Stránka 1 z 1

počítač se sekne každou chvíli

Napsal: 29 srp 2014 17:07
od poorboy
Dobrý den,
každou chvíli se mi sekne počítač třeba na 30 vteřin a pak se zase rozjede. Někdy se sekne tak, že ho musím restartovat. Nedá se skoro pracovat. (Seknul se i po spuštění RSIT)
Poraďte mi prosím, jak tomu zamezit. Děkuju.

log.txt má hodně řádků, takže mi ho to nedovolilo vložit. Snažil jsem se ho přiložit jako soubor, ale přílohu txt mi to taky nepovolilo.
Poraďte prosím, jak to provést.

Mirek

Zde část z logu:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Horáčkovi at 2014-08-29 17:50:45
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 12 GB (24%) free of 48 GB
Total RAM: 2013 MB (16% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:51:35, on 29.8.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files\Avast5\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\TC PowerPack\totalcmd.exe
C:\Program Files\trend micro\Horáčkovi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Avast5\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIC30F~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - (no file)
O3 - Toolbar: (no name) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - (no file)
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office 2010\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Avast5\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BackgroundContainerV2] "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Horáčkovi\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MI3DFC~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O20 - AppInit_DLLs: c:\progra~2\magnipic\sprote~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6748 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Avast5\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"taskhost.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\WindowsMobile\wmdcBase.exe"
"C:\Windows\SysWOW64\rundll32.exe" "C:\Users\Horáčkovi\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files\Avast5\AvastUI.exe" /nogui
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3000580155-701705438-4248145100-10002_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3000580155-701705438-4248145100-10002 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
totalcmd.exe /I="C:\Users\Horáčkovi\AppData\Roaming\TC PowerPack\pp_conf.ini" /F="C:\Users\Horáčkovi\AppData\Roaming\TC PowerPack\pp_ftp.ini"
"C:\Users\Horáčkovi\Documents\Stažené soubory\RSITx64.exe"
taskeng.exe {65F38DAB-112C-4BE9-A0A3-D078EA9B1044}
"C:\Program Files\Avast5\AvastEmUpdate.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\MagniPicUpdaterTask{C1012FB3-EF8F-4BC3-B1BA-070AC5E2F309}.job - C:\ProgramData\Premium\MagniPic\MagniPic.exe /schedule /profile "C:\ProgramData\Premium\MagniPic\profile.ini"

=========Mozilla firefox=========

ProfilePath - C:\Users\Horáčkovi\AppData\Roaming\Mozilla\Firefox\Profiles\x1ds1wq5.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.centrum.cz/"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, add-to-searchbox@maltekraus.de:2.0, {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.6.5, {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2, {4BBDD651-70CF-4821-84F8-2B918CF89CA3}:6.3.3.2, {b1df372d-8b32-4c7d-b6b4-9c5b78cf6fb1}:0.87, {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.0.14, {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2, ietab@ip.cn:1.95.20100933, {6e84150a-d526-41f1-a480-a67d3fed910d}:1.4.5.1, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {66E978CD-981F-47DF-AC42-E3CF417C1467}:0.4.3, elemhidehelper@adblockplus.org:1.1, {888d99e7-e8b5-46a3-851e-1ec45da1e644}:4.0.2, savesession@noasobi.net:1.3.1.6, {EF522540-89F5-46b9-B6FE-1829E2B572C6}:4.9.4, wrc@avast.com:20110101, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MIC30F~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MIC30F~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL


C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
yahoo.xml

C:\Users\Horáčkovi\AppData\Roaming\Mozilla\Firefox\Profiles\x1ds1wq5.default\searchplugins\
0arenabgcom.xml
bestwarezeu-1.xml
csfd.xml
cucajsk-.xml
extratorrentcom-1.xml
extratorrentcom.xml
filecropcom.xml
googlecz.xml
isohuntcom.xml
mapy.xml
mojetitulkycom-1.xml
net-parkcz.xml
opensubtitlesorg.xml
share-rapidcom.xml
slovnik-cz-en.xml
slovnik-en-cz.xml
stahujcz.xml
titulky.xml
torrentreactornet.xml
torrentzeu.xml
trackercztorrentnet.xml
ulozto-.xml
war4usk-1.xml
warcentercz.xml
warezakcz.xml
warezazbasenet.xml
wyhledawaczk47cz.xml
youtubecom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Avast5\aswWebRepIE64.dll [2014-08-27 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Avast5\aswWebRepIE.dll [2014-08-27 457712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MIC30F~1\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-04-18 59272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{F3FEE66E-E034-436a-86E4-9690573BEE8A}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-03 9642528]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 162328]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-02-11 386584]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-02-11 417304]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdcBase.exe [2007-05-31 660360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BackgroundContainerV2"=C:\Windows\SysWOW64\Rundll32.exe [2009-07-14 44544]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cz.seznam.software.autoupdate]
C:\Users\Horáčkovi\AppData\Roaming\Seznam.cz\szninstall.exe -c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EADM]
C:\Program Files (x86)\Origin\Origin.exe -AutoStart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Horáčkovi\AppData\Local\Google\Update\GoogleUpdate.exe /c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2013-05-07 802136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Color Calibration.lnk]
C:\PROGRA~2\SEC\MT2~1.5_R\GAMMAT~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk]
C:\PROGRA~2\MCAFEE~1\208EA4~1.189\SSSCHE~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCSSync"=C:\Program Files (x86)\Microsoft Office 2010\Office14\BCSSync.exe [2010-03-13 91520]
"AvastUI.exe"=C:\Program Files\Avast5\AvastUI.exe [2014-08-27 4085896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 272896]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-08-29 17:50:45 ----D---- C:\rsit
2014-08-29 17:50:45 ----D---- C:\Program Files\trend micro
2014-08-28 20:45:47 ----A---- C:\Windows\system32\wups2.dll

...
...

2014-08-15 19:01:13 ----A---- C:\Windows\system32\drivers\tdtcp.sys

======List of files/folders modified in the last 1 month======

2014-08-29 17:50:50 ----D---- C:\Windows\Temp
2014-08-29 17:50:45 ----D---- C:\Program Files
2014-08-29 17:46:56 ----D---- C:\Windows\Prefetch
2014-08-29 17:45:53 ----D---- C:\Windows\winsxs
2014-08-29 17:45:45 ----D---- C:\Windows\system32\config
2014-08-29 17:45:43 ----D---- C:\Windows
2014-08-29 17:45:34 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-08-29 17:45:33 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-08-29 17:45:33 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-29 17:45:33 ----D---- C:\Windows\SysWOW64
2014-08-29 17:45:33 ----D---- C:\Windows\system32\sk-SK
2014-08-29 17:45:33 ----D---- C:\Windows\system32\en-US
2014-08-29 17:45:33 ----D---- C:\Windows\system32\cs-CZ
2014-08-29 17:45:33 ----D---- C:\Windows\System32
2014-08-28 20:53:43 ----D---- C:\Windows\inf
2014-08-28 20:45:55 ----D---- C:\Windows\system32\catroot
2014-08-28 20:45:54 ----D---- C:\Windows\system32\catroot2
2014-08-28 20:45:30 ----SHD---- C:\System Volume Information
2014-08-28 20:41:56 ----SHD---- C:\Windows\Installer
2014-08-27 21:00:30 ----D---- C:\Windows\system32\drivers
2014-08-27 21:00:30 ----D---- C:\Program Files\Avast5
2014-08-27 20:59:23 ----RD---- C:\Program Files (x86)
2014-08-27 20:55:55 ----D---- C:\Windows\Panther
2014-08-27 20:55:55 ----D---- C:\Users\Horáčkovi\AppData\Roaming\DAEMON Tools Lite
2014-08-27 20:44:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-27 20:33:52 ----D---- C:\Windows\system32\Tasks
2014-08-27 20:33:45 ----A---- C:\Windows\system32\aswBoot.exe
2014-08-27 20:23:58 ----D---- C:\Windows\SYSWOW64\migration
2014-08-27 20:23:58 ----D---- C:\Program Files\Internet Explorer
2014-08-27 20:23:58 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-27 20:23:57 ----D---- C:\Windows\system32\migration
2014-08-27 20:23:57 ----D---- C:\Windows\PolicyDefinitions
2014-08-27 20:20:02 ----D---- C:\Windows\Logs
2014-08-27 20:20:02 ----D---- C:\Windows\debug
2014-08-27 20:20:02 ----D---- C:\Users\Horáčkovi\AppData\Roaming\uTorrent
2014-08-27 20:10:53 ----RSD---- C:\Windows\assembly
2014-08-27 20:10:53 ----D---- C:\Windows\Microsoft.NET
2014-08-27 20:01:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-08-27 19:58:43 ----SHD---- C:\Config.Msi
2014-08-27 19:52:38 ----D---- C:\Windows\Tasks
2014-08-27 19:51:39 ----D---- C:\Program Files (x86)\Google
2014-08-27 19:48:31 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-08-27 19:43:55 ----D---- C:\Windows\system32\DriverStore
2014-08-27 19:43:45 ----D---- C:\Windows\WindowsMobile
2014-08-27 19:38:19 ----D---- C:\Windows\rescache
2014-08-27 19:10:44 ----D---- C:\Program Files (x86)\AbiWord
2014-08-27 19:08:13 ----D---- C:\Program Files\CCleaner
2014-08-27 16:10:19 ----D---- C:\Windows\system32\NDF
2014-08-17 10:27:58 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-08-17 10:27:58 ----D---- C:\Program Files (x86)\Windows Portable Devices
2014-08-17 10:27:58 ----D---- C:\Program Files (x86)\Windows Media Player
2014-08-17 10:27:58 ----D---- C:\Program Files (x86)\Windows Mail
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Sidebar
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Portable Devices
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Photo Viewer
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Media Player
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Mail
2014-08-17 10:27:57 ----D---- C:\Program Files\Windows Journal
2014-08-17 10:27:57 ----D---- C:\Program Files\DVD Maker
2014-08-17 10:27:57 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-08-17 10:27:56 ----D---- C:\Windows\servicing
2014-08-17 10:27:56 ----D---- C:\Windows\ehome
2014-08-17 10:27:56 ----D---- C:\Program Files\Windows Defender
2014-08-17 10:27:56 ----D---- C:\Program Files\Common Files\System
2014-08-17 10:27:53 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2014-08-17 10:27:53 ----D---- C:\Windows\SYSWOW64\da-DK
2014-08-17 10:27:52 ----D---- C:\Windows\SYSWOW64\Setup
2014-08-17 10:27:52 ----D---- C:\Windows\SYSWOW64\oobe
2014-08-17 10:27:52 ----D---- C:\Windows\SYSWOW64\cs
2014-08-17 10:27:52 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\wbem
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\sppui
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\migwiz
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\manifeststore
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\es-ES
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\en
2014-08-17 10:27:51 ----D---- C:\Windows\SYSWOW64\Dism
2014-08-17 10:27:46 ----D---- C:\Windows\system32\da-DK
2014-08-17 10:27:43 ----D---- C:\Windows\system32\Setup
2014-08-17 10:27:43 ----D---- C:\Windows\system32\oobe
2014-08-17 10:27:43 ----D---- C:\Windows\system32\cs
2014-08-17 10:27:43 ----D---- C:\Windows\system32\AdvancedInstallers
2014-08-17 10:27:42 ----D---- C:\Windows\system32\wbem
2014-08-17 10:27:42 ----D---- C:\Windows\system32\sppui
2014-08-17 10:27:42 ----D---- C:\Windows\system32\migwiz
2014-08-17 10:27:42 ----D---- C:\Windows\system32\manifeststore
2014-08-17 10:27:42 ----D---- C:\Windows\system32\es-ES
2014-08-17 10:27:42 ----D---- C:\Windows\system32\drivers\UMDF
2014-08-17 10:27:42 ----D---- C:\Windows\system32\drivers\en-US
2014-08-17 10:27:42 ----D---- C:\Windows\system32\drivers\cs-CZ
2014-08-17 10:27:42 ----D---- C:\Windows\system32\Dism
2014-08-17 10:27:36 ----RSD---- C:\Windows\Fonts
2014-08-17 10:27:36 ----D---- C:\Windows\AppPatch
2014-08-17 10:27:30 ----D---- C:\Windows\system32\Boot
2014-08-17 10:24:46 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2014-08-17 10:24:46 ----A---- C:\Windows\system32\msclmd.dll
2014-08-16 10:44:48 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-08-15 20:26:22 ----D---- C:\Windows\SoftwareDistribution
2014-08-15 18:38:22 ----D---- C:\Program Files (x86)\Tbccint
2014-08-15 18:36:57 ----D---- C:\Program Files (x86)\MagniPic
2014-08-15 18:28:29 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2014-08-05 09:20:00 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-08-27 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-08-27 224896]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-01-08 834544]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-08-27 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-08-27 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-08-27 427360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-08-27 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-08-27 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-08-27 92008]
R3 gMouPS2;PS2 Scroll Mouse Device; C:\Windows\system32\DRIVERS\gMouPS2.sys [2009-06-30 19968]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-02-11 10628640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-03 2217504]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2009-07-10 139264]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S3 ahdswjy0;ahdswjy0; C:\Windows\system32\drivers\ahdswjy0.sys []
S3 gHidPnp;USB Device Enhanced Function Driver; C:\Windows\System32\Drivers\gHidPnp.Sys [2009-06-27 25088]
S3 gMouUsb16;USB 16-bit Mouse Device Drv; C:\Windows\system32\DRIVERS\gMouUsb16.sys [2009-06-25 11776]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\drivers\usb8023x.sys [2013-02-12 19968]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 Application Updater;Application Updater; C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2012-09-19 795072]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Avast5\AvastSvc.exe [2014-08-27 50344]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-20 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-07-17 119408]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-08-16 1255736]
S4 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]

-----------------EOF-----------------

Re: počítač se sekne každou chvíli

Napsal: 29 srp 2014 18:02
od Rudy
Zdravím!
Jak je na tom váš oper. systém s legalitou?

Re: počítač se sekne každou chvíli

Napsal: 29 srp 2014 18:07
od poorboy
Není to sice můj počítač, ale iluze si nedělám.

Re: počítač se sekne každou chvíli

Napsal: 29 srp 2014 18:11
od Rudy
Právě. Já také ne. Pak ale vás musím zklamat, podle pravidel: http://forum.viry.cz/viewtopic.php?f=12&t=115512 kontrolu provést nelze.

Re: počítač se sekne každou chvíli

Napsal: 29 srp 2014 18:12
od poorboy
OK. Prosím tedy o vymazání toho příspěvku.

Re: počítač se sekne každou chvíli

Napsal: 29 srp 2014 18:16
od Rudy
V pořádku. Vlákno bude přesunuto do koše, který je pro běžné uživatele nepřístupný.