Stránka 1 z 1

vytížený notebook

Napsal: 13 srp 2015 15:49
od petrys
Dobrý den
Nevím zda-li se jedná o vir prosím o kontrolu děkuji


Logfile of random's system information tool 1.10 (written by random/random)
Run by MARTA at 2015-08-13 16:23:52
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 7 GB (13%) free of 50 GB
Total RAM: 1788 MB (11% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:28:17, on 13.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\DVB-T\DetectTray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\MARTA\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\MARTA.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DetectTray] C:\Program Files\DVB-T\DetectTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 3787 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-25 559624]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-08-09 4702208]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-05-10 869936]
"InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2004-06-04 1400944]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-25 6109776]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DetectTray"=C:\Program Files\DVB-T\DetectTray.exe [2008-06-23 155648]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-07-28 53655680]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveTrack"=1
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.3iv2"=3ivxVfWCodec.dll
"VIDC.VP60"=vp6vfw.dll
"VIDC.VP61"=vp6vfw.dll
"VIDC.VP62"=vp6vfw.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.VP31"=vp31vfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.wmv3"=wmv9vcm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-08-13 16:23:52 ----D---- C:\rsit
2015-07-25 12:44:01 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-07-25 12:43:48 ----A---- C:\Windows\system32\aswBoot.exe
2015-07-25 12:43:26 ----A---- C:\Windows\avastSS.scr
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmlib.dll
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmfd.dll
2015-07-21 23:47:57 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-21 23:47:56 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\mshta.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-21 23:47:54 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-21 23:47:53 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-21 23:47:52 ----A---- C:\Windows\system32\urlmon.dll
2015-07-21 23:47:52 ----A---- C:\Windows\system32\iertutil.dll
2015-07-21 23:47:51 ----A---- C:\Windows\system32\vbscript.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\wininet.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\jscript.dll
2015-07-21 23:47:41 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-21 23:47:39 ----A---- C:\Windows\system32\url.dll
2015-07-21 23:47:38 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\ieui.dll
2015-07-21 23:47:35 ----A---- C:\Windows\system32\jscript9.dll
2015-07-21 23:47:30 ----A---- C:\Windows\system32\ieframe.dll
2015-07-21 23:25:51 ----A---- C:\Windows\system32\mshtml.dll
2015-07-19 12:36:57 ----A---- C:\Windows\system32\win32k.sys
2015-07-19 12:36:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-19 12:36:09 ----A---- C:\Windows\system32\msiexec.exe
2015-07-19 12:36:07 ----A---- C:\Windows\system32\msi.dll
2015-07-19 12:35:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-19 12:35:07 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-19 12:34:07 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\kerberos.dll
2015-07-19 12:34:04 ----A---- C:\Windows\system32\advapi32.dll
2015-07-19 12:34:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys

======List of files/folders modified in the last 1 month======

2015-08-13 16:28:17 ----D---- C:\Program Files\trend micro
2015-08-13 16:24:41 ----D---- C:\Windows\Prefetch
2015-08-13 16:23:26 ----D---- C:\Windows\Temp
2015-08-13 16:12:23 ----D---- C:\Users\MARTA\AppData\Roaming\Skype
2015-08-13 16:09:08 ----D---- C:\Windows
2015-08-11 13:16:33 ----D---- C:\Windows\system32\LogFiles
2015-08-11 13:14:53 ----D---- C:\Windows\system32\QuickTime
2015-08-11 13:14:52 ----D---- C:\Program Files
2015-08-11 13:14:50 ----D---- C:\Windows\System32
2015-08-11 13:11:25 ----SHD---- C:\Windows\Installer
2015-08-11 13:11:25 ----D---- C:\ProgramData\Skype
2015-08-11 10:43:27 ----D---- C:\Windows\winsxs
2015-08-11 10:42:40 ----SHD---- C:\System Volume Information
2015-08-11 10:15:59 ----D---- C:\Windows\system32\catroot2
2015-08-02 04:14:54 ----D---- C:\Windows\tracing
2015-07-30 11:00:05 ----D---- C:\Users\MARTA\AppData\Roaming\vlc
2015-07-29 22:19:29 ----D---- C:\Windows\system32\config
2015-07-29 22:19:25 ----D---- C:\Windows\Tasks
2015-07-29 22:19:25 ----D---- C:\Windows\system32\wbem
2015-07-29 22:19:25 ----D---- C:\Windows\system32\spool
2015-07-29 22:19:25 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-29 22:19:25 ----D---- C:\Windows\registration
2015-07-29 22:19:25 ----D---- C:\Windows\inf
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\GHISLER
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\dvdcss
2015-07-29 22:19:25 ----D---- C:\ProgramData\HP Product Assistant
2015-07-26 21:27:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-25 12:56:41 ----SHD---- C:\$RECYCLE.BIN
2015-07-25 12:49:33 ----D---- C:\Windows\system32\drivers
2015-07-25 12:44:09 ----D---- C:\Windows\system32\Tasks
2015-07-25 12:42:51 ----A---- C:\Windows\system32\MsiExec.exe.log
2015-07-25 12:35:01 ----D---- C:\Windows\Debug
2015-07-22 23:28:05 ----D---- C:\Windows\system32\migration
2015-07-22 23:28:05 ----D---- C:\Program Files\Internet Explorer
2015-07-22 23:27:44 ----D---- C:\Windows\system32\catroot
2015-07-22 23:27:26 ----D---- C:\Windows\system32\MRT
2015-07-21 23:44:02 ----A---- C:\Windows\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-07-25 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-07-25 208664]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-04-26 717296]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-07-25 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-07-25 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-07-25 433264]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-07-25 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-07-25 76000]
R2 zntport;NTPort Library Driver; \??\C:\Windows\system32\drivers\zntport.sys [2007-07-29 14168]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-07-25 161472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-08-10 1941848]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-09-18 452968]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2007-07-04 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-05-10 187320]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-07-25 57888]
S3 azd7i1mm;azd7i1mm; C:\Windows\system32\drivers\azd7i1mm.sys []
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EC168BDA;EC168BDA service; C:\Windows\system32\DRIVERS\EC168BDA.sys [2007-09-03 87296]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-07-30 101504]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-04-03 107736]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 scsiprnt;Třída obecné tiskárny Microsoft SCSI/1394; C:\Windows\system32\DRIVERS\scsiprnt.sys [2008-01-21 14848]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys []
S3 ubloxusb;ubloxusb; C:\Windows\system32\DRIVERS\ubloxusb.sys [2009-11-27 75264]
S3 usbaudio;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 winusb;Služba WinUSB; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ahcix86s;ahcix86s; C:\Windows\system32\drivers\ahcix86s.sys [2007-12-19 170000]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 JRAID;JRAID; C:\Windows\system32\drivers\jraid.sys [2007-09-29 65024]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 nvrd32;NVIDIA nForce RAID Driver; C:\Windows\system32\drivers\nvrd32.sys [2007-10-31 124960]
S4 nvstor32;nvstor32; C:\Windows\system32\drivers\nvstor32.sys [2007-10-31 115744]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-25 146600]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-21 268976]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: vytížený notebook

Napsal: 13 srp 2015 17:04
od Rudy
Zdravfím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: vytížený notebook

Napsal: 13 srp 2015 18:52
od petrys
# AdwCleaner v4.208 - Log vytvořen 13/08/2015 v 19:46:18
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-09.2 [Local]
# Operační system : Windows Vista (TM) Home Basic Service Pack 2 (x86)
# Uživatelské jméno : MARTA - MARTA-PC
# Spuštěno z : C:\Users\MARTA\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\Uniblue
Složka Smazáno : C:\Users\MARTA\AppData\Local\Mindspark_Interactive_Net
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ffjcmnpnoopgilmnfhloocdcbnimmmea_0.localstorage
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ffjcmnpnoopgilmnfhloocdcbnimmmea_0.localstorage-journal
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_eliteunzip.dl.tb.ask.com_0.localstorage
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_eliteunzip.dl.tb.ask.com_0.localstorage-journal
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
Soubor Smazáno : C:\Users\MARTA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
Klíč Smazáno : HKLM\SOFTWARE\Classes\driverscanner
Klíč Smazáno : HKCU\Software\Appscion
Klíč Smazáno : HKLM\SOFTWARE\Uniblue
Klíč Smazáno : HKU\.DEFAULT\Software\AVG Secure Search
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1

***** [ Prohlížeče ] *****

-\\ Internet Explorer v9.0.8112.16669


-\\ Google Chrome v44.0.2403.125

Re: vytížený notebook

Napsal: 13 srp 2015 20:02
od Rudy
Dejte nový log RSIT.

Re: vytížený notebook

Napsal: 14 srp 2015 09:20
od petrys
Logfile of random's system information tool 1.10 (written by random/random)
Run by MARTA at 2015-08-14 10:11:41
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 6 GB (13%) free of 50 GB
Total RAM: 1788 MB (21% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:12:35, on 14.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\DVB-T\DetectTray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wuauclt.exe
C:\Users\MARTA\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\MARTA.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DetectTray] C:\Program Files\DVB-T\DetectTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 3655 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-25 559624]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-08-09 4702208]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-05-10 869936]
"InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2004-06-04 1400944]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-25 6109776]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DetectTray"=C:\Program Files\DVB-T\DetectTray.exe [2008-06-23 155648]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-07-28 53655680]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveTrack"=1
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.3iv2"=3ivxVfWCodec.dll
"VIDC.VP60"=vp6vfw.dll
"VIDC.VP61"=vp6vfw.dll
"VIDC.VP62"=vp6vfw.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.VP31"=vp31vfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.wmv3"=wmv9vcm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-08-13 19:43:17 ----D---- C:\AdwCleaner
2015-08-13 16:23:52 ----D---- C:\rsit
2015-07-25 12:44:01 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-07-25 12:43:48 ----A---- C:\Windows\system32\aswBoot.exe
2015-07-25 12:43:26 ----A---- C:\Windows\avastSS.scr
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmlib.dll
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmfd.dll
2015-07-21 23:47:57 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-21 23:47:56 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\mshta.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-21 23:47:54 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-21 23:47:53 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-21 23:47:52 ----A---- C:\Windows\system32\urlmon.dll
2015-07-21 23:47:52 ----A---- C:\Windows\system32\iertutil.dll
2015-07-21 23:47:51 ----A---- C:\Windows\system32\vbscript.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\wininet.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\jscript.dll
2015-07-21 23:47:41 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-21 23:47:39 ----A---- C:\Windows\system32\url.dll
2015-07-21 23:47:38 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\ieui.dll
2015-07-21 23:47:35 ----A---- C:\Windows\system32\jscript9.dll
2015-07-21 23:47:30 ----A---- C:\Windows\system32\ieframe.dll
2015-07-21 23:25:51 ----A---- C:\Windows\system32\mshtml.dll
2015-07-19 12:36:57 ----A---- C:\Windows\system32\win32k.sys
2015-07-19 12:36:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-19 12:36:09 ----A---- C:\Windows\system32\msiexec.exe
2015-07-19 12:36:07 ----A---- C:\Windows\system32\msi.dll
2015-07-19 12:35:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-19 12:35:07 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-19 12:34:07 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\kerberos.dll
2015-07-19 12:34:04 ----A---- C:\Windows\system32\advapi32.dll
2015-07-19 12:34:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys

======List of files/folders modified in the last 1 month======

2015-08-14 10:11:47 ----D---- C:\Program Files\trend micro
2015-08-14 10:11:34 ----D---- C:\Windows\Temp
2015-08-14 10:11:04 ----D---- C:\Windows\system32\LogFiles
2015-08-13 19:53:48 ----D---- C:\Windows\Prefetch
2015-08-13 19:46:19 ----D---- C:\ProgramData
2015-08-13 16:36:11 ----D---- C:\Windows\System32
2015-08-13 16:36:02 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-08-13 16:12:23 ----D---- C:\Users\MARTA\AppData\Roaming\Skype
2015-08-13 16:09:08 ----D---- C:\Windows
2015-08-11 13:14:53 ----D---- C:\Windows\system32\QuickTime
2015-08-11 13:14:52 ----D---- C:\Program Files
2015-08-11 13:11:25 ----SHD---- C:\Windows\Installer
2015-08-11 13:11:25 ----D---- C:\ProgramData\Skype
2015-08-11 10:43:27 ----D---- C:\Windows\winsxs
2015-08-11 10:42:40 ----SHD---- C:\System Volume Information
2015-08-11 10:15:59 ----D---- C:\Windows\system32\catroot2
2015-08-02 04:14:54 ----D---- C:\Windows\tracing
2015-07-30 11:00:05 ----D---- C:\Users\MARTA\AppData\Roaming\vlc
2015-07-29 22:19:29 ----D---- C:\Windows\system32\config
2015-07-29 22:19:25 ----D---- C:\Windows\Tasks
2015-07-29 22:19:25 ----D---- C:\Windows\system32\wbem
2015-07-29 22:19:25 ----D---- C:\Windows\system32\spool
2015-07-29 22:19:25 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-29 22:19:25 ----D---- C:\Windows\registration
2015-07-29 22:19:25 ----D---- C:\Windows\inf
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\GHISLER
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\dvdcss
2015-07-29 22:19:25 ----D---- C:\ProgramData\HP Product Assistant
2015-07-26 21:27:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-25 12:56:41 ----SHD---- C:\$RECYCLE.BIN
2015-07-25 12:49:33 ----D---- C:\Windows\system32\drivers
2015-07-25 12:44:09 ----D---- C:\Windows\system32\Tasks
2015-07-25 12:42:51 ----A---- C:\Windows\system32\MsiExec.exe.log
2015-07-25 12:35:01 ----D---- C:\Windows\Debug
2015-07-22 23:28:05 ----D---- C:\Windows\system32\migration
2015-07-22 23:28:05 ----D---- C:\Program Files\Internet Explorer
2015-07-22 23:27:44 ----D---- C:\Windows\system32\catroot
2015-07-22 23:27:26 ----D---- C:\Windows\system32\MRT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-07-25 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-07-25 208664]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-04-26 717296]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-07-25 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-07-25 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-07-25 433264]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-07-25 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-07-25 76000]
R2 zntport;NTPort Library Driver; \??\C:\Windows\system32\drivers\zntport.sys [2007-07-29 14168]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-07-25 161472]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-08-10 1941848]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-09-18 452968]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2007-07-04 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-05-10 187320]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 a1jvh1h5;a1jvh1h5; C:\Windows\system32\drivers\a1jvh1h5.sys []
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-07-25 57888]
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EC168BDA;EC168BDA service; C:\Windows\system32\DRIVERS\EC168BDA.sys [2007-09-03 87296]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-07-30 101504]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-04-03 107736]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 scsiprnt;Třída obecné tiskárny Microsoft SCSI/1394; C:\Windows\system32\DRIVERS\scsiprnt.sys [2008-01-21 14848]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys []
S3 ubloxusb;ubloxusb; C:\Windows\system32\DRIVERS\ubloxusb.sys [2009-11-27 75264]
S3 usbaudio;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 winusb;Služba WinUSB; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ahcix86s;ahcix86s; C:\Windows\system32\drivers\ahcix86s.sys [2007-12-19 170000]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 JRAID;JRAID; C:\Windows\system32\drivers\jraid.sys [2007-09-29 65024]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 nvrd32;NVIDIA nForce RAID Driver; C:\Windows\system32\drivers\nvrd32.sys [2007-10-31 124960]
S4 nvstor32;nvstor32; C:\Windows\system32\drivers\nvstor32.sys [2007-10-31 115744]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-25 146600]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-13 269000]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: vytížený notebook

Napsal: 14 srp 2015 17:11
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: vytížený notebook

Napsal: 14 srp 2015 23:46
od petrys
Logfile of random's system information tool 1.10 (written by random/random)
Run by MARTA at 2015-08-15 00:40:53
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 6 GB (13%) free of 50 GB
Total RAM: 1788 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:42:18, on 15.8.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16669)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\DVB-T\DetectTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Users\MARTA\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\MARTA.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DetectTray] C:\Program Files\DVB-T\DetectTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 3581 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-25 559624]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-08-09 4702208]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-05-10 869936]
"InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2004-06-04 1400944]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-25 6109776]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DetectTray"=C:\Program Files\DVB-T\DetectTray.exe [2008-06-23 155648]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2015-07-28 53655680]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveTrack"=1
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.3iv2"=3ivxVfWCodec.dll
"VIDC.VP60"=vp6vfw.dll
"VIDC.VP61"=vp6vfw.dll
"VIDC.VP62"=vp6vfw.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.VP31"=vp31vfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.wmv3"=wmv9vcm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-08-15 00:34:22 ----D---- C:\_OTM
2015-08-13 19:43:17 ----D---- C:\AdwCleaner
2015-08-13 16:23:52 ----D---- C:\rsit
2015-07-25 12:44:01 ----A---- C:\Windows\system32\drivers\aswStmXP.sys
2015-07-25 12:43:48 ----A---- C:\Windows\system32\aswBoot.exe
2015-07-25 12:43:26 ----A---- C:\Windows\avastSS.scr
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmlib.dll
2015-07-22 23:27:29 ----A---- C:\Windows\system32\atmfd.dll
2015-07-21 23:47:57 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-07-21 23:47:56 ----A---- C:\Windows\system32\msfeedssync.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\mshta.exe
2015-07-21 23:47:55 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-21 23:47:54 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-21 23:47:53 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-21 23:47:52 ----A---- C:\Windows\system32\urlmon.dll
2015-07-21 23:47:52 ----A---- C:\Windows\system32\iertutil.dll
2015-07-21 23:47:51 ----A---- C:\Windows\system32\vbscript.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\wininet.dll
2015-07-21 23:47:42 ----A---- C:\Windows\system32\jscript.dll
2015-07-21 23:47:41 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-21 23:47:39 ----A---- C:\Windows\system32\url.dll
2015-07-21 23:47:38 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-21 23:47:37 ----A---- C:\Windows\system32\ieui.dll
2015-07-21 23:47:35 ----A---- C:\Windows\system32\jscript9.dll
2015-07-21 23:47:30 ----A---- C:\Windows\system32\ieframe.dll
2015-07-21 23:25:51 ----A---- C:\Windows\system32\mshtml.dll
2015-07-19 12:36:57 ----A---- C:\Windows\system32\win32k.sys
2015-07-19 12:36:47 ----A---- C:\Windows\system32\ole32.dll
2015-07-19 12:36:09 ----A---- C:\Windows\system32\msiexec.exe
2015-07-19 12:36:07 ----A---- C:\Windows\system32\msi.dll
2015-07-19 12:35:56 ----A---- C:\Windows\system32\gdi32.dll
2015-07-19 12:35:07 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-19 12:34:08 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-19 12:34:07 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-19 12:34:05 ----A---- C:\Windows\system32\kerberos.dll
2015-07-19 12:34:04 ----A---- C:\Windows\system32\advapi32.dll
2015-07-19 12:34:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys

======List of files/folders modified in the last 1 month======

2015-08-15 00:41:00 ----D---- C:\Program Files\trend micro
2015-08-15 00:40:49 ----D---- C:\Windows\Temp
2015-08-15 00:39:59 ----D---- C:\Users\MARTA\AppData\Roaming\Skype
2015-08-15 00:34:55 ----D---- C:\Windows\Prefetch
2015-08-15 00:34:24 ----D---- C:\Windows\Tasks
2015-08-14 10:11:04 ----D---- C:\Windows\system32\LogFiles
2015-08-13 19:46:19 ----D---- C:\ProgramData
2015-08-13 16:36:11 ----D---- C:\Windows\System32
2015-08-13 16:36:02 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-08-13 16:09:08 ----D---- C:\Windows
2015-08-11 13:14:53 ----D---- C:\Windows\system32\QuickTime
2015-08-11 13:14:52 ----D---- C:\Program Files
2015-08-11 13:11:25 ----SHD---- C:\Windows\Installer
2015-08-11 13:11:25 ----D---- C:\ProgramData\Skype
2015-08-11 10:43:27 ----D---- C:\Windows\winsxs
2015-08-11 10:42:40 ----SHD---- C:\System Volume Information
2015-08-11 10:15:59 ----D---- C:\Windows\system32\catroot2
2015-08-02 04:14:54 ----D---- C:\Windows\tracing
2015-07-30 11:00:05 ----D---- C:\Users\MARTA\AppData\Roaming\vlc
2015-07-29 22:19:29 ----D---- C:\Windows\system32\config
2015-07-29 22:19:25 ----D---- C:\Windows\system32\wbem
2015-07-29 22:19:25 ----D---- C:\Windows\system32\spool
2015-07-29 22:19:25 ----D---- C:\Windows\system32\CodeIntegrity
2015-07-29 22:19:25 ----D---- C:\Windows\registration
2015-07-29 22:19:25 ----D---- C:\Windows\inf
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\GHISLER
2015-07-29 22:19:25 ----D---- C:\Users\MARTA\AppData\Roaming\dvdcss
2015-07-29 22:19:25 ----D---- C:\ProgramData\HP Product Assistant
2015-07-26 21:27:17 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-25 12:56:41 ----SHD---- C:\$RECYCLE.BIN
2015-07-25 12:49:33 ----D---- C:\Windows\system32\drivers
2015-07-25 12:44:09 ----D---- C:\Windows\system32\Tasks
2015-07-25 12:42:51 ----A---- C:\Windows\system32\MsiExec.exe.log
2015-07-25 12:35:01 ----D---- C:\Windows\Debug
2015-07-22 23:28:05 ----D---- C:\Windows\system32\migration
2015-07-22 23:28:05 ----D---- C:\Program Files\Internet Explorer
2015-07-22 23:27:44 ----D---- C:\Windows\system32\catroot
2015-07-22 23:27:26 ----D---- C:\Windows\system32\MRT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-07-25 49776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-07-25 208664]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-04-26 717296]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2015-07-25 55200]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-07-25 788784]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-07-25 433264]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-07-25 24016]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-07-25 76000]
R2 zntport;NTPort Library Driver; \??\C:\Windows\system32\drivers\zntport.sys [2007-07-29 14168]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-01-13 954368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-08-10 1941848]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-09-18 452968]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2007-07-04 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-05-10 187320]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2015-07-25 161472]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2015-07-25 57888]
S3 atwq38be;atwq38be; C:\Windows\system32\drivers\atwq38be.sys []
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EC168BDA;EC168BDA service; C:\Windows\system32\DRIVERS\EC168BDA.sys [2007-09-03 87296]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-07-30 101504]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2014-04-03 107736]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 scsiprnt;Třída obecné tiskárny Microsoft SCSI/1394; C:\Windows\system32\DRIVERS\scsiprnt.sys [2008-01-21 14848]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys []
S3 ubloxusb;ubloxusb; C:\Windows\system32\DRIVERS\ubloxusb.sys [2009-11-27 75264]
S3 usbaudio;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-07-12 73344]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 winusb;Služba WinUSB; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ahcix86s;ahcix86s; C:\Windows\system32\drivers\ahcix86s.sys [2007-12-19 170000]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 JRAID;JRAID; C:\Windows\system32\drivers\jraid.sys [2007-09-29 65024]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 nvrd32;NVIDIA nForce RAID Driver; C:\Windows\system32\drivers\nvrd32.sys [2007-10-31 124960]
S4 nvstor32;nvstor32; C:\Windows\system32\drivers\nvstor32.sys [2007-10-31 115744]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-25 146600]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-13 269000]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-19 107912]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-09-11 770168]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Re: vytížený notebook

Napsal: 15 srp 2015 10:03
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: vytížený notebook

Napsal: 17 srp 2015 20:37
od petrys
Mnohem lepší už žádný problém díky za váš čas a pomoc :thumbsup:

Re: vytížený notebook

Napsal: 17 srp 2015 20:39
od Rudy
Rádo se stalo! :)