
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu zpomalení internetu a pc
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu zpomalení internetu a pc
Dobrý den,
prosím o kontrolu logu zpomalení až blokování prohlížení internetu je jedno jaký se použije prohlížeč mozila nebo explorer a s tím spojené i celkové zpomalení notebooku. Internetové přpojení od O2 z modemu na pc wifi.
Děkuji za všechny rady eda
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-11-2014
Ran by Edík (administrator) on EDA on 25-11-2014 19:20:15
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\WINCZ\system32\smss.exe
(Microsoft Corporation) C:\WINCZ\system32\winlogon.exe
(Microsoft Corporation) C:\WINCZ\system32\services.exe
(Microsoft Corporation) C:\WINCZ\system32\lsass.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
(Intel Corporation ) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINCZ\explorer.exe
(Microsoft Corporation) C:\WINCZ\system32\spoolsv.exe
(NVIDIA Corporation) C:\WINCZ\system32\nvsvc32.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\ctfmon.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
() C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\WINCZ\system32\wscntfy.exe
(Nokia.) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
(Microsoft Corporation) C:\WINCZ\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINCZ\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [ISBMgr.exe] => C:\Program Files\Sony\ISB Utility\ISBMgr.exe [32768 2004-02-20] (Sony Corporation)
HKLM\...\Run: [Switcher.exe] => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [176128 2006-02-14] (Sony Corporation)
HKLM\...\Run: [SonyPowerCfg] => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [217088 2005-12-13] (Sony Corporation)
HKLM\...\Run: [VAIOCameraUtility] => C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe [69632 2005-12-27] (Sony Corporation)
HKLM\...\Run: [VAIO Update 2] => C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe [151552 2005-10-11] (Sony Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-25] (AVAST Software)
HKLM\...\Run: [Samsung PanelMgr] => C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe [618496 2010-06-07] ()
HKLM\...\Winlogon: [Userinit] C:\WINCZ\system32\userinit.exe,
HKLM\...\Winlogon: [Shell] Explorer.exe [x ] ()
HKLM\...\Winlogon: [UIHost] C:\WINCZ\system32\logonui.exe [515072 2008-04-14] (Microsoft Corporation)
Winlogon\Notify\crypt32chain: C:\WINCZ\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\WINCZ\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\WINCZ\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\dimsntfy: C:\WINCZ\System32\dimsntfy.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\WINCZ\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\WINCZ\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\VESWinlogon: C:\WINCZ\system32\VESWinlogon.dll (Sony Corporation)
Winlogon\Notify\wlballoon: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4826904 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [PC Suite Tray] => C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe [695808 2007-12-10] ()
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe [1294336 2007-11-07] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINCZ\system32\blank.htm
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-1659004503-152049171-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINCZ\system32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINCZ\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file://C:\Program Files\AutoCAD 2002\AcDcToday.ocx
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file://C:\Program Files\AutoCAD 2002\InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file://C:\Program Files\AutoCAD 2002\InstFred.ocx
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file://C:\Program Files\AutoCAD 2002\AcPreview.ocx
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINCZ\system32\mshtml.dll (Microsoft Corporation)
Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINCZ\system32\wiascr.dll (Microsoft Corporation)
Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINCZ\system32\shell32.dll [8465408 2008-04-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Edík\Data aplikací\Mozilla\Firefox\Profiles\zzofxf9m.default-1416929801546
FF Plugin: @adobe.com/FlashPlayer -> C:\WINCZ\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin: @videolan.org/vlc,version=2.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-09-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440 2014-11-21] (Adobe Systems Incorporated)
S4 Alerter; C:\WINCZ\system32\alrsvc.dll [17408 2008-04-14] (Microsoft Corporation)
R3 ALG; C:\WINCZ\System32\alg.exe [44544 2008-04-14] (Microsoft Corporation)
R2 AudioSrv; C:\WINCZ\System32\audiosrv.dll [42496 2008-04-14] (Microsoft Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R3 BITS; C:\WINCZ\system32\qmgr.dll [409088 2008-04-14] (Microsoft Corporation)
S2 Browser; C:\WINCZ\System32\browser.dll [77824 2008-04-14] (Microsoft Corporation)
S3 CiSvc; C:\WINCZ\system32\cisvc.exe [5632 2008-04-14] (Microsoft Corporation)
S4 ClipSrv; C:\WINCZ\system32\clipsrv.exe [33280 2008-04-14] (Microsoft Corporation)
S3 COMSysApp; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
R2 CryptSvc; C:\WINCZ\System32\cryptsvc.dll [62464 2008-04-14] (Microsoft Corporation)
R2 DcomLaunch; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
R2 Dhcp; C:\WINCZ\System32\dhcpcsvc.dll [125952 2008-04-14] (Microsoft Corporation)
S3 dmadmin; C:\WINCZ\System32\dmadmin.exe [225280 2008-04-14] (Microsoft Corp., Veritas Software)
S3 dmserver; C:\WINCZ\System32\dmserver.dll [24064 2008-04-14] (Microsoft Corp.)
R2 Dnscache; C:\WINCZ\System32\dnsrslvr.dll [45568 2008-04-14] (Microsoft Corporation)
S3 Dot3svc; C:\WINCZ\System32\dot3svc.dll [132608 2008-04-14] (Microsoft Corporation)
S3 EapHost; C:\WINCZ\System32\eapsvc.dll [33792 2008-04-14] (Microsoft Corporation)
R2 ERSvc; C:\WINCZ\System32\ersvc.dll [23040 2008-04-14] (Microsoft Corporation)
R2 Eventlog; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R3 EventSystem; C:\WINCZ\system32\es.dll [246272 2008-04-14] (Microsoft Corporation)
R2 EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [114753 2005-11-28] (Intel Corporation) [File not signed]
R3 FastUserSwitchingCompatibility; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 helpsvc; C:\WINCZ\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400 2008-04-14] (Microsoft Corporation)
S3 hkmsvc; C:\WINCZ\System32\kmsvc.dll [61440 2008-04-14] (Microsoft Corporation)
S3 HTTPFilter; C:\WINCZ\System32\w3ssl.dll [15872 2008-04-14] (Microsoft Corporation)
S3 ImapiService; C:\WINCZ\system32\imapi.exe [150528 2008-04-14] (Microsoft Corporation)
R2 lanmanserver; C:\WINCZ\System32\srvsvc.dll [96768 2008-04-14] (Microsoft Corporation)
R2 lanmanworkstation; C:\WINCZ\System32\wkssvc.dll [132096 2008-04-14] (Microsoft Corporation)
R2 LmHosts; C:\WINCZ\System32\lmhsvc.dll [13824 2008-04-14] (Microsoft Corporation)
S4 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed]
S4 Messenger; C:\WINCZ\System32\msgsvc.dll [33792 2008-04-14] (Microsoft Corporation)
S3 mnmsrvc; C:\WINCZ\system32\mnmsrvc.exe [32768 2008-04-14] (Microsoft Corporation)
S3 MSDTC; C:\WINCZ\system32\msdtc.exe [6144 2008-04-14] (Microsoft Corporation)
S3 MSIServer; C:\WINCZ\System32\msiexec.exe [78848 2008-04-14] (Microsoft Corporation)
S3 napagent; C:\WINCZ\System32\qagentrt.dll [293376 2008-04-14] (Microsoft Corporation)
S4 NetDDE; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S4 NetDDEdsdm; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S3 Netlogon; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R3 Netman; C:\WINCZ\System32\netman.dll [198144 2008-04-14] (Microsoft Corporation)
R3 Nla; C:\WINCZ\System32\mswsock.dll [247296 2008-04-14] (Microsoft Corporation)
S3 NtLmSsp; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 NtmsSvc; C:\WINCZ\system32\ntmssvc.dll [435712 2008-04-14] (Microsoft Corporation)
R2 NVSvc; C:\WINCZ\system32\nvsvc32.exe [143428 2006-03-06] (NVIDIA Corporation)
R2 PlugPlay; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R2 PolicyAgent; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 ProtectedStorage; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 RasAuto; C:\WINCZ\System32\rasauto.dll [88576 2008-04-14] (Microsoft Corporation)
S3 RasMan; C:\WINCZ\System32\rasmans.dll [186368 2008-04-14] (Microsoft Corporation)
S3 RDSessMgr; C:\WINCZ\system32\sessmgr.exe [141824 2008-04-14] (Microsoft Corporation)
R2 RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [217164 2005-11-28] (Intel Corporation) [File not signed]
S4 RemoteAccess; C:\WINCZ\System32\mprdim.dll [53248 2008-04-14] (Microsoft Corporation)
S3 RpcLocator; C:\WINCZ\system32\locator.exe [75264 2008-04-14] (Microsoft Corporation)
R2 RpcSs; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
S3 RSVP; C:\WINCZ\system32\rsvp.exe [132608 2006-03-02] (Microsoft Corporation)
R2 S24EventMonitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [540745 2005-11-28] (Intel Corporation ) [File not signed]
R2 SamSs; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 SCardSvr; C:\WINCZ\System32\SCardSvr.exe [97792 2008-04-14] (Microsoft Corporation)
R2 Schedule; C:\WINCZ\system32\schedsvc.dll [192512 2008-04-14] (Microsoft Corporation)
R2 seclogon; C:\WINCZ\System32\seclogon.dll [18944 2008-04-14] (Microsoft Corporation)
R2 SENS; C:\WINCZ\system32\sens.dll [39424 2008-04-14] (Microsoft Corporation)
R3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [353280 2007-12-10] (Nokia.) [File not signed]
R2 SharedAccess; C:\WINCZ\System32\ipnathlp.dll [329728 2008-04-14] (Microsoft Corporation)
R2 ShellHWDetection; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 Spooler; C:\WINCZ\system32\spoolsv.exe [57856 2008-04-14] (Microsoft Corporation)
R2 srservice; C:\WINCZ\system32\srsvc.dll [171008 2008-04-14] (Microsoft Corporation)
R3 SSDPSRV; C:\WINCZ\System32\ssdpsrv.dll [71680 2008-04-14] (Microsoft Corporation)
R2 stisvc; C:\WINCZ\system32\wiaservc.dll [334336 2008-04-14] (Microsoft Corporation)
S3 SwPrv; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
S3 SysmonLog; C:\WINCZ\system32\smlogsvc.exe [90112 2008-04-14] (Microsoft Corporation)
S3 TapiSrv; C:\WINCZ\System32\tapisrv.dll [249856 2008-04-14] (Microsoft Corporation)
R3 TermService; C:\WINCZ\System32\termsrv.dll [295936 2008-04-14] (Microsoft Corporation)
R2 Themes; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 TrkWks; C:\WINCZ\system32\trkwks.dll [90112 2008-04-14] (Microsoft Corporation)
S3 upnphost; C:\WINCZ\System32\upnphost.dll [186368 2008-04-14] (Microsoft Corporation)
S3 UPS; C:\WINCZ\System32\ups.exe [18432 2008-04-14] (Microsoft Corporation)
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [153600 2005-05-20] (Sony Corporation) [File not signed]
S3 VSS; C:\WINCZ\System32\vssvc.exe [290816 2008-04-14] (Microsoft Corporation)
R2 W32Time; C:\WINCZ\system32\w32time.dll [176640 2008-04-14] (Microsoft Corporation)
R2 WebClient; C:\WINCZ\System32\webclnt.dll [68096 2008-04-14] (Microsoft Corporation)
R2 winmgmt; C:\WINCZ\system32\wbem\WMIsvc.dll [144896 2008-04-14] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINCZ\system32\mspmsnsv.dll [52224 2008-04-14] (Microsoft Corporation)
S3 WmiApSrv; C:\WINCZ\system32\wbem\wmiapsrv.exe [126464 2008-04-14] (Microsoft Corporation)
R2 wscsvc; C:\WINCZ\system32\wscsvc.dll [80896 2008-04-14] (Microsoft Corporation)
R2 wuauserv; C:\WINCZ\system32\wuauserv.dll [6656 2008-04-14] (Microsoft Corporation)
R2 WZCSVC; C:\WINCZ\System32\wzcsvc.dll [483840 2008-04-14] (Microsoft Corporation)
S3 xmlprov; C:\WINCZ\System32\xmlprov.dll [129024 2008-04-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 ACPI; C:\WINCZ\System32\DRIVERS\ACPI.sys [188288 2008-04-14] (Microsoft Corporation)
R0 ACPIEC; C:\WINCZ\System32\DRIVERS\ACPIEC.sys [11776 2006-03-02] (Microsoft Corporation)
S3 aec; C:\WINCZ\System32\drivers\aec.sys [142592 2008-04-13] (Microsoft Corporation)
R2 AegisP; C:\WINCZ\System32\DRIVERS\AegisP.sys [21275 2012-08-01] (Meetinghouse Data Communications) [File not signed]
R1 AFD; C:\WINCZ\System32\drivers\afd.sys [138112 2008-04-13] (Microsoft Corporation)
R3 Arp1394; C:\WINCZ\System32\DRIVERS\arp1394.sys [60800 2008-04-13] (Microsoft Corporation)
R2 aswHwid; C:\WINCZ\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R2 aswMonFlt; C:\WINCZ\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R1 AswRdr; C:\WINCZ\system32\drivers\aswRdr.sys [55240 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINCZ\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINCZ\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINCZ\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
R1 aswTdi; C:\WINCZ\system32\drivers\aswTdi.sys [57928 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINCZ\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
S3 AsyncMac; C:\WINCZ\System32\DRIVERS\asyncmac.sys [14336 2008-04-13] (Microsoft Corporation)
R0 atapi; C:\WINCZ\System32\DRIVERS\atapi.sys [96512 2008-04-13] (Microsoft Corporation)
S3 Atmarpc; C:\WINCZ\System32\DRIVERS\atmarpc.sys [59904 2008-04-13] (Microsoft Corporation)
R3 audstub; C:\WINCZ\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
R1 Beep; C:\WINCZ\system32\Drivers\Beep.sys [4224 2006-03-02] (Microsoft Corporation)
S4 cbidf2k; C:\WINCZ\system32\Drivers\cbidf2k.sys [13952 2006-03-02] (Microsoft Corporation)
S3 CCDECODE; C:\WINCZ\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Cdaudio; C:\WINCZ\system32\Drivers\Cdaudio.sys [18688 2006-03-02] (Microsoft Corporation)
R4 Cdfs; C:\WINCZ\system32\Drivers\Cdfs.sys [63744 2008-04-13] (Microsoft Corporation)
R1 Cdrom; C:\WINCZ\System32\DRIVERS\cdrom.sys [62976 2008-04-13] (Microsoft Corporation)
R3 CmBatt; C:\WINCZ\System32\DRIVERS\CmBatt.sys [13952 2008-04-13] (Microsoft Corporation)
R0 Compbatt; C:\WINCZ\System32\DRIVERS\compbatt.sys [10240 2008-04-13] (Microsoft Corporation)
R0 Disk; C:\WINCZ\System32\DRIVERS\disk.sys [36352 2008-04-13] (Microsoft Corporation)
S4 dmboot; C:\WINCZ\System32\drivers\dmboot.sys [800000 2008-04-14] (Microsoft Corp., Veritas Software)
R1 DMICall; C:\WINCZ\System32\DRIVERS\DMICall.sys [3952 2000-12-05] (Sony Corporation)
S4 dmio; C:\WINCZ\System32\drivers\dmio.sys [153856 2008-04-14] (Microsoft Corp., Veritas Software)
S4 dmload; C:\WINCZ\System32\drivers\dmload.sys [5888 2006-03-02] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\WINCZ\System32\drivers\DMusic.sys [52864 2008-04-13] (Microsoft Corporation)
S3 drmkaud; C:\WINCZ\System32\drivers\drmkaud.sys [2944 2008-04-13] (Microsoft Corporation)
S4 Fastfat; C:\WINCZ\system32\Drivers\Fastfat.sys [143744 2008-04-13] (Microsoft Corporation)
S1 Fdc; C:\WINCZ\system32\Drivers\Fdc.sys [27392 2008-04-13] (Microsoft Corporation)
R1 Fips; C:\WINCZ\system32\Drivers\Fips.sys [44544 2008-04-14] (Microsoft Corporation)
S1 Flpydisk; C:\WINCZ\system32\Drivers\Flpydisk.sys [20480 2008-04-13] (Microsoft Corporation)
R0 FltMgr; C:\WINCZ\System32\drivers\fltmgr.sys [129792 2008-04-13] (Microsoft Corporation)
U1 Fs_Rec; C:\WINCZ\system32\Drivers\Fs_Rec.sys [7936 2006-03-02] (Microsoft Corporation)
R0 Ftdisk; C:\WINCZ\System32\DRIVERS\ftdisk.sys [125184 2006-03-02] (Microsoft Corporation)
R3 Gpc; C:\WINCZ\System32\DRIVERS\msgpc.sys [35072 2008-04-13] (Microsoft Corporation)
R3 HDAudBus; C:\WINCZ\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
S3 HidUsb; C:\WINCZ\System32\DRIVERS\hidusb.sys [10368 2008-04-14] (Microsoft Corporation)
R3 HTTP; C:\WINCZ\System32\Drivers\HTTP.sys [264832 2008-04-13] (Microsoft Corporation)
R1 i8042prt; C:\WINCZ\System32\DRIVERS\i8042prt.sys [52096 2008-04-14] (Microsoft Corporation)
R1 Imapi; C:\WINCZ\System32\DRIVERS\imapi.sys [42112 2008-04-13] (Microsoft Corporation)
R1 intelppm; C:\WINCZ\System32\DRIVERS\intelppm.sys [40192 2008-04-14] (Microsoft Corporation)
S3 Ip6Fw; C:\WINCZ\System32\drivers\ip6fw.sys [36608 2008-04-13] (Microsoft Corporation)
S3 IpFilterDriver; C:\WINCZ\System32\DRIVERS\ipfltdrv.sys [32896 2006-03-02] (Microsoft Corporation)
S3 IpInIp; C:\WINCZ\System32\DRIVERS\ipinip.sys [20864 2008-04-13] (Microsoft Corporation)
R3 IpNat; C:\WINCZ\System32\DRIVERS\ipnat.sys [152832 2008-04-13] (Microsoft Corporation)
R1 IPSec; C:\WINCZ\System32\DRIVERS\ipsec.sys [75264 2008-04-13] (Microsoft Corporation)
S3 IRENUM; C:\WINCZ\System32\DRIVERS\irenum.sys [11264 2008-04-13] (Microsoft Corporation)
R0 isapnp; C:\WINCZ\System32\DRIVERS\isapnp.sys [37248 2008-04-14] (Microsoft Corporation)
R1 Kbdclass; C:\WINCZ\System32\DRIVERS\kbdclass.sys [24576 2008-04-14] (Microsoft Corporation)
R3 kmixer; C:\WINCZ\System32\drivers\kmixer.sys [172416 2008-04-13] (Microsoft Corporation)
R0 KSecDD; C:\WINCZ\system32\Drivers\KSecDD.sys [92288 2008-04-13] (Microsoft Corporation)
R1 mnmdd; C:\WINCZ\system32\Drivers\mnmdd.sys [4224 2006-03-02] (Microsoft Corporation)
S3 Modem; C:\WINCZ\system32\Drivers\Modem.sys [30080 2008-04-14] (Microsoft Corporation)
R1 Mouclass; C:\WINCZ\System32\DRIVERS\mouclass.sys [23040 2008-04-14] (Microsoft Corporation)
S3 mouhid; C:\WINCZ\System32\DRIVERS\mouhid.sys [12160 2001-10-24] (Microsoft Corporation)
R0 MountMgr; C:\WINCZ\system32\Drivers\MountMgr.sys [42368 2008-04-13] (Microsoft Corporation)
R3 MRxDAV; C:\WINCZ\System32\DRIVERS\mrxdav.sys [180608 2008-04-13] (Microsoft Corporation)
R1 MRxSmb; C:\WINCZ\System32\DRIVERS\mrxsmb.sys [456576 2008-04-13] (Microsoft Corporation)
R1 Msfs; C:\WINCZ\system32\Drivers\Msfs.sys [19072 2008-04-13] (Microsoft Corporation)
S3 MSKSSRV; C:\WINCZ\System32\drivers\MSKSSRV.sys [7552 2008-04-13] (Microsoft Corporation)
S3 MSPCLOCK; C:\WINCZ\System32\drivers\MSPCLOCK.sys [5376 2008-04-13] (Microsoft Corporation)
S3 MSPQM; C:\WINCZ\System32\drivers\MSPQM.sys [4992 2008-04-13] (Microsoft Corporation)
R3 mssmbios; C:\WINCZ\System32\DRIVERS\mssmbios.sys [15488 2008-04-13] (Microsoft Corporation)
S3 MSTEE; C:\WINCZ\System32\drivers\MSTEE.sys [5504 2008-04-13] (Microsoft Corporation)
R0 Mup; C:\WINCZ\system32\Drivers\Mup.sys [105344 2008-04-13] (Microsoft Corporation)
S3 NABTSFEC; C:\WINCZ\System32\DRIVERS\NABTSFEC.sys [85248 2008-04-13] (Microsoft Corporation)
R0 NDIS; C:\WINCZ\system32\Drivers\NDIS.sys [182656 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\WINCZ\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NdisTapi; C:\WINCZ\System32\DRIVERS\ndistapi.sys [10112 2008-04-13] (Microsoft Corporation)
R3 Ndisuio; C:\WINCZ\System32\DRIVERS\ndisuio.sys [14592 2008-04-13] (Microsoft Corporation)
R3 NdisWan; C:\WINCZ\System32\DRIVERS\ndiswan.sys [91520 2008-04-13] (Microsoft Corporation)
R3 NDProxy; C:\WINCZ\system32\Drivers\NDProxy.sys [40576 2008-04-13] (Microsoft Corporation)
R1 NetBIOS; C:\WINCZ\System32\DRIVERS\netbios.sys [34688 2008-04-13] (Microsoft Corporation)
R1 NetBT; C:\WINCZ\System32\DRIVERS\netbt.sys [162816 2008-04-13] (Microsoft Corporation)
R3 NIC1394; C:\WINCZ\System32\DRIVERS\nic1394.sys [61824 2008-04-13] (Microsoft Corporation)
R1 Npfs; C:\WINCZ\system32\Drivers\Npfs.sys [30848 2008-04-13] (Microsoft Corporation)
R4 Ntfs; C:\WINCZ\system32\Drivers\Ntfs.sys [574976 2008-04-13] (Microsoft Corporation)
R1 Null; C:\WINCZ\system32\Drivers\Null.sys [2944 2006-03-02] (Microsoft Corporation)
R3 nv; C:\WINCZ\System32\DRIVERS\nv4_mini.sys [3644160 2006-03-06] (NVIDIA Corporation)
S3 NwlnkFlt; C:\WINCZ\System32\DRIVERS\nwlnkflt.sys [12416 2006-03-02] (Microsoft Corporation)
S3 NwlnkFwd; C:\WINCZ\System32\DRIVERS\nwlnkfwd.sys [32512 2006-03-02] (Microsoft Corporation)
R0 ohci1394; C:\WINCZ\System32\DRIVERS\ohci1394.sys [61696 2008-04-13] (Microsoft Corporation)
S3 Parport; C:\WINCZ\system32\Drivers\Parport.sys [80000 2008-04-14] (Microsoft Corporation)
R0 PartMgr; C:\WINCZ\system32\Drivers\PartMgr.sys [19712 2008-04-13] (Microsoft Corporation)
S2 ParVdm; C:\WINCZ\system32\Drivers\ParVdm.sys [6784 2006-03-02] (Microsoft Corporation)
R0 PCI; C:\WINCZ\System32\DRIVERS\pci.sys [68736 2008-04-14] (Microsoft Corporation)
R0 PCIIde; C:\WINCZ\System32\DRIVERS\pciide.sys [3328 2001-10-24] (Microsoft Corporation)
R0 Pcmcia; C:\WINCZ\System32\DRIVERS\pcmcia.sys [120064 2008-04-14] (Microsoft Corporation)
R3 PptpMiniport; C:\WINCZ\System32\DRIVERS\raspptp.sys [48384 2008-04-13] (Microsoft Corporation)
R3 PSched; C:\WINCZ\System32\DRIVERS\psched.sys [69120 2008-04-13] (Microsoft Corporation)
R3 Ptilink; C:\WINCZ\System32\DRIVERS\ptilink.sys [17792 2006-03-02] (Parallel Technologies, Inc.)
R1 RasAcd; C:\WINCZ\System32\DRIVERS\rasacd.sys [8832 2006-03-02] (Microsoft Corporation)
R3 Rasl2tp; C:\WINCZ\System32\DRIVERS\rasl2tp.sys [51328 2008-04-13] (Microsoft Corporation)
R3 RasPppoe; C:\WINCZ\System32\DRIVERS\raspppoe.sys [41472 2008-04-13] (Microsoft Corporation)
R3 Raspti; C:\WINCZ\System32\DRIVERS\raspti.sys [16512 2006-03-02] (Microsoft Corporation)
R1 Rdbss; C:\WINCZ\System32\DRIVERS\rdbss.sys [175744 2008-04-13] (Microsoft Corporation)
R1 RDPCDD; C:\WINCZ\System32\DRIVERS\RDPCDD.sys [4224 2006-03-02] (Microsoft Corporation)
S3 RDPWD; C:\WINCZ\system32\Drivers\RDPWD.sys [139656 2008-04-14] (Microsoft Corporation)
R1 redbook; C:\WINCZ\System32\DRIVERS\redbook.sys [58496 2008-04-14] (Microsoft Corporation)
R2 s24trans; C:\WINCZ\System32\DRIVERS\s24trans.sys [13568 2005-11-28] (Intel Corporation) [File not signed]
S3 Secdrv; C:\WINCZ\System32\DRIVERS\secdrv.sys [20480 2008-04-13] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
S3 Serial; C:\WINCZ\system32\Drivers\Serial.sys [64256 2008-04-14] (Microsoft Corporation)
S1 Sfloppy; C:\WINCZ\system32\Drivers\Sfloppy.sys [11392 2008-04-13] (Microsoft Corporation)
S3 SLIP; C:\WINCZ\System32\DRIVERS\SLIP.sys [11136 2008-04-13] (Microsoft Corporation)
R3 SNC; C:\WINCZ\System32\DRIVERS\SonyNC.sys [20752 2001-08-17] (Sony Corporation)
S3 splitter; C:\WINCZ\System32\drivers\splitter.sys [6272 2008-04-13] (Microsoft Corporation)
R0 sr; C:\WINCZ\System32\DRIVERS\sr.sys [73344 2008-04-14] (Microsoft Corporation)
R3 Srv; C:\WINCZ\System32\DRIVERS\srv.sys [334848 2008-04-13] (Microsoft Corporation)
R3 STHDA; C:\WINCZ\System32\drivers\sthda.sys [1106888 2006-02-13] (SigmaTel, Inc.)
S3 streamip; C:\WINCZ\System32\DRIVERS\StreamIP.sys [15232 2008-04-13] (Microsoft Corporation)
R3 swenum; C:\WINCZ\System32\DRIVERS\swenum.sys [4352 2008-04-13] (Microsoft Corporation)
S3 swmidi; C:\WINCZ\System32\drivers\swmidi.sys [56576 2008-04-13] (Microsoft Corporation)
R3 sysaudio; C:\WINCZ\System32\drivers\sysaudio.sys [60800 2008-04-13] (Microsoft Corporation)
R1 Tcpip; C:\WINCZ\System32\DRIVERS\tcpip.sys [361344 2008-04-13] (Microsoft Corporation)
S3 TDPIPE; C:\WINCZ\system32\Drivers\TDPIPE.sys [12040 2008-04-14] (Microsoft Corporation)
S3 TDTCP; C:\WINCZ\system32\Drivers\TDTCP.sys [21896 2008-04-14] (Microsoft Corporation)
R1 TermDD; C:\WINCZ\System32\DRIVERS\termdd.sys [40840 2008-04-14] (Microsoft Corporation)
R3 Tosrfbd; C:\WINCZ\System32\Drivers\tosrfbd.sys [108800 2005-11-22] (TOSHIBA CORPORATION) [File not signed]
S1 Tosrfcom; C:\WINCZ\system32\Drivers\Tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
R3 Tosrfhid; C:\WINCZ\System32\DRIVERS\Tosrfhid.sys [62848 2005-12-01] (TOSHIBA Corporation.) [File not signed]
R3 Tosrfusb; C:\WINCZ\System32\Drivers\tosrfusb.sys [36736 2005-11-15] (TOSHIBA CORPORATION) [File not signed]
S4 Udfs; C:\WINCZ\system32\Drivers\Udfs.sys [66048 2008-04-13] (Microsoft Corporation)
R3 Update; C:\WINCZ\System32\DRIVERS\update.sys [384768 2008-04-13] (Microsoft Corporation)
R3 usbehci; C:\WINCZ\System32\DRIVERS\usbehci.sys [30208 2008-04-13] (Microsoft Corporation)
R3 usbhub; C:\WINCZ\System32\DRIVERS\usbhub.sys [59520 2008-04-13] (Microsoft Corporation)
S3 usbprint; C:\WINCZ\System32\DRIVERS\usbprint.sys [25856 2008-04-14] (Microsoft Corporation)
S3 usbscan; C:\WINCZ\System32\DRIVERS\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
R3 usbstor; C:\WINCZ\System32\DRIVERS\USBSTOR.SYS [26368 2008-04-13] (Microsoft Corporation)
R3 usbuhci; C:\WINCZ\System32\DRIVERS\usbuhci.sys [20608 2008-04-13] (Microsoft Corporation)
R3 usbvm321; C:\WINCZ\System32\Drivers\usbvm321.sys [234496 2005-12-29] (Vimicro Corporation)
S2 VgaSave; C:\WINCZ\System32\drivers\vga.sys [20992 2008-04-13] (Microsoft Corporation)
R0 VolSnap; C:\WINCZ\system32\Drivers\VolSnap.sys [52480 2008-04-14] (Microsoft Corporation)
R3 w39n51; C:\WINCZ\System32\DRIVERS\w39n51.sys [1428096 2005-12-04] (Intel® Corporation)
R3 Wanarp; C:\WINCZ\System32\DRIVERS\wanarp.sys [34560 2008-04-13] (Microsoft Corporation)
R3 wdmaud; C:\WINCZ\System32\drivers\wdmaud.sys [83072 2008-04-13] (Microsoft Corporation)
S3 WSTCODEC; C:\WINCZ\System32\DRIVERS\WSTCODEC.SYS [19200 2008-04-13] (Microsoft Corporation)
S2 DgiVecp; \??\C:\WINCZ\system32\Drivers\DgiVecp.sys [X]
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\WINCZ\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S2 SSPORT; \??\C:\WINCZ\system32\Drivers\SSPORT.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 19:20 - 2014-11-25 19:20 - 00033325 _____ () C:\Documents and Settings\Edík\Plocha\FRST.txt
2014-11-25 19:15 - 2014-11-25 19:15 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
2014-11-25 19:12 - 2014-11-25 19:20 - 00000000 ____D () C:\FRST
2014-11-25 19:11 - 2014-11-25 19:11 - 01110016 _____ (Farbar) C:\Documents and Settings\Edík\Plocha\FRST.exe
2014-11-25 17:49 - 2014-11-25 17:49 - 00000000 ____D () C:\Program Files\Common Files\PDF Architect
2014-11-25 17:01 - 2014-11-25 17:01 - 00000686 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-11-25 16:44 - 2014-11-25 16:44 - 00291352 _____ (AVAST Software) C:\WINCZ\system32\aswBoot.exe
2014-11-25 16:44 - 2014-11-25 16:44 - 00043152 _____ (AVAST Software) C:\WINCZ\avastSS.scr
2014-11-25 16:44 - 2014-11-25 16:44 - 00001735 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-11-25 16:36 - 2014-11-25 16:36 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha\Původní data aplikace Firefox
2014-11-21 21:40 - 2014-11-21 21:40 - 00000734 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000728 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 18:51 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 19:20 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha
2014-11-25 19:20 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Local Settings\Temp
2014-11-25 19:19 - 2012-08-01 17:07 - 00000000 ___HD () C:\Documents and Settings\Edík\Local Settings\Data aplikací
2014-11-25 19:17 - 2012-08-08 15:47 - 00000000 ____D () C:\Documents and Settings\Edík\Dokumenty\Stažené soubory
2014-11-25 18:24 - 2013-12-14 14:44 - 00000910 _____ () C:\WINCZ\Tasks\Adobe Flash Player Updater.job
2014-11-25 17:51 - 2012-08-01 18:31 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-11-25 17:50 - 2012-08-01 17:07 - 00000000 ___RD () C:\Documents and Settings\Edík\Dokumenty
2014-11-25 17:12 - 2012-08-01 16:48 - 00433164 _____ () C:\WINCZ\WindowsUpdate.log
2014-11-25 17:11 - 2012-09-05 17:34 - 00000364 ____H () C:\WINCZ\Tasks\avast! Emergency Update.job
2014-11-25 17:06 - 2012-08-01 18:36 - 00000159 _____ () C:\WINCZ\wiadebug.log
2014-11-25 17:06 - 2012-08-01 18:36 - 00000050 _____ () C:\WINCZ\wiaservc.log
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Temp
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ
2014-11-25 17:06 - 2012-08-01 17:55 - 00045378 _____ () C:\WINCZ\system32\nvapps.xml
2014-11-25 17:06 - 2012-08-01 17:05 - 00000006 ____H () C:\WINCZ\Tasks\SA.DAT
2014-11-25 17:04 - 2012-08-01 17:07 - 00000272 ___SH () C:\Documents and Settings\Edík\ntuser.ini
2014-11-25 17:04 - 2012-08-01 17:05 - 00032366 _____ () C:\WINCZ\SchedLgU.Txt
2014-11-25 17:02 - 2013-12-14 11:06 - 00000000 ____D () C:\Program Files\PDFCreator
2014-11-25 17:02 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík
2014-11-25 17:01 - 2012-08-01 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-11-25 16:44 - 2014-08-01 19:59 - 00024184 _____ () C:\WINCZ\system32\Drivers\aswHwid.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00206248 _____ () C:\WINCZ\system32\Drivers\aswVmm.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00070384 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswMonFlt.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00049944 _____ () C:\WINCZ\system32\Drivers\aswRvrt.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00787800 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsnx.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00423784 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsp.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00057928 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswTdi.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00055240 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswRdr.sys
2014-11-25 05:32 - 2012-08-08 20:36 - 00011264 _____ () C:\Documents and Settings\Edík\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-24 17:06 - 2006-03-02 13:00 - 00013646 _____ () C:\WINCZ\system32\wpa.dbl
2014-11-21 21:24 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Help
2014-11-21 21:19 - 2013-12-25 14:59 - 00002337 _____ () C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
2014-11-21 21:13 - 2013-12-25 14:58 - 00000000 ____D () C:\Program Files\Nokia
2014-11-21 20:25 - 2012-08-08 16:58 - 00701104 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerApp.exe
2014-11-21 20:25 - 2012-08-08 16:58 - 00071344 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerCPLApp.cpl
2014-11-21 19:12 - 2012-08-27 20:08 - 00002561 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Word.lnk
2014-10-26 06:01 - 2012-08-01 18:32 - 00714754 _____ () C:\WINCZ\system32\PerfStringBackup.INI
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINCZ\explorer.exe => File is digitally signed
C:\WINCZ\system32\winlogon.exe => File is digitally signed
C:\WINCZ\system32\svchost.exe => File is digitally signed
C:\WINCZ\system32\services.exe => File is digitally signed
C:\WINCZ\system32\User32.dll => File is digitally signed
C:\WINCZ\system32\userinit.exe => File is digitally signed
C:\WINCZ\system32\rpcss.dll => File is digitally signed
C:\WINCZ\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (VAIO) (Fixed) (Total:46.57 GB) (Free:6.5 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (VAIO) (Fixed) (Total:39.6 GB) (Free:30.75 GB) NTFS
Available physical RAM: 463.99 MB
Total physical RAM: 1022.11 MB
Percentage of memory in use: 54%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 93.2 GB) (Disk ID: DCDCFE52)
Partition 1: (Not Active) - (Size=7 GB) - (Type=12)
Partition 2: (Active) - (Size=46.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=39.6 GB) - (Type=OF Extended)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINCZ\Tasks\Adobe Flash Player Updater.job => C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINCZ\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security 2012 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: AVG Internet Security 2012 (Disabled) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Edk\Plocha" je 19 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINCZ\\system32\\dpvsetup.exe"="C:\\WINCZ\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINCZ\\system32\\rundll32.exe"="C:\\WINCZ\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
prosím o kontrolu logu zpomalení až blokování prohlížení internetu je jedno jaký se použije prohlížeč mozila nebo explorer a s tím spojené i celkové zpomalení notebooku. Internetové přpojení od O2 z modemu na pc wifi.
Děkuji za všechny rady eda
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-11-2014
Ran by Edík (administrator) on EDA on 25-11-2014 19:20:15
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\WINCZ\system32\smss.exe
(Microsoft Corporation) C:\WINCZ\system32\winlogon.exe
(Microsoft Corporation) C:\WINCZ\system32\services.exe
(Microsoft Corporation) C:\WINCZ\system32\lsass.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
(Intel Corporation ) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINCZ\explorer.exe
(Microsoft Corporation) C:\WINCZ\system32\spoolsv.exe
(NVIDIA Corporation) C:\WINCZ\system32\nvsvc32.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\ctfmon.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
() C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\WINCZ\system32\wscntfy.exe
(Nokia.) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
(Microsoft Corporation) C:\WINCZ\system32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINCZ\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [ISBMgr.exe] => C:\Program Files\Sony\ISB Utility\ISBMgr.exe [32768 2004-02-20] (Sony Corporation)
HKLM\...\Run: [Switcher.exe] => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [176128 2006-02-14] (Sony Corporation)
HKLM\...\Run: [SonyPowerCfg] => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [217088 2005-12-13] (Sony Corporation)
HKLM\...\Run: [VAIOCameraUtility] => C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe [69632 2005-12-27] (Sony Corporation)
HKLM\...\Run: [VAIO Update 2] => C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe [151552 2005-10-11] (Sony Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-25] (AVAST Software)
HKLM\...\Run: [Samsung PanelMgr] => C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe [618496 2010-06-07] ()
HKLM\...\Winlogon: [Userinit] C:\WINCZ\system32\userinit.exe,
HKLM\...\Winlogon: [Shell] Explorer.exe [x ] ()
HKLM\...\Winlogon: [UIHost] C:\WINCZ\system32\logonui.exe [515072 2008-04-14] (Microsoft Corporation)
Winlogon\Notify\crypt32chain: C:\WINCZ\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\WINCZ\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\WINCZ\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\dimsntfy: C:\WINCZ\System32\dimsntfy.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\WINCZ\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\WINCZ\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\VESWinlogon: C:\WINCZ\system32\VESWinlogon.dll (Sony Corporation)
Winlogon\Notify\wlballoon: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4826904 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [PC Suite Tray] => C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe [695808 2007-12-10] ()
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe [1294336 2007-11-07] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINCZ\system32\blank.htm
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-1659004503-152049171-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINCZ\system32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINCZ\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file://C:\Program Files\AutoCAD 2002\AcDcToday.ocx
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file://C:\Program Files\AutoCAD 2002\InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file://C:\Program Files\AutoCAD 2002\InstFred.ocx
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file://C:\Program Files\AutoCAD 2002\AcPreview.ocx
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINCZ\system32\mshtml.dll (Microsoft Corporation)
Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINCZ\system32\wiascr.dll (Microsoft Corporation)
Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINCZ\system32\shell32.dll [8465408 2008-04-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Edík\Data aplikací\Mozilla\Firefox\Profiles\zzofxf9m.default-1416929801546
FF Plugin: @adobe.com/FlashPlayer -> C:\WINCZ\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin: @videolan.org/vlc,version=2.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-09-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440 2014-11-21] (Adobe Systems Incorporated)
S4 Alerter; C:\WINCZ\system32\alrsvc.dll [17408 2008-04-14] (Microsoft Corporation)
R3 ALG; C:\WINCZ\System32\alg.exe [44544 2008-04-14] (Microsoft Corporation)
R2 AudioSrv; C:\WINCZ\System32\audiosrv.dll [42496 2008-04-14] (Microsoft Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R3 BITS; C:\WINCZ\system32\qmgr.dll [409088 2008-04-14] (Microsoft Corporation)
S2 Browser; C:\WINCZ\System32\browser.dll [77824 2008-04-14] (Microsoft Corporation)
S3 CiSvc; C:\WINCZ\system32\cisvc.exe [5632 2008-04-14] (Microsoft Corporation)
S4 ClipSrv; C:\WINCZ\system32\clipsrv.exe [33280 2008-04-14] (Microsoft Corporation)
S3 COMSysApp; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
R2 CryptSvc; C:\WINCZ\System32\cryptsvc.dll [62464 2008-04-14] (Microsoft Corporation)
R2 DcomLaunch; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
R2 Dhcp; C:\WINCZ\System32\dhcpcsvc.dll [125952 2008-04-14] (Microsoft Corporation)
S3 dmadmin; C:\WINCZ\System32\dmadmin.exe [225280 2008-04-14] (Microsoft Corp., Veritas Software)
S3 dmserver; C:\WINCZ\System32\dmserver.dll [24064 2008-04-14] (Microsoft Corp.)
R2 Dnscache; C:\WINCZ\System32\dnsrslvr.dll [45568 2008-04-14] (Microsoft Corporation)
S3 Dot3svc; C:\WINCZ\System32\dot3svc.dll [132608 2008-04-14] (Microsoft Corporation)
S3 EapHost; C:\WINCZ\System32\eapsvc.dll [33792 2008-04-14] (Microsoft Corporation)
R2 ERSvc; C:\WINCZ\System32\ersvc.dll [23040 2008-04-14] (Microsoft Corporation)
R2 Eventlog; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R3 EventSystem; C:\WINCZ\system32\es.dll [246272 2008-04-14] (Microsoft Corporation)
R2 EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [114753 2005-11-28] (Intel Corporation) [File not signed]
R3 FastUserSwitchingCompatibility; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 helpsvc; C:\WINCZ\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400 2008-04-14] (Microsoft Corporation)
S3 hkmsvc; C:\WINCZ\System32\kmsvc.dll [61440 2008-04-14] (Microsoft Corporation)
S3 HTTPFilter; C:\WINCZ\System32\w3ssl.dll [15872 2008-04-14] (Microsoft Corporation)
S3 ImapiService; C:\WINCZ\system32\imapi.exe [150528 2008-04-14] (Microsoft Corporation)
R2 lanmanserver; C:\WINCZ\System32\srvsvc.dll [96768 2008-04-14] (Microsoft Corporation)
R2 lanmanworkstation; C:\WINCZ\System32\wkssvc.dll [132096 2008-04-14] (Microsoft Corporation)
R2 LmHosts; C:\WINCZ\System32\lmhsvc.dll [13824 2008-04-14] (Microsoft Corporation)
S4 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed]
S4 Messenger; C:\WINCZ\System32\msgsvc.dll [33792 2008-04-14] (Microsoft Corporation)
S3 mnmsrvc; C:\WINCZ\system32\mnmsrvc.exe [32768 2008-04-14] (Microsoft Corporation)
S3 MSDTC; C:\WINCZ\system32\msdtc.exe [6144 2008-04-14] (Microsoft Corporation)
S3 MSIServer; C:\WINCZ\System32\msiexec.exe [78848 2008-04-14] (Microsoft Corporation)
S3 napagent; C:\WINCZ\System32\qagentrt.dll [293376 2008-04-14] (Microsoft Corporation)
S4 NetDDE; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S4 NetDDEdsdm; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S3 Netlogon; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R3 Netman; C:\WINCZ\System32\netman.dll [198144 2008-04-14] (Microsoft Corporation)
R3 Nla; C:\WINCZ\System32\mswsock.dll [247296 2008-04-14] (Microsoft Corporation)
S3 NtLmSsp; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 NtmsSvc; C:\WINCZ\system32\ntmssvc.dll [435712 2008-04-14] (Microsoft Corporation)
R2 NVSvc; C:\WINCZ\system32\nvsvc32.exe [143428 2006-03-06] (NVIDIA Corporation)
R2 PlugPlay; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R2 PolicyAgent; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 ProtectedStorage; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 RasAuto; C:\WINCZ\System32\rasauto.dll [88576 2008-04-14] (Microsoft Corporation)
S3 RasMan; C:\WINCZ\System32\rasmans.dll [186368 2008-04-14] (Microsoft Corporation)
S3 RDSessMgr; C:\WINCZ\system32\sessmgr.exe [141824 2008-04-14] (Microsoft Corporation)
R2 RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [217164 2005-11-28] (Intel Corporation) [File not signed]
S4 RemoteAccess; C:\WINCZ\System32\mprdim.dll [53248 2008-04-14] (Microsoft Corporation)
S3 RpcLocator; C:\WINCZ\system32\locator.exe [75264 2008-04-14] (Microsoft Corporation)
R2 RpcSs; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
S3 RSVP; C:\WINCZ\system32\rsvp.exe [132608 2006-03-02] (Microsoft Corporation)
R2 S24EventMonitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [540745 2005-11-28] (Intel Corporation ) [File not signed]
R2 SamSs; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 SCardSvr; C:\WINCZ\System32\SCardSvr.exe [97792 2008-04-14] (Microsoft Corporation)
R2 Schedule; C:\WINCZ\system32\schedsvc.dll [192512 2008-04-14] (Microsoft Corporation)
R2 seclogon; C:\WINCZ\System32\seclogon.dll [18944 2008-04-14] (Microsoft Corporation)
R2 SENS; C:\WINCZ\system32\sens.dll [39424 2008-04-14] (Microsoft Corporation)
R3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [353280 2007-12-10] (Nokia.) [File not signed]
R2 SharedAccess; C:\WINCZ\System32\ipnathlp.dll [329728 2008-04-14] (Microsoft Corporation)
R2 ShellHWDetection; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 Spooler; C:\WINCZ\system32\spoolsv.exe [57856 2008-04-14] (Microsoft Corporation)
R2 srservice; C:\WINCZ\system32\srsvc.dll [171008 2008-04-14] (Microsoft Corporation)
R3 SSDPSRV; C:\WINCZ\System32\ssdpsrv.dll [71680 2008-04-14] (Microsoft Corporation)
R2 stisvc; C:\WINCZ\system32\wiaservc.dll [334336 2008-04-14] (Microsoft Corporation)
S3 SwPrv; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
S3 SysmonLog; C:\WINCZ\system32\smlogsvc.exe [90112 2008-04-14] (Microsoft Corporation)
S3 TapiSrv; C:\WINCZ\System32\tapisrv.dll [249856 2008-04-14] (Microsoft Corporation)
R3 TermService; C:\WINCZ\System32\termsrv.dll [295936 2008-04-14] (Microsoft Corporation)
R2 Themes; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 TrkWks; C:\WINCZ\system32\trkwks.dll [90112 2008-04-14] (Microsoft Corporation)
S3 upnphost; C:\WINCZ\System32\upnphost.dll [186368 2008-04-14] (Microsoft Corporation)
S3 UPS; C:\WINCZ\System32\ups.exe [18432 2008-04-14] (Microsoft Corporation)
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [153600 2005-05-20] (Sony Corporation) [File not signed]
S3 VSS; C:\WINCZ\System32\vssvc.exe [290816 2008-04-14] (Microsoft Corporation)
R2 W32Time; C:\WINCZ\system32\w32time.dll [176640 2008-04-14] (Microsoft Corporation)
R2 WebClient; C:\WINCZ\System32\webclnt.dll [68096 2008-04-14] (Microsoft Corporation)
R2 winmgmt; C:\WINCZ\system32\wbem\WMIsvc.dll [144896 2008-04-14] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINCZ\system32\mspmsnsv.dll [52224 2008-04-14] (Microsoft Corporation)
S3 WmiApSrv; C:\WINCZ\system32\wbem\wmiapsrv.exe [126464 2008-04-14] (Microsoft Corporation)
R2 wscsvc; C:\WINCZ\system32\wscsvc.dll [80896 2008-04-14] (Microsoft Corporation)
R2 wuauserv; C:\WINCZ\system32\wuauserv.dll [6656 2008-04-14] (Microsoft Corporation)
R2 WZCSVC; C:\WINCZ\System32\wzcsvc.dll [483840 2008-04-14] (Microsoft Corporation)
S3 xmlprov; C:\WINCZ\System32\xmlprov.dll [129024 2008-04-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 ACPI; C:\WINCZ\System32\DRIVERS\ACPI.sys [188288 2008-04-14] (Microsoft Corporation)
R0 ACPIEC; C:\WINCZ\System32\DRIVERS\ACPIEC.sys [11776 2006-03-02] (Microsoft Corporation)
S3 aec; C:\WINCZ\System32\drivers\aec.sys [142592 2008-04-13] (Microsoft Corporation)
R2 AegisP; C:\WINCZ\System32\DRIVERS\AegisP.sys [21275 2012-08-01] (Meetinghouse Data Communications) [File not signed]
R1 AFD; C:\WINCZ\System32\drivers\afd.sys [138112 2008-04-13] (Microsoft Corporation)
R3 Arp1394; C:\WINCZ\System32\DRIVERS\arp1394.sys [60800 2008-04-13] (Microsoft Corporation)
R2 aswHwid; C:\WINCZ\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R2 aswMonFlt; C:\WINCZ\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R1 AswRdr; C:\WINCZ\system32\drivers\aswRdr.sys [55240 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINCZ\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINCZ\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINCZ\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
R1 aswTdi; C:\WINCZ\system32\drivers\aswTdi.sys [57928 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINCZ\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
S3 AsyncMac; C:\WINCZ\System32\DRIVERS\asyncmac.sys [14336 2008-04-13] (Microsoft Corporation)
R0 atapi; C:\WINCZ\System32\DRIVERS\atapi.sys [96512 2008-04-13] (Microsoft Corporation)
S3 Atmarpc; C:\WINCZ\System32\DRIVERS\atmarpc.sys [59904 2008-04-13] (Microsoft Corporation)
R3 audstub; C:\WINCZ\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
R1 Beep; C:\WINCZ\system32\Drivers\Beep.sys [4224 2006-03-02] (Microsoft Corporation)
S4 cbidf2k; C:\WINCZ\system32\Drivers\cbidf2k.sys [13952 2006-03-02] (Microsoft Corporation)
S3 CCDECODE; C:\WINCZ\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Cdaudio; C:\WINCZ\system32\Drivers\Cdaudio.sys [18688 2006-03-02] (Microsoft Corporation)
R4 Cdfs; C:\WINCZ\system32\Drivers\Cdfs.sys [63744 2008-04-13] (Microsoft Corporation)
R1 Cdrom; C:\WINCZ\System32\DRIVERS\cdrom.sys [62976 2008-04-13] (Microsoft Corporation)
R3 CmBatt; C:\WINCZ\System32\DRIVERS\CmBatt.sys [13952 2008-04-13] (Microsoft Corporation)
R0 Compbatt; C:\WINCZ\System32\DRIVERS\compbatt.sys [10240 2008-04-13] (Microsoft Corporation)
R0 Disk; C:\WINCZ\System32\DRIVERS\disk.sys [36352 2008-04-13] (Microsoft Corporation)
S4 dmboot; C:\WINCZ\System32\drivers\dmboot.sys [800000 2008-04-14] (Microsoft Corp., Veritas Software)
R1 DMICall; C:\WINCZ\System32\DRIVERS\DMICall.sys [3952 2000-12-05] (Sony Corporation)
S4 dmio; C:\WINCZ\System32\drivers\dmio.sys [153856 2008-04-14] (Microsoft Corp., Veritas Software)
S4 dmload; C:\WINCZ\System32\drivers\dmload.sys [5888 2006-03-02] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\WINCZ\System32\drivers\DMusic.sys [52864 2008-04-13] (Microsoft Corporation)
S3 drmkaud; C:\WINCZ\System32\drivers\drmkaud.sys [2944 2008-04-13] (Microsoft Corporation)
S4 Fastfat; C:\WINCZ\system32\Drivers\Fastfat.sys [143744 2008-04-13] (Microsoft Corporation)
S1 Fdc; C:\WINCZ\system32\Drivers\Fdc.sys [27392 2008-04-13] (Microsoft Corporation)
R1 Fips; C:\WINCZ\system32\Drivers\Fips.sys [44544 2008-04-14] (Microsoft Corporation)
S1 Flpydisk; C:\WINCZ\system32\Drivers\Flpydisk.sys [20480 2008-04-13] (Microsoft Corporation)
R0 FltMgr; C:\WINCZ\System32\drivers\fltmgr.sys [129792 2008-04-13] (Microsoft Corporation)
U1 Fs_Rec; C:\WINCZ\system32\Drivers\Fs_Rec.sys [7936 2006-03-02] (Microsoft Corporation)
R0 Ftdisk; C:\WINCZ\System32\DRIVERS\ftdisk.sys [125184 2006-03-02] (Microsoft Corporation)
R3 Gpc; C:\WINCZ\System32\DRIVERS\msgpc.sys [35072 2008-04-13] (Microsoft Corporation)
R3 HDAudBus; C:\WINCZ\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
S3 HidUsb; C:\WINCZ\System32\DRIVERS\hidusb.sys [10368 2008-04-14] (Microsoft Corporation)
R3 HTTP; C:\WINCZ\System32\Drivers\HTTP.sys [264832 2008-04-13] (Microsoft Corporation)
R1 i8042prt; C:\WINCZ\System32\DRIVERS\i8042prt.sys [52096 2008-04-14] (Microsoft Corporation)
R1 Imapi; C:\WINCZ\System32\DRIVERS\imapi.sys [42112 2008-04-13] (Microsoft Corporation)
R1 intelppm; C:\WINCZ\System32\DRIVERS\intelppm.sys [40192 2008-04-14] (Microsoft Corporation)
S3 Ip6Fw; C:\WINCZ\System32\drivers\ip6fw.sys [36608 2008-04-13] (Microsoft Corporation)
S3 IpFilterDriver; C:\WINCZ\System32\DRIVERS\ipfltdrv.sys [32896 2006-03-02] (Microsoft Corporation)
S3 IpInIp; C:\WINCZ\System32\DRIVERS\ipinip.sys [20864 2008-04-13] (Microsoft Corporation)
R3 IpNat; C:\WINCZ\System32\DRIVERS\ipnat.sys [152832 2008-04-13] (Microsoft Corporation)
R1 IPSec; C:\WINCZ\System32\DRIVERS\ipsec.sys [75264 2008-04-13] (Microsoft Corporation)
S3 IRENUM; C:\WINCZ\System32\DRIVERS\irenum.sys [11264 2008-04-13] (Microsoft Corporation)
R0 isapnp; C:\WINCZ\System32\DRIVERS\isapnp.sys [37248 2008-04-14] (Microsoft Corporation)
R1 Kbdclass; C:\WINCZ\System32\DRIVERS\kbdclass.sys [24576 2008-04-14] (Microsoft Corporation)
R3 kmixer; C:\WINCZ\System32\drivers\kmixer.sys [172416 2008-04-13] (Microsoft Corporation)
R0 KSecDD; C:\WINCZ\system32\Drivers\KSecDD.sys [92288 2008-04-13] (Microsoft Corporation)
R1 mnmdd; C:\WINCZ\system32\Drivers\mnmdd.sys [4224 2006-03-02] (Microsoft Corporation)
S3 Modem; C:\WINCZ\system32\Drivers\Modem.sys [30080 2008-04-14] (Microsoft Corporation)
R1 Mouclass; C:\WINCZ\System32\DRIVERS\mouclass.sys [23040 2008-04-14] (Microsoft Corporation)
S3 mouhid; C:\WINCZ\System32\DRIVERS\mouhid.sys [12160 2001-10-24] (Microsoft Corporation)
R0 MountMgr; C:\WINCZ\system32\Drivers\MountMgr.sys [42368 2008-04-13] (Microsoft Corporation)
R3 MRxDAV; C:\WINCZ\System32\DRIVERS\mrxdav.sys [180608 2008-04-13] (Microsoft Corporation)
R1 MRxSmb; C:\WINCZ\System32\DRIVERS\mrxsmb.sys [456576 2008-04-13] (Microsoft Corporation)
R1 Msfs; C:\WINCZ\system32\Drivers\Msfs.sys [19072 2008-04-13] (Microsoft Corporation)
S3 MSKSSRV; C:\WINCZ\System32\drivers\MSKSSRV.sys [7552 2008-04-13] (Microsoft Corporation)
S3 MSPCLOCK; C:\WINCZ\System32\drivers\MSPCLOCK.sys [5376 2008-04-13] (Microsoft Corporation)
S3 MSPQM; C:\WINCZ\System32\drivers\MSPQM.sys [4992 2008-04-13] (Microsoft Corporation)
R3 mssmbios; C:\WINCZ\System32\DRIVERS\mssmbios.sys [15488 2008-04-13] (Microsoft Corporation)
S3 MSTEE; C:\WINCZ\System32\drivers\MSTEE.sys [5504 2008-04-13] (Microsoft Corporation)
R0 Mup; C:\WINCZ\system32\Drivers\Mup.sys [105344 2008-04-13] (Microsoft Corporation)
S3 NABTSFEC; C:\WINCZ\System32\DRIVERS\NABTSFEC.sys [85248 2008-04-13] (Microsoft Corporation)
R0 NDIS; C:\WINCZ\system32\Drivers\NDIS.sys [182656 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\WINCZ\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NdisTapi; C:\WINCZ\System32\DRIVERS\ndistapi.sys [10112 2008-04-13] (Microsoft Corporation)
R3 Ndisuio; C:\WINCZ\System32\DRIVERS\ndisuio.sys [14592 2008-04-13] (Microsoft Corporation)
R3 NdisWan; C:\WINCZ\System32\DRIVERS\ndiswan.sys [91520 2008-04-13] (Microsoft Corporation)
R3 NDProxy; C:\WINCZ\system32\Drivers\NDProxy.sys [40576 2008-04-13] (Microsoft Corporation)
R1 NetBIOS; C:\WINCZ\System32\DRIVERS\netbios.sys [34688 2008-04-13] (Microsoft Corporation)
R1 NetBT; C:\WINCZ\System32\DRIVERS\netbt.sys [162816 2008-04-13] (Microsoft Corporation)
R3 NIC1394; C:\WINCZ\System32\DRIVERS\nic1394.sys [61824 2008-04-13] (Microsoft Corporation)
R1 Npfs; C:\WINCZ\system32\Drivers\Npfs.sys [30848 2008-04-13] (Microsoft Corporation)
R4 Ntfs; C:\WINCZ\system32\Drivers\Ntfs.sys [574976 2008-04-13] (Microsoft Corporation)
R1 Null; C:\WINCZ\system32\Drivers\Null.sys [2944 2006-03-02] (Microsoft Corporation)
R3 nv; C:\WINCZ\System32\DRIVERS\nv4_mini.sys [3644160 2006-03-06] (NVIDIA Corporation)
S3 NwlnkFlt; C:\WINCZ\System32\DRIVERS\nwlnkflt.sys [12416 2006-03-02] (Microsoft Corporation)
S3 NwlnkFwd; C:\WINCZ\System32\DRIVERS\nwlnkfwd.sys [32512 2006-03-02] (Microsoft Corporation)
R0 ohci1394; C:\WINCZ\System32\DRIVERS\ohci1394.sys [61696 2008-04-13] (Microsoft Corporation)
S3 Parport; C:\WINCZ\system32\Drivers\Parport.sys [80000 2008-04-14] (Microsoft Corporation)
R0 PartMgr; C:\WINCZ\system32\Drivers\PartMgr.sys [19712 2008-04-13] (Microsoft Corporation)
S2 ParVdm; C:\WINCZ\system32\Drivers\ParVdm.sys [6784 2006-03-02] (Microsoft Corporation)
R0 PCI; C:\WINCZ\System32\DRIVERS\pci.sys [68736 2008-04-14] (Microsoft Corporation)
R0 PCIIde; C:\WINCZ\System32\DRIVERS\pciide.sys [3328 2001-10-24] (Microsoft Corporation)
R0 Pcmcia; C:\WINCZ\System32\DRIVERS\pcmcia.sys [120064 2008-04-14] (Microsoft Corporation)
R3 PptpMiniport; C:\WINCZ\System32\DRIVERS\raspptp.sys [48384 2008-04-13] (Microsoft Corporation)
R3 PSched; C:\WINCZ\System32\DRIVERS\psched.sys [69120 2008-04-13] (Microsoft Corporation)
R3 Ptilink; C:\WINCZ\System32\DRIVERS\ptilink.sys [17792 2006-03-02] (Parallel Technologies, Inc.)
R1 RasAcd; C:\WINCZ\System32\DRIVERS\rasacd.sys [8832 2006-03-02] (Microsoft Corporation)
R3 Rasl2tp; C:\WINCZ\System32\DRIVERS\rasl2tp.sys [51328 2008-04-13] (Microsoft Corporation)
R3 RasPppoe; C:\WINCZ\System32\DRIVERS\raspppoe.sys [41472 2008-04-13] (Microsoft Corporation)
R3 Raspti; C:\WINCZ\System32\DRIVERS\raspti.sys [16512 2006-03-02] (Microsoft Corporation)
R1 Rdbss; C:\WINCZ\System32\DRIVERS\rdbss.sys [175744 2008-04-13] (Microsoft Corporation)
R1 RDPCDD; C:\WINCZ\System32\DRIVERS\RDPCDD.sys [4224 2006-03-02] (Microsoft Corporation)
S3 RDPWD; C:\WINCZ\system32\Drivers\RDPWD.sys [139656 2008-04-14] (Microsoft Corporation)
R1 redbook; C:\WINCZ\System32\DRIVERS\redbook.sys [58496 2008-04-14] (Microsoft Corporation)
R2 s24trans; C:\WINCZ\System32\DRIVERS\s24trans.sys [13568 2005-11-28] (Intel Corporation) [File not signed]
S3 Secdrv; C:\WINCZ\System32\DRIVERS\secdrv.sys [20480 2008-04-13] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
S3 Serial; C:\WINCZ\system32\Drivers\Serial.sys [64256 2008-04-14] (Microsoft Corporation)
S1 Sfloppy; C:\WINCZ\system32\Drivers\Sfloppy.sys [11392 2008-04-13] (Microsoft Corporation)
S3 SLIP; C:\WINCZ\System32\DRIVERS\SLIP.sys [11136 2008-04-13] (Microsoft Corporation)
R3 SNC; C:\WINCZ\System32\DRIVERS\SonyNC.sys [20752 2001-08-17] (Sony Corporation)
S3 splitter; C:\WINCZ\System32\drivers\splitter.sys [6272 2008-04-13] (Microsoft Corporation)
R0 sr; C:\WINCZ\System32\DRIVERS\sr.sys [73344 2008-04-14] (Microsoft Corporation)
R3 Srv; C:\WINCZ\System32\DRIVERS\srv.sys [334848 2008-04-13] (Microsoft Corporation)
R3 STHDA; C:\WINCZ\System32\drivers\sthda.sys [1106888 2006-02-13] (SigmaTel, Inc.)
S3 streamip; C:\WINCZ\System32\DRIVERS\StreamIP.sys [15232 2008-04-13] (Microsoft Corporation)
R3 swenum; C:\WINCZ\System32\DRIVERS\swenum.sys [4352 2008-04-13] (Microsoft Corporation)
S3 swmidi; C:\WINCZ\System32\drivers\swmidi.sys [56576 2008-04-13] (Microsoft Corporation)
R3 sysaudio; C:\WINCZ\System32\drivers\sysaudio.sys [60800 2008-04-13] (Microsoft Corporation)
R1 Tcpip; C:\WINCZ\System32\DRIVERS\tcpip.sys [361344 2008-04-13] (Microsoft Corporation)
S3 TDPIPE; C:\WINCZ\system32\Drivers\TDPIPE.sys [12040 2008-04-14] (Microsoft Corporation)
S3 TDTCP; C:\WINCZ\system32\Drivers\TDTCP.sys [21896 2008-04-14] (Microsoft Corporation)
R1 TermDD; C:\WINCZ\System32\DRIVERS\termdd.sys [40840 2008-04-14] (Microsoft Corporation)
R3 Tosrfbd; C:\WINCZ\System32\Drivers\tosrfbd.sys [108800 2005-11-22] (TOSHIBA CORPORATION) [File not signed]
S1 Tosrfcom; C:\WINCZ\system32\Drivers\Tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
R3 Tosrfhid; C:\WINCZ\System32\DRIVERS\Tosrfhid.sys [62848 2005-12-01] (TOSHIBA Corporation.) [File not signed]
R3 Tosrfusb; C:\WINCZ\System32\Drivers\tosrfusb.sys [36736 2005-11-15] (TOSHIBA CORPORATION) [File not signed]
S4 Udfs; C:\WINCZ\system32\Drivers\Udfs.sys [66048 2008-04-13] (Microsoft Corporation)
R3 Update; C:\WINCZ\System32\DRIVERS\update.sys [384768 2008-04-13] (Microsoft Corporation)
R3 usbehci; C:\WINCZ\System32\DRIVERS\usbehci.sys [30208 2008-04-13] (Microsoft Corporation)
R3 usbhub; C:\WINCZ\System32\DRIVERS\usbhub.sys [59520 2008-04-13] (Microsoft Corporation)
S3 usbprint; C:\WINCZ\System32\DRIVERS\usbprint.sys [25856 2008-04-14] (Microsoft Corporation)
S3 usbscan; C:\WINCZ\System32\DRIVERS\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
R3 usbstor; C:\WINCZ\System32\DRIVERS\USBSTOR.SYS [26368 2008-04-13] (Microsoft Corporation)
R3 usbuhci; C:\WINCZ\System32\DRIVERS\usbuhci.sys [20608 2008-04-13] (Microsoft Corporation)
R3 usbvm321; C:\WINCZ\System32\Drivers\usbvm321.sys [234496 2005-12-29] (Vimicro Corporation)
S2 VgaSave; C:\WINCZ\System32\drivers\vga.sys [20992 2008-04-13] (Microsoft Corporation)
R0 VolSnap; C:\WINCZ\system32\Drivers\VolSnap.sys [52480 2008-04-14] (Microsoft Corporation)
R3 w39n51; C:\WINCZ\System32\DRIVERS\w39n51.sys [1428096 2005-12-04] (Intel® Corporation)
R3 Wanarp; C:\WINCZ\System32\DRIVERS\wanarp.sys [34560 2008-04-13] (Microsoft Corporation)
R3 wdmaud; C:\WINCZ\System32\drivers\wdmaud.sys [83072 2008-04-13] (Microsoft Corporation)
S3 WSTCODEC; C:\WINCZ\System32\DRIVERS\WSTCODEC.SYS [19200 2008-04-13] (Microsoft Corporation)
S2 DgiVecp; \??\C:\WINCZ\system32\Drivers\DgiVecp.sys [X]
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\WINCZ\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S2 SSPORT; \??\C:\WINCZ\system32\Drivers\SSPORT.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 19:20 - 2014-11-25 19:20 - 00033325 _____ () C:\Documents and Settings\Edík\Plocha\FRST.txt
2014-11-25 19:15 - 2014-11-25 19:15 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
2014-11-25 19:12 - 2014-11-25 19:20 - 00000000 ____D () C:\FRST
2014-11-25 19:11 - 2014-11-25 19:11 - 01110016 _____ (Farbar) C:\Documents and Settings\Edík\Plocha\FRST.exe
2014-11-25 17:49 - 2014-11-25 17:49 - 00000000 ____D () C:\Program Files\Common Files\PDF Architect
2014-11-25 17:01 - 2014-11-25 17:01 - 00000686 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-11-25 16:44 - 2014-11-25 16:44 - 00291352 _____ (AVAST Software) C:\WINCZ\system32\aswBoot.exe
2014-11-25 16:44 - 2014-11-25 16:44 - 00043152 _____ (AVAST Software) C:\WINCZ\avastSS.scr
2014-11-25 16:44 - 2014-11-25 16:44 - 00001735 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-11-25 16:36 - 2014-11-25 16:36 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha\Původní data aplikace Firefox
2014-11-21 21:40 - 2014-11-21 21:40 - 00000734 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000728 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 18:51 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 19:20 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha
2014-11-25 19:20 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Local Settings\Temp
2014-11-25 19:19 - 2012-08-01 17:07 - 00000000 ___HD () C:\Documents and Settings\Edík\Local Settings\Data aplikací
2014-11-25 19:17 - 2012-08-08 15:47 - 00000000 ____D () C:\Documents and Settings\Edík\Dokumenty\Stažené soubory
2014-11-25 18:24 - 2013-12-14 14:44 - 00000910 _____ () C:\WINCZ\Tasks\Adobe Flash Player Updater.job
2014-11-25 17:51 - 2012-08-01 18:31 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-11-25 17:50 - 2012-08-01 17:07 - 00000000 ___RD () C:\Documents and Settings\Edík\Dokumenty
2014-11-25 17:12 - 2012-08-01 16:48 - 00433164 _____ () C:\WINCZ\WindowsUpdate.log
2014-11-25 17:11 - 2012-09-05 17:34 - 00000364 ____H () C:\WINCZ\Tasks\avast! Emergency Update.job
2014-11-25 17:06 - 2012-08-01 18:36 - 00000159 _____ () C:\WINCZ\wiadebug.log
2014-11-25 17:06 - 2012-08-01 18:36 - 00000050 _____ () C:\WINCZ\wiaservc.log
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Temp
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ
2014-11-25 17:06 - 2012-08-01 17:55 - 00045378 _____ () C:\WINCZ\system32\nvapps.xml
2014-11-25 17:06 - 2012-08-01 17:05 - 00000006 ____H () C:\WINCZ\Tasks\SA.DAT
2014-11-25 17:04 - 2012-08-01 17:07 - 00000272 ___SH () C:\Documents and Settings\Edík\ntuser.ini
2014-11-25 17:04 - 2012-08-01 17:05 - 00032366 _____ () C:\WINCZ\SchedLgU.Txt
2014-11-25 17:02 - 2013-12-14 11:06 - 00000000 ____D () C:\Program Files\PDFCreator
2014-11-25 17:02 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík
2014-11-25 17:01 - 2012-08-01 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-11-25 16:44 - 2014-08-01 19:59 - 00024184 _____ () C:\WINCZ\system32\Drivers\aswHwid.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00206248 _____ () C:\WINCZ\system32\Drivers\aswVmm.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00070384 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswMonFlt.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00049944 _____ () C:\WINCZ\system32\Drivers\aswRvrt.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00787800 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsnx.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00423784 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsp.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00057928 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswTdi.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00055240 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswRdr.sys
2014-11-25 05:32 - 2012-08-08 20:36 - 00011264 _____ () C:\Documents and Settings\Edík\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-24 17:06 - 2006-03-02 13:00 - 00013646 _____ () C:\WINCZ\system32\wpa.dbl
2014-11-21 21:24 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Help
2014-11-21 21:19 - 2013-12-25 14:59 - 00002337 _____ () C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
2014-11-21 21:13 - 2013-12-25 14:58 - 00000000 ____D () C:\Program Files\Nokia
2014-11-21 20:25 - 2012-08-08 16:58 - 00701104 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerApp.exe
2014-11-21 20:25 - 2012-08-08 16:58 - 00071344 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerCPLApp.cpl
2014-11-21 19:12 - 2012-08-27 20:08 - 00002561 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Word.lnk
2014-10-26 06:01 - 2012-08-01 18:32 - 00714754 _____ () C:\WINCZ\system32\PerfStringBackup.INI
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINCZ\explorer.exe => File is digitally signed
C:\WINCZ\system32\winlogon.exe => File is digitally signed
C:\WINCZ\system32\svchost.exe => File is digitally signed
C:\WINCZ\system32\services.exe => File is digitally signed
C:\WINCZ\system32\User32.dll => File is digitally signed
C:\WINCZ\system32\userinit.exe => File is digitally signed
C:\WINCZ\system32\rpcss.dll => File is digitally signed
C:\WINCZ\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (VAIO) (Fixed) (Total:46.57 GB) (Free:6.5 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (VAIO) (Fixed) (Total:39.6 GB) (Free:30.75 GB) NTFS
Available physical RAM: 463.99 MB
Total physical RAM: 1022.11 MB
Percentage of memory in use: 54%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 93.2 GB) (Disk ID: DCDCFE52)
Partition 1: (Not Active) - (Size=7 GB) - (Type=12)
Partition 2: (Active) - (Size=46.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=39.6 GB) - (Type=OF Extended)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINCZ\Tasks\Adobe Flash Player Updater.job => C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINCZ\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security 2012 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: AVG Internet Security 2012 (Disabled) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Edk\Plocha" je 19 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINCZ\\system32\\dpvsetup.exe"="C:\\WINCZ\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINCZ\\system32\\rundll32.exe"="C:\\WINCZ\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Zdravím!
Spusťte nejprve tuto utilitu:
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Dobrý den,
snad jsem to zvládlprotože po zadání clean se pc celé resetovalo a pote vypadlo toto
# AdwCleaner v4.102 - Report created 25/11/2014 at 19:42:15
# Updated 23/11/2014 by Xplode
# Database : 2014-11-23.7 [Local]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Edík - EDA
# Running from : C:\Documents and Settings\Edík\Plocha\adwcleaner_4.102.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\Edík\Data aplikací\pdfforge
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
***** [ Browsers ] *****
-\\ Internet Explorer v6.0.2900.5512
-\\ Mozilla Firefox v33.1.1 (x86 cs)
*************************
AdwCleaner[R0].txt - [1049 octets] - [25/11/2014 19:39:56]
AdwCleaner[S0].txt - [978 octets] - [25/11/2014 19:42:15]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1037 octets] ##########
snad jsem to zvládlprotože po zadání clean se pc celé resetovalo a pote vypadlo toto
# AdwCleaner v4.102 - Report created 25/11/2014 at 19:42:15
# Updated 23/11/2014 by Xplode
# Database : 2014-11-23.7 [Local]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Edík - EDA
# Running from : C:\Documents and Settings\Edík\Plocha\adwcleaner_4.102.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\Edík\Data aplikací\pdfforge
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
***** [ Browsers ] *****
-\\ Internet Explorer v6.0.2900.5512
-\\ Mozilla Firefox v33.1.1 (x86 cs)
*************************
AdwCleaner[R0].txt - [1049 octets] - [25/11/2014 19:39:56]
AdwCleaner[S0].txt - [978 octets] - [25/11/2014 19:42:15]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1037 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Zde je aktuální log
děkuji za pomoc eda
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-11-2014
Ran by Edík (administrator) on EDA on 25-11-2014 20:35:05
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\WINCZ\system32\smss.exe
(Microsoft Corporation) C:\WINCZ\system32\winlogon.exe
(Microsoft Corporation) C:\WINCZ\system32\services.exe
(Microsoft Corporation) C:\WINCZ\system32\lsass.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
(Intel Corporation ) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINCZ\explorer.exe
(Microsoft Corporation) C:\WINCZ\system32\spoolsv.exe
(NVIDIA Corporation) C:\WINCZ\system32\nvsvc32.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\wscntfy.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\ctfmon.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Nokia.) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
(Microsoft Corporation) C:\WINCZ\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINCZ\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [ISBMgr.exe] => C:\Program Files\Sony\ISB Utility\ISBMgr.exe [32768 2004-02-20] (Sony Corporation)
HKLM\...\Run: [Switcher.exe] => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [176128 2006-02-14] (Sony Corporation)
HKLM\...\Run: [SonyPowerCfg] => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [217088 2005-12-13] (Sony Corporation)
HKLM\...\Run: [VAIOCameraUtility] => C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe [69632 2005-12-27] (Sony Corporation)
HKLM\...\Run: [VAIO Update 2] => C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe [151552 2005-10-11] (Sony Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-25] (AVAST Software)
HKLM\...\Run: [Samsung PanelMgr] => C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe [618496 2010-06-07] ()
HKLM\...\Winlogon: [Userinit] C:\WINCZ\system32\userinit.exe,
HKLM\...\Winlogon: [Shell] Explorer.exe [x ] ()
HKLM\...\Winlogon: [UIHost] C:\WINCZ\system32\logonui.exe [515072 2008-04-14] (Microsoft Corporation)
Winlogon\Notify\crypt32chain: C:\WINCZ\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\WINCZ\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\WINCZ\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\dimsntfy: C:\WINCZ\System32\dimsntfy.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\WINCZ\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\WINCZ\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\VESWinlogon: C:\WINCZ\system32\VESWinlogon.dll (Sony Corporation)
Winlogon\Notify\wlballoon: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4826904 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [PC Suite Tray] => C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe [695808 2007-12-10] ()
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe [1294336 2007-11-07] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINCZ\system32\blank.htm
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-1659004503-152049171-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINCZ\system32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINCZ\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file://C:\Program Files\AutoCAD 2002\AcDcToday.ocx
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file://C:\Program Files\AutoCAD 2002\InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file://C:\Program Files\AutoCAD 2002\InstFred.ocx
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file://C:\Program Files\AutoCAD 2002\AcPreview.ocx
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINCZ\system32\mshtml.dll (Microsoft Corporation)
Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINCZ\system32\wiascr.dll (Microsoft Corporation)
Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINCZ\system32\shell32.dll [8465408 2008-04-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Edík\Data aplikací\Mozilla\Firefox\Profiles\zzofxf9m.default-1416929801546
FF Plugin: @adobe.com/FlashPlayer -> C:\WINCZ\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin: @videolan.org/vlc,version=2.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-09-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440 2014-11-21] (Adobe Systems Incorporated)
S4 Alerter; C:\WINCZ\system32\alrsvc.dll [17408 2008-04-14] (Microsoft Corporation)
R3 ALG; C:\WINCZ\System32\alg.exe [44544 2008-04-14] (Microsoft Corporation)
R2 AudioSrv; C:\WINCZ\System32\audiosrv.dll [42496 2008-04-14] (Microsoft Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R3 BITS; C:\WINCZ\system32\qmgr.dll [409088 2008-04-14] (Microsoft Corporation)
S2 Browser; C:\WINCZ\System32\browser.dll [77824 2008-04-14] (Microsoft Corporation)
S3 CiSvc; C:\WINCZ\system32\cisvc.exe [5632 2008-04-14] (Microsoft Corporation)
S4 ClipSrv; C:\WINCZ\system32\clipsrv.exe [33280 2008-04-14] (Microsoft Corporation)
S3 COMSysApp; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
R2 CryptSvc; C:\WINCZ\System32\cryptsvc.dll [62464 2008-04-14] (Microsoft Corporation)
R2 DcomLaunch; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
R2 Dhcp; C:\WINCZ\System32\dhcpcsvc.dll [125952 2008-04-14] (Microsoft Corporation)
S3 dmadmin; C:\WINCZ\System32\dmadmin.exe [225280 2008-04-14] (Microsoft Corp., Veritas Software)
S3 dmserver; C:\WINCZ\System32\dmserver.dll [24064 2008-04-14] (Microsoft Corp.)
R2 Dnscache; C:\WINCZ\System32\dnsrslvr.dll [45568 2008-04-14] (Microsoft Corporation)
S3 Dot3svc; C:\WINCZ\System32\dot3svc.dll [132608 2008-04-14] (Microsoft Corporation)
S3 EapHost; C:\WINCZ\System32\eapsvc.dll [33792 2008-04-14] (Microsoft Corporation)
R2 ERSvc; C:\WINCZ\System32\ersvc.dll [23040 2008-04-14] (Microsoft Corporation)
R2 Eventlog; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R3 EventSystem; C:\WINCZ\system32\es.dll [246272 2008-04-14] (Microsoft Corporation)
R2 EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [114753 2005-11-28] (Intel Corporation) [File not signed]
R3 FastUserSwitchingCompatibility; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 helpsvc; C:\WINCZ\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400 2008-04-14] (Microsoft Corporation)
S3 hkmsvc; C:\WINCZ\System32\kmsvc.dll [61440 2008-04-14] (Microsoft Corporation)
S3 HTTPFilter; C:\WINCZ\System32\w3ssl.dll [15872 2008-04-14] (Microsoft Corporation)
S3 ImapiService; C:\WINCZ\system32\imapi.exe [150528 2008-04-14] (Microsoft Corporation)
R2 lanmanserver; C:\WINCZ\System32\srvsvc.dll [96768 2008-04-14] (Microsoft Corporation)
R2 lanmanworkstation; C:\WINCZ\System32\wkssvc.dll [132096 2008-04-14] (Microsoft Corporation)
R2 LmHosts; C:\WINCZ\System32\lmhsvc.dll [13824 2008-04-14] (Microsoft Corporation)
S4 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed]
S4 Messenger; C:\WINCZ\System32\msgsvc.dll [33792 2008-04-14] (Microsoft Corporation)
S3 mnmsrvc; C:\WINCZ\system32\mnmsrvc.exe [32768 2008-04-14] (Microsoft Corporation)
S3 MSDTC; C:\WINCZ\system32\msdtc.exe [6144 2008-04-14] (Microsoft Corporation)
S3 MSIServer; C:\WINCZ\System32\msiexec.exe [78848 2008-04-14] (Microsoft Corporation)
S3 napagent; C:\WINCZ\System32\qagentrt.dll [293376 2008-04-14] (Microsoft Corporation)
S4 NetDDE; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S4 NetDDEdsdm; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S3 Netlogon; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R3 Netman; C:\WINCZ\System32\netman.dll [198144 2008-04-14] (Microsoft Corporation)
R3 Nla; C:\WINCZ\System32\mswsock.dll [247296 2008-04-14] (Microsoft Corporation)
S3 NtLmSsp; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 NtmsSvc; C:\WINCZ\system32\ntmssvc.dll [435712 2008-04-14] (Microsoft Corporation)
R2 NVSvc; C:\WINCZ\system32\nvsvc32.exe [143428 2006-03-06] (NVIDIA Corporation)
R2 PlugPlay; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R2 PolicyAgent; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 ProtectedStorage; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 RasAuto; C:\WINCZ\System32\rasauto.dll [88576 2008-04-14] (Microsoft Corporation)
S3 RasMan; C:\WINCZ\System32\rasmans.dll [186368 2008-04-14] (Microsoft Corporation)
S3 RDSessMgr; C:\WINCZ\system32\sessmgr.exe [141824 2008-04-14] (Microsoft Corporation)
R2 RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [217164 2005-11-28] (Intel Corporation) [File not signed]
S4 RemoteAccess; C:\WINCZ\System32\mprdim.dll [53248 2008-04-14] (Microsoft Corporation)
S3 RpcLocator; C:\WINCZ\system32\locator.exe [75264 2008-04-14] (Microsoft Corporation)
R2 RpcSs; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
S3 RSVP; C:\WINCZ\system32\rsvp.exe [132608 2006-03-02] (Microsoft Corporation)
R2 S24EventMonitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [540745 2005-11-28] (Intel Corporation ) [File not signed]
R2 SamSs; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 SCardSvr; C:\WINCZ\System32\SCardSvr.exe [97792 2008-04-14] (Microsoft Corporation)
R2 Schedule; C:\WINCZ\system32\schedsvc.dll [192512 2008-04-14] (Microsoft Corporation)
R2 seclogon; C:\WINCZ\System32\seclogon.dll [18944 2008-04-14] (Microsoft Corporation)
R2 SENS; C:\WINCZ\system32\sens.dll [39424 2008-04-14] (Microsoft Corporation)
R3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [353280 2007-12-10] (Nokia.) [File not signed]
R2 SharedAccess; C:\WINCZ\System32\ipnathlp.dll [329728 2008-04-14] (Microsoft Corporation)
R2 ShellHWDetection; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 Spooler; C:\WINCZ\system32\spoolsv.exe [57856 2008-04-14] (Microsoft Corporation)
R2 srservice; C:\WINCZ\system32\srsvc.dll [171008 2008-04-14] (Microsoft Corporation)
R3 SSDPSRV; C:\WINCZ\System32\ssdpsrv.dll [71680 2008-04-14] (Microsoft Corporation)
R2 stisvc; C:\WINCZ\system32\wiaservc.dll [334336 2008-04-14] (Microsoft Corporation)
S3 SwPrv; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
S3 SysmonLog; C:\WINCZ\system32\smlogsvc.exe [90112 2008-04-14] (Microsoft Corporation)
S3 TapiSrv; C:\WINCZ\System32\tapisrv.dll [249856 2008-04-14] (Microsoft Corporation)
R3 TermService; C:\WINCZ\System32\termsrv.dll [295936 2008-04-14] (Microsoft Corporation)
R2 Themes; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 TrkWks; C:\WINCZ\system32\trkwks.dll [90112 2008-04-14] (Microsoft Corporation)
S3 upnphost; C:\WINCZ\System32\upnphost.dll [186368 2008-04-14] (Microsoft Corporation)
S3 UPS; C:\WINCZ\System32\ups.exe [18432 2008-04-14] (Microsoft Corporation)
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [153600 2005-05-20] (Sony Corporation) [File not signed]
S3 VSS; C:\WINCZ\System32\vssvc.exe [290816 2008-04-14] (Microsoft Corporation)
R2 W32Time; C:\WINCZ\system32\w32time.dll [176640 2008-04-14] (Microsoft Corporation)
R2 WebClient; C:\WINCZ\System32\webclnt.dll [68096 2008-04-14] (Microsoft Corporation)
R2 winmgmt; C:\WINCZ\system32\wbem\WMIsvc.dll [144896 2008-04-14] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINCZ\system32\mspmsnsv.dll [52224 2008-04-14] (Microsoft Corporation)
S3 WmiApSrv; C:\WINCZ\system32\wbem\wmiapsrv.exe [126464 2008-04-14] (Microsoft Corporation)
R2 wscsvc; C:\WINCZ\system32\wscsvc.dll [80896 2008-04-14] (Microsoft Corporation)
R2 wuauserv; C:\WINCZ\system32\wuauserv.dll [6656 2008-04-14] (Microsoft Corporation)
R2 WZCSVC; C:\WINCZ\System32\wzcsvc.dll [483840 2008-04-14] (Microsoft Corporation)
S3 xmlprov; C:\WINCZ\System32\xmlprov.dll [129024 2008-04-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 ACPI; C:\WINCZ\System32\DRIVERS\ACPI.sys [188288 2008-04-14] (Microsoft Corporation)
R0 ACPIEC; C:\WINCZ\System32\DRIVERS\ACPIEC.sys [11776 2006-03-02] (Microsoft Corporation)
S3 aec; C:\WINCZ\System32\drivers\aec.sys [142592 2008-04-13] (Microsoft Corporation)
R2 AegisP; C:\WINCZ\System32\DRIVERS\AegisP.sys [21275 2012-08-01] (Meetinghouse Data Communications) [File not signed]
R1 AFD; C:\WINCZ\System32\drivers\afd.sys [138112 2008-04-13] (Microsoft Corporation)
R3 Arp1394; C:\WINCZ\System32\DRIVERS\arp1394.sys [60800 2008-04-13] (Microsoft Corporation)
R2 aswHwid; C:\WINCZ\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R2 aswMonFlt; C:\WINCZ\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R1 AswRdr; C:\WINCZ\system32\drivers\aswRdr.sys [55240 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINCZ\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINCZ\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINCZ\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
R1 aswTdi; C:\WINCZ\system32\drivers\aswTdi.sys [57928 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINCZ\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
S3 AsyncMac; C:\WINCZ\System32\DRIVERS\asyncmac.sys [14336 2008-04-13] (Microsoft Corporation)
R0 atapi; C:\WINCZ\System32\DRIVERS\atapi.sys [96512 2008-04-13] (Microsoft Corporation)
S3 Atmarpc; C:\WINCZ\System32\DRIVERS\atmarpc.sys [59904 2008-04-13] (Microsoft Corporation)
R3 audstub; C:\WINCZ\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
R1 Beep; C:\WINCZ\system32\Drivers\Beep.sys [4224 2006-03-02] (Microsoft Corporation)
S4 cbidf2k; C:\WINCZ\system32\Drivers\cbidf2k.sys [13952 2006-03-02] (Microsoft Corporation)
S3 CCDECODE; C:\WINCZ\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Cdaudio; C:\WINCZ\system32\Drivers\Cdaudio.sys [18688 2006-03-02] (Microsoft Corporation)
R4 Cdfs; C:\WINCZ\system32\Drivers\Cdfs.sys [63744 2008-04-13] (Microsoft Corporation)
R1 Cdrom; C:\WINCZ\System32\DRIVERS\cdrom.sys [62976 2008-04-13] (Microsoft Corporation)
R3 CmBatt; C:\WINCZ\System32\DRIVERS\CmBatt.sys [13952 2008-04-13] (Microsoft Corporation)
R0 Compbatt; C:\WINCZ\System32\DRIVERS\compbatt.sys [10240 2008-04-13] (Microsoft Corporation)
R0 Disk; C:\WINCZ\System32\DRIVERS\disk.sys [36352 2008-04-13] (Microsoft Corporation)
S4 dmboot; C:\WINCZ\System32\drivers\dmboot.sys [800000 2008-04-14] (Microsoft Corp., Veritas Software)
R1 DMICall; C:\WINCZ\System32\DRIVERS\DMICall.sys [3952 2000-12-05] (Sony Corporation)
S4 dmio; C:\WINCZ\System32\drivers\dmio.sys [153856 2008-04-14] (Microsoft Corp., Veritas Software)
S4 dmload; C:\WINCZ\System32\drivers\dmload.sys [5888 2006-03-02] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\WINCZ\System32\drivers\DMusic.sys [52864 2008-04-13] (Microsoft Corporation)
S3 drmkaud; C:\WINCZ\System32\drivers\drmkaud.sys [2944 2008-04-13] (Microsoft Corporation)
S4 Fastfat; C:\WINCZ\system32\Drivers\Fastfat.sys [143744 2008-04-13] (Microsoft Corporation)
S1 Fdc; C:\WINCZ\system32\Drivers\Fdc.sys [27392 2008-04-13] (Microsoft Corporation)
R1 Fips; C:\WINCZ\system32\Drivers\Fips.sys [44544 2008-04-14] (Microsoft Corporation)
S1 Flpydisk; C:\WINCZ\system32\Drivers\Flpydisk.sys [20480 2008-04-13] (Microsoft Corporation)
R0 FltMgr; C:\WINCZ\System32\drivers\fltmgr.sys [129792 2008-04-13] (Microsoft Corporation)
U1 Fs_Rec; C:\WINCZ\system32\Drivers\Fs_Rec.sys [7936 2006-03-02] (Microsoft Corporation)
R0 Ftdisk; C:\WINCZ\System32\DRIVERS\ftdisk.sys [125184 2006-03-02] (Microsoft Corporation)
R3 Gpc; C:\WINCZ\System32\DRIVERS\msgpc.sys [35072 2008-04-13] (Microsoft Corporation)
R3 HDAudBus; C:\WINCZ\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
S3 HidUsb; C:\WINCZ\System32\DRIVERS\hidusb.sys [10368 2008-04-14] (Microsoft Corporation)
R3 HTTP; C:\WINCZ\System32\Drivers\HTTP.sys [264832 2008-04-13] (Microsoft Corporation)
R1 i8042prt; C:\WINCZ\System32\DRIVERS\i8042prt.sys [52096 2008-04-14] (Microsoft Corporation)
R1 Imapi; C:\WINCZ\System32\DRIVERS\imapi.sys [42112 2008-04-13] (Microsoft Corporation)
R1 intelppm; C:\WINCZ\System32\DRIVERS\intelppm.sys [40192 2008-04-14] (Microsoft Corporation)
S3 Ip6Fw; C:\WINCZ\System32\drivers\ip6fw.sys [36608 2008-04-13] (Microsoft Corporation)
S3 IpFilterDriver; C:\WINCZ\System32\DRIVERS\ipfltdrv.sys [32896 2006-03-02] (Microsoft Corporation)
S3 IpInIp; C:\WINCZ\System32\DRIVERS\ipinip.sys [20864 2008-04-13] (Microsoft Corporation)
R3 IpNat; C:\WINCZ\System32\DRIVERS\ipnat.sys [152832 2008-04-13] (Microsoft Corporation)
R1 IPSec; C:\WINCZ\System32\DRIVERS\ipsec.sys [75264 2008-04-13] (Microsoft Corporation)
S3 IRENUM; C:\WINCZ\System32\DRIVERS\irenum.sys [11264 2008-04-13] (Microsoft Corporation)
R0 isapnp; C:\WINCZ\System32\DRIVERS\isapnp.sys [37248 2008-04-14] (Microsoft Corporation)
R1 Kbdclass; C:\WINCZ\System32\DRIVERS\kbdclass.sys [24576 2008-04-14] (Microsoft Corporation)
R3 kmixer; C:\WINCZ\System32\drivers\kmixer.sys [172416 2008-04-13] (Microsoft Corporation)
R0 KSecDD; C:\WINCZ\system32\Drivers\KSecDD.sys [92288 2008-04-13] (Microsoft Corporation)
R1 mnmdd; C:\WINCZ\system32\Drivers\mnmdd.sys [4224 2006-03-02] (Microsoft Corporation)
S3 Modem; C:\WINCZ\system32\Drivers\Modem.sys [30080 2008-04-14] (Microsoft Corporation)
R1 Mouclass; C:\WINCZ\System32\DRIVERS\mouclass.sys [23040 2008-04-14] (Microsoft Corporation)
S3 mouhid; C:\WINCZ\System32\DRIVERS\mouhid.sys [12160 2001-10-24] (Microsoft Corporation)
R0 MountMgr; C:\WINCZ\system32\Drivers\MountMgr.sys [42368 2008-04-13] (Microsoft Corporation)
R3 MRxDAV; C:\WINCZ\System32\DRIVERS\mrxdav.sys [180608 2008-04-13] (Microsoft Corporation)
R1 MRxSmb; C:\WINCZ\System32\DRIVERS\mrxsmb.sys [456576 2008-04-13] (Microsoft Corporation)
R1 Msfs; C:\WINCZ\system32\Drivers\Msfs.sys [19072 2008-04-13] (Microsoft Corporation)
S3 MSKSSRV; C:\WINCZ\System32\drivers\MSKSSRV.sys [7552 2008-04-13] (Microsoft Corporation)
S3 MSPCLOCK; C:\WINCZ\System32\drivers\MSPCLOCK.sys [5376 2008-04-13] (Microsoft Corporation)
S3 MSPQM; C:\WINCZ\System32\drivers\MSPQM.sys [4992 2008-04-13] (Microsoft Corporation)
R3 mssmbios; C:\WINCZ\System32\DRIVERS\mssmbios.sys [15488 2008-04-13] (Microsoft Corporation)
S3 MSTEE; C:\WINCZ\System32\drivers\MSTEE.sys [5504 2008-04-13] (Microsoft Corporation)
R0 Mup; C:\WINCZ\system32\Drivers\Mup.sys [105344 2008-04-13] (Microsoft Corporation)
S3 NABTSFEC; C:\WINCZ\System32\DRIVERS\NABTSFEC.sys [85248 2008-04-13] (Microsoft Corporation)
R0 NDIS; C:\WINCZ\system32\Drivers\NDIS.sys [182656 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\WINCZ\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NdisTapi; C:\WINCZ\System32\DRIVERS\ndistapi.sys [10112 2008-04-13] (Microsoft Corporation)
R3 Ndisuio; C:\WINCZ\System32\DRIVERS\ndisuio.sys [14592 2008-04-13] (Microsoft Corporation)
R3 NdisWan; C:\WINCZ\System32\DRIVERS\ndiswan.sys [91520 2008-04-13] (Microsoft Corporation)
R3 NDProxy; C:\WINCZ\system32\Drivers\NDProxy.sys [40576 2008-04-13] (Microsoft Corporation)
R1 NetBIOS; C:\WINCZ\System32\DRIVERS\netbios.sys [34688 2008-04-13] (Microsoft Corporation)
R1 NetBT; C:\WINCZ\System32\DRIVERS\netbt.sys [162816 2008-04-13] (Microsoft Corporation)
R3 NIC1394; C:\WINCZ\System32\DRIVERS\nic1394.sys [61824 2008-04-13] (Microsoft Corporation)
R1 Npfs; C:\WINCZ\system32\Drivers\Npfs.sys [30848 2008-04-13] (Microsoft Corporation)
R4 Ntfs; C:\WINCZ\system32\Drivers\Ntfs.sys [574976 2008-04-13] (Microsoft Corporation)
R1 Null; C:\WINCZ\system32\Drivers\Null.sys [2944 2006-03-02] (Microsoft Corporation)
R3 nv; C:\WINCZ\System32\DRIVERS\nv4_mini.sys [3644160 2006-03-06] (NVIDIA Corporation)
S3 NwlnkFlt; C:\WINCZ\System32\DRIVERS\nwlnkflt.sys [12416 2006-03-02] (Microsoft Corporation)
S3 NwlnkFwd; C:\WINCZ\System32\DRIVERS\nwlnkfwd.sys [32512 2006-03-02] (Microsoft Corporation)
R0 ohci1394; C:\WINCZ\System32\DRIVERS\ohci1394.sys [61696 2008-04-13] (Microsoft Corporation)
S3 Parport; C:\WINCZ\system32\Drivers\Parport.sys [80000 2008-04-14] (Microsoft Corporation)
R0 PartMgr; C:\WINCZ\system32\Drivers\PartMgr.sys [19712 2008-04-13] (Microsoft Corporation)
S2 ParVdm; C:\WINCZ\system32\Drivers\ParVdm.sys [6784 2006-03-02] (Microsoft Corporation)
R0 PCI; C:\WINCZ\System32\DRIVERS\pci.sys [68736 2008-04-14] (Microsoft Corporation)
R0 PCIIde; C:\WINCZ\System32\DRIVERS\pciide.sys [3328 2001-10-24] (Microsoft Corporation)
R0 Pcmcia; C:\WINCZ\System32\DRIVERS\pcmcia.sys [120064 2008-04-14] (Microsoft Corporation)
R3 PptpMiniport; C:\WINCZ\System32\DRIVERS\raspptp.sys [48384 2008-04-13] (Microsoft Corporation)
R3 PSched; C:\WINCZ\System32\DRIVERS\psched.sys [69120 2008-04-13] (Microsoft Corporation)
R3 Ptilink; C:\WINCZ\System32\DRIVERS\ptilink.sys [17792 2006-03-02] (Parallel Technologies, Inc.)
R1 RasAcd; C:\WINCZ\System32\DRIVERS\rasacd.sys [8832 2006-03-02] (Microsoft Corporation)
R3 Rasl2tp; C:\WINCZ\System32\DRIVERS\rasl2tp.sys [51328 2008-04-13] (Microsoft Corporation)
R3 RasPppoe; C:\WINCZ\System32\DRIVERS\raspppoe.sys [41472 2008-04-13] (Microsoft Corporation)
R3 Raspti; C:\WINCZ\System32\DRIVERS\raspti.sys [16512 2006-03-02] (Microsoft Corporation)
R1 Rdbss; C:\WINCZ\System32\DRIVERS\rdbss.sys [175744 2008-04-13] (Microsoft Corporation)
R1 RDPCDD; C:\WINCZ\System32\DRIVERS\RDPCDD.sys [4224 2006-03-02] (Microsoft Corporation)
S3 RDPWD; C:\WINCZ\system32\Drivers\RDPWD.sys [139656 2008-04-14] (Microsoft Corporation)
R1 redbook; C:\WINCZ\System32\DRIVERS\redbook.sys [58496 2008-04-14] (Microsoft Corporation)
R2 s24trans; C:\WINCZ\System32\DRIVERS\s24trans.sys [13568 2005-11-28] (Intel Corporation) [File not signed]
S3 Secdrv; C:\WINCZ\System32\DRIVERS\secdrv.sys [20480 2008-04-13] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
S3 Serial; C:\WINCZ\system32\Drivers\Serial.sys [64256 2008-04-14] (Microsoft Corporation)
S1 Sfloppy; C:\WINCZ\system32\Drivers\Sfloppy.sys [11392 2008-04-13] (Microsoft Corporation)
S3 SLIP; C:\WINCZ\System32\DRIVERS\SLIP.sys [11136 2008-04-13] (Microsoft Corporation)
R3 SNC; C:\WINCZ\System32\DRIVERS\SonyNC.sys [20752 2001-08-17] (Sony Corporation)
S3 splitter; C:\WINCZ\System32\drivers\splitter.sys [6272 2008-04-13] (Microsoft Corporation)
R0 sr; C:\WINCZ\System32\DRIVERS\sr.sys [73344 2008-04-14] (Microsoft Corporation)
R3 Srv; C:\WINCZ\System32\DRIVERS\srv.sys [334848 2008-04-13] (Microsoft Corporation)
R3 STHDA; C:\WINCZ\System32\drivers\sthda.sys [1106888 2006-02-13] (SigmaTel, Inc.)
S3 streamip; C:\WINCZ\System32\DRIVERS\StreamIP.sys [15232 2008-04-13] (Microsoft Corporation)
R3 swenum; C:\WINCZ\System32\DRIVERS\swenum.sys [4352 2008-04-13] (Microsoft Corporation)
S3 swmidi; C:\WINCZ\System32\drivers\swmidi.sys [56576 2008-04-13] (Microsoft Corporation)
R3 sysaudio; C:\WINCZ\System32\drivers\sysaudio.sys [60800 2008-04-13] (Microsoft Corporation)
R1 Tcpip; C:\WINCZ\System32\DRIVERS\tcpip.sys [361344 2008-04-13] (Microsoft Corporation)
S3 TDPIPE; C:\WINCZ\system32\Drivers\TDPIPE.sys [12040 2008-04-14] (Microsoft Corporation)
S3 TDTCP; C:\WINCZ\system32\Drivers\TDTCP.sys [21896 2008-04-14] (Microsoft Corporation)
R1 TermDD; C:\WINCZ\System32\DRIVERS\termdd.sys [40840 2008-04-14] (Microsoft Corporation)
R3 Tosrfbd; C:\WINCZ\System32\Drivers\tosrfbd.sys [108800 2005-11-22] (TOSHIBA CORPORATION) [File not signed]
S1 Tosrfcom; C:\WINCZ\system32\Drivers\Tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
R3 Tosrfhid; C:\WINCZ\System32\DRIVERS\Tosrfhid.sys [62848 2005-12-01] (TOSHIBA Corporation.) [File not signed]
R3 Tosrfusb; C:\WINCZ\System32\Drivers\tosrfusb.sys [36736 2005-11-15] (TOSHIBA CORPORATION) [File not signed]
S4 Udfs; C:\WINCZ\system32\Drivers\Udfs.sys [66048 2008-04-13] (Microsoft Corporation)
R3 Update; C:\WINCZ\System32\DRIVERS\update.sys [384768 2008-04-13] (Microsoft Corporation)
R3 usbehci; C:\WINCZ\System32\DRIVERS\usbehci.sys [30208 2008-04-13] (Microsoft Corporation)
R3 usbhub; C:\WINCZ\System32\DRIVERS\usbhub.sys [59520 2008-04-13] (Microsoft Corporation)
S3 usbprint; C:\WINCZ\System32\DRIVERS\usbprint.sys [25856 2008-04-14] (Microsoft Corporation)
S3 usbscan; C:\WINCZ\System32\DRIVERS\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
R3 usbstor; C:\WINCZ\System32\DRIVERS\USBSTOR.SYS [26368 2008-04-13] (Microsoft Corporation)
R3 usbuhci; C:\WINCZ\System32\DRIVERS\usbuhci.sys [20608 2008-04-13] (Microsoft Corporation)
R3 usbvm321; C:\WINCZ\System32\Drivers\usbvm321.sys [234496 2005-12-29] (Vimicro Corporation)
S2 VgaSave; C:\WINCZ\System32\drivers\vga.sys [20992 2008-04-13] (Microsoft Corporation)
R0 VolSnap; C:\WINCZ\system32\Drivers\VolSnap.sys [52480 2008-04-14] (Microsoft Corporation)
R3 w39n51; C:\WINCZ\System32\DRIVERS\w39n51.sys [1428096 2005-12-04] (Intel® Corporation)
R3 Wanarp; C:\WINCZ\System32\DRIVERS\wanarp.sys [34560 2008-04-13] (Microsoft Corporation)
R3 wdmaud; C:\WINCZ\System32\drivers\wdmaud.sys [83072 2008-04-13] (Microsoft Corporation)
S3 WSTCODEC; C:\WINCZ\System32\DRIVERS\WSTCODEC.SYS [19200 2008-04-13] (Microsoft Corporation)
S2 DgiVecp; \??\C:\WINCZ\system32\Drivers\DgiVecp.sys [X]
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\WINCZ\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S2 SSPORT; \??\C:\WINCZ\system32\Drivers\SSPORT.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 20:32 - 2014-11-25 20:32 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
2014-11-25 19:39 - 2014-11-25 19:42 - 00000000 ____D () C:\AdwCleaner
2014-11-25 19:38 - 2014-11-25 19:38 - 02148864 _____ () C:\Documents and Settings\Edík\Plocha\adwcleaner_4.102.exe
2014-11-25 19:20 - 2014-11-25 20:35 - 00033201 _____ () C:\Documents and Settings\Edík\Plocha\FRST.txt
2014-11-25 19:12 - 2014-11-25 20:35 - 00000000 ____D () C:\FRST
2014-11-25 19:11 - 2014-11-25 19:11 - 01110016 _____ (Farbar) C:\Documents and Settings\Edík\Plocha\FRST.exe
2014-11-25 17:49 - 2014-11-25 17:49 - 00000000 ____D () C:\Program Files\Common Files\PDF Architect
2014-11-25 17:01 - 2014-11-25 17:01 - 00000686 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-11-25 16:44 - 2014-11-25 16:44 - 00291352 _____ (AVAST Software) C:\WINCZ\system32\aswBoot.exe
2014-11-25 16:44 - 2014-11-25 16:44 - 00043152 _____ (AVAST Software) C:\WINCZ\avastSS.scr
2014-11-25 16:44 - 2014-11-25 16:44 - 00001735 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-11-25 16:36 - 2014-11-25 16:36 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha\Původní data aplikace Firefox
2014-11-21 21:40 - 2014-11-21 21:40 - 00000734 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000728 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 18:51 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 20:35 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha
2014-11-25 20:35 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Local Settings\Temp
2014-11-25 20:34 - 2012-08-01 17:07 - 00000000 ___HD () C:\Documents and Settings\Edík\Local Settings\Data aplikací
2014-11-25 20:32 - 2012-08-08 15:47 - 00000000 ____D () C:\Documents and Settings\Edík\Dokumenty\Stažené soubory
2014-11-25 20:24 - 2013-12-14 14:44 - 00000910 _____ () C:\WINCZ\Tasks\Adobe Flash Player Updater.job
2014-11-25 19:49 - 2012-08-01 16:48 - 00435336 _____ () C:\WINCZ\WindowsUpdate.log
2014-11-25 19:44 - 2012-09-05 17:34 - 00000364 ____H () C:\WINCZ\Tasks\avast! Emergency Update.job
2014-11-25 19:44 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Temp
2014-11-25 19:43 - 2012-08-01 18:36 - 00000157 _____ () C:\WINCZ\wiadebug.log
2014-11-25 19:43 - 2012-08-01 18:36 - 00000050 _____ () C:\WINCZ\wiaservc.log
2014-11-25 19:43 - 2012-08-01 17:55 - 00045378 _____ () C:\WINCZ\system32\nvapps.xml
2014-11-25 19:43 - 2012-08-01 17:05 - 00000006 ____H () C:\WINCZ\Tasks\SA.DAT
2014-11-25 19:42 - 2012-08-01 17:07 - 00000272 ___SH () C:\Documents and Settings\Edík\ntuser.ini
2014-11-25 19:42 - 2012-08-01 17:05 - 00032366 _____ () C:\WINCZ\SchedLgU.Txt
2014-11-25 17:51 - 2012-08-01 18:31 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-11-25 17:50 - 2012-08-01 17:07 - 00000000 ___RD () C:\Documents and Settings\Edík\Dokumenty
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ
2014-11-25 17:02 - 2013-12-14 11:06 - 00000000 ____D () C:\Program Files\PDFCreator
2014-11-25 17:02 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík
2014-11-25 17:01 - 2012-08-01 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-11-25 16:44 - 2014-08-01 19:59 - 00024184 _____ () C:\WINCZ\system32\Drivers\aswHwid.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00206248 _____ () C:\WINCZ\system32\Drivers\aswVmm.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00070384 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswMonFlt.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00049944 _____ () C:\WINCZ\system32\Drivers\aswRvrt.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00787800 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsnx.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00423784 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsp.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00057928 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswTdi.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00055240 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswRdr.sys
2014-11-25 05:32 - 2012-08-08 20:36 - 00011264 _____ () C:\Documents and Settings\Edík\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-24 17:06 - 2006-03-02 13:00 - 00013646 _____ () C:\WINCZ\system32\wpa.dbl
2014-11-21 21:24 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Help
2014-11-21 21:19 - 2013-12-25 14:59 - 00002337 _____ () C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
2014-11-21 21:13 - 2013-12-25 14:58 - 00000000 ____D () C:\Program Files\Nokia
2014-11-21 20:25 - 2012-08-08 16:58 - 00701104 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerApp.exe
2014-11-21 20:25 - 2012-08-08 16:58 - 00071344 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerCPLApp.cpl
2014-11-21 19:12 - 2012-08-27 20:08 - 00002561 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Word.lnk
2014-10-26 06:01 - 2012-08-01 18:32 - 00714754 _____ () C:\WINCZ\system32\PerfStringBackup.INI
Some content of TEMP:
====================
C:\Documents and Settings\Edík\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\Edík\Local Settings\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINCZ\explorer.exe => File is digitally signed
C:\WINCZ\system32\winlogon.exe => File is digitally signed
C:\WINCZ\system32\svchost.exe => File is digitally signed
C:\WINCZ\system32\services.exe => File is digitally signed
C:\WINCZ\system32\User32.dll => File is digitally signed
C:\WINCZ\system32\userinit.exe => File is digitally signed
C:\WINCZ\system32\rpcss.dll => File is digitally signed
C:\WINCZ\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (VAIO) (Fixed) (Total:46.57 GB) (Free:6.56 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (VAIO) (Fixed) (Total:39.6 GB) (Free:30.75 GB) NTFS
Available physical RAM: 649.07 MB
Total physical RAM: 1022.11 MB
Percentage of memory in use: 36%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 93.2 GB) (Disk ID: DCDCFE52)
Partition 1: (Not Active) - (Size=7 GB) - (Type=12)
Partition 2: (Active) - (Size=46.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=39.6 GB) - (Type=OF Extended)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINCZ\Tasks\Adobe Flash Player Updater.job => C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINCZ\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security 2012 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: AVG Internet Security 2012 (Disabled) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Edk\Plocha" je 21 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINCZ\\system32\\dpvsetup.exe"="C:\\WINCZ\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINCZ\\system32\\rundll32.exe"="C:\\WINCZ\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
děkuji za pomoc eda
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-11-2014
Ran by Edík (administrator) on EDA on 25-11-2014 20:35:05
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\WINCZ\system32\smss.exe
(Microsoft Corporation) C:\WINCZ\system32\winlogon.exe
(Microsoft Corporation) C:\WINCZ\system32\services.exe
(Microsoft Corporation) C:\WINCZ\system32\lsass.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
(Intel Corporation ) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\WINCZ\explorer.exe
(Microsoft Corporation) C:\WINCZ\system32\spoolsv.exe
(NVIDIA Corporation) C:\WINCZ\system32\nvsvc32.exe
(Intel Corporation) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
(Microsoft Corporation) C:\WINCZ\system32\svchost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\wscntfy.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe
(Microsoft Corporation) C:\WINCZ\system32\ctfmon.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Nokia.) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
() C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
(Microsoft Corporation) C:\WINCZ\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINCZ\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [ISBMgr.exe] => C:\Program Files\Sony\ISB Utility\ISBMgr.exe [32768 2004-02-20] (Sony Corporation)
HKLM\...\Run: [Switcher.exe] => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [176128 2006-02-14] (Sony Corporation)
HKLM\...\Run: [SonyPowerCfg] => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [217088 2005-12-13] (Sony Corporation)
HKLM\...\Run: [VAIOCameraUtility] => C:\Program Files\Sony\VAIO Camera Utility\VCUServe.exe [69632 2005-12-27] (Sony Corporation)
HKLM\...\Run: [VAIO Update 2] => C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe [151552 2005-10-11] (Sony Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-25] (AVAST Software)
HKLM\...\Run: [Samsung PanelMgr] => C:\WINCZ\Samsung\PanelMgr\SSMMgr.exe [618496 2010-06-07] ()
HKLM\...\Winlogon: [Userinit] C:\WINCZ\system32\userinit.exe,
HKLM\...\Winlogon: [Shell] Explorer.exe [x ] ()
HKLM\...\Winlogon: [UIHost] C:\WINCZ\system32\logonui.exe [515072 2008-04-14] (Microsoft Corporation)
Winlogon\Notify\crypt32chain: C:\WINCZ\system32\crypt32.dll (Microsoft Corporation)
Winlogon\Notify\cryptnet: C:\WINCZ\system32\cryptnet.dll (Microsoft Corporation)
Winlogon\Notify\cscdll: C:\WINCZ\system32\cscdll.dll (Microsoft Corporation)
Winlogon\Notify\dimsntfy: C:\WINCZ\System32\dimsntfy.dll (Microsoft Corporation)
Winlogon\Notify\ScCertProp: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\Schedule: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\sclgntfy: C:\WINCZ\system32\sclgntfy.dll (Microsoft Corporation)
Winlogon\Notify\SensLogn: C:\WINCZ\system32\WlNotify.dll (Microsoft Corporation)
Winlogon\Notify\termsrv: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
Winlogon\Notify\VESWinlogon: C:\WINCZ\system32\VESWinlogon.dll (Sony Corporation)
Winlogon\Notify\wlballoon: C:\WINCZ\system32\wlnotify.dll (Microsoft Corporation)
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4826904 2014-10-30] (Piriform Ltd)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\...\Run: [PC Suite Tray] => C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe [695808 2007-12-10] ()
HKU\S-1-5-18\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Nokia.PCSync] => C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe [1294336 2007-11-07] (Time Information Services Ltd.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINCZ\system32\blank.htm
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/
HKU\S-1-5-21-1659004503-152049171-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-1659004503-152049171-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINCZ\system32\shdocvw.dll (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINCZ\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-1659004503-152049171-725345543-1004 -> &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file://C:\Program Files\AutoCAD 2002\AcDcToday.ocx
DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file://C:\Program Files\AutoCAD 2002\InstBanr.ocx
DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file://C:\Program Files\AutoCAD 2002\InstFred.ocx
DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file://C:\Program Files\AutoCAD 2002\AcPreview.ocx
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINCZ\system32\mshtml.dll (Microsoft Corporation)
Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINCZ\system32\wiascr.dll (Microsoft Corporation)
Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINCZ\system32\urlmon.dll (Microsoft Corporation)
Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINCZ\system32\SHELL32.dll (Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINCZ\system32\shell32.dll [8465408 2008-04-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Edík\Data aplikací\Mozilla\Firefox\Profiles\zzofxf9m.default-1416929801546
FF Plugin: @adobe.com/FlashPlayer -> C:\WINCZ\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin: @videolan.org/vlc,version=2.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-09-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-25]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe [267440 2014-11-21] (Adobe Systems Incorporated)
S4 Alerter; C:\WINCZ\system32\alrsvc.dll [17408 2008-04-14] (Microsoft Corporation)
R3 ALG; C:\WINCZ\System32\alg.exe [44544 2008-04-14] (Microsoft Corporation)
R2 AudioSrv; C:\WINCZ\System32\audiosrv.dll [42496 2008-04-14] (Microsoft Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-25] (AVAST Software)
R3 BITS; C:\WINCZ\system32\qmgr.dll [409088 2008-04-14] (Microsoft Corporation)
S2 Browser; C:\WINCZ\System32\browser.dll [77824 2008-04-14] (Microsoft Corporation)
S3 CiSvc; C:\WINCZ\system32\cisvc.exe [5632 2008-04-14] (Microsoft Corporation)
S4 ClipSrv; C:\WINCZ\system32\clipsrv.exe [33280 2008-04-14] (Microsoft Corporation)
S3 COMSysApp; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
R2 CryptSvc; C:\WINCZ\System32\cryptsvc.dll [62464 2008-04-14] (Microsoft Corporation)
R2 DcomLaunch; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
R2 Dhcp; C:\WINCZ\System32\dhcpcsvc.dll [125952 2008-04-14] (Microsoft Corporation)
S3 dmadmin; C:\WINCZ\System32\dmadmin.exe [225280 2008-04-14] (Microsoft Corp., Veritas Software)
S3 dmserver; C:\WINCZ\System32\dmserver.dll [24064 2008-04-14] (Microsoft Corp.)
R2 Dnscache; C:\WINCZ\System32\dnsrslvr.dll [45568 2008-04-14] (Microsoft Corporation)
S3 Dot3svc; C:\WINCZ\System32\dot3svc.dll [132608 2008-04-14] (Microsoft Corporation)
S3 EapHost; C:\WINCZ\System32\eapsvc.dll [33792 2008-04-14] (Microsoft Corporation)
R2 ERSvc; C:\WINCZ\System32\ersvc.dll [23040 2008-04-14] (Microsoft Corporation)
R2 Eventlog; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R3 EventSystem; C:\WINCZ\system32\es.dll [246272 2008-04-14] (Microsoft Corporation)
R2 EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [114753 2005-11-28] (Intel Corporation) [File not signed]
R3 FastUserSwitchingCompatibility; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 helpsvc; C:\WINCZ\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400 2008-04-14] (Microsoft Corporation)
S3 hkmsvc; C:\WINCZ\System32\kmsvc.dll [61440 2008-04-14] (Microsoft Corporation)
S3 HTTPFilter; C:\WINCZ\System32\w3ssl.dll [15872 2008-04-14] (Microsoft Corporation)
S3 ImapiService; C:\WINCZ\system32\imapi.exe [150528 2008-04-14] (Microsoft Corporation)
R2 lanmanserver; C:\WINCZ\System32\srvsvc.dll [96768 2008-04-14] (Microsoft Corporation)
R2 lanmanworkstation; C:\WINCZ\System32\wkssvc.dll [132096 2008-04-14] (Microsoft Corporation)
R2 LmHosts; C:\WINCZ\System32\lmhsvc.dll [13824 2008-04-14] (Microsoft Corporation)
S4 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [File not signed]
S4 Messenger; C:\WINCZ\System32\msgsvc.dll [33792 2008-04-14] (Microsoft Corporation)
S3 mnmsrvc; C:\WINCZ\system32\mnmsrvc.exe [32768 2008-04-14] (Microsoft Corporation)
S3 MSDTC; C:\WINCZ\system32\msdtc.exe [6144 2008-04-14] (Microsoft Corporation)
S3 MSIServer; C:\WINCZ\System32\msiexec.exe [78848 2008-04-14] (Microsoft Corporation)
S3 napagent; C:\WINCZ\System32\qagentrt.dll [293376 2008-04-14] (Microsoft Corporation)
S4 NetDDE; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S4 NetDDEdsdm; C:\WINCZ\system32\netdde.exe [111616 2008-04-14] (Microsoft Corporation)
S3 Netlogon; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R3 Netman; C:\WINCZ\System32\netman.dll [198144 2008-04-14] (Microsoft Corporation)
R3 Nla; C:\WINCZ\System32\mswsock.dll [247296 2008-04-14] (Microsoft Corporation)
S3 NtLmSsp; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 NtmsSvc; C:\WINCZ\system32\ntmssvc.dll [435712 2008-04-14] (Microsoft Corporation)
R2 NVSvc; C:\WINCZ\system32\nvsvc32.exe [143428 2006-03-06] (NVIDIA Corporation)
R2 PlugPlay; C:\WINCZ\system32\services.exe [108544 2008-04-14] (Microsoft Corporation)
R2 PolicyAgent; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
R2 ProtectedStorage; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 RasAuto; C:\WINCZ\System32\rasauto.dll [88576 2008-04-14] (Microsoft Corporation)
S3 RasMan; C:\WINCZ\System32\rasmans.dll [186368 2008-04-14] (Microsoft Corporation)
S3 RDSessMgr; C:\WINCZ\system32\sessmgr.exe [141824 2008-04-14] (Microsoft Corporation)
R2 RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [217164 2005-11-28] (Intel Corporation) [File not signed]
S4 RemoteAccess; C:\WINCZ\System32\mprdim.dll [53248 2008-04-14] (Microsoft Corporation)
S3 RpcLocator; C:\WINCZ\system32\locator.exe [75264 2008-04-14] (Microsoft Corporation)
R2 RpcSs; C:\WINCZ\system32\rpcss.dll [399360 2008-04-14] (Microsoft Corporation)
S3 RSVP; C:\WINCZ\system32\rsvp.exe [132608 2006-03-02] (Microsoft Corporation)
R2 S24EventMonitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [540745 2005-11-28] (Intel Corporation ) [File not signed]
R2 SamSs; C:\WINCZ\system32\lsass.exe [13312 2008-04-14] (Microsoft Corporation)
S3 SCardSvr; C:\WINCZ\System32\SCardSvr.exe [97792 2008-04-14] (Microsoft Corporation)
R2 Schedule; C:\WINCZ\system32\schedsvc.dll [192512 2008-04-14] (Microsoft Corporation)
R2 seclogon; C:\WINCZ\System32\seclogon.dll [18944 2008-04-14] (Microsoft Corporation)
R2 SENS; C:\WINCZ\system32\sens.dll [39424 2008-04-14] (Microsoft Corporation)
R3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [353280 2007-12-10] (Nokia.) [File not signed]
R2 SharedAccess; C:\WINCZ\System32\ipnathlp.dll [329728 2008-04-14] (Microsoft Corporation)
R2 ShellHWDetection; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 Spooler; C:\WINCZ\system32\spoolsv.exe [57856 2008-04-14] (Microsoft Corporation)
R2 srservice; C:\WINCZ\system32\srsvc.dll [171008 2008-04-14] (Microsoft Corporation)
R3 SSDPSRV; C:\WINCZ\System32\ssdpsrv.dll [71680 2008-04-14] (Microsoft Corporation)
R2 stisvc; C:\WINCZ\system32\wiaservc.dll [334336 2008-04-14] (Microsoft Corporation)
S3 SwPrv; C:\WINCZ\system32\dllhost.exe [5120 2008-04-14] (Microsoft Corporation)
S3 SysmonLog; C:\WINCZ\system32\smlogsvc.exe [90112 2008-04-14] (Microsoft Corporation)
S3 TapiSrv; C:\WINCZ\System32\tapisrv.dll [249856 2008-04-14] (Microsoft Corporation)
R3 TermService; C:\WINCZ\System32\termsrv.dll [295936 2008-04-14] (Microsoft Corporation)
R2 Themes; C:\WINCZ\System32\shsvcs.dll [135168 2008-04-14] (Microsoft Corporation)
R2 TrkWks; C:\WINCZ\system32\trkwks.dll [90112 2008-04-14] (Microsoft Corporation)
S3 upnphost; C:\WINCZ\System32\upnphost.dll [186368 2008-04-14] (Microsoft Corporation)
S3 UPS; C:\WINCZ\System32\ups.exe [18432 2008-04-14] (Microsoft Corporation)
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [153600 2005-05-20] (Sony Corporation) [File not signed]
S3 VSS; C:\WINCZ\System32\vssvc.exe [290816 2008-04-14] (Microsoft Corporation)
R2 W32Time; C:\WINCZ\system32\w32time.dll [176640 2008-04-14] (Microsoft Corporation)
R2 WebClient; C:\WINCZ\System32\webclnt.dll [68096 2008-04-14] (Microsoft Corporation)
R2 winmgmt; C:\WINCZ\system32\wbem\WMIsvc.dll [144896 2008-04-14] (Microsoft Corporation)
S3 WmdmPmSN; C:\WINCZ\system32\mspmsnsv.dll [52224 2008-04-14] (Microsoft Corporation)
S3 WmiApSrv; C:\WINCZ\system32\wbem\wmiapsrv.exe [126464 2008-04-14] (Microsoft Corporation)
R2 wscsvc; C:\WINCZ\system32\wscsvc.dll [80896 2008-04-14] (Microsoft Corporation)
R2 wuauserv; C:\WINCZ\system32\wuauserv.dll [6656 2008-04-14] (Microsoft Corporation)
R2 WZCSVC; C:\WINCZ\System32\wzcsvc.dll [483840 2008-04-14] (Microsoft Corporation)
S3 xmlprov; C:\WINCZ\System32\xmlprov.dll [129024 2008-04-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 ACPI; C:\WINCZ\System32\DRIVERS\ACPI.sys [188288 2008-04-14] (Microsoft Corporation)
R0 ACPIEC; C:\WINCZ\System32\DRIVERS\ACPIEC.sys [11776 2006-03-02] (Microsoft Corporation)
S3 aec; C:\WINCZ\System32\drivers\aec.sys [142592 2008-04-13] (Microsoft Corporation)
R2 AegisP; C:\WINCZ\System32\DRIVERS\AegisP.sys [21275 2012-08-01] (Meetinghouse Data Communications) [File not signed]
R1 AFD; C:\WINCZ\System32\drivers\afd.sys [138112 2008-04-13] (Microsoft Corporation)
R3 Arp1394; C:\WINCZ\System32\DRIVERS\arp1394.sys [60800 2008-04-13] (Microsoft Corporation)
R2 aswHwid; C:\WINCZ\system32\drivers\aswHwid.sys [24184 2014-11-25] ()
R2 aswMonFlt; C:\WINCZ\system32\drivers\aswMonFlt.sys [70384 2014-11-25] (AVAST Software)
R1 AswRdr; C:\WINCZ\system32\drivers\aswRdr.sys [55240 2014-11-25] (AVAST Software)
R0 aswRvrt; C:\WINCZ\system32\Drivers\aswRvrt.sys [49944 2014-11-25] ()
R1 aswSnx; C:\WINCZ\system32\drivers\aswSnx.sys [787800 2014-11-25] (AVAST Software)
R1 aswSP; C:\WINCZ\system32\drivers\aswSP.sys [423784 2014-11-25] (AVAST Software)
R1 aswTdi; C:\WINCZ\system32\drivers\aswTdi.sys [57928 2014-11-25] (AVAST Software)
R0 aswVmm; C:\WINCZ\system32\Drivers\aswVmm.sys [206248 2014-11-25] ()
S3 AsyncMac; C:\WINCZ\System32\DRIVERS\asyncmac.sys [14336 2008-04-13] (Microsoft Corporation)
R0 atapi; C:\WINCZ\System32\DRIVERS\atapi.sys [96512 2008-04-13] (Microsoft Corporation)
S3 Atmarpc; C:\WINCZ\System32\DRIVERS\atmarpc.sys [59904 2008-04-13] (Microsoft Corporation)
R3 audstub; C:\WINCZ\System32\DRIVERS\audstub.sys [3072 2001-08-17] (Microsoft Corporation)
R1 Beep; C:\WINCZ\system32\Drivers\Beep.sys [4224 2006-03-02] (Microsoft Corporation)
S4 cbidf2k; C:\WINCZ\system32\Drivers\cbidf2k.sys [13952 2006-03-02] (Microsoft Corporation)
S3 CCDECODE; C:\WINCZ\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S1 Cdaudio; C:\WINCZ\system32\Drivers\Cdaudio.sys [18688 2006-03-02] (Microsoft Corporation)
R4 Cdfs; C:\WINCZ\system32\Drivers\Cdfs.sys [63744 2008-04-13] (Microsoft Corporation)
R1 Cdrom; C:\WINCZ\System32\DRIVERS\cdrom.sys [62976 2008-04-13] (Microsoft Corporation)
R3 CmBatt; C:\WINCZ\System32\DRIVERS\CmBatt.sys [13952 2008-04-13] (Microsoft Corporation)
R0 Compbatt; C:\WINCZ\System32\DRIVERS\compbatt.sys [10240 2008-04-13] (Microsoft Corporation)
R0 Disk; C:\WINCZ\System32\DRIVERS\disk.sys [36352 2008-04-13] (Microsoft Corporation)
S4 dmboot; C:\WINCZ\System32\drivers\dmboot.sys [800000 2008-04-14] (Microsoft Corp., Veritas Software)
R1 DMICall; C:\WINCZ\System32\DRIVERS\DMICall.sys [3952 2000-12-05] (Sony Corporation)
S4 dmio; C:\WINCZ\System32\drivers\dmio.sys [153856 2008-04-14] (Microsoft Corp., Veritas Software)
S4 dmload; C:\WINCZ\System32\drivers\dmload.sys [5888 2006-03-02] (Microsoft Corp., Veritas Software.)
S3 DMusic; C:\WINCZ\System32\drivers\DMusic.sys [52864 2008-04-13] (Microsoft Corporation)
S3 drmkaud; C:\WINCZ\System32\drivers\drmkaud.sys [2944 2008-04-13] (Microsoft Corporation)
S4 Fastfat; C:\WINCZ\system32\Drivers\Fastfat.sys [143744 2008-04-13] (Microsoft Corporation)
S1 Fdc; C:\WINCZ\system32\Drivers\Fdc.sys [27392 2008-04-13] (Microsoft Corporation)
R1 Fips; C:\WINCZ\system32\Drivers\Fips.sys [44544 2008-04-14] (Microsoft Corporation)
S1 Flpydisk; C:\WINCZ\system32\Drivers\Flpydisk.sys [20480 2008-04-13] (Microsoft Corporation)
R0 FltMgr; C:\WINCZ\System32\drivers\fltmgr.sys [129792 2008-04-13] (Microsoft Corporation)
U1 Fs_Rec; C:\WINCZ\system32\Drivers\Fs_Rec.sys [7936 2006-03-02] (Microsoft Corporation)
R0 Ftdisk; C:\WINCZ\System32\DRIVERS\ftdisk.sys [125184 2006-03-02] (Microsoft Corporation)
R3 Gpc; C:\WINCZ\System32\DRIVERS\msgpc.sys [35072 2008-04-13] (Microsoft Corporation)
R3 HDAudBus; C:\WINCZ\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
S3 HidUsb; C:\WINCZ\System32\DRIVERS\hidusb.sys [10368 2008-04-14] (Microsoft Corporation)
R3 HTTP; C:\WINCZ\System32\Drivers\HTTP.sys [264832 2008-04-13] (Microsoft Corporation)
R1 i8042prt; C:\WINCZ\System32\DRIVERS\i8042prt.sys [52096 2008-04-14] (Microsoft Corporation)
R1 Imapi; C:\WINCZ\System32\DRIVERS\imapi.sys [42112 2008-04-13] (Microsoft Corporation)
R1 intelppm; C:\WINCZ\System32\DRIVERS\intelppm.sys [40192 2008-04-14] (Microsoft Corporation)
S3 Ip6Fw; C:\WINCZ\System32\drivers\ip6fw.sys [36608 2008-04-13] (Microsoft Corporation)
S3 IpFilterDriver; C:\WINCZ\System32\DRIVERS\ipfltdrv.sys [32896 2006-03-02] (Microsoft Corporation)
S3 IpInIp; C:\WINCZ\System32\DRIVERS\ipinip.sys [20864 2008-04-13] (Microsoft Corporation)
R3 IpNat; C:\WINCZ\System32\DRIVERS\ipnat.sys [152832 2008-04-13] (Microsoft Corporation)
R1 IPSec; C:\WINCZ\System32\DRIVERS\ipsec.sys [75264 2008-04-13] (Microsoft Corporation)
S3 IRENUM; C:\WINCZ\System32\DRIVERS\irenum.sys [11264 2008-04-13] (Microsoft Corporation)
R0 isapnp; C:\WINCZ\System32\DRIVERS\isapnp.sys [37248 2008-04-14] (Microsoft Corporation)
R1 Kbdclass; C:\WINCZ\System32\DRIVERS\kbdclass.sys [24576 2008-04-14] (Microsoft Corporation)
R3 kmixer; C:\WINCZ\System32\drivers\kmixer.sys [172416 2008-04-13] (Microsoft Corporation)
R0 KSecDD; C:\WINCZ\system32\Drivers\KSecDD.sys [92288 2008-04-13] (Microsoft Corporation)
R1 mnmdd; C:\WINCZ\system32\Drivers\mnmdd.sys [4224 2006-03-02] (Microsoft Corporation)
S3 Modem; C:\WINCZ\system32\Drivers\Modem.sys [30080 2008-04-14] (Microsoft Corporation)
R1 Mouclass; C:\WINCZ\System32\DRIVERS\mouclass.sys [23040 2008-04-14] (Microsoft Corporation)
S3 mouhid; C:\WINCZ\System32\DRIVERS\mouhid.sys [12160 2001-10-24] (Microsoft Corporation)
R0 MountMgr; C:\WINCZ\system32\Drivers\MountMgr.sys [42368 2008-04-13] (Microsoft Corporation)
R3 MRxDAV; C:\WINCZ\System32\DRIVERS\mrxdav.sys [180608 2008-04-13] (Microsoft Corporation)
R1 MRxSmb; C:\WINCZ\System32\DRIVERS\mrxsmb.sys [456576 2008-04-13] (Microsoft Corporation)
R1 Msfs; C:\WINCZ\system32\Drivers\Msfs.sys [19072 2008-04-13] (Microsoft Corporation)
S3 MSKSSRV; C:\WINCZ\System32\drivers\MSKSSRV.sys [7552 2008-04-13] (Microsoft Corporation)
S3 MSPCLOCK; C:\WINCZ\System32\drivers\MSPCLOCK.sys [5376 2008-04-13] (Microsoft Corporation)
S3 MSPQM; C:\WINCZ\System32\drivers\MSPQM.sys [4992 2008-04-13] (Microsoft Corporation)
R3 mssmbios; C:\WINCZ\System32\DRIVERS\mssmbios.sys [15488 2008-04-13] (Microsoft Corporation)
S3 MSTEE; C:\WINCZ\System32\drivers\MSTEE.sys [5504 2008-04-13] (Microsoft Corporation)
R0 Mup; C:\WINCZ\system32\Drivers\Mup.sys [105344 2008-04-13] (Microsoft Corporation)
S3 NABTSFEC; C:\WINCZ\System32\DRIVERS\NABTSFEC.sys [85248 2008-04-13] (Microsoft Corporation)
R0 NDIS; C:\WINCZ\system32\Drivers\NDIS.sys [182656 2008-04-13] (Microsoft Corporation)
S3 NdisIP; C:\WINCZ\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NdisTapi; C:\WINCZ\System32\DRIVERS\ndistapi.sys [10112 2008-04-13] (Microsoft Corporation)
R3 Ndisuio; C:\WINCZ\System32\DRIVERS\ndisuio.sys [14592 2008-04-13] (Microsoft Corporation)
R3 NdisWan; C:\WINCZ\System32\DRIVERS\ndiswan.sys [91520 2008-04-13] (Microsoft Corporation)
R3 NDProxy; C:\WINCZ\system32\Drivers\NDProxy.sys [40576 2008-04-13] (Microsoft Corporation)
R1 NetBIOS; C:\WINCZ\System32\DRIVERS\netbios.sys [34688 2008-04-13] (Microsoft Corporation)
R1 NetBT; C:\WINCZ\System32\DRIVERS\netbt.sys [162816 2008-04-13] (Microsoft Corporation)
R3 NIC1394; C:\WINCZ\System32\DRIVERS\nic1394.sys [61824 2008-04-13] (Microsoft Corporation)
R1 Npfs; C:\WINCZ\system32\Drivers\Npfs.sys [30848 2008-04-13] (Microsoft Corporation)
R4 Ntfs; C:\WINCZ\system32\Drivers\Ntfs.sys [574976 2008-04-13] (Microsoft Corporation)
R1 Null; C:\WINCZ\system32\Drivers\Null.sys [2944 2006-03-02] (Microsoft Corporation)
R3 nv; C:\WINCZ\System32\DRIVERS\nv4_mini.sys [3644160 2006-03-06] (NVIDIA Corporation)
S3 NwlnkFlt; C:\WINCZ\System32\DRIVERS\nwlnkflt.sys [12416 2006-03-02] (Microsoft Corporation)
S3 NwlnkFwd; C:\WINCZ\System32\DRIVERS\nwlnkfwd.sys [32512 2006-03-02] (Microsoft Corporation)
R0 ohci1394; C:\WINCZ\System32\DRIVERS\ohci1394.sys [61696 2008-04-13] (Microsoft Corporation)
S3 Parport; C:\WINCZ\system32\Drivers\Parport.sys [80000 2008-04-14] (Microsoft Corporation)
R0 PartMgr; C:\WINCZ\system32\Drivers\PartMgr.sys [19712 2008-04-13] (Microsoft Corporation)
S2 ParVdm; C:\WINCZ\system32\Drivers\ParVdm.sys [6784 2006-03-02] (Microsoft Corporation)
R0 PCI; C:\WINCZ\System32\DRIVERS\pci.sys [68736 2008-04-14] (Microsoft Corporation)
R0 PCIIde; C:\WINCZ\System32\DRIVERS\pciide.sys [3328 2001-10-24] (Microsoft Corporation)
R0 Pcmcia; C:\WINCZ\System32\DRIVERS\pcmcia.sys [120064 2008-04-14] (Microsoft Corporation)
R3 PptpMiniport; C:\WINCZ\System32\DRIVERS\raspptp.sys [48384 2008-04-13] (Microsoft Corporation)
R3 PSched; C:\WINCZ\System32\DRIVERS\psched.sys [69120 2008-04-13] (Microsoft Corporation)
R3 Ptilink; C:\WINCZ\System32\DRIVERS\ptilink.sys [17792 2006-03-02] (Parallel Technologies, Inc.)
R1 RasAcd; C:\WINCZ\System32\DRIVERS\rasacd.sys [8832 2006-03-02] (Microsoft Corporation)
R3 Rasl2tp; C:\WINCZ\System32\DRIVERS\rasl2tp.sys [51328 2008-04-13] (Microsoft Corporation)
R3 RasPppoe; C:\WINCZ\System32\DRIVERS\raspppoe.sys [41472 2008-04-13] (Microsoft Corporation)
R3 Raspti; C:\WINCZ\System32\DRIVERS\raspti.sys [16512 2006-03-02] (Microsoft Corporation)
R1 Rdbss; C:\WINCZ\System32\DRIVERS\rdbss.sys [175744 2008-04-13] (Microsoft Corporation)
R1 RDPCDD; C:\WINCZ\System32\DRIVERS\RDPCDD.sys [4224 2006-03-02] (Microsoft Corporation)
S3 RDPWD; C:\WINCZ\system32\Drivers\RDPWD.sys [139656 2008-04-14] (Microsoft Corporation)
R1 redbook; C:\WINCZ\System32\DRIVERS\redbook.sys [58496 2008-04-14] (Microsoft Corporation)
R2 s24trans; C:\WINCZ\System32\DRIVERS\s24trans.sys [13568 2005-11-28] (Intel Corporation) [File not signed]
S3 Secdrv; C:\WINCZ\System32\DRIVERS\secdrv.sys [20480 2008-04-13] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
S3 Serial; C:\WINCZ\system32\Drivers\Serial.sys [64256 2008-04-14] (Microsoft Corporation)
S1 Sfloppy; C:\WINCZ\system32\Drivers\Sfloppy.sys [11392 2008-04-13] (Microsoft Corporation)
S3 SLIP; C:\WINCZ\System32\DRIVERS\SLIP.sys [11136 2008-04-13] (Microsoft Corporation)
R3 SNC; C:\WINCZ\System32\DRIVERS\SonyNC.sys [20752 2001-08-17] (Sony Corporation)
S3 splitter; C:\WINCZ\System32\drivers\splitter.sys [6272 2008-04-13] (Microsoft Corporation)
R0 sr; C:\WINCZ\System32\DRIVERS\sr.sys [73344 2008-04-14] (Microsoft Corporation)
R3 Srv; C:\WINCZ\System32\DRIVERS\srv.sys [334848 2008-04-13] (Microsoft Corporation)
R3 STHDA; C:\WINCZ\System32\drivers\sthda.sys [1106888 2006-02-13] (SigmaTel, Inc.)
S3 streamip; C:\WINCZ\System32\DRIVERS\StreamIP.sys [15232 2008-04-13] (Microsoft Corporation)
R3 swenum; C:\WINCZ\System32\DRIVERS\swenum.sys [4352 2008-04-13] (Microsoft Corporation)
S3 swmidi; C:\WINCZ\System32\drivers\swmidi.sys [56576 2008-04-13] (Microsoft Corporation)
R3 sysaudio; C:\WINCZ\System32\drivers\sysaudio.sys [60800 2008-04-13] (Microsoft Corporation)
R1 Tcpip; C:\WINCZ\System32\DRIVERS\tcpip.sys [361344 2008-04-13] (Microsoft Corporation)
S3 TDPIPE; C:\WINCZ\system32\Drivers\TDPIPE.sys [12040 2008-04-14] (Microsoft Corporation)
S3 TDTCP; C:\WINCZ\system32\Drivers\TDTCP.sys [21896 2008-04-14] (Microsoft Corporation)
R1 TermDD; C:\WINCZ\System32\DRIVERS\termdd.sys [40840 2008-04-14] (Microsoft Corporation)
R3 Tosrfbd; C:\WINCZ\System32\Drivers\tosrfbd.sys [108800 2005-11-22] (TOSHIBA CORPORATION) [File not signed]
S1 Tosrfcom; C:\WINCZ\system32\Drivers\Tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) [File not signed]
R3 Tosrfhid; C:\WINCZ\System32\DRIVERS\Tosrfhid.sys [62848 2005-12-01] (TOSHIBA Corporation.) [File not signed]
R3 Tosrfusb; C:\WINCZ\System32\Drivers\tosrfusb.sys [36736 2005-11-15] (TOSHIBA CORPORATION) [File not signed]
S4 Udfs; C:\WINCZ\system32\Drivers\Udfs.sys [66048 2008-04-13] (Microsoft Corporation)
R3 Update; C:\WINCZ\System32\DRIVERS\update.sys [384768 2008-04-13] (Microsoft Corporation)
R3 usbehci; C:\WINCZ\System32\DRIVERS\usbehci.sys [30208 2008-04-13] (Microsoft Corporation)
R3 usbhub; C:\WINCZ\System32\DRIVERS\usbhub.sys [59520 2008-04-13] (Microsoft Corporation)
S3 usbprint; C:\WINCZ\System32\DRIVERS\usbprint.sys [25856 2008-04-14] (Microsoft Corporation)
S3 usbscan; C:\WINCZ\System32\DRIVERS\usbscan.sys [15104 2008-04-13] (Microsoft Corporation)
R3 usbstor; C:\WINCZ\System32\DRIVERS\USBSTOR.SYS [26368 2008-04-13] (Microsoft Corporation)
R3 usbuhci; C:\WINCZ\System32\DRIVERS\usbuhci.sys [20608 2008-04-13] (Microsoft Corporation)
R3 usbvm321; C:\WINCZ\System32\Drivers\usbvm321.sys [234496 2005-12-29] (Vimicro Corporation)
S2 VgaSave; C:\WINCZ\System32\drivers\vga.sys [20992 2008-04-13] (Microsoft Corporation)
R0 VolSnap; C:\WINCZ\system32\Drivers\VolSnap.sys [52480 2008-04-14] (Microsoft Corporation)
R3 w39n51; C:\WINCZ\System32\DRIVERS\w39n51.sys [1428096 2005-12-04] (Intel® Corporation)
R3 Wanarp; C:\WINCZ\System32\DRIVERS\wanarp.sys [34560 2008-04-13] (Microsoft Corporation)
R3 wdmaud; C:\WINCZ\System32\drivers\wdmaud.sys [83072 2008-04-13] (Microsoft Corporation)
S3 WSTCODEC; C:\WINCZ\System32\DRIVERS\WSTCODEC.SYS [19200 2008-04-13] (Microsoft Corporation)
S2 DgiVecp; \??\C:\WINCZ\system32\Drivers\DgiVecp.sys [X]
S4 IntelIde; No ImagePath
U5 ScsiPort; C:\WINCZ\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S2 SSPORT; \??\C:\WINCZ\system32\Drivers\SSPORT.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 20:32 - 2014-11-25 20:32 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Edík\Plocha\FRSTLauncher.exe
2014-11-25 19:39 - 2014-11-25 19:42 - 00000000 ____D () C:\AdwCleaner
2014-11-25 19:38 - 2014-11-25 19:38 - 02148864 _____ () C:\Documents and Settings\Edík\Plocha\adwcleaner_4.102.exe
2014-11-25 19:20 - 2014-11-25 20:35 - 00033201 _____ () C:\Documents and Settings\Edík\Plocha\FRST.txt
2014-11-25 19:12 - 2014-11-25 20:35 - 00000000 ____D () C:\FRST
2014-11-25 19:11 - 2014-11-25 19:11 - 01110016 _____ (Farbar) C:\Documents and Settings\Edík\Plocha\FRST.exe
2014-11-25 17:49 - 2014-11-25 17:49 - 00000000 ____D () C:\Program Files\Common Files\PDF Architect
2014-11-25 17:01 - 2014-11-25 17:01 - 00000686 _____ () C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-25 17:01 - 2014-11-25 17:01 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\CCleaner
2014-11-25 16:44 - 2014-11-25 16:44 - 00291352 _____ (AVAST Software) C:\WINCZ\system32\aswBoot.exe
2014-11-25 16:44 - 2014-11-25 16:44 - 00043152 _____ (AVAST Software) C:\WINCZ\avastSS.scr
2014-11-25 16:44 - 2014-11-25 16:44 - 00001735 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-11-25 16:36 - 2014-11-25 16:36 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha\Původní data aplikace Firefox
2014-11-21 21:40 - 2014-11-21 21:40 - 00000734 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000728 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-11-21 21:40 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-21 18:51 - 2014-11-21 21:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-25 20:35 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Plocha
2014-11-25 20:35 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík\Local Settings\Temp
2014-11-25 20:34 - 2012-08-01 17:07 - 00000000 ___HD () C:\Documents and Settings\Edík\Local Settings\Data aplikací
2014-11-25 20:32 - 2012-08-08 15:47 - 00000000 ____D () C:\Documents and Settings\Edík\Dokumenty\Stažené soubory
2014-11-25 20:24 - 2013-12-14 14:44 - 00000910 _____ () C:\WINCZ\Tasks\Adobe Flash Player Updater.job
2014-11-25 19:49 - 2012-08-01 16:48 - 00435336 _____ () C:\WINCZ\WindowsUpdate.log
2014-11-25 19:44 - 2012-09-05 17:34 - 00000364 ____H () C:\WINCZ\Tasks\avast! Emergency Update.job
2014-11-25 19:44 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Temp
2014-11-25 19:43 - 2012-08-01 18:36 - 00000157 _____ () C:\WINCZ\wiadebug.log
2014-11-25 19:43 - 2012-08-01 18:36 - 00000050 _____ () C:\WINCZ\wiaservc.log
2014-11-25 19:43 - 2012-08-01 17:55 - 00045378 _____ () C:\WINCZ\system32\nvapps.xml
2014-11-25 19:43 - 2012-08-01 17:05 - 00000006 ____H () C:\WINCZ\Tasks\SA.DAT
2014-11-25 19:42 - 2012-08-01 17:07 - 00000272 ___SH () C:\Documents and Settings\Edík\ntuser.ini
2014-11-25 19:42 - 2012-08-01 17:05 - 00032366 _____ () C:\WINCZ\SchedLgU.Txt
2014-11-25 17:51 - 2012-08-01 18:31 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-11-25 17:50 - 2012-08-01 17:07 - 00000000 ___RD () C:\Documents and Settings\Edík\Dokumenty
2014-11-25 17:06 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ
2014-11-25 17:02 - 2013-12-14 11:06 - 00000000 ____D () C:\Program Files\PDFCreator
2014-11-25 17:02 - 2012-08-01 17:07 - 00000000 ____D () C:\Documents and Settings\Edík
2014-11-25 17:01 - 2012-08-01 18:31 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-11-25 16:44 - 2014-08-01 19:59 - 00024184 _____ () C:\WINCZ\system32\Drivers\aswHwid.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00206248 _____ () C:\WINCZ\system32\Drivers\aswVmm.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00070384 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswMonFlt.sys
2014-11-25 16:44 - 2013-03-06 19:36 - 00049944 _____ () C:\WINCZ\system32\Drivers\aswRvrt.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00787800 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsnx.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00423784 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswsp.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00057928 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswTdi.sys
2014-11-25 16:44 - 2012-09-05 17:34 - 00055240 _____ (AVAST Software) C:\WINCZ\system32\Drivers\aswRdr.sys
2014-11-25 05:32 - 2012-08-08 20:36 - 00011264 _____ () C:\Documents and Settings\Edík\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-24 17:06 - 2006-03-02 13:00 - 00013646 _____ () C:\WINCZ\system32\wpa.dbl
2014-11-21 21:24 - 2012-08-01 18:12 - 00000000 ____D () C:\WINCZ\Help
2014-11-21 21:19 - 2013-12-25 14:59 - 00002337 _____ () C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
2014-11-21 21:13 - 2013-12-25 14:58 - 00000000 ____D () C:\Program Files\Nokia
2014-11-21 20:25 - 2012-08-08 16:58 - 00701104 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerApp.exe
2014-11-21 20:25 - 2012-08-08 16:58 - 00071344 _____ (Adobe Systems Incorporated) C:\WINCZ\system32\FlashPlayerCPLApp.cpl
2014-11-21 19:12 - 2012-08-27 20:08 - 00002561 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Microsoft Word.lnk
2014-10-26 06:01 - 2012-08-01 18:32 - 00714754 _____ () C:\WINCZ\system32\PerfStringBackup.INI
Some content of TEMP:
====================
C:\Documents and Settings\Edík\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\Edík\Local Settings\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINCZ\explorer.exe => File is digitally signed
C:\WINCZ\system32\winlogon.exe => File is digitally signed
C:\WINCZ\system32\svchost.exe => File is digitally signed
C:\WINCZ\system32\services.exe => File is digitally signed
C:\WINCZ\system32\User32.dll => File is digitally signed
C:\WINCZ\system32\userinit.exe => File is digitally signed
C:\WINCZ\system32\rpcss.dll => File is digitally signed
C:\WINCZ\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (VAIO) (Fixed) (Total:46.57 GB) (Free:6.56 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (VAIO) (Fixed) (Total:39.6 GB) (Free:30.75 GB) NTFS
Available physical RAM: 649.07 MB
Total physical RAM: 1022.11 MB
Percentage of memory in use: 36%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 93.2 GB) (Disk ID: DCDCFE52)
Partition 1: (Not Active) - (Size=7 GB) - (Type=12)
Partition 2: (Active) - (Size=46.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=39.6 GB) - (Type=OF Extended)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINCZ\Tasks\Adobe Flash Player Updater.job => C:\WINCZ\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINCZ\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Internet Security 2012 (Disabled - Up to date) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: AVG Internet Security 2012 (Disabled) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Edk\Plocha" je 21 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe"="C:\\Program Files\\AVG\\AVG2012\\avgmfapx.exe:*:Enabled:Instaltor AVG"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINCZ\\system32\\dpvsetup.exe"="C:\\WINCZ\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINCZ\\system32\\rundll32.exe"="C:\\WINCZ\\system32\\rundll32.exe:*:Enabled:Run a DLL as an App"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath
C:\Documents and Settings\Edík\Local Settings\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Zde je log
děkuji za pomoc eda
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 23-11-2014
Ran by Edík at 2014-11-25 21:15:23 Run:1
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath
C:\Documents and Settings\Edík\Local Settings\Temp
End
*****************
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE => value deleted successfully.
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\Tabs => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
IntelIde => Service deleted successfully.
WS2IFSL => Service deleted successfully.
C:\Documents and Settings\Edík\Local Settings\Temp => Moved successfully.
==== End of Fixlog ====
děkuji za pomoc eda
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 23-11-2014
Ran by Edík at 2014-11-25 21:15:23 Run:1
Running from C:\Documents and Settings\Edík\Plocha
Loaded Profile: Edík (Available profiles: Edík)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKU\S-1-5-19\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [CTFMON.EXE] => C:\WINCZ\system32\CTFMON.EXE [15360 2008-04-14] (Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath
C:\Documents and Settings\Edík\Local Settings\Temp
End
*****************
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE => value deleted successfully.
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\Tabs => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
IntelIde => Service deleted successfully.
WS2IFSL => Service deleted successfully.
C:\Documents and Settings\Edík\Local Settings\Temp => Moved successfully.
==== End of Fixlog ====

- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Dobrý den,
bohužel žádná změna v chování pc nenastala tzn. internet i pc zoufale pomalé.
eda
bohužel žádná změna v chování pc nenastala tzn. internet i pc zoufale pomalé.
eda
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Dobrý den,
nedaří se mi naistalovat aplikaci dle vašeho odkazu. Při instalaci hlášení interní chyba runtime error at 85:109 po odkliknutí runtime error at53:89, po odkliknutí at 75:252 external exception E06D7363. Poté hláška že v aplikaci nastala chyba odeslat zprávu o chybě. Antivir jsem před stahováním a instalací vypnul.
děkuji eda
nedaří se mi naistalovat aplikaci dle vašeho odkazu. Při instalaci hlášení interní chyba runtime error at 85:109 po odkliknutí runtime error at53:89, po odkliknutí at 75:252 external exception E06D7363. Poté hláška že v aplikaci nastala chyba odeslat zprávu o chybě. Antivir jsem před stahováním a instalací vypnul.
děkuji eda
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Zkuste to v nouz. režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu zpomalení internetu a pc
Dobrý den,
teď se asi pro Vás budu ptát velice nezkušeně, ale jak docílím tohoto nouzového režimu
děkuji eda
teď se asi pro Vás budu ptát velice nezkušeně, ale jak docílím tohoto nouzového režimu
děkuji eda
- Rudy
- Site Admin
- Příspěvky: 119556
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu zpomalení internetu a pc
Při startu PC tiskněte >F8<. Objeví se menu, ve kterém se budete pohybovat kurzorovými šipkami. Zvýrazníte volbu >stav nouze< a stisknete >Enter<. PC nastartuje do nouz, režimu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.