperature 60 48 45 40 ok
(C2) Temperature 107 95 0 40 ok
(C4) Reallocated Event Count 200 200 0 0 ok
(C5) Current Pending Sector 200 200 0 0 ok
(C6) Offline Uncorrectable 200 200 0 0 ok
(C7) Interface CRC Error Count 200 200 0 208 attention
(C8) Write Error Rate 200 200 51 0 ok

Health Status : ok
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#12 Příspěvek od JaRon »

mam taky pocit, ze ten disk je v PIO mode - pozri clanok kde je popis HDTune
ak by nebol, tak bude vadny disk
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#13 Příspěvek od ladir »

ten primárny IDE kanál je tam 2x obidva mám odinštalovať?
Ladir

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15721
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Spomalený PC

#14 Příspěvek od JaRon »

funkcny byva iba jeden - musis skusit - po restarte by mal disk nabehnut v UDMA
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

ladir
Návštěvník
Návštěvník
Příspěvky: 86
Registrován: 27 črc 2012 16:16
Bydliště: Žilna

Re: Spomalený PC

#15 Příspěvek od ladir »

no jeden ten primary IDE channel bol v DMA mode a druhý v PIO mode . Ten v PIO som oddinštaloval a zdá sa že to niečo pomohlo...
PC nabieha naplno .t.j aby sa dalo začať niečo robiť asi za 2 min, net cca 15 s
Ladir

Zamčeno