Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

ordinální číslo

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
romisek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 13 zář 2014 18:30

ordinální číslo

#1 Příspěvek od romisek »

Zdravím rad by jsem se zeptal potřebuji nainstalovat nějaké programy ohledně spravování aut ale když chci spustit instalaci tak mi vyskočí hláška ''Odinální číslo 442 se nepodařilo v dynamicky propojované knihovně OLEAUT32.dll nalézt.'' a taky se mi zdá že mám netebook pomalejší.Zkoušel jsem obnovu systemu s nejstaršímu datu co to šlo a to nepomohlo, neměli by jste nějakou radu jak to spravit předem moc děkuji.

romisek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 13 zář 2014 18:30

Re: ordinální číslo

#2 Příspěvek od romisek »

Logfile of random's system information tool 1.10 (written by random/random)
Run by DOMA at 2014-09-13 20:15:06
Microsoft® Windows Vista™ Business Service Pack 2
System drive C: has 25 GB (17%) free of 147 GB
Total RAM: 3000 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:15:41, on 13.9.2014
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16563)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Users\DOMA\AppData\Roaming\ICQM\icq.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\DOMA\AppData\Local\Temp\RtkBtMnt.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\DOMA\Downloads\RSIT.exe
C:\Program Files\trend micro\DOMA.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5630
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5630
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5630
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ProductReg] "C:\Program Files\Acer\WR_PopUp\ProductReg.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [icq] C:\Users\DOMA\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\DOMA\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\DOMA\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\Windows\SYSTEM32\crypserv.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: WorkshopDBService - Acresso - C:\PROGRA~1\VIVIDW~1\WORKSH~1.EXE

--
End of file - 8670 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe�
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe� /c�
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe� /ua /installsource scheduler�

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2014-06-19 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"BkupTray"=C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [2008-04-06 34040]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-05-21 6144000]
"Skytel"=C:\Windows\Skytel.exe [2007-11-21 1826816]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-02-22 1037608]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-07-25 875016]
"ePower_DMC"=C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [2008-08-01 405504]
"eRecoveryService"= []
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-02-11 137752]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-02-11 171032]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-02-11 172568]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2007-07-28 75128]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-12-18 959904]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2014-06-19 149280]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ProductReg"=C:\Program Files\Acer\WR_PopUp\ProductReg.exe [2008-11-17 135168]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"icq"=C:\Users\DOMA\AppData\Roaming\ICQM\icq.exe [2014-05-07 33664344]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 228864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-09-13 20:15:07 ----D---- C:\Program Files\trend micro
2014-09-13 20:15:06 ----D---- C:\rsit
2014-09-11 09:36:27 ----D---- C:\Users\DOMA\AppData\Roaming\Lavasoft
2014-09-11 08:56:55 ----D---- C:\Users\DOMA\AppData\Roaming\LavasoftStatistics
2014-09-11 08:53:39 ----D---- C:\Program Files\Lavasoft
2014-09-11 08:51:19 ----D---- C:\Program Files\Common Files\Lavasoft
2014-09-11 08:48:43 ----D---- C:\ProgramData\Lavasoft
2014-09-07 13:18:12 ----A---- C:\Windows\system32\FileOps.exe
2014-09-07 13:18:11 ----D---- C:\Windows\system32\Adobe
2014-09-07 13:18:02 ----A---- C:\Windows\is-8LGG1.exe
2014-09-07 13:17:55 ----D---- C:\eLearn
2014-09-06 17:59:28 ----A---- C:\Windows\system32\drivers\vmx_svga.sys
2014-09-06 17:59:24 ----A---- C:\Windows\system32\drivers\vmmouse.sys
2014-09-06 17:59:16 ----A---- C:\Windows\system32\drivers\vmhgfs.sys
2014-09-06 17:59:09 ----A---- C:\Windows\system32\drivers\vmci.sys
2014-09-06 17:59:04 ----A---- C:\Windows\system32\drivers\vmaudio.sys
2014-09-06 17:58:58 ----A---- C:\Windows\system32\drivers\vm3dmp.sys
2014-09-06 17:58:34 ----D---- C:\Windows\system32\SPReview
2014-09-06 17:53:19 ----A---- C:\Windows\system32\WsmProv.dll
2014-09-06 17:53:11 ----A---- C:\Windows\system32\WsmCl.dll
2014-09-06 17:53:06 ----A---- C:\Windows\system32\vsocklib.dll
2014-09-06 17:53:00 ----A---- C:\Windows\system32\vmx_mode.dll
2014-09-06 17:52:54 ----A---- C:\Windows\system32\vmx_fb.dll
2014-09-06 17:52:48 ----A---- C:\Windows\system32\vmhgfs.dll
2014-09-06 17:52:43 ----A---- C:\Windows\system32\vmGuestLibJava.dll
2014-09-06 17:52:37 ----A---- C:\Windows\system32\vmGuestLib.dll
2014-09-06 17:52:30 ----A---- C:\Windows\system32\vm3dum.dll
2014-09-06 17:51:46 ----A---- C:\Windows\system32\vm3dgl.dll
2014-09-06 17:51:40 ----A---- C:\Windows\system32\TPVMW32.dll
2014-09-06 17:51:35 ----A---- C:\Windows\system32\TPVMMonUIjpn.dll
2014-09-06 17:51:30 ----A---- C:\Windows\system32\TPVMMonUIdeu.dll
2014-09-06 17:51:24 ----A---- C:\Windows\system32\TPVMMonUI.dll
2014-09-06 17:51:17 ----A---- C:\Windows\system32\TPVMMonjpn.dll
2014-09-06 17:51:11 ----A---- C:\Windows\system32\TPVMMondeu.dll
2014-09-06 17:51:03 ----A---- C:\Windows\system32\TPVMMon.dll
2014-09-06 17:50:52 ----A---- C:\Windows\system32\TPSvc.dll
2014-09-06 17:50:44 ----A---- C:\Windows\system32\tprdpw32.dll
2014-09-06 17:50:32 ----A---- C:\Windows\system32\mstime.dll
2014-09-06 17:50:15 ----A---- C:\Windows\system32\mfc71u.dll
2014-09-06 17:50:09 ----A---- C:\Windows\system32\ieencode.dll
2014-09-06 17:50:02 ----A---- C:\Windows\system32\extmgr.dll
2014-09-06 17:49:57 ----A---- C:\Windows\system32\corpol.dll
2014-09-06 17:16:53 ----D---- C:\ProgramData\Weskysoft
2014-09-06 16:30:46 ----D---- C:\Program Files\DLLSuite
2014-09-06 16:10:40 ----D---- C:\ADCDA2
2014-08-28 03:01:55 ----A---- C:\Windows\system32\win32k.sys
2014-08-28 03:01:55 ----A---- C:\Windows\system32\gdi32.dll
2014-08-22 20:27:14 ----D---- C:\Program Files\organiserSwing
2014-08-18 19:55:08 ----N---- C:\Windows\system32\VB6STKIT.DLL
2014-08-18 19:55:08 ----N---- C:\Windows\system32\VB6IT.DLL
2014-08-18 19:55:07 ----A---- C:\Windows\system32\OleAut32.dll
2014-08-18 19:55:04 ----N---- C:\Windows\system32\MFC40LOC.DLL
2014-08-18 19:55:03 ----N---- C:\Windows\system32\borlndmm.dll
2014-08-18 19:55:00 ----A---- C:\Windows\CheckRequirements.txt
2014-08-18 19:54:54 ----A---- C:\Windows\IsUninst.exe
2014-08-18 19:54:44 ----D---- C:\DTE
2014-08-15 03:16:09 ----A---- C:\Windows\system32\infocardapi.dll
2014-08-15 03:16:08 ----A---- C:\Windows\system32\icardres.dll
2014-08-15 03:16:08 ----A---- C:\Windows\system32\icardagt.exe
2014-08-15 03:15:49 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-14 21:10:27 ----A---- C:\Windows\system32\msi.dll
2014-08-14 21:10:26 ----A---- C:\Windows\system32\authui.dll
2014-08-14 21:10:25 ----A---- C:\Windows\system32\msihnd.dll
2014-08-14 21:10:25 ----A---- C:\Windows\system32\consent.exe
2014-08-14 21:10:25 ----A---- C:\Windows\system32\appinfo.dll
2014-08-14 21:09:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-14 21:09:49 ----A---- C:\Windows\system32\cdd.dll
2014-08-14 21:09:34 ----A---- C:\Windows\system32\tzres.dll
2014-08-14 21:08:39 ----A---- C:\Windows\system32\vbscript.dll
2014-08-14 21:08:37 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-14 21:08:36 ----A---- C:\Windows\system32\jscript9.dll
2014-08-14 21:08:36 ----A---- C:\Windows\system32\jscript.dll
2014-08-14 21:08:35 ----A---- C:\Windows\system32\wininet.dll
2014-08-14 21:08:35 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-14 21:08:35 ----A---- C:\Windows\system32\ieui.dll
2014-08-14 21:08:35 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-14 21:08:27 ----A---- C:\Windows\system32\mshtml.dll
2014-08-14 21:08:20 ----A---- C:\Windows\system32\mshta.exe
2014-08-14 21:08:20 ----A---- C:\Windows\system32\msfeedssync.exe
2014-08-14 21:08:20 ----A---- C:\Windows\system32\msfeedsbs.dll
2014-08-14 21:08:19 ----A---- C:\Windows\system32\urlmon.dll
2014-08-14 21:08:18 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-14 21:08:15 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-14 21:08:13 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-14 21:08:12 ----A---- C:\Windows\system32\url.dll
2014-08-14 21:08:12 ----A---- C:\Windows\system32\iertutil.dll
2014-08-14 21:08:08 ----A---- C:\Windows\system32\ieframe.dll

======List of files/folders modified in the last 1 month======

2014-09-13 20:15:20 ----D---- C:\Windows\Prefetch
2014-09-13 20:15:14 ----D---- C:\Windows\Temp
2014-09-13 20:15:07 ----RD---- C:\Program Files
2014-09-13 19:43:26 ----D---- C:\Windows\system32\catroot
2014-09-13 19:43:23 ----D---- C:\Windows\system32\catroot2
2014-09-13 19:43:18 ----D---- C:\Windows\winsxs
2014-09-13 19:35:30 ----SHD---- C:\System Volume Information
2014-09-13 19:22:00 ----D---- C:\ProgramData\organiser
2014-09-13 19:18:50 ----D---- C:\Windows\system32\Msdtc
2014-09-13 19:18:50 ----D---- C:\Windows\System32
2014-09-13 19:18:48 ----D---- C:\Windows
2014-09-13 19:18:47 ----D---- C:\Windows\system32\wbem
2014-09-13 19:18:06 ----D---- C:\Windows\system32\config
2014-09-13 19:17:05 ----D---- C:\Windows\Tasks
2014-09-13 19:17:05 ----D---- C:\Windows\system32\Tasks
2014-09-13 19:17:05 ----D---- C:\Windows\system32\spool
2014-09-13 19:17:04 ----D---- C:\Windows\system32\CodeIntegrity
2014-09-13 19:17:03 ----D---- C:\Windows\inf
2014-09-13 19:16:49 ----D---- C:\Program Files\Microsoft Works
2014-09-13 19:16:27 ----D---- C:\Windows\registration
2014-09-13 19:16:23 ----D---- C:\Program Files\Windows Live
2014-09-13 19:16:23 ----D---- C:\Program Files\Microsoft
2014-09-11 09:54:39 ----SHD---- C:\Windows\Installer
2014-09-11 09:25:15 ----D---- C:\Windows\Microsoft.NET
2014-09-11 09:19:06 ----RSD---- C:\Windows\assembly
2014-09-11 08:54:02 ----D---- C:\Windows\system32\drivers
2014-09-11 08:51:19 ----D---- C:\Program Files\Common Files
2014-09-11 03:23:31 ----D---- C:\ProgramData\Microsoft Help
2014-09-11 03:13:46 ----D---- C:\Windows\system32\MRT
2014-09-09 08:51:58 ----A---- C:\Users\DOMA\AppData\Roaming\bitlord_log.txt
2014-09-07 13:18:15 ----D---- C:\Program Files\Common Files\Adobe
2014-09-07 13:18:02 ----RSD---- C:\Windows\Fonts
2014-09-06 17:16:53 ----HD---- C:\ProgramData
2014-09-02 18:24:54 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-16 20:48:59 ----D---- C:\Windows\Minidump
2014-08-16 09:28:11 ----D---- C:\Windows\system32\WDI
2014-08-15 04:08:51 ----D---- C:\Windows\rescache
2014-08-15 03:41:04 ----D---- C:\Windows\system32\cs-CZ
2014-08-15 03:41:00 ----D---- C:\Windows\system32\migration
2014-08-15 03:41:00 ----D---- C:\Program Files\Internet Explorer
2014-08-15 03:18:59 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-04-02 320120]
R0 UBHelper;UBHelper; C:\Windows\system32\drivers\UBHelper.sys [2008-01-31 13824]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2007-07-28 23152]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2007-07-27 42912]
R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [2008-08-22 21638]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2007-07-28 46160]
R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2008-03-21 15392]
R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2008-01-21 95744]
R2 regi;regi; C:\Windows\system32\drivers\regi.sys [2007-04-17 11032]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-11-04 952320]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-03-28 210432]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-05-21 2143136]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\Windows\system32\drivers\IntcHdmi.sys [2008-06-30 112128]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-01-31 14848]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-02-22 198064]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aojy44nh;aojy44nh; C:\Windows\system32\drivers\aojy44nh.sys []
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-02-14 80424]
S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-07-16 80936]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-07-16 16168]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2008-01-21 987648]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NSCIRDA;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-21 30720]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S3 TpChoice;Touch Pad Detection Filter driver; C:\Windows\system32\DRIVERS\TpChoice.sys [2007-12-26 17968]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2008-01-21 654336]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2007-07-27 16248]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2007-07-28 132472]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-02-12 440872]
R2 BUNAgentSvc;NTI Backup Now 5 Agent Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [2008-03-03 16384]
R2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [2008-05-08 122880]
R2 ETService;Empowering Technology Service; C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [2008-03-21 24576]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 IviRegMgr;IviRegMgr; C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-04 112152]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-12-06 110592]
R2 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-04-06 50424]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-04-04 131072]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 WorkshopDBService;WorkshopDBService; C:\PROGRA~1\VIVIDW~1\WORKSH~1.EXE [2014-04-05 114688]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2007-07-28 243064]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2007-07-28 345464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-30 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09 262320]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-30 116648]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

romisek
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 13 zář 2014 18:30

Re: ordinální číslo

#3 Příspěvek od romisek »

da se s tím něco dělat nebo je to a přeinstal win? :(

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: ordinální číslo

#4 Příspěvek od motji »

Zdravím,
je problém ještě aktuální?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět