Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomaleny PC log z RSIT

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Blein
Návštěvník
Návštěvník
Příspěvky: 208
Registrován: 28 srp 2008 11:18

Zpomaleny PC log z RSIT

#1 Příspěvek od Blein »

Zdravím, mám starší PC v poslední době se mi začaly sekat videa jak na youtube, či načítání webových stránek.
Přehrávaná videa v přehrávači jsou taky zasekaný.
Byl mi doporučen Ccleaner ten však nepomohl.

Přikládám zatím log z RSIT:

info.txt logfile of random's system information tool 1.10 2014-09-09 18:31:13

======MBR======

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

======Uninstall list======

-->"C:\Program Files\Creative\SBLive\Program\Ctzapxx.EXE" /X /U /S
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{435E969D-867E-4364-8E74-3DC8A69C5BDB}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{435E969D-867E-4364-8E74-3DC8A69C5BDB}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{48E3A9E6-FA13-11D5-8CC9-00A0C98192B6}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{48E3A9E6-FA13-11D5-8CC9-00A0C98192B6}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{58582977-44D2-44A0-A09B-031CC2AE5938}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{58582977-44D2-44A0-A09B-031CC2AE5938}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9A4D2983-4662-4387-BE3D-4CFC2FA9C100}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9A4D2983-4662-4387-BE3D-4CFC2FA9C100}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A731533B-B325-4D9C-91A4-D93C8E294C19}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A731533B-B325-4D9C-91A4-D93C8E294C19}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC157741-3285-4D6A-B934-9174587A3493}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC157741-3285-4D6A-B934-9174587A3493}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7337A45-3FE5-4392-ABBB-26B794D060C9}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7337A45-3FE5-4392-ABBB-26B794D060C9}\setup.exe" -l0x9 /remove
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FD851F7E-F887-405D-9E1C-488811113EF3}\setup.exe" -l0x9
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FD851F7E-F887-405D-9E1C-488811113EF3}\setup.exe" -l0x9 /remove
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
Adobe Flash Player 14 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_14_0_0_145_ActiveX.exe -maintain activex
Adobe Flash Player 14 Plugin-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_14_0_0_179_Plugin.exe -maintain plugin
Adobe Reader XI - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Ahead Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CPUID CPU-Z 1.70-->"C:\Program Files\CPUID\CPU-Z\unins000.exe"
D-Link GO-USB-N150-->C:\Program Files\InstallShield Installation Information\{9C222509-055C-4CFF-A116-1774517825EB}\Install.exe -uninst -l0x5
Dolphin Deals-->C:\Program Files\Dolphin Deals\DolphinDealsuninstall.exe
GOM Player-->"C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\37.0.2062.103\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HD-V1.9-->C:\Program Files\HD-V1.9\Uninstall.exe /fcp=1
Java 7 Update 51-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217051FF}
KaM - The Peasants Rebellion-->C:\PROGRA~1\KAM-TH~1\UNWISE.EXE /U C:\PROGRA~1\KAM-TH~1\INSTALL.LOG
K-Lite Codec Pack 10.3.0 Full-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Kodek 0.16 CZ-->"C:\Program Files\Kodek CZ\unins000.exe"
Malwarebytes Anti-Malware verze 2.0.2.1012-->"C:\Program Files\Malwarebytes Anti-Malware\unins000.exe"
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}
NVIDIA Windows 2000/XP Display Drivers-->rundll32.exe C:\WINDOWS\system32\nvinstnt.dll,NvUninstallNT4 nv4_disp.inf
OffersWizard Network System Driver-->"C:\Program Files\Common Files\Config\uninstinethnfd.exe"
Ogg Vorbis ACM Codec-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_ACM 132 C:\WINDOWS\INF\Vorbis.inf
Opera 9.64-->MsiExec.exe /X{E1BBBAC5-2857-4155-82A6-54492CE88620}
Opera Stable 23.0.1522.77-->"C:\Program Files\Opera\Launcher.exe" /uninstall
Software Version Updater-->C:\Documents and Settings\david\Data aplikací\27650\a24419.exe /uninstall
Sound Blaster Live!-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9115E7DB-3B29-445A-802D-11E0AA945B7F}\SETUP.EXE" -l0x9
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
WinRAR 4.20 (32-bit)-->C:\Program Files\WinRAR\uninstall.exe

======System event log======

Computer Name: DAVID-49DC3D47D
Event Code: 7036
Message: Stav služby Služba rozpoznávání pomocí protokolu SSDP byl změněn na: Spuštěno

Record Number: 83659
Source Name: Service Control Manager
Time Written: 20140809151136.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 7036
Message: Stav služby Služba modelu COM pro zápis na disk CD (IMAPI) byl změněn na: Spuštěno

Record Number: 83658
Source Name: Service Control Manager
Time Written: 20140809151135.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 7000
Message: Služba Cardex neuspěla při spuštění v důsledku následující chyby:
Nelze vytvořit soubor, který již existuje.


Record Number: 83657
Source Name: Service Control Manager
Time Written: 20140809151135.000000+120
Event Type: Chyba
User:

Computer Name: DAVID-49DC3D47D
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Služba rozpoznávání pomocí protokolu SSDP úspěšně odeslán.

Record Number: 83656
Source Name: Service Control Manager
Time Written: 20140809151135.000000+120
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: DAVID-49DC3D47D
Event Code: 7036
Message: Stav služby Sledování umístění v síti (NLA) byl změněn na: Spuštěno

Record Number: 83655
Source Name: Service Control Manager
Time Written: 20140809151135.000000+120
Event Type: Informace
User:

=====Application event log=====

Computer Name: DAVID-49DC3D47D
Event Code: 0
Message:
Record Number: 15138
Source Name: gupdate
Time Written: 20140427152411.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 105
Message: The service was started.

Record Number: 15137
Source Name: Creative Service for CDROM Access
Time Written: 20140427152407.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 101
Message: wuauclt (3096) Databázový stroj byl zastaven.

Record Number: 15136
Source Name: ESENT
Time Written: 20140426185946.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 103
Message: wuaueng.dll (3096) SUS20ClientDataStore: Databázový stroj zastavil instanci (0).

Record Number: 15135
Source Name: ESENT
Time Written: 20140426185946.000000+120
Event Type: Informace
User:

Computer Name: DAVID-49DC3D47D
Event Code: 102
Message: wuaueng.dll (3096) SUS20ClientDataStore: Databázový stroj spustil novou instanci (0).

Record Number: 15134
Source Name: ESENT
Time Written: 20140426185443.000000+120
Event Type: Informace
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 2 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=0209
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------





Logfile of random's system information tool 1.10 (written by random/random)
Run by david at 2014-09-09 18:30:58
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 32 GB (41%) free of 78 GB
Total RAM: 2047 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:31:07, on 9.9.2014
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
C:\WINDOWS\system32\nethtsrv.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\netupdsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Dolphin Deals\updater.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\david\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\david.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: CrossriderApp0061792 - {11111111-1111-1111-1111-110611171192} - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: D-Link GO-USB-N150 WPS Utility.lnk = C:\Program Files\D-Link\GO-USB-N150\RtWlan.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Installer Service - Unknown owner - C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\Installer\InstallerService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\WINDOWS\system32\nethtsrv.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\WINDOWS\system32\netupdsrv.exe
O23 - Service: UpdaterSvcDolphinDeals - Unknown owner - C:\Program Files\Dolphin Deals\updater.exe

--
End of file - 4903 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171192}]
HD-V1.9 - C:\Program Files\HD-V1.9\HD-V1.9-bho.dll [2014-08-12 538480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-01-15 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-01-15 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2002-12-31 4493312]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\WINDOWS\system32\CTHELPER.EXE [2003-08-28 24576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gainward]
C:\WINDOWS\TBPanel.exe [2003-05-26 2027520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Jet Detection]
C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe [2001-11-29 28672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2004-08-17 1667584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
D-Link GO-USB-N150 WPS Utility.lnk - C:\Program Files\D-Link\GO-USB-N150\RtWlan.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\D-Link\GO-USB-N150\RtWlan.exe"="C:\Program Files\D-Link\GO-USB-N150\RtWlan.exe:*:Enabled:RtWlan"
"C:\Program Files\D-Link\GO-USB-N150\RTLDHCP.exe"="C:\Program Files\D-Link\GO-USB-N150\RTLDHCP.exe:*:Enabled:RTLDHCP"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=L3codeca.acm
"msacm.ctmp3"=C:\WINDOWS\system32\ctmp3.acm
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"vidc.divx"=divx.dll
"vidc.div4"=DivXc32f.dll
"vidc.div3"=DivXc32.dll
"vidc.xvid"=xvid.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3radius"=l3codecp.acm
"msacm.divxa"=divxa32.acm
"msacm.vorbis"=Vorbis.acm
"msacm.a3d"=a3d.dll
"msacm.ogg"=ogg.dll
"msacm.vorbisenc"=vorbisenc.dll

======List of files/folders created in the last 3 months======

2014-09-09 18:31:00 ----D---- C:\Program Files\trend micro
2014-09-09 18:30:58 ----D---- C:\rsit
2014-09-09 18:28:26 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-09-09 18:28:26 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-09-09 18:28:26 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2014-09-09 18:20:17 ----A---- C:\awh5.tmp
2014-09-09 18:15:10 ----ASH---- C:\hiberfil.sys
2014-09-09 17:52:59 ----A---- C:\WINDOWS\system32\drivers\AegisP.sys
2014-09-09 17:51:54 ----RA---- C:\WINDOWS\system32\drivers\RTWlanU.sys
2014-09-09 17:51:54 ----D---- C:\WINDOWS\OPTIONS
2014-09-09 17:51:49 ----D---- C:\WINDOWS\system32\RtlGina
2014-09-09 17:51:49 ----D---- C:\Program Files\D-Link
2014-09-09 17:51:49 ----A---- C:\WINDOWS\system32\ISSRemoveSP.exe
2014-09-09 17:51:49 ----A---- C:\WINDOWS\SwUSB.exe
2014-09-09 17:51:49 ----A---- C:\WINDOWS\runSW.exe
2014-09-09 17:42:27 ----D---- C:\WINDOWS\pss
2014-09-09 17:35:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-09-09 17:34:46 ----D---- C:\Program Files\CPUID
2014-09-09 17:34:33 ----D---- C:\Program Files\CCleaner
2014-09-09 16:25:50 ----A---- C:\awh24.tmp
2014-09-08 19:57:17 ----A---- C:\awh41.tmp
2014-09-08 17:15:01 ----A---- C:\awh23.tmp
2014-09-08 14:07:31 ----A---- C:\awh18.tmp
2014-09-07 20:01:58 ----A---- C:\awh40.tmp
2014-09-07 18:03:13 ----A---- C:\awh3F.tmp
2014-09-07 13:57:54 ----A---- C:\awh13.tmp
2014-09-06 14:11:51 ----A---- C:\awhA.tmp
2014-09-05 17:30:06 ----A---- C:\awh17.tmp
2014-09-04 22:11:39 ----A---- C:\awh7.tmp
2014-09-04 16:48:40 ----A---- C:\awh16.tmp
2014-09-03 19:40:38 ----A---- C:\awh6.tmp
2014-09-03 16:27:12 ----A---- C:\awh22.tmp
2014-09-02 21:05:07 ----A---- C:\awh3E.tmp
2014-09-02 16:07:48 ----A---- C:\awh15.tmp
2014-09-01 19:57:23 ----A---- C:\awh3D.tmp
2014-09-01 15:49:25 ----A---- C:\awh14.tmp
2014-08-31 20:02:07 ----A---- C:\awh3C.tmp
2014-08-31 16:47:17 ----A---- C:\awh3B.tmp
2014-08-31 12:33:45 ----A---- C:\awh10.tmp
2014-08-30 18:59:46 ----A---- C:\awh3A.tmp
2014-08-30 13:52:13 ----A---- C:\awh21.tmp
2014-08-29 18:59:23 ----A---- C:\awh19.tmp
2014-08-29 16:27:22 ----A---- C:\awh12.tmp
2014-08-28 21:04:23 ----A---- C:\awh29.tmp
2014-08-28 15:25:34 ----A---- C:\awhC.tmp
2014-08-27 19:57:02 ----A---- C:\awh1E.tmp
2014-08-27 15:32:40 ----A---- C:\awhF.tmp
2014-08-26 20:51:24 ----A---- C:\awh27.tmp
2014-08-26 15:25:36 ----A---- C:\awh39.tmp
2014-08-25 20:45:57 ----A---- C:\awh38.tmp
2014-08-25 15:19:55 ----A---- C:\awh11.tmp
2014-08-24 19:40:53 ----A---- C:\awh1D.tmp
2014-08-24 16:52:44 ----A---- C:\awh9.tmp
2014-08-24 15:25:01 ----A---- C:\awh25.tmp
2014-08-24 13:54:45 ----A---- C:\awhE.tmp
2014-08-23 15:00:12 ----A---- C:\awh28.tmp
2014-08-22 10:08:26 ----A---- C:\awh37.tmp
2014-08-22 09:56:45 ----A---- C:\awhD.tmp
2014-08-22 00:03:06 ----A---- C:\awh3.tmp
2014-08-21 11:41:05 ----A---- C:\awh36.tmp
2014-08-20 09:42:39 ----A---- C:\awh35.tmp
2014-08-19 11:12:51 ----A---- C:\awh34.tmp
2014-08-18 10:33:13 ----A---- C:\awh1A.tmp
2014-08-17 20:10:47 ----A---- C:\awh2A.tmp
2014-08-17 17:12:04 ----A---- C:\awh1C.tmp
2014-08-17 15:02:01 ----A---- C:\awh32.tmp
2014-08-16 18:33:02 ----A---- C:\awh31.tmp
2014-08-16 15:42:19 ----A---- C:\awh1B.tmp
2014-08-15 18:14:22 ----A---- C:\awh2B.tmp
2014-08-15 16:38:08 ----A---- C:\awh2D.tmp
2014-08-15 16:29:05 ----D---- C:\dc64b9bb170f61e991711febf8
2014-08-14 19:18:07 ----A---- C:\awh26.tmp
2014-08-14 16:45:10 ----A---- C:\awh2C.tmp
2014-08-14 14:42:13 ----A---- C:\awh30.tmp
2014-08-14 14:10:46 ----A---- C:\awh33.tmp
2014-08-13 19:51:28 ----A---- C:\awh2F.tmp
2014-08-13 13:44:36 ----A---- C:\awh1F.tmp
2014-08-12 18:30:10 ----A---- C:\awh20.tmp
2014-08-12 15:23:18 ----A---- C:\awh2E.tmp
2014-08-12 15:21:45 ----D---- C:\Program Files\Dolphin Deals
2014-08-12 15:15:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\DivX
2014-08-12 15:15:38 ----D---- C:\Documents and Settings\david\Data aplikací\27650
2014-08-12 15:14:35 ----D---- C:\Program Files\Seznam.cz
2014-08-12 15:14:22 ----D---- C:\Documents and Settings\david\Data aplikací\QuickScan
2014-08-12 15:11:56 ----D---- C:\Program Files\globalUpdate
2014-08-12 15:11:50 ----D---- C:\Program Files\HD-V1.9
2014-08-12 15:11:11 ----D---- C:\Program Files\Zrychleni Pocitace
2014-08-12 15:10:51 ----D---- C:\Program Files\Common Files\Config
2014-08-12 13:33:54 ----A---- C:\WINDOWS\system32\drivers\nethfdrv.sys
2014-08-12 13:33:46 ----A---- C:\WINDOWS\system32\netupdsrv.exe
2014-08-12 13:33:38 ----A---- C:\WINDOWS\system32\installd.exe
2014-08-12 13:33:26 ----A---- C:\WINDOWS\system32\nethtsrv.exe
2014-08-12 13:33:18 ----A---- C:\WINDOWS\system32\hfnapi.dll
2014-08-12 13:33:10 ----A---- C:\WINDOWS\system32\hfpapi.dll
2014-08-12 13:25:22 ----D---- C:\Program Files\Kodek CZ
2014-08-06 14:53:15 ----D---- C:\Documents and Settings\david\Data aplikací\Opera Software

======List of files/folders modified in the last 3 months======

2014-09-09 18:31:00 ----RD---- C:\Program Files
2014-09-09 18:28:26 ----D---- C:\WINDOWS\system32\drivers
2014-09-09 18:27:46 ----D---- C:\WINDOWS\Temp
2014-09-09 18:27:41 ----D---- C:\WINDOWS
2014-09-09 18:25:47 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-09-09 18:03:29 ----D---- C:\WINDOWS\system32\CatRoot2
2014-09-09 17:53:04 ----D---- C:\WINDOWS\system32
2014-09-09 17:53:00 ----HD---- C:\WINDOWS\inf
2014-09-09 17:52:54 ----SHD---- C:\WINDOWS\Installer
2014-09-09 17:52:54 ----HD---- C:\Config.Msi
2014-09-09 17:52:53 ----D---- C:\WINDOWS\WinSxS
2014-09-09 17:51:47 ----HD---- C:\Program Files\InstallShield Installation Information
2014-09-09 17:46:49 ----SH---- C:\boot.ini
2014-09-09 17:46:49 ----A---- C:\WINDOWS\win.ini
2014-09-09 17:46:49 ----A---- C:\WINDOWS\system.ini
2014-09-09 17:42:10 ----D---- C:\Documents and Settings\david\Data aplikací\Seznam.cz
2014-09-09 17:37:05 ----D---- C:\WINDOWS\Minidump
2014-09-09 17:37:05 ----D---- C:\WINDOWS\Logs
2014-08-22 10:57:32 ----SD---- C:\WINDOWS\Tasks
2014-08-19 11:10:32 ----D---- C:\Program Files\Opera
2014-08-14 16:56:07 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-08-12 15:10:51 ----D---- C:\Program Files\Common Files
2014-08-12 13:25:34 ----RSHDC---- C:\WINDOWS\system32\dllcache

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 nethfdrv;nethfdrv; \??\C:\WINDOWS\system32\drivers\nethfdrv.sys []
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2014-09-09 21361]
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\drivers\PfModNT.sys []
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2002-07-25 5306]
R3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\System32\drivers\ctac32k.sys [2003-08-28 186068]
R3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2003-09-19 496800]
R3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\System32\drivers\ctprxy2k.sys [2003-08-28 6144]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\System32\drivers\ctsfm2k.sys [2003-08-28 136448]
R3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\System32\drivers\emupia2k.sys [2003-08-28 145504]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2003-08-28 823456]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2002-12-31 1217962]
R3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2003-08-28 113840]
R3 RtlWlanu;Realtek Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\system32\DRIVERS\rtwlanu.sys [2012-12-05 1345936]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 cpuz137;cpuz137; \??\C:\DOCUME~1\david\LOCALS~1\Temp\cpuz137\cpuz137_x32.sys []
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\WINDOWS\System32\drivers\ctdvda2k.sys []
S3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
S3 hap16v2k;Creative P16V HAL Driver; C:\WINDOWS\System32\drivers\hap16v2k.sys [2003-08-28 135696]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-01-15 182696]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-17 14336]
R2 NetHttpService;Network HTTP Support Service; C:\WINDOWS\system32\nethtsrv.exe [2014-08-12 179712]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2002-12-31 65536]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-17 14336]
R2 ServiceUpdater;Network Support Service Updater; C:\WINDOWS\system32\netupdsrv.exe [2014-08-12 162304]
R2 UpdaterSvcDolphinDeals;UpdaterSvcDolphinDeals; C:\Program Files\Dolphin Deals\updater.exe [2014-08-12 135976]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-08-12 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-19 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-14 262320]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-08-12 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-19 136176]
S3 Installer Service;Installer Service; C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\Installer\InstallerService.exe [2013-10-30 125288]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]

-----------------EOF-----------------




Děkuji za případné řešení.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny PC log z RSIT

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Blein
Návštěvník
Návštěvník
Příspěvky: 208
Registrován: 28 srp 2008 11:18

Re: Zpomaleny PC log z RSIT

#3 Příspěvek od Blein »

Zatím ADW:


# AdwCleaner v3.309 - Report created 09/09/2014 at 19:06:55
# Updated 02/09/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 2 (32 bits)
# Username : david - DAVID-49DC3D47D
# Running from : C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
[#] Service Deleted : nethfdrv
Service Deleted : NethxxpService
Service Deleted : ServiceUpdater

***** [ Files / Folders ] *****

[!] Folder Deleted : C:\Program Files\globalUpdate
Folder Deleted : C:\Program Files\HD-V1.9
Folder Deleted : C:\Documents and Settings\david\Local Settings\Data aplikací\globalUpdate
File Deleted : C:\WINDOWS\system32\drivers\nethfdrv.sys
File Deleted : C:\WINDOWS\system32\hfpapi.dll
File Deleted : C:\WINDOWS\system32\installd.exe
File Deleted : C:\WINDOWS\system32\nethtsrv.exe
File Deleted : C:\WINDOWS\system32\netupdsrv.exe

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0061792.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0061792.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0061792.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0061792.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171192}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172292}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175592}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176692}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174492}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171192}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110611171192}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKCU\Software\Crossrider
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\HD-V1.9
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\HD-V1.9
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\inethnfd
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HD-V1.9

***** [ Browsers ] *****

-\\ Internet Explorer v6.0.2900.2180


-\\ Google Chrome v37.0.2062.103

[ File : C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [7627 octets] - [09/09/2014 19:05:06]
AdwCleaner[S0].txt - [7664 octets] - [09/09/2014 19:06:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7724 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny PC log z RSIT

#4 Příspěvek od vyosek »

Jeste pockam na Zoek
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Blein
Návštěvník
Návštěvník
Příspěvky: 208
Registrován: 28 srp 2008 11:18

Re: Zpomaleny PC log z RSIT

#5 Příspěvek od Blein »

Ještě se zmíním, PC chce zrychlit kamarád. Pomale mu zde vysvětluji jak to zde chodí a učím ho jak zde má co dělat (číst Vaše návody).
Pokud nestihneme problém vyřešit do 48 hodin tak mu to předám a bude v tom pokračovat sám s Vámi. Možná bude klást otázky co to je log apod, snad to nebude vadit.

Zoek je zde.



Zoek.exe v5.0.0.0 Updated 09-September-2014
Tool run by david on Łt 09.09.2014 at 19:15:40,73.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\david\Plocha\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

9.9.2014 19:16:36 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\DOCUME~1\ALLUSE~1\DATAAP~1\DivX deleted
C:\Program Files\ComPlus Applications deleted
C:\Program Files\Common Files\Config\uninstinethnfd.exe deleted
C:\Program Files\Common Files\Config deleted
C:\awh10.tmp deleted
C:\awh11.tmp deleted
C:\awh12.tmp deleted
C:\awh13.tmp deleted
C:\awh14.tmp deleted
C:\awh15.tmp deleted
C:\awh16.tmp deleted
C:\awh17.tmp deleted
C:\awh18.tmp deleted
C:\awh19.tmp deleted
C:\awh1A.tmp deleted
C:\awh1B.tmp deleted
C:\awh1C.tmp deleted
C:\awh1D.tmp deleted
C:\awh1E.tmp deleted
C:\awh1F.tmp deleted
C:\awh20.tmp deleted
C:\awh21.tmp deleted
C:\awh22.tmp deleted
C:\awh23.tmp deleted
C:\awh24.tmp deleted
C:\awh25.tmp deleted
C:\awh26.tmp deleted
C:\awh27.tmp deleted
C:\awh28.tmp deleted
C:\awh29.tmp deleted
C:\awh2A.tmp deleted
C:\awh2B.tmp deleted
C:\awh2C.tmp deleted
C:\awh2D.tmp deleted
C:\awh2E.tmp deleted
C:\awh2F.tmp deleted
C:\awh3.tmp deleted
C:\awh30.tmp deleted
C:\awh31.tmp deleted
C:\awh32.tmp deleted
C:\awh33.tmp deleted
C:\awh34.tmp deleted
C:\awh35.tmp deleted
C:\awh36.tmp deleted
C:\awh37.tmp deleted
C:\awh38.tmp deleted
C:\awh39.tmp deleted
C:\awh3A.tmp deleted
C:\awh3B.tmp deleted
C:\awh3C.tmp deleted
C:\awh3D.tmp deleted
C:\awh3E.tmp deleted
C:\awh3F.tmp deleted
C:\awh40.tmp deleted
C:\awh41.tmp deleted
C:\awh5.tmp deleted
C:\awh6.tmp deleted
C:\awh7.tmp deleted
C:\awh9.tmp deleted
C:\awhA.tmp deleted
C:\awhC.tmp deleted
C:\awhD.tmp deleted
C:\awhE.tmp deleted
C:\awhF.tmp deleted
C:\WINDOWS\system32\hfnapi.dll deleted
"C:\Program Files\Dolphin Deals\updater.exe" deleted
"C:\Program Files\Dolphin Deals" not deleted

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.microsoft.com/isapi/redir.dl ... ar=msnhome"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.microsoft.com/isapi/redir.dl ... ar=msnhome"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

Nothing found to reset

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Dolphin Deals deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\david\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=75 folders=5 5476402 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\david\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Program Files\Dolphin Deals" not found

==== EOF on Łt 09.09.2014 at 19:29:53,15 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny PC log z RSIT

#6 Příspěvek od vyosek »

:arrow: V poradku, nic se nedeje :)

:arrow: Poprosim o FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Blein
Návštěvník
Návštěvník
Příspěvky: 208
Registrován: 28 srp 2008 11:18

Re: Zpomaleny PC log z RSIT

#7 Příspěvek od Blein »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-09-2014
Ran by david (administrator) on DAVID-49DC3D47D on 09-09-2014 20:13:03
Running from C:\Documents and Settings\david\Dokumenty\Downloads
Platform: Systém Microsoft Windows XP Professional Service Pack 2 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Creative Technology Ltd) C:\WINDOWS\system32\CTSVCCDA.EXE
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(Microsoft Corporation) C:\WINDOWS\system32\MsPMSPSv.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKU\S-1-5-21-1482476501-1606980848-725345543-1003\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-1482476501-1606980848-725345543-1003\...\MountPoints2: {3ba75932-2db1-11e3-865e-00301b264dad} - J:\Setup.exe
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\D-Link GO-USB-N150 WPS Utility.lnk
ShortcutTarget: D-Link GO-USB-N150 WPS Utility.lnk -> C:\Program Files\D-Link\GO-USB-N150\RtWlan.exe (Realtek Semiconductor Corp.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.4.1

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default ->
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR NewTab: Default -> "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR DefaultSearchKeyword: Default -> E03B73635788C08A6468617FB8ECACE374CACEBC0E34FD782CEC13EC72A94A48
CHR DefaultSearchURL: Default -> 8B2274CB61526FAE41592EF7B12EB8B771299E7806ADE9221D06104EE1C7B202
CHR CustomProfile: C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Seznam Lištička - Slovník) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-09-05]
CHR Extension: (YouTube) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-07-19]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-07-19]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-09-05]
CHR Extension: (Gmail) - C:\Documents and Settings\david\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-07-19]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [44032 1999-12-13] (Creative Technology Ltd) [File not signed]
S3 Installer Service; C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}\Installer\InstallerService.exe [125288 2013-10-30] ()
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-15] (Oracle Corporation)
R2 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [43520 2006-11-08] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53248 2006-11-08] (Hewlett-Packard) [File not signed]
R2 WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [53520 2000-06-26] (Microsoft Corporation) [File not signed]
S2 UpdaterSvcDolphinDeals; "C:\Program Files\Dolphin Deals\updater.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21361 2014-09-09] (Cisco Systems, Inc.) [File not signed]
S3 Cardex; C:\WINDOWS\system32\drivers\TBPANEL.SYS [5306 2002-07-25] (Windows (R) 2000 DDK provider) [File not signed]
R3 ctac32k; C:\WINDOWS\System32\drivers\ctac32k.sys [186068 2003-08-28] (Creative Technology Ltd) [File not signed]
S3 ctljystk; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [3712 2001-08-17] (Creative Technology Ltd.)
R3 ctprxy2k; C:\WINDOWS\System32\drivers\ctprxy2k.sys [6144 2003-08-28] (Creative Technology Ltd) [File not signed]
R3 ctsfm2k; C:\WINDOWS\System32\drivers\ctsfm2k.sys [136448 2003-08-28] (Creative Technology Ltd) [File not signed]
R3 emupia; C:\WINDOWS\System32\drivers\emupia2k.sys [145504 2003-08-28] (Creative Technology Ltd) [File not signed]
R3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. )
R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2004-08-03] (Microsoft Corporation)
R3 ha10kx2k; C:\WINDOWS\System32\drivers\ha10kx2k.sys [823456 2003-08-28] (Creative Technology Ltd)
S3 hap16v2k; C:\WINDOWS\System32\drivers\hap16v2k.sys [135696 2003-08-28] (Creative Technology Ltd) [File not signed]
R3 ms_mpu401; C:\WINDOWS\System32\drivers\msmpu401.sys [2944 2001-08-18] (Microsoft Corporation)
R2 PfModNT; C:\WINDOWS\system32\drivers\PfModNT.sys [15840 2003-03-05] (Creative Technology Ltd.) [File not signed]
R3 RtlWlanu; C:\WINDOWS\System32\DRIVERS\rtwlanu.sys [1345936 2012-12-05] (Realtek Semiconductor Corporation )
S3 Secdrv; C:\WINDOWS\System32\DRIVERS\secdrv.sys [27440 2004-07-17] ()
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [5306 2002-07-25] (Windows (R) 2000 DDK provider) [File not signed]
S3 cpuz137; \??\C:\DOCUME~1\david\LOCALS~1\Temp\cpuz137\cpuz137_x32.sys [X]
S3 ctdvda2k; System32\drivers\ctdvda2k.sys [X]
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-09 20:12 - 2014-09-09 20:13 - 00000000 ____D () C:\FRST
2014-09-09 19:28 - 2014-09-09 20:13 - 00000000 ____D () C:\Documents and Settings\david\Local Settings\Temp
2014-09-09 19:28 - 2014-09-09 19:15 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-09-09 19:16 - 2014-09-09 19:29 - 00006665 _____ () C:\zoek-results.log
2014-09-09 19:15 - 2014-09-09 19:24 - 00000000 ____D () C:\zoek_backup
2014-09-09 19:14 - 2014-09-09 19:15 - 01290240 _____ () C:\Documents and Settings\david\Plocha\zoek.exe
2014-09-09 19:05 - 2014-09-09 19:07 - 00000000 ____D () C:\AdwCleaner
2014-09-09 19:02 - 2014-09-09 19:02 - 01370467 _____ () C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe
2014-09-09 18:31 - 2014-09-09 18:31 - 00000000 ____D () C:\Program Files\trend micro
2014-09-09 18:30 - 2014-09-09 18:31 - 00000000 ____D () C:\rsit
2014-09-09 18:28 - 2014-09-09 18:28 - 00000777 _____ () C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2014-09-09 18:28 - 2014-09-09 18:28 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-09-09 18:28 - 2014-09-09 18:28 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2014-09-09 18:28 - 2014-05-12 07:26 - 00053208 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-09-09 18:28 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-09-09 18:18 - 2014-09-09 17:18 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\david\Plocha\mbam-setup-2.0.2.1012.exe
2014-09-09 17:52 - 2014-09-09 17:52 - 00021361 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\AegisP.sys
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\WINDOWS\system32\RtlGina
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\WINDOWS\OPTIONS
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\Program Files\D-Link
2014-09-09 17:51 - 2013-01-24 17:32 - 00430080 _____ (Realtek) C:\WINDOWS\SwUSB.exe
2014-09-09 17:51 - 2012-12-14 15:54 - 00036864 _____ () C:\WINDOWS\runSW.exe
2014-09-09 17:51 - 2012-12-05 15:57 - 01345936 ____R (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\RTWlanU.sys
2014-09-09 17:51 - 2010-12-01 09:31 - 00451072 _____ () C:\WINDOWS\system32\ISSRemoveSP.exe
2014-09-09 17:51 - 2007-04-26 14:05 - 00100000 _____ () C:\WINDOWS\system32\EAPPkt9x.VXD
2014-09-09 17:51 - 2001-09-26 11:03 - 00012981 _____ () C:\WINDOWS\system32\REALPKT.VXD
2014-09-09 17:42 - 2014-09-09 17:42 - 00000000 ____D () C:\WINDOWS\pss
2014-09-09 17:35 - 2014-09-09 17:35 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-09-09 17:34 - 2014-09-09 17:34 - 00000717 _____ () C:\Documents and Settings\All Users\Plocha\CPUID CPU-Z.lnk
2014-09-09 17:34 - 2014-09-09 17:34 - 00000682 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Program Files\CPUID
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CPUID
2014-09-09 17:33 - 2014-09-09 17:33 - 00000000 ____D () C:\Documents and Settings\david\Plocha\Nová složka (3)
2014-08-15 16:29 - 2014-08-15 16:29 - 00000000 ____D () C:\dc64b9bb170f61e991711febf8
2014-08-12 15:15 - 2014-08-12 15:15 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\27650
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Program Files\Seznam.cz
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Documents and Settings\LocalService\Data aplikací\QuickScan
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\QuickScan
2014-08-12 15:11 - 2014-08-12 15:18 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-08-12 13:25 - 2014-08-12 13:25 - 00000000 ____D () C:\Program Files\Kodek CZ
2014-08-12 13:25 - 2014-08-12 13:25 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Kodek CZ

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-09 20:13 - 2014-09-09 20:12 - 00000000 ____D () C:\FRST
2014-09-09 20:13 - 2014-09-09 19:28 - 00000000 ____D () C:\Documents and Settings\david\Local Settings\Temp
2014-09-09 19:35 - 2014-02-07 15:25 - 00461378 _____ () C:\WINDOWS\WindowsUpdate.log
2014-09-09 19:29 - 2014-09-09 19:16 - 00006665 _____ () C:\zoek-results.log
2014-09-09 19:29 - 2014-02-07 15:25 - 00000157 _____ () C:\WINDOWS\wiadebug.log
2014-09-09 19:29 - 2014-02-07 15:25 - 00000048 _____ () C:\WINDOWS\wiaservc.log
2014-09-09 19:29 - 2012-07-19 18:08 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-09-09 19:28 - 2012-07-19 18:44 - 00001080 _____ () C:\WINDOWS\system32\settingsbkup.sfm
2014-09-09 19:28 - 2012-07-19 18:44 - 00001080 _____ () C:\WINDOWS\system32\settings.sfm
2014-09-09 19:28 - 2012-07-19 18:44 - 00000288 _____ () C:\WINDOWS\system32\DVCStateBkp-{00000000-00000000-00000008-00001102-00000002-80661102}.dat
2014-09-09 19:28 - 2012-07-19 18:44 - 00000288 _____ () C:\WINDOWS\system32\DVCState-{00000000-00000000-00000008-00001102-00000002-80661102}.dat
2014-09-09 19:28 - 2012-07-19 18:10 - 00000178 ___SH () C:\Documents and Settings\david\ntuser.ini
2014-09-09 19:28 - 2012-07-19 18:08 - 00032508 _____ () C:\WINDOWS\SchedLgU.Txt
2014-09-09 19:24 - 2014-09-09 19:15 - 00000000 ____D () C:\zoek_backup
2014-09-09 19:24 - 2012-07-19 19:52 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-09-09 19:15 - 2014-09-09 19:28 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-09-09 19:15 - 2014-09-09 19:14 - 01290240 _____ () C:\Documents and Settings\david\Plocha\zoek.exe
2014-09-09 19:15 - 2012-07-19 18:10 - 00000000 ____D () C:\Documents and Settings\david\Plocha
2014-09-09 19:07 - 2014-09-09 19:05 - 00000000 ____D () C:\AdwCleaner
2014-09-09 19:07 - 2012-07-19 18:10 - 00000000 ___HD () C:\Documents and Settings\david\Local Settings\Data aplikací
2014-09-09 19:02 - 2014-09-09 19:02 - 01370467 _____ () C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe
2014-09-09 18:31 - 2014-09-09 18:31 - 00000000 ____D () C:\Program Files\trend micro
2014-09-09 18:31 - 2014-09-09 18:30 - 00000000 ____D () C:\rsit
2014-09-09 18:28 - 2014-09-09 18:28 - 00000777 _____ () C:\Documents and Settings\All Users\Plocha\Malwarebytes Anti-Malware.lnk
2014-09-09 18:28 - 2014-09-09 18:28 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-09-09 18:28 - 2014-09-09 18:28 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Malwarebytes Anti-Malware
2014-09-09 18:28 - 2012-07-19 19:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-09-09 18:28 - 2012-07-19 19:52 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-09-09 18:16 - 2012-09-03 12:18 - 00000000 ___SD () C:\Documents and Settings\david\UserData
2014-09-09 18:16 - 2012-07-19 18:10 - 00000000 ____D () C:\Documents and Settings\david
2014-09-09 17:53 - 2012-07-19 19:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
2014-09-09 17:52 - 2014-09-09 17:52 - 00021361 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\AegisP.sys
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\WINDOWS\system32\RtlGina
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\WINDOWS\OPTIONS
2014-09-09 17:51 - 2014-09-09 17:51 - 00000000 ____D () C:\Program Files\D-Link
2014-09-09 17:51 - 2012-07-19 18:13 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-09-09 17:46 - 2012-07-19 19:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start
2014-09-09 17:46 - 2012-07-19 19:50 - 00000211 ___SH () C:\boot.ini
2014-09-09 17:46 - 2012-07-19 18:42 - 03376199 _____ () C:\WINDOWS\{00000000-00000000-00000008-00001102-00000002-80661102}.CDF
2014-09-09 17:46 - 2001-10-25 14:00 - 00000528 _____ () C:\WINDOWS\win.ini
2014-09-09 17:46 - 2001-10-25 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2014-09-09 17:42 - 2014-09-09 17:42 - 00000000 ____D () C:\WINDOWS\pss
2014-09-09 17:42 - 2013-02-21 15:50 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\Seznam.cz
2014-09-09 17:37 - 2012-08-11 18:33 - 00000000 ____D () C:\WINDOWS\Minidump
2014-09-09 17:35 - 2014-09-09 17:35 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-09-09 17:34 - 2014-09-09 17:34 - 00000717 _____ () C:\Documents and Settings\All Users\Plocha\CPUID CPU-Z.lnk
2014-09-09 17:34 - 2014-09-09 17:34 - 00000682 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Program Files\CPUID
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-09 17:34 - 2014-09-09 17:34 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CPUID
2014-09-09 17:33 - 2014-09-09 17:33 - 00000000 ____D () C:\Documents and Settings\david\Plocha\Nová složka (3)
2014-09-09 17:18 - 2014-09-09 18:18 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\david\Plocha\mbam-setup-2.0.2.1012.exe
2014-09-05 18:46 - 2012-07-23 14:22 - 00000000 ____D () C:\Documents and Settings\david\Plocha\Filmy
2014-09-05 17:43 - 2012-07-19 18:38 - 00001813 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-08-23 14:54 - 2001-10-25 14:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-08-19 11:10 - 2012-07-19 18:21 - 00000000 ____D () C:\Program Files\Opera
2014-08-15 16:29 - 2014-08-15 16:29 - 00000000 ____D () C:\dc64b9bb170f61e991711febf8
2014-08-14 16:56 - 2014-02-07 15:28 - 00699568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-08-14 16:56 - 2014-02-07 15:28 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-08-14 16:55 - 2012-07-19 18:10 - 00000000 ___RD () C:\Documents and Settings\david\Dokumenty
2014-08-12 15:18 - 2014-08-12 15:11 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
2014-08-12 15:15 - 2014-08-12 15:15 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\27650
2014-08-12 15:15 - 2012-07-19 18:10 - 00000000 __RHD () C:\Documents and Settings\david\Data aplikací
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Program Files\Seznam.cz
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Documents and Settings\LocalService\Data aplikací\QuickScan
2014-08-12 15:14 - 2014-08-12 15:14 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\QuickScan
2014-08-12 13:25 - 2014-08-12 13:25 - 00000000 ____D () C:\Program Files\Kodek CZ
2014-08-12 13:25 - 2014-08-12 13:25 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\Kodek CZ

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 07-09-2014
Ran by david at 2014-09-09 20:14:15
Running from C:\Documents and Settings\david\Dokumenty\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (Version: 1.0.0 - Hewlett-Packard) Hidden
Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated)
Adobe Reader XI - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Ahead Nero OEM (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
BufferChm (Version: 90.0.146.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform)
CPUID CPU-Z 1.70 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
D-Link GO-USB-N150 (HKLM\...\{9C222509-055C-4CFF-A116-1774517825EB}) (Version: 1.13.0109 - D-Link Corp.)
GOM Player (HKLM\...\GOM Player) (Version: 2.1.37.5085 - Gretech Corporation)
Google Chrome (HKLM\...\Google Chrome) (Version: 37.0.2062.103 - Google Inc.)
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
Java 7 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
KaM - The Peasants Rebellion (HKLM\...\KaM - The Peasants Rebellion) (Version: - )
K-Lite Codec Pack 10.3.0 Full (HKLM\...\KLiteCodecPack_is1) (Version: 10.3.0 - )
Kodek 0.16 CZ (HKLM\...\{6C28B15F-B09D-407E-BE92-AC928E1CE4E2}_is1) (Version: 0.16 - Pinky.cz)
Malwarebytes Anti-Malware verze 2.0.2.1012 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.60310.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
NVIDIA Windows 2000/XP Display Drivers (HKLM\...\NVIDIA) (Version: - )
Ogg Vorbis ACM Codec (HKLM\...\VorbisCodec) (Version: - )
Opera 9.64 (HKLM\...\{E1BBBAC5-2857-4155-82A6-54492CE88620}) (Version: 9.64 - Opera Software ASA)
Opera Stable 23.0.1522.77 (HKLM\...\Opera 23.0.1522.77) (Version: 23.0.1522.77 - Opera Software ASA)
Sound Blaster Live! (HKLM\...\{9115E7DB-3B29-445A-802D-11E0AA945B7F}) (Version: - )
UnloadSupport (Version: 9.0.0 - Hewlett-Packard) Hidden
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation)
Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - )
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

18-06-2014 19:33:22 Kontrolní bod systému
20-06-2014 16:57:31 Kontrolní bod systému
27-06-2014 15:58:10 Kontrolní bod systému
02-07-2014 11:36:30 Kontrolní bod systému
11-07-2014 16:30:46 Kontrolní bod systému
15-07-2014 11:42:47 Kontrolní bod systému
07-08-2014 10:46:19 Kontrolní bod systému
20-08-2014 09:25:03 Kontrolní bod systému
09-09-2014 15:51:47 Instalováno D-Link GO-USB-N150
09-09-2014 17:16:36 zoek.exe restore point

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2001-10-25 14:00 - 2014-09-09 19:17 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Loaded Modules (whitelisted) =============

2002-10-05 01:04 - 2002-10-05 01:04 - 00092672 _____ () C:\WINDOWS\system32\vorbis.dll
2002-10-05 01:04 - 2002-10-05 01:04 - 00021504 _____ () C:\WINDOWS\system32\ogg.dll
2002-10-05 01:04 - 2002-10-05 01:04 - 00092672 _____ () C:\WINDOWS\System32\vorbis.dll
2002-10-05 01:04 - 2002-10-05 01:04 - 00021504 _____ () C:\WINDOWS\System32\ogg.dll
2004-08-17 15:49 - 2004-08-17 15:49 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2014-09-05 17:43 - 2014-08-30 04:49 - 08577864 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.103\pdf.dll
2014-09-05 17:43 - 2014-08-30 04:49 - 00331592 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.103\ppGoogleNaClPluginChrome.dll
2014-09-05 17:43 - 2014-08-30 04:49 - 01660232 _____ () C:\Program Files\Google\Chrome\Application\37.0.2062.103\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: CTHelper => CTHELPER.EXE
MSCONFIG\startupreg: Gainward => C:\WINDOWS\TBPanel.exe /A
MSCONFIG\startupreg: Jet Detection => "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
MSCONFIG\startupreg: MSMSGS => "C:\Program Files\Messenger\msmsgs.exe" /background
MSCONFIG\startupreg: NeroCheck => C:\WINDOWS\system32\NeroCheck.exe
MSCONFIG\startupreg: nwiz => nwiz.exe /install
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

==================== Faulty Device Manager Devices =============

Name: Řadič jednoduché komunikace pro sběrnici PCI
Description: Řadič jednoduché komunikace pro sběrnici PCI
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Multimediální adaptér
Description: Multimediální adaptér
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Multimediální zvukový adaptér
Description: Multimediální zvukový adaptér
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/07/2014 01:53:26 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\ba6a0a6a-49b8-4898-a590-77c7e6840094.dmp

Error: (09/05/2014 05:25:48 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\51cc0c2b-c5c1-45d5-9d37-033f2e9e8474.dmp

Error: (08/30/2014 06:55:25 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\8f09528b-7616-4e89-a27b-7a3944b0ca28.dmp

Error: (08/30/2014 01:47:49 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\015b523a-e01d-44b8-9265-c485a9c08109.dmp

Error: (08/28/2014 08:59:59 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\21b4618a-b346-404b-8f11-6b0203ae1548.dmp

Error: (08/28/2014 03:21:08 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\0f374d45-a2ea-439d-addc-c6cc2293f90a.dmp

Error: (08/17/2014 02:57:34 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\3c3e7720-00ae-44ad-8fd2-4f560d6aa590.dmp

Error: (08/16/2014 06:28:45 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\93ef8114-caca-4d5b-b672-a0426be87381.dmp

Error: (08/15/2014 04:33:42 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\ddc460d2-9fa0-4aad-ab38-52cbc0f564fa.dmp

Error: (08/14/2014 07:13:47 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\9a6196d4-f7d9-4525-8cfe-302a5a1c537e.dmp


System errors:
=============
Error: (09/09/2014 07:30:02 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.4.241 pro síťovou kartu s adresou C4A81DF33BA8 byla
serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (09/09/2014 07:29:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba UpdaterSvcDolphinDeals neuspěla při spuštění v důsledku následující chyby:
%%3

Error: (09/09/2014 06:28:02 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.4.241 pro síťovou kartu s adresou C4A81DF33BA8 byla
serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (09/09/2014 06:15:49 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {577975B8-C40E-43E6-B0DE-4C6B44088B52} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/09/2014 06:15:23 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.4.241 pro síťovou kartu s adresou C4A81DF33BA8 byla
serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (09/09/2014 06:07:08 PM) (Source: Dhcp) (EventID: 1002) (User: )
Description: Zapůjčení adresy IP 192.168.4.241 pro síťovou kartu s adresou C4A81DF33BA8 byla
serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).

Error: (09/09/2014 06:03:55 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {577975B8-C40E-43E6-B0DE-4C6B44088B52} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/09/2014 05:48:12 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {577975B8-C40E-43E6-B0DE-4C6B44088B52} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/09/2014 05:44:50 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {577975B8-C40E-43E6-B0DE-4C6B44088B52} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/09/2014 05:42:30 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {577975B8-C40E-43E6-B0DE-4C6B44088B52} se v daném časovém limitu neregistroval u služby DCOM.


Microsoft Office Sessions:
=========================
Error: (09/07/2014 01:53:26 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\ba6a0a6a-49b8-4898-a590-77c7e6840094.dmp

Error: (09/05/2014 05:25:48 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\51cc0c2b-c5c1-45d5-9d37-033f2e9e8474.dmp

Error: (08/30/2014 06:55:25 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\8f09528b-7616-4e89-a27b-7a3944b0ca28.dmp

Error: (08/30/2014 01:47:49 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\015b523a-e01d-44b8-9265-c485a9c08109.dmp

Error: (08/28/2014 08:59:59 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\21b4618a-b346-404b-8f11-6b0203ae1548.dmp

Error: (08/28/2014 03:21:08 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\0f374d45-a2ea-439d-addc-c6cc2293f90a.dmp

Error: (08/17/2014 02:57:34 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\3c3e7720-00ae-44ad-8fd2-4f560d6aa590.dmp

Error: (08/16/2014 06:28:45 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\93ef8114-caca-4d5b-b672-a0426be87381.dmp

Error: (08/15/2014 04:33:42 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\ddc460d2-9fa0-4aad-ab38-52cbc0f564fa.dmp

Error: (08/14/2014 07:13:47 PM) (Source: globalUpdate Update) (EventID: 1) (User: NT AUTHORITY)
Description: globalUpdate Update has encountered a fatal error.
ver=1.3.25.0.private;lang=en;id=;is_machine=1;upload=0;minidump=C:\Program Files\globalUpdate\CrashReports\9a6196d4-f7d9-4525-8cfe-302a5a1c537e.dmp


==================== Memory info ===========================

Processor: Intel(R) Celeron(R) CPU 2.60GHz
Percentage of memory in use: 60%
Total physical RAM: 2047.48 MB
Available physical RAM: 818.55 MB
Total Pagefile: 3944.08 MB
Available Pagefile: 2725.25 MB
Total Virtual: 2047.88 MB
Available Virtual: 1951.34 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:76.32 GB) (Free:33.22 GB) NTFS ==>[Drive with boot components (Windows XP)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 76.3 GB) (Disk ID: E879E879)
Partition 1: (Active) - (Size=76.3 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny PC log z RSIT

#8 Příspěvek od vyosek »

:arrow: S timto bude treba tez neco udelat. SP2 byl vydan v roce 2004, mame za sebou pulku 2014, co chcete delat na 10 let neaktualizovanem systemu :?:
Systém Microsoft Windows XP Professional Service Pack 2
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
    
    ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
    
    DisableService: JavaQuickStarterService
    
    S2 UpdaterSvcDolphinDeals; "C:\Program Files\Dolphin Deals\updater.exe" [X]
    S3 cpuz137; \??\C:\DOCUME~1\david\LOCALS~1\Temp\cpuz137\cpuz137_x32.sys [X]
    S3 ctdvda2k; System32\drivers\ctdvda2k.sys [X]
    S4 IntelIde; No ImagePath
    U1 WS2IFSL; No ImagePath
    
    2014-09-09 19:28 - 2014-09-09 19:15 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2014-09-09 19:16 - 2014-09-09 19:29 - 00006665 _____ () C:\zoek-results.log
    2014-09-09 19:15 - 2014-09-09 19:24 - 00000000 ____D () C:\zoek_backup
    2014-09-09 19:14 - 2014-09-09 19:15 - 01290240 _____ () C:\Documents and Settings\david\Plocha\zoek.exe
    2014-09-09 19:05 - 2014-09-09 19:07 - 00000000 ____D () C:\AdwCleaner
    2014-09-09 19:02 - 2014-09-09 19:02 - 01370467 _____ () C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe
    2014-09-09 18:31 - 2014-09-09 18:31 - 00000000 ____D () C:\Program Files\trend micro
    2014-09-09 18:30 - 2014-09-09 18:31 - 00000000 ____D () C:\rsit
    2014-09-09 18:18 - 2014-09-09 17:18 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\david\Plocha\mbam-setup-2.0.2.1012.exe
    2014-08-12 15:15 - 2014-08-12 15:15 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\27650
    2014-08-12 15:11 - 2014-08-12 15:18 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Blein
Návštěvník
Návštěvník
Příspěvky: 208
Registrován: 28 srp 2008 11:18

Re: Zpomaleny PC log z RSIT

#9 Příspěvek od Blein »

Mám se pokusit něják zapnout aktualizace systému, nebo mám nechat nainstalovat windows novější?



Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 07-09-2014
Ran by david at 2014-09-09 20:23:38 Run:1
Running from C:\Documents and Settings\david\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)

ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

DisableService: JavaQuickStarterService

S2 UpdaterSvcDolphinDeals; "C:\Program Files\Dolphin Deals\updater.exe" [X]
S3 cpuz137; \??\C:\DOCUME~1\david\LOCALS~1\Temp\cpuz137\cpuz137_x32.sys [X]
S3 ctdvda2k; System32\drivers\ctdvda2k.sys [X]
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath

2014-09-09 19:28 - 2014-09-09 19:15 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-09-09 19:16 - 2014-09-09 19:29 - 00006665 _____ () C:\zoek-results.log
2014-09-09 19:15 - 2014-09-09 19:24 - 00000000 ____D () C:\zoek_backup
2014-09-09 19:14 - 2014-09-09 19:15 - 01290240 _____ () C:\Documents and Settings\david\Plocha\zoek.exe
2014-09-09 19:05 - 2014-09-09 19:07 - 00000000 ____D () C:\AdwCleaner
2014-09-09 19:02 - 2014-09-09 19:02 - 01370467 _____ () C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe
2014-09-09 18:31 - 2014-09-09 18:31 - 00000000 ____D () C:\Program Files\trend micro
2014-09-09 18:30 - 2014-09-09 18:31 - 00000000 ____D () C:\rsit
2014-09-09 18:18 - 2014-09-09 17:18 - 17292760 _____ (Malwarebytes Corporation ) C:\Documents and Settings\david\Plocha\mbam-setup-2.0.2.1012.exe
2014-08-12 15:15 - 2014-08-12 15:15 - 00000000 ____D () C:\Documents and Settings\david\Data aplikací\27650
2014-08-12 15:11 - 2014-08-12 15:18 - 00000000 ____D () C:\Program Files\Zrychleni Pocitace

Hosts:
Reboot:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully.
"HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}" => Key not found.
JavaQuickStarterService service was disabled
UpdaterSvcDolphinDeals => Service deleted successfully.
cpuz137 => Service deleted successfully.
ctdvda2k => Service deleted successfully.
IntelIde => Service deleted successfully.
WS2IFSL => Service deleted successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Documents and Settings\david\Plocha\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Documents and Settings\david\Plocha\adwcleaner_3.309.exe => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\rsit => Moved successfully.
C:\Documents and Settings\david\Plocha\mbam-setup-2.0.2.1012.exe => Moved successfully.
C:\Documents and Settings\david\Data aplikací\27650 => Moved successfully.
C:\Program Files\Zrychleni Pocitace => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny PC log z RSIT

#10 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Zapnete automaticke aktualizace a nechte vsechny nainstalovat, jinak je tam velka bezpecnostni dira

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět