Stránka 1 z 1

Procesor pořád fachá...

Napsal: 18 úno 2010 14:52
od pasa
Neustále pracuje procesor cca na 50% . Projel jsem to CCleanerem a Spyware Terminatorem a nějak pořád žádný úspěch...
Děkuji.
Zde výpis z UPM:

Windows Vista SP 1 (build 6001)
Boot Mode: Normal
Ověření souborů Microsoftu: Ano
Whitelist: Ano
Internet Explorer v8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
Log vygenerován: 18.2.2010 12:30:59
================================================================

Běžící procesy
================================================================

C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
(rootkit?) audiodg.exe
C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
C:\PROGRAM FILES\INTEL\INTEL MATRIX STORAGE MANAGER\IAANOTIF.EXE
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPSTART.EXE
C:\WINDOWS\RTHDVCPL.EXE
C:\USERS\PAVEL\APPDATA\LOCAL\TEMP\RTKBTMNT.EXE
C:\ACER\EMPOWERING TECHNOLOGY\EDATASECURITY\X86\EDSSERVICE.EXE
C:\PROGRAM FILES\ESET\ESET NOD32 ANTIVIRUS\EKRN.EXE
C:\ACER\EMPOWERING TECHNOLOGY\ELOCK\SERVICE\ELOCKSERV.EXE
C:\ACER\EMPOWERING TECHNOLOGY\ENET\ENET SERVICE.EXE
C:\PROGRAM FILES\INTEL\INTEL MATRIX STORAGE MANAGER\IAANTMON.EXE
C:\PROGRAM FILES\ICQ6TOOLBAR\ICQ SERVICE.EXE
C:\ACER\MOBILITY CENTER\MOBILITYSERVICE.EXE
C:\PROGRAM FILES\SPYWARE TERMINATOR\SP_RSSER.EXE
C:\WINDOWS\SYSTEM32\DRIVERS\XAUDIO.EXE
C:\ACER\EMPOWERING TECHNOLOGY\ERECOVERY\ERECOVERYSERVICE.EXE
C:\ACER\EMPOWERING TECHNOLOGY\ESETTINGS\SERVICE\CAPUSERV.EXE
C:\ACER\EMPOWERING TECHNOLOGY\EPOWER\EPOWERSVC.EXE
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPENH.EXE
C:\PROGRAM FILES\LAUNCH MANAGER\LMANAGER.EXE
C:\PROGRAM FILES\ESET\ESET NOD32 ANTIVIRUS\EGUI.EXE
C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBARNOTIFIER\GOOGLETOOLBARNOTIFIER.EXE
C:\PROGRAM FILES\WIDCOMM\BLUETOOTH SOFTWARE\BTTRAY.EXE
C:\PROGRAM FILES\SPYWARE TERMINATOR\SPYWARETERMINATORSHIELD.EXE

Scanner
================================================================
[?] Ati2evxx.exe
Non Microsoft v System32:
Nemá okno

[S] audiodg.exe
Proces se nepodařilo otevřít
ROOTKIT? Skrytá cesta
Spouští se po startu HKCU Run [Skype]
Nelze otevřít

[S] SLsvc.exe
EntryPoint v sekci: .TEXT
|_ Celkový počet sekcí: 5

[?] Ati2evxx.exe
Non Microsoft v System32:

[S] explorer.exe
Spouští se po startu HKLM Winlogon [Shell]

[?] IAAnotif.exe
Spouští se po startu HKLM Run [IAAnotif]
Soubor 7%

[?] SynTPStart.exe
Spouští se po startu HKLM Run [SynTPStart]

[?] RtHDVCpl.exe
Spouští se po startu HKLM Run [RtHDVCpl]

[R] MOM.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 3
Podvržená cesta modulu: (00B60000) [DLL] ?
Podvržená cesta modulu: (00C20000) [DLL] ?

[?] RtkBtMnt.exe
Nemá okno
Soubor 7%

[R] CCC.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 3
Podvržená cesta modulu: (00AC0000) [DLL] ?
Podvržená cesta modulu: (01A10000) [DLL] ?
Podvržená cesta modulu: (03F70000) [DLL] ?
Podvržená cesta modulu: (04A30000) [DLL] ?
Podvržená cesta modulu: (04A50000) [DLL] ?
Podvržená cesta modulu: (04B70000) [DLL] ?
Podvržená cesta modulu: (05130000) [DLL] ?
Podvržená cesta modulu: (05370000) [DLL] ?
Podvržená cesta modulu: (05660000) [DLL] ?
Podvržená cesta modulu: (057C0000) [DLL] ?
Podvržená cesta modulu: (05CC0000) [DLL] ?
Podvržená cesta modulu: (06440000) [DLL] ?
Podvržená cesta modulu: (068D0000) [DLL] ?
Podvržená cesta modulu: (06DD0000) [DLL] ?
Podvržená cesta modulu: (06FE0000) [DLL] ?
Podvržená cesta modulu: (07640000) [DLL] ?

[?] eDSService.exe
Nemá okno
Soubor 14%

[?] ekrn.exe
Nemá okno
Soubor 7%

[?] eLockServ.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 3
Podvržená cesta modulu: (00B70000) [DLL] ?
Nemá okno
Soubor 7%

[?] eNet Service.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 5
Podvržená cesta modulu: (03FB0000) [DLL] ?
Nemá okno
Soubor 7%

[?] IAANTmon.exe
Nemá okno
Soubor 7%

[?] ICQ Service.exe
Nemá okno
Soubor 7%

[?] MobilityService.exe
Bez výrobce
EntryPoint v sekci:
|_ Celkový počet sekcí: 5
Podvržená cesta modulu: (016B0000) [DLL] ?
Nemá okno
Soubor 12%

[?] sp_rsser.exe
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Nemá okno
Soubor 70%

[?] XAudio.exe
Non Microsoft v System32:
Nemá okno

[?] eRecoveryService.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 3
Podvržená cesta modulu: (00B90000) [DLL] ?
Nemá okno
Soubor 7%

[?] capuserv.exe
Bez výrobce
EntryPoint v sekci:
|_ Celkový počet sekcí: 3
Podvržená cesta modulu: (00C80000) [DLL] ?
Nemá okno
Soubor 12%

[?] ePowerSvc.exe
EntryPoint v sekci:
|_ Celkový počet sekcí: 5
Podvržená cesta modulu: (01BF0000) [DLL] ?
Nemá okno
Soubor 7%

[?] LManager.exe
Spouští se po startu HKLM Run [LManager]
Soubor 14%

[?] egui.exe
Spouští se po startu HKLM Run [egui]
Soubor 7%

[?] GoogleToolbarNotifier.exe
Spouští se po startu HKCU Run [swg]
Soubor 14%

[?] BTTray.exe
Spouští se po startu Po spuštění []
Soubor 7%

[?] SpywareTerminatorShield.Exe
Spouští se po startu HKLM Run [SpywareTerminator]
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Soubor 70%

[S] taskeng.exe
ROOTKIT? Skrytá cesta
Spouští se po startu HKCU Run [Skype]
Jiná ImageBase 00000000h
BaseAddress
Skrytá cesta EXE:
Podvržená cesta modulu: (00000000)

[S] taskmgr.exe
ROOTKIT? Skrytá cesta
Spouští se po startu HKCU Run [Skype]
Jiná ImageBase 00000000h
BaseAddress
Skrytá cesta EXE:
Podvržená cesta modulu: (00000000)

[S] conime.exe
Skrytá cesta EXE:


Po spuštění
================================================================

HKCU Run
|_ [!][Skype] C:\Program Files\Skype\Phone\Skype.exe /nosplash /minimized
|_ [!][SpywareTerminatorUpdate] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
|_ [?][swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

HKLM Run
|_ [?][IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
|_ [?][SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
|_ [?][RtHDVCpl] C:\Windows\RtHDVCpl.exe
|_ [?][LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
|_ [X][eRecoveryService] (Soubor nenalezen)
|_ [?][WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
|_ [?][egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice
|_ [!][SpywareTerminator] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe

HKLM ShellServiceObjectDelayLoad
|_ [X][WebCheck] (Soubor nenalezen)

HKLM IC
|_ [?][{89820200-ECBD-11cf-8B85-00AA005B4340}] regsvr32.exe /s /n /i:U shell32.dll

HKLM AppInit_DLLs
|_ [?][AppInit_DLLs] C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

Po spuštění
|_ C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
|_ [?][Bluetooth.lnk] C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe


HKLM BHO
|_ [X][{02478D38-C3F9-4efb-9B51-7695ECA05670}] (Soubor nenalezen)
|_ [X][{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] (Soubor nenalezen)
|_ [!][{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}] C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
|_ [?][{22BF413B-C6D2-4d91-82A9-A0F997BA588C}] C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
|_ [?][{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}] C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
|_ [?][{AA58ED58-01DD-4d91-8333-CF10577473F7}] C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
|_ [?][{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll

HKCU IE WebBrowser Toolbar
|_ [?][{2318C2B1-4965-11D4-9B18-009027A5CD4F}] C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
|_ [!][{4B3803EA-5230-4DC3-A7FC-33638F3D3542}] C:\PROGRA~1\Crawler\Toolbar\ctbr.dll

HKLM IE Toolbar
|_ [?][{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}] C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
|_ [?][{855F3B16-6D32-4fe6-8A56-BBB695989046}] C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
|_ [?][{2318C2B1-4965-11d4-9B18-009027A5CD4F}] C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
|_ [!][{4B3803EA-5230-4DC3-A7FC-33638F3D3542}] C:\PROGRA~1\Crawler\Toolbar\ctbr.dll

Služby (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] Ati External Event Utility
|_ Cesta: C:\Windows\system32\Ati2evxx.exe
| |_ Výrobce: ATI Technologies Inc.
| |_ Popis: ATI External Event Utility EXE Module
| |_ MD5: 098C7CE10A929C9E101468377609882D
|
|_ Jméno: Ati External Event Utility
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:

[?] eDataSecurity Service
|_ Cesta: C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
| |_ Výrobce: Egis Incorporated
| |_ Popis: Acer eDataSecurity Management Service
| |_ MD5: 668DCA122FFC7F10BECA6055E15FFABD
|
|_ Jméno: eDataSecurity Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:

[?] Eset Service
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
| |_ Výrobce: ESET
| |_ Popis: Eset Service
| |_ MD5: D5D4124827086BA54F6BFE75CE330531
|
|_ Jméno: ekrn
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:

[?] eLock Service
|_ Cesta: C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
| |_ Výrobce: Acer Inc.
| |_ Popis: Acer eLock Management
| |_ MD5: E28516FED46251119ADDAF4CF33BA401
|
|_ Jméno: eLockService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:

[?] eNet Service
|_ Cesta: C:\Acer\Empowering Technology\eNet\eNet Service.exe
| |_ Výrobce: Acer Inc.
| |_ Popis: acer eNet Management Service
| |_ MD5: 44E8E86CEEB0D9F0F934B5EDC21E0444
|
|_ Jméno: eNet Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:

[?] eRecovery Service
|_ Cesta: C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
| |_ Výrobce: Acer Inc.
| |_ Popis: eRecoveryService
| |_ MD5: 59FCCAF915BA89DD98CADF08DA91AFEE
|
|_ Jméno: eRecoveryService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency: winmgmt

[?] eSettings Service
|_ Cesta: C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
| |_ Výrobce: ?
| |_ Popis: Service
| |_ MD5: A9745687A57CDD71237915859ABA8DAC
|
|_ Jméno: eSettingsService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency: int15

[X] Google Update Service (gupdate1c9b056f05c8f1a)
|_ Cesta: C:\Program Files\Google\Update\GoogleUpdate.exe /svc
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: gupdate1c9b056f05c8f1a
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency: RPCSS

[?] Intel(R) Matrix Storage Event Monitor
|_ Cesta: C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
| |_ Výrobce: Intel Corporation
| |_ Popis: RAID Monitor
| |_ MD5: 72B53E9C8924949DEC8F3799BCBA2251
|
|_ Jméno: IAANTMON
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:

[?] ICQ Service
|_ Cesta: C:\Program Files\ICQ6Toolbar\ICQ Service.exe
| |_ Výrobce:
| |_ Popis: ICQIEUpdater Module
| |_ MD5: A4E43A7AB1202356BEBEB6B798F15488
|
|_ Jméno: ICQ Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: RPCSS

[?] MobilityService
|_ Cesta: C:\Acer\Mobility Center\MobilityService.exe
| |_ Výrobce: ?
| |_ Popis: app
| |_ MD5: DF89F8DC584FDDF01906E1DD533E4F62
|
|_ Jméno: MobilityService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:

[!] Spyware Terminator Realtime Shield Service
|_ Cesta: C:\Program Files\Spyware Terminator\sp_rsser.exe
| |_ Výrobce: Crawler.com
| |_ Popis: Spyware Terminator Realtime Shield Service
| |_ MD5: 7601CC42B6382FA03C3F55A663761D3B
|
|_ Jméno: sp_rssrv
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:

[?] ePower Service
|_ Cesta: C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
| |_ Výrobce: acer
| |_ Popis: WMIServi Application
| |_ MD5: C8F8AAC50B5B0BF821AB7D7126056B30
|
|_ Jméno: WMIService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: winmgmt

[?] XAudioService
|_ Cesta: C:\Windows\system32\DRIVERS\xaudio.exe
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: Modem Audio Service
| |_ MD5: 15A317674A08DF26BE65164D959E9203
|
|_ Jméno: XAudioService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:


Ovladače (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] atikmdag
|_ Cesta: C:\Windows\system32\DRIVERS\atikmdag.sys
| |_ Výrobce: ATI Technologies Inc.
| |_ Popis: ATI Radeon Kernel Mode Driver
| |_ MD5: 2DC63AFB58A1B166CF1D1B5A9F144135
|
|_ Jméno: atikmdag
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0
|_ Cesta: C:\Windows\system32\DRIVERS\b57nd60x.sys
| |_ Výrobce: Broadcom Corporation
| |_ Popis: Broadcom NetXtreme Gigabit Ethernet NDIS6.0 Driver.
| |_ MD5: AA6B367CA7DA571DFC3374EC137D87A5
|
|_ Jméno: b57nd60x
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Dritek Keyboard Filter Driver
|_ Cesta: C:\Windows\system32\DRIVERS\DKbFltr.sys
| |_ Výrobce: Dritek System Inc.
| |_ Popis: Dritek PS2 Keyboard Filter Driver
| |_ MD5: 73BAF270D24FE726B9CD7F80BB17A23D
|
|_ Jméno: DKbFltr
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] EAMON
|_ Cesta: C:\Windows\system32\DRIVERS\eamon.sys
| |_ Výrobce: ESET
| |_ Popis: Amon monitor
| |_ MD5: 7A25AD652A3003B8854E873A3324E672
|
|_ Jméno: eamon
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] easdrv
|_ Cesta: C:\Windows\system32\DRIVERS\easdrv.sys
| |_ Výrobce: ESET
| |_ Popis: Eset AntiStealth driver
| |_ MD5: C7C17BC80B7264322207ABC31F20EA84
|
|_ Jméno: easdrv
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] epfwtdir
|_ Cesta: C:\Windows\system32\DRIVERS\epfwtdir.sys
| |_ Výrobce:
| |_ Popis:
| |_ MD5: 74051DA749E5E89A14DDAB5BA4A03A7F
|
|_ Jméno: epfwtdir
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] HSF_DPV
|_ Cesta: C:\Windows\system32\DRIVERS\HSX_DPV.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_DP driver
| |_ MD5: 7BC42C65B5C6281777C1A7605B253BA8
|
|_ Jméno: HSF_DPV
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] HSXHWAZL
|_ Cesta: C:\Windows\system32\DRIVERS\HSXHWAZL.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_HWAZL WDM driver
| |_ MD5: 9EBF2D102CCBB6BCDFBF1B7922F8BA2E
|
|_ Jméno: HSXHWAZL
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Intel AHCI Controller
|_ Cesta: C:\Windows\system32\DRIVERS\iaStor.sys
| |_ Výrobce: Intel Corporation
| |_ Popis: Intel Matrix Storage Manager driver - ia32
| |_ MD5: E5A0034847537EAEE3C00349D5C34C5F
|
|_ Jméno: iaStor
|_ StartName:
|_ Typ spouštění: Boot Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] int15
|_ Cesta: C:\Windows\system32\drivers\int15.sys
| |_ Výrobce: Acer, Inc.
| |_ Popis: int15
| |_ MD5: C6E5276C00EBDEB096BB5EF4B797D1B6
|
|_ Jméno: int15
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Service for Realtek HD Audio (WDM)
|_ Cesta: C:\Windows\system32\drivers\RTKVHDA.sys
| |_ Výrobce: Realtek Semiconductor Corp.
| |_ Popis: Realtek(r) High Definition Audio Function Driver
| |_ MD5: B795745F7E51AA20D46753EC5A811ACA
|
|_ Jméno: IntcAzAudAddService
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit
|_ Cesta: C:\Windows\system32\DRIVERS\NETw4v32.sys
| |_ Výrobce: Intel Corporation
| |_ Popis: Intel® Wireless WiFi Link Driver
| |_ MD5: 38D720E0C8B0ECB9A019980265679798
|
|_ Jméno: NETw4v32
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] NSC Infrared Device Driver
|_ Cesta: C:\Windows\system32\DRIVERS\nscirda.sys
| |_ Výrobce: National Semiconductor Corporation
| |_ Popis: NSC Fast Infrared Driver.
| |_ MD5: 6D8D2E5652FC2442C810C5D8BE784148
|
|_ Jméno: NSCIRDA
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] PSDFilter
|_ Cesta: C:\Windows\system32\DRIVERS\psdfilter.sys
| |_ Výrobce: Egis Incorporated
| |_ Popis: Acer eDataSecurity Management PSD Filter Driver
| |_ MD5: 18DE162F9B83079C24CD96F59292F5ED
|
|_ Jméno: PSDFilter
|_ StartName:
|_ Typ spouštění: Boot Start
|_ Status: Spuštěno
|_ Typ: File System Driver
|_ Dependency:

[?] PSDNServ
|_ Cesta: C:\Windows\system32\DRIVERS\PSDNServ.sys
| |_ Výrobce: Egis Incorporated
| |_ Popis: Acer eDataSecurity Management PSD Named Pipe Driver
| |_ MD5: BC1457A28E76AB3106D43802AC22A627
|
|_ Jméno: PSDNServ
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] PSDVdisk
|_ Cesta: C:\Windows\system32\DRIVERS\PSDVdisk.sys
| |_ Výrobce: Egis Incorporated
| |_ Popis: Acer eDataSecurity Management PSD Virtual Disk Driver
| |_ MD5: AC151E5B0943304E368C98EC78B5FC4F
|
|_ Jméno: psdvdisk
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Spyware Terminator Driver 2
|_ Cesta: C:\Windows\system32\drivers\sp_rsdrv2.sys
| |_ Výrobce: ?
| |_ Popis: ?
| |_ MD5: 8831252BCF05FCFB5ABD116A22E552D8
|
|_ Jméno: sp_rsdrv2
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] Synaptics TouchPad Driver
|_ Cesta: C:\Windows\system32\DRIVERS\SynTP.sys
| |_ Výrobce: Synaptics, Inc.
| |_ Popis: Synaptics Touchpad Driver
| |_ MD5: C5F25D490D0915732508FD421BF76D93
|
|_ Jméno: SynTP
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] tifm21
|_ Cesta: C:\Windows\system32\drivers\tifm21.sys
| |_ Výrobce: Texas Instruments
| |_ Popis: tifm21.sys
| |_ MD5: 78213F01CE781F93180BEF5EB5B3AD81
|
|_ Jméno: tifm21
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] winachsf
|_ Cesta: C:\Windows\system32\DRIVERS\HSX_CNXT.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_CNXT driver
| |_ MD5: 5A77AC34A0FFB70CE8B35B524FEDE9BA
|
|_ Jméno: winachsf
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:

[?] XAudio
|_ Cesta: C:\Windows\system32\DRIVERS\xaudio.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: Modem Audio Device Driver
| |_ MD5: 88AF537264F2B818DA15479CEEAF5D7C
|
|_ Jméno: XAudio
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:


Moduly (Zobraz i bezpečné DLL: False, Jen bez výrobce: True, Zobraz registrované: False)
================================================================
[!] sptcontmenu.dll
|_ Cesta: C:\Program Files\Spyware Terminator\sptcontmenu.dll
|_ MD5: A5E97B2B88CC48FC178E88BF6E02F5EC
|_ Výrobce: Crawler.com
|_ Procesy
|_ explorer.exe (1872)

[?] edsshellext.dll
|_ Cesta: C:\Acer\Empowering Technology\eDataSecurity\x86\eDSshellExt.dll
|_ MD5: A2E7395AC557A9D74BB711D20215C738
|_ Výrobce: Egis Incorporated.
|_ Procesy
|_ explorer.exe (1872)

[?] acroiehelper.dll
|_ Cesta: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
|_ MD5: C11F6A1F61481E24BE3FDC06EA6F7D2A
|_ Výrobce: Adobe Systems Incorporated
|_ Procesy
|_ explorer.exe (1872)

[?] edstoolbar.dll
|_ Cesta: C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
|_ MD5: F4BA23F29BE72B9EE4AF2E0886AA9776
|_ Výrobce: Egis Incorporated.
|_ Procesy
|_ explorer.exe (1872)

[?] btncopy.dll
|_ Cesta: C:\Windows\System32\BTNCopy.dll
|_ MD5: 0574EC2D8C4F1C18E6C13CBB41F47203
|_ Výrobce: Broadcom Corporation.
|_ Procesy
|_ explorer.exe (1872)

[?] btmmhook.dll
|_ Cesta: C:\Windows\System32\BtMmHook.dll
|_ MD5: 8FB58CF7E842B197BCA9F6D759A40B7F
|_ Výrobce: Broadcom Corporation.
|_ Procesy
|_ explorer.exe (1872)
|_ CCC.exe (2268)
|_ egui.exe (3856)
|_ BTTray.exe (2464)
|_ dwm.exe (6080)

[?] btkeyind.dll
|_ Cesta: C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
|_ MD5: D98B5D7E78CC1FDA8789A837AD6F3E43
|_ Výrobce:
|_ Procesy
|_ explorer.exe (1872)
|_ BTTray.exe (2464)

[?] activetoolband.dll
|_ Cesta: C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
|_ MD5: 89B108C33A6512A69A5A51A606CF46C4
|_ Výrobce: HiTRUST
|_ Procesy
|_ explorer.exe (1872)

[?] psdprotect.dll
|_ Cesta: C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
|_ MD5: 4072CA374805A6AE5F412CBF09A016A5
|_ Výrobce: Egis Incorporated
|_ Procesy
|_ explorer.exe (1872)

[?] shellext.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll
|_ MD5: 4B6EBD84217FCA70A0356964C614CA4A
|_ Výrobce: ESET
|_ Procesy
|_ explorer.exe (1872)

[?] isdi.dll
|_ Cesta: C:\Program Files\Intel\Intel Matrix Storage Manager\ISDI.dll
|_ MD5: 3A1E66A261DEA3187EF5DCC746CDE971
|_ Výrobce: Intel Corporation
|_ Procesy
|_ IAAnotif.exe (1340)
|_ IAANTmon.exe (2752)

[?] aem.server.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\AEM.Server\2.0.3050.37213__90ba9c70f846762e\AEM.Server.DLL
|_ MD5: AADDAF60603A47D3CD8B7ADBCB463B8C
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ MOM.exe (268)
|_ MOM.exe (268)
|_ CCC.exe (2268)
|_ CCC.exe (2268)

[?] log.foundation.implementation.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3050.37466__90ba9c70f846762e\LOG.Foundation.Implementation.dll
|_ MD5: 740169CCC020767D7AEBE4B3EE2EE9AE
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ MOM.exe (268)
|_ CCC.exe (2268)

[?] mom.implementation.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\MOM.Implementation\2.0.3050.37467__90ba9c70f846762e\MOM.Implementation.DLL
|_ MD5: 132D05E3CB2CE55A1532B19458FCCD66
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ MOM.exe (268)
|_ CCC.exe (2268)
|_ CCC.exe (2268)

[?] aticccom.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.DLL
|_ MD5: DCC352FF4BB866F39DFD7CDD2777C533
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)
|_ CCC.exe (2268)

[?] atidemos.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\ATIDEMOS\2.0.3050.37215__90ba9c70f846762e\ATIDEMOS.DLL
|_ MD5: 18749268DD2D4E805D48C339F419DE35
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)
|_ CCC.exe (2268)

[?] apm.server.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\APM.Server\2.0.3050.37213__90ba9c70f846762e\APM.Server.DLL
|_ MD5: F5E80737E448F6B7427CB4A82E5E4E50
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)
|_ CCC.exe (2268)

[?] cli.component.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3050.37228__90ba9c70f846762e\CLI.Component.Dashboard.dll
|_ MD5: 580C520E14FA511CD270AC14659560C7
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.displaysmanager.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3050.37261__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll
|_ MD5: 311F577CF7D25D512531545CD894EA94
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicetv.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Dashboard\2.0.3050.37448__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Dashboard.dll
|_ MD5: 1E2C6DF8B8EEE2AE866B605DA55638DD
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicedfp.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Dashboard\2.0.3050.37365__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Dashboard.dll
|_ MD5: 68CEB8B49B241AF8A0B89A19BF9A0328
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicelcd.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Dashboard\2.0.3050.37405__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Dashboard.dll
|_ MD5: 6EC2293CFE79B7AA8B5B192D049F1F0A
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicecrt.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3050.37372__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll
|_ MD5: 1E7088B760F6DC31F6D785754A0030BE
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.displaysmanager.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3050.37241__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll
|_ MD5: 5BAB27EE1FB5356C3A694E59CE8D0ECE
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.infocentre.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3050.37281__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll
|_ MD5: B29BEE99F31557ED8E78BF5571223E6C
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.welcome.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3050.37482__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll
|_ MD5: 57F65BD2A39D5DC02F57CB7B0F6A67B4
|_ Výrobce: Advanced Mirco Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.caste.graphics.dashboard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3050.37234__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll
|_ MD5: 035AC1C0E1FC0802063D8F49C91C8775
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicetv.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Wizard\2.0.3050.37453__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Wizard.dll
|_ MD5: 58099C89B54711AAC280371D39E46C0C
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicelcd.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Wizard\2.0.3050.37293__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Wizard.dll
|_ MD5: 145793ADDE71F827C6EF6DE8CB0EF92C
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.infocentre.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3050.37274__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll
|_ MD5: A2F266D952CAC4F0701466F62D048FDF
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.transcode.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3050.37475__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll
|_ MD5: 25A028B553B365181F445660BEE4E745
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.component.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3050.37248__90ba9c70f846762e\CLI.Component.Wizard.dll
|_ MD5: BAF94D77D109BF04790169A7E9BC0799
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.radeon3d.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3050.37425__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll
|_ MD5: 2B06B00ACD78F7DAEF3EEACA66345F3F
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.caste.graphics.wizard.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3050.37253__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll
|_ MD5: 9732B23BFE14DA896104FF71AE702F43
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicedfp.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3050.37371__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll
|_ MD5: FDA4E38022364DE15E88584C228BA81A
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicelcd.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3050.37404__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll
|_ MD5: 6DB327372BBF4A3C6D8510D98C4674A6
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicetv.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3050.37446__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll
|_ MD5: B92CA06A9816264D44BAA35806F5C99F
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.deviceproperty.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3050.37370__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll
|_ MD5: 4C86D6ACAAED775E4F286AF8A8048E96
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicecv.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3050.37411__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll
|_ MD5: 4B1B47F5D180495937D8E76FA8C74A3C
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.hotkeyshandling.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3050.37240__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll
|_ MD5: 2DB620FE0C2F7B279CEF7178F403255F
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.caste.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3050.37221__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll
|_ MD5: DAC3D1168492BA0249BCD3944BCBB41F
|_ Výrobce: Advanced Mirco Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] aem.plugin.source.kit.server.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3050.37493__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll
|_ MD5: 9A54313606227865058E383FBA3940DB
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.aspect.devicecrt.graphics.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3050.37377__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll
|_ MD5: F2B1DD485B0EBC376842620A8AEF46FA
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.component.runtime.extension.eeu.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3050.37214__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll
|_ MD5: B1119EA129BF09C1E0186CFDDB99301F
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] cli.component.runtime.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3050.37214__90ba9c70f846762e\CLI.Component.Runtime.dll
|_ MD5: DEEB01E63919DE8AE3C919FE211256E2
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] ccc.implementation.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CCC.Implementation\2.0.3050.37467__90ba9c70f846762e\CCC.Implementation.DLL
|_ MD5: 3D9C083AFEC75F72493BFFE780B25733
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2268)

[?] ekrnepfw.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnEpfw.dll
|_ MD5: BBBAB58F30F6634674856085265A4E32
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] updater.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\updater.dll
|_ MD5: 5748F6E9A70F8D0740E82AAFFC756E7E
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] ekrnupdate.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnUpdate.dll
|_ MD5: 591C12301D2A14A7077F5B2BF774949A
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] ekrnamon.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnAmon.dll
|_ MD5: B61CF090F99137C761EE81EC07A7086B
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] ekrnemon.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnEmon.dll
|_ MD5: 7F29B4CD000376CCC226F1180BDC1826
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] ekrnscan.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnScan.dll
|_ MD5: 748C898B132D37187AACE7C19849FC67
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] ekrnmailplugins.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnMailPlugins.dll
|_ MD5: 76D9DA47CFCB8F27BA1F37816B24088A
|_ Výrobce: ESET
|_ Procesy
|_ ekrn.exe (2580)

[?] elock.serv.interface.dll
|_ Cesta: C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Interface.dll
|_ MD5: 62EE3872ABE5A231935E080AA7F340DB
|_ Výrobce: Acer Inc.
|_ Procesy
|_ eLockServ.exe (2596)
|_ eLockServ.exe (2596)

[?] elock.serv.library.dll
|_ Cesta: C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Library.dll
|_ MD5: 896159479F0CBA7B895017A23A92386C
|_ Výrobce: Acer Inc.
|_ Procesy
|_ eLockServ.exe (2596)
|_ eLockServ.exe (2596)

[?] elock.serv.main.dll
|_ Cesta: C:\Acer\Empowering Technology\eLock\Service\eLock.Serv.Main.dll
|_ MD5: 7D3A10FD961788E95AABD5B09C9AD231
|_ Výrobce: Acer Inc.
|_ Procesy
|_ eLockServ.exe (2596)

[?] enetserviceinterface.dll
|_ Cesta: C:\Acer\Empowering Technology\eNet\eNetServiceInterface.dll
|_ MD5: 66F38C4FD9D4E3BDAE8A8B9119157C13
|_ Výrobce: Acer Inc.
|_ Procesy
|_ eNet Service.exe (2664)
|_ eNet Service.exe (2664)

[?] pluginraid_csy.dll
|_ Cesta: C:\Program Files\Intel\Intel Matrix Storage Manager\PlugInRAID_CSY.dll
|_ MD5: 68831694D61047B6B9800B311F52D75E
|_ Výrobce: Intel Corporation
|_ Procesy
|_ IAANTmon.exe (2752)

[?] ieryetf.dll
|_ Cesta: C:\Acer\Empowering Technology\eRecovery\IERYETF.dll
|_ MD5: DADAD303DC0871591997A05CAAB891AE
|_ Výrobce: ?
|_ Procesy
|_ eRecoveryService.exe (3300)
|_ eRecoveryService.exe (3300)

[?] serviceinterface.dll
|_ Cesta: C:\Acer\Empowering Technology\eRecovery\ServiceInterface.dll
|_ MD5: 6B46E837EC3FF448A0665DC86C5208DC
|_ Výrobce: ?
|_ Procesy
|_ eRecoveryService.exe (3300)

[?] esettings.model.computer.dll
|_ Cesta: C:\Acer\Empowering Technology\eSettings\Service\eSettings.Model.Computer.dll
|_ MD5: B47CFC1985CE260BD2FA21DBA5629DC8
|_ Výrobce: ?
|_ Procesy
|_ capuserv.exe (3388)
|_ capuserv.exe (3388)

[?] esettings.model.computerinterfaces.dll
|_ Cesta: C:\Acer\Empowering Technology\eSettings\Service\eSettings.Model.ComputerInterfaces.dll
|_ MD5: 9C45DD21C8A9490F8E7A4D865F30B40D
|_ Výrobce: ?
|_ Procesy
|_ capuserv.exe (3388)
|_ capuserv.exe (3388)

[?] wmiinterface.dll
|_ Cesta: C:\Acer\Empowering Technology\ePower\WMIInterface.dll
|_ MD5: 442E9FBBEEBD916519D8381BC2F71EA9
|_ Výrobce: acer
|_ Procesy
|_ ePowerSvc.exe (3516)
|_ ePowerSvc.exe (3516)

[?] rgnmaker.dll
|_ Cesta: C:\Program Files\Launch Manager\RGNMAKER.DLL
|_ MD5: BB2F56FA8EDA2D98ECA27716C79CC078
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] ntkcutl.dll
|_ Cesta: C:\Program Files\Launch Manager\NTKCUtl.dll
|_ MD5: E8C3D3CC6C8754529BE59FBA15695A14
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] vistavol.dll
|_ Cesta: C:\Program Files\Launch Manager\VistaVol.dll
|_ MD5: 66FA6EDD4873114E48BB17A8BE211919
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] mmdutl.dll
|_ Cesta: C:\Program Files\Launch Manager\MMDUtl.dll
|_ MD5: 17040262C25FA287AE12037DBED8238A
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] lmwndextlh.dll
|_ Cesta: C:\Program Files\Launch Manager\LMWndExtLH.dll
|_ MD5: 7DCF0E724F384A452671E935AE085404
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] whookctl.dll
|_ Cesta: C:\Program Files\Launch Manager\WHookCtl.dll
|_ MD5: 7E8D0E11D28B759F624EA75EDE5D93F0
|_ Výrobce: Dritek System Inc.
|_ Procesy
|_ LManager.exe (3984)

[?] eguiepfw.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiEpfw.dll
|_ MD5: 778F84F111C21BAF767CB72AA6934026
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] eguiupdate.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiUpdate.dll
|_ MD5: CA7098EF64BC885530DEAEA533D662A1
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] eguiamon.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiAmon.dll
|_ MD5: BD502632EC4614DFEBD897975BA7B651
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] eguiemon.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiEmon.dll
|_ MD5: 268DFF9F4482F1EE30F9FFABC77AFF4E
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] eguiscan.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiScan.dll
|_ MD5: 1F34681C9142A14074DE8D652D4DCA61
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] eguimailplugins.dll
|_ Cesta: C:\Program Files\ESET\ESET NOD32 Antivirus\eguiMailPlugins.dll
|_ MD5: E0B1E342631450BFD1E5860919A9F78C
|_ Výrobce: ESET
|_ Procesy
|_ egui.exe (3856)

[?] swg.dll
|_ Cesta: C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
|_ MD5: A414F9F0E60B3AB385E56586D4EEAAF3
|_ Výrobce: Google Inc.
|_ Procesy
|_ GoogleToolbarNotifier.exe (3892)

[?] gtn.dll
|_ Cesta: C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\gtn.dll
|_ MD5: C31BBDCD066E35BE40DCF2C4EEF12F97
|_ Výrobce: Google Inc.
|_ Procesy
|_ GoogleToolbarNotifier.exe (3892)

[?] btwhidcs.dll
|_ Cesta: C:\Windows\System32\btwhidcs.dll
|_ MD5: 41AF6658C32D4C77F9AA09F9282BE258
|_ Výrobce:
|_ Procesy
|_ BTTray.exe (2464)

[?] btballoon.dll
|_ Cesta: C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll
|_ MD5: FAA2B7E89A181BD34DB97E1FCA487E85
|_ Výrobce: Broadcom Corporation.
|_ Procesy
|_ BTTray.exe (2464)

[?] btrez.dll
|_ Cesta: C:\Windows\System32\btrez.dll
|_ MD5: 11566AA54CB01A4311839AA891437AAF
|_ Výrobce: Broadcom Corporation.
|_ Procesy
|_ BTTray.exe (2464)

[?] btwapi.dll
|_ Cesta: C:\Windows\System32\btwapi.dll
|_ MD5: F7451136DF3EFD5DA8AF489D82F85767
|_ Výrobce: Broadcom Corporation.
|_ Procesy
|_ BTTray.exe (2464)

[?] mscomctl.ocx
|_ Cesta: C:\Windows\System32\MSCOMCTL.OCX
|_ MD5: F7BBB7D79ADB9E3ADC13F3B3C33D3D4D
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ UPM.exe (4108)



================================================================
Ultimate Process Manager v4.1.3 - [ Lodus Software ]

Re: Procesor pořád fachá...

Napsal: 18 úno 2010 18:38
od Roli
Zdravím, dej mi sem ještě log z HJT (klikni na modré HJT), něco povypínáme a pak budeme pokračovat.

Re: Procesor pořád fachá...

Napsal: 19 úno 2010 07:18
od pasa
Tady zde:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:17:14, on 19.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Users\Pavel\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\Crawler\Toolbar\CToolbar.exe
C:\Windows\system32\Taskmgr.exe
C:\Users\Pavel\Downloads\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5620
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: &Crawler lišta - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Google Desktop Manager 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate1c9b056f05c8f1a) (gupdate1c9b056f05c8f1a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 8284 bytes

Re: Procesor pořád fachá...

Napsal: 19 úno 2010 20:48
od Roli
Tohle tedy fixni :

R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"


Fix znamená že spustíš HJT Obrázek

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Pak použij Mbam z mého podpisu.