
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu, PC je zpomalený, seká se
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Prosím o kontrolu logu, PC je zpomalený, seká se
Logfile of random's system information tool 1.06 (written by random/random)
Run by Radim at 2010-02-21 07:04:01
Systém Microsoft Windows XP Professional Service Pack 3
System drive D: has 11 GB (34%) free of 32 GB
Total RAM: 767 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:04:11, on 21.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
D:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Program Files\Java\jre6\bin\jusched.exe
D:\WINDOWS\system32\RunDll32.exe
D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
D:\Program Files\QuickTime\QTTask.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
D:\WINDOWS\system32\IoctlSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
D:\WINDOWS\System32\wbem\wmiapsrv.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\Radim\Plocha\RSIT.exe
D:\Documents and Settings\Radim\Plocha\Radim.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = socks=
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll (file missing)
O4 - HKLM\..\Run: [avast!] D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "D:\DOCUME~1\Radim\LOCALS~1\Temp\E_S20.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe (User 'Default user')
O4 - Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://D:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 4948604913
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 4949188600
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Služba Google Update (gupdate1c9c5dedc0d2892) (gupdate1c9c5dedc0d2892) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Sony Ericsson OMSI download service (OMSI download service) - Unknown owner - D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - D:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 8815 bytes
======Scheduled tasks folder======
D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
D:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-11 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast!"=D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"NeroFilterCheck"=D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
"Adobe Reader Speed Launcher"=D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"SunJavaUpdateSched"=D:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"Adobe Photo Downloader"=D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe [2007-03-09 63712]
"QuickTime Task"=D:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Sony Ericsson PC Suite"=D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe [2009-09-24 434176]
"EPSON Stylus DX4400 Series"=D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
D:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2008-01-22 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVMixerTray]
D:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe [2004-06-03 131072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVRaidService]
D:\WINDOWS\system32\nvraidservice.exe [2004-06-11 83968]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
D:\Program Files\QuickTime\qttask.exe [2009-11-10 417792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
D:\Program Files\Java\jre1.6.0_01\bin\jusched.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^Konfabulator.lnk]
D:\Program Files\Pixoria\Konfabulator\Konfabulator.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
D:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2008-10-04 393216]
D:\Documents and Settings\Radim\Nabídka Start\Programy\Po spuštění
Registration-Studio 8 SE.lnk - D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2006-01-05 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
D:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\WINDOWS\system32\sessmgr.exe"="D:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"D:\Program Files\Kerio\Personal Firewall 4\KPF4GUI.EXE"="D:\Program Files\Kerio\Personal Firewall 4\KPF4GUI.EXE:*:Enabled:Kerio Personal Firewall 4 - GUI"
"D:\Program Files\ICQLite\ICQLite.exe"="D:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"D:\Program Files\ICQ6\ICQ.exe"="D:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe"="D:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\ICQ6.5\ICQ.exe"="D:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Documents and Settings\Radim\Local Settings\Temp\Nero Web\SetupXu.exe"="D:\Documents and Settings\Radim\Local Settings\Temp\Nero Web\SetupXu.exe:*:Enabled:Nero ProductSetup"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\Pinnacle\Studio 14\Programs\RM.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\RM.exe:*:Enabled:Render Manager"
"D:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe:*:Enabled:Studio"
"D:\Program Files\Pinnacle\Studio 14\Programs\umi.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\umi.exe:*:Enabled:umi"
"C:\Program Files\WallynSrv.exe"="C:\Program Files\WallynSrv.exe:*:Disabled:WallynSrv"
"C:\Program Files\EuroSrv.exe"="C:\Program Files\EuroSrv.exe:*:Disabled:EuroSrv"
"C:\Program Files\VarosSrv.exe"="C:\Program Files\VarosSrv.exe:*:Disabled:VarosSrv"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5cf5119f-79ad-11da-96ad-806d6172696f}]
shell\AutoRun\command - E:\ASUSACPI.exe
======File associations======
.scr - open - "D:\WINDOWS\notepad.exe" "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-02-21 07:04:01 ----D---- D:\rsit
2010-02-20 20:31:18 ----D---- D:\Program Files\Common Files\Sony Shared
2010-02-20 20:30:28 ----D---- D:\Program Files\Sony
2010-02-20 20:30:28 ----D---- D:\Documents and Settings\All Users\Data aplikací\Sony Corporation
2010-02-20 20:29:02 ----D---- D:\Program Files\QuickTime
2010-02-20 20:28:35 ----SHD---- D:\Config.Msi
2010-02-20 20:27:55 ----D---- D:\Program Files\Common Files\Apple
2010-02-20 20:27:38 ----D---- D:\Program Files\Apple Software Update
2010-02-20 20:27:38 ----D---- D:\Documents and Settings\All Users\Data aplikací\Apple
2010-02-20 20:23:52 ----D---- D:\Documents and Settings\Radim\Data aplikací\Sony Setup
2010-02-20 20:23:52 ----D---- D:\Documents and Settings\Radim\Data aplikací\Sony
2010-02-20 20:23:41 ----D---- D:\Program Files\Sony Setup
2010-02-15 19:51:21 ----A---- D:\WINDOWS\WallynSrv.ini
2010-02-14 12:48:26 ----A---- D:\WINDOWS\system32\PCLEGetGuid.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\vdrmux.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\vdrcodec.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\MLPagAx.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\langserv.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\Cachex.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\Aviprax.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\RALMain.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\MMAviAx.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\DiskIO.dll
2010-02-14 12:48:18 ----A---- D:\WINDOWS\system32\Ltrio13n.dll
2010-02-14 12:48:18 ----A---- D:\WINDOWS\system32\Ltr13n.dll
2010-02-14 12:48:16 ----A---- D:\WINDOWS\unvise32.exe
2010-02-14 12:45:41 ----A---- D:\WINDOWS\system32\pclepim1.dll
2010-02-14 12:45:41 ----A---- D:\WINDOWS\system32\miroDV2Bmp.dll
2010-02-14 12:45:38 ----D---- D:\Program Files\Pinnacle
2010-02-12 14:20:11 ----D---- D:\Program Files\Common Files\Pinnacle
2010-02-12 14:19:26 ----D---- D:\Documents and Settings\All Users\Data aplikací\Pinnacle Studio Ultimate Collection
2010-02-12 14:03:21 ----HD---- D:\WINDOWS\$NtUninstallKB942288-v3$
2010-02-12 14:02:43 ----D---- D:\Documents and Settings\All Users\Data aplikací\Pinnacle
2010-02-10 18:50:58 ----HD---- D:\WINDOWS\$NtUninstallKB978262$
2010-02-10 18:50:07 ----HD---- D:\WINDOWS\$NtUninstallKB971468$
2010-02-10 18:46:23 ----HD---- D:\WINDOWS\$NtUninstallKB978037$
2010-02-10 18:46:16 ----HD---- D:\WINDOWS\$NtUninstallKB975713$
2010-02-10 18:46:07 ----HD---- D:\WINDOWS\$NtUninstallKB978251$
2010-02-10 18:45:59 ----HD---- D:\WINDOWS\$NtUninstallKB975560$
2010-02-10 18:45:49 ----HD---- D:\WINDOWS\$NtUninstallKB977914$
2010-02-10 18:44:44 ----HD---- D:\WINDOWS\$NtUninstallKB978706$
2010-02-10 18:44:25 ----HD---- D:\WINDOWS\$NtUninstallKB977165$
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\javaws.exe
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\javaw.exe
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\java.exe
2010-02-07 11:45:44 ----HD---- D:\WINDOWS\$NtUninstallKB939683$
2010-02-07 11:44:50 ----HD---- D:\WINDOWS\$NtUninstallKB954154_WM11$
2010-02-06 16:59:32 ----D---- D:\Documents and Settings\All Users\Data aplikací\vsosdk
2010-02-06 14:33:21 ----A---- D:\Documents and Settings\Radim\Data aplikací\inst.exe
2010-02-06 14:33:20 ----D---- D:\Documents and Settings\Radim\Data aplikací\Vso
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\Pncrt.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv43260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv33260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv23260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\cook3260.dll
2010-02-06 14:33:10 ----N---- D:\WINDOWS\system32\wvc1dmod.dll
2010-02-06 14:33:10 ----N---- D:\WINDOWS\system32\vp7vfw.dll
2010-02-06 14:33:10 ----A---- D:\WINDOWS\gdiplus.dll
2010-02-06 14:33:07 ----D---- D:\Program Files\VSO
2010-02-06 14:08:14 ----N---- D:\WINDOWS\system32\spmsg.dll
2010-02-06 14:08:13 ----HD---- D:\WINDOWS\$NtUninstallMSCompPackV1$
2010-02-06 14:07:48 ----D---- D:\Program Files\Windows Media Connect 2
2010-02-06 14:07:35 ----HD---- D:\WINDOWS\$NtUninstallwmp11$
2010-01-27 18:07:40 ----D---- D:\Program Files\MSECache
======List of files/folders modified in the last 1 months======
2010-02-20 21:15:30 ----A---- D:\WINDOWS\SchedLgU.Txt
2010-02-15 20:00:36 ----A---- D:\WINDOWS\NeroDigital.ini
2010-02-10 18:51:04 ----A---- D:\WINDOWS\imsins.BAK
2010-02-06 14:07:58 ----A---- D:\WINDOWS\win.ini
2010-02-06 13:56:16 ----A---- D:\WINDOWS\winamp.ini
2010-02-01 20:26:20 ----N---- D:\WINDOWS\system32\MRT.exe
2010-01-26 20:58:32 ----N---- D:\WINDOWS\system32\PerfStringBackup.INI
2010-01-24 10:44:28 ----A---- D:\WINDOWS\Wtran32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; D:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AmdK7;Ovladač procesoru AMD K7; D:\WINDOWS\System32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 aslm75;aslm75; \??\D:\WINDOWS\system32\drivers\aslm75.sys []
R1 aswSP;avast! Self Protection; D:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; D:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; D:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 aswFsBlk;aswFsBlk; D:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; D:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 UMAXPCLS;Ovladač skeneru na portu tiskárny; D:\WINDOWS\system32\DRIVERS\umaxpcls.sys [2001-08-17 22912]
R3 Arp1394;Protokol 1394 ARP Client; D:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; D:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-01-05 1420288]
R3 cmuda;C-Media WDM Audio Interface; D:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120]
R3 NIC1394;1394 Net Driver; D:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; D:\WINDOWS\System32\Drivers\pcouffin.sys [2010-02-06 47360]
R3 pfc;PADUS ASPI SHELL; D:\WINDOWS\system32\drivers\pfc.sys [2002-06-13 14604]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; D:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 seehcri;Sony Ericsson seehcri Device Driver; D:\WINDOWS\system32\DRIVERS\seehcri.sys [2008-01-09 27632]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; D:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; D:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; D:\WINDOWS\System32\DRIVERS\usbohci.sys [2008-04-13 17152]
S1 glaide32;glaide32; \??\D:\WINDOWS\system32\drivers\glaide32.sys []
S2 wincom32;wincom32; \??\D:\WINDOWS\system32\wincom32.sys []
S3 61883;61883 Unit Device; D:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128]
S3 AIRPLUS;D-Link AirPlus Wireless Adapter; D:\WINDOWS\System32\DRIVERS\airplus.sys [2003-09-08 255360]
S3 Avc;AVC Device; D:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BtAudio;Bluetooth Audio; D:\WINDOWS\system32\DRIVERS\btaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; D:\WINDOWS\system32\DRIVERS\btport.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; D:\WINDOWS\system32\DRIVERS\btwdndis.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; D:\WINDOWS\System32\Drivers\btwusb.sys []
S3 CCDECODE;Dekodér Closed Caption; D:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ggflt;SEMC USB Flash Driver Filter; D:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-10-20 13352]
S3 ggsemc;SEMC USB Flash Driver; D:\WINDOWS\system32\DRIVERS\ggsemc.sys [2008-10-20 21672]
S3 hamachi;Hamachi Network Interface; D:\WINDOWS\System32\DRIVERS\hamachi.sys [2006-01-01 10345]
S3 k750bus;Sony Ericsson 750 driver (WDM); D:\WINDOWS\system32\DRIVERS\k750bus.sys [2005-07-07 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2005-07-07 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; D:\WINDOWS\system32\DRIVERS\k750mdm.sys [2005-07-07 89872]
S3 MarvinBus;Pinnacle Marvin Bus; D:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 MSDV;Microsoft DV Camera and VCR; D:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; D:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; D:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; D:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\D:\WINDOWS\system32\NSNDIS5.SYS []
S3 Rasirda;WAN Miniport (IrDA); D:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; D:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); D:\WINDOWS\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; D:\WINDOWS\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); D:\WINDOWS\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); D:\WINDOWS\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; D:\WINDOWS\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); D:\WINDOWS\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM); D:\WINDOWS\system32\DRIVERS\s3017bus.sys [2007-12-10 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\s3017mdfl.sys [2007-12-10 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver; D:\WINDOWS\system32\DRIVERS\s3017mdm.sys [2007-12-10 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM); D:\WINDOWS\system32\DRIVERS\s3017mgmt.sys [2007-12-10 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS); D:\WINDOWS\system32\DRIVERS\s3017nd5.sys [2007-12-10 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface; D:\WINDOWS\system32\DRIVERS\s3017obex.sys [2007-12-10 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM); D:\WINDOWS\system32\DRIVERS\s3017unic.sys [2007-12-10 110120]
S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 STIrUsb;STIrUsb.sys USB-IrDA Adapter; D:\WINDOWS\System32\DRIVERS\irstusb.sys [2001-08-17 26624]
S3 streamip;BDA IPSink; D:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; D:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; D:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Wdf01000; D:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; D:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 ZD1211BU(TP-LINK);TL-WN422G Wireless USB Adapter Driver(TP-LINK); D:\WINDOWS\system32\DRIVERS\zd1211Bu.sys [2007-06-25 500736]
S4 IntelIde;IntelIde; D:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2006-01-05 405504]
R2 avast! Antivirus;avast! Antivirus; D:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
R2 MDM;Machine Debug Manager; D:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 OMSI download service;Sony Ericsson OMSI download service; D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [2009-04-30 90112]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; D:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R3 avast! Mail Scanner;avast! Mail Scanner; D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; D:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 ATI Smart;ATI Smart; D:\WINDOWS\system32\ati2sgag.exe [2006-01-04 520192]
S2 gupdate1c9c5dedc0d2892;Služba Google Update (gupdate1c9c5dedc0d2892); D:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-25 133104]
S3 aspnet_state;Stavová služba ASP.NET; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 Autodesk Licensing Service;Autodesk Licensing Service; D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2006-10-06 74360]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NBService;NBService; D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S3 NMIndexingService;NMIndexingService; D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; D:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Active Common Service;Active Common Service; D:\WINDOWS\system32\commserv.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Run by Radim at 2010-02-21 07:04:01
Systém Microsoft Windows XP Professional Service Pack 3
System drive D: has 11 GB (34%) free of 32 GB
Total RAM: 767 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:04:11, on 21.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
D:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Program Files\Java\jre6\bin\jusched.exe
D:\WINDOWS\system32\RunDll32.exe
D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
D:\Program Files\QuickTime\QTTask.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
D:\WINDOWS\system32\IoctlSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
D:\WINDOWS\System32\wbem\wmiapsrv.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\Radim\Plocha\RSIT.exe
D:\Documents and Settings\Radim\Plocha\Radim.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = socks=
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll (file missing)
O4 - HKLM\..\Run: [avast!] D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "D:\DOCUME~1\Radim\LOCALS~1\Temp\E_S20.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe (User 'Default user')
O4 - Startup: Registration-Studio 8 SE.lnk = D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://D:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 4948604913
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 4949188600
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Služba Google Update (gupdate1c9c5dedc0d2892) (gupdate1c9c5dedc0d2892) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Sony Ericsson OMSI download service (OMSI download service) - Unknown owner - D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - D:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 8815 bytes
======Scheduled tasks folder======
D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
D:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-11 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - D:\Program Files\ICQ6Toolbar\ICQToolBar.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast!"=D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"NeroFilterCheck"=D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
"Adobe Reader Speed Launcher"=D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"SunJavaUpdateSched"=D:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"Adobe Photo Downloader"=D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe [2007-03-09 63712]
"QuickTime Task"=D:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Sony Ericsson PC Suite"=D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe [2009-09-24 434176]
"EPSON Stylus DX4400 Series"=D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
D:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2008-01-22 152872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVMixerTray]
D:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe [2004-06-03 131072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVRaidService]
D:\WINDOWS\system32\nvraidservice.exe [2004-06-11 83968]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
D:\Program Files\QuickTime\qttask.exe [2009-11-10 417792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
D:\Program Files\Java\jre1.6.0_01\bin\jusched.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^Konfabulator.lnk]
D:\Program Files\Pixoria\Konfabulator\Konfabulator.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
D:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2008-10-04 393216]
D:\Documents and Settings\Radim\Nabídka Start\Programy\Po spuštění
Registration-Studio 8 SE.lnk - D:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2006-01-05 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
D:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"D:\WINDOWS\system32\sessmgr.exe"="D:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"D:\Program Files\Kerio\Personal Firewall 4\KPF4GUI.EXE"="D:\Program Files\Kerio\Personal Firewall 4\KPF4GUI.EXE:*:Enabled:Kerio Personal Firewall 4 - GUI"
"D:\Program Files\ICQLite\ICQLite.exe"="D:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"D:\Program Files\ICQ6\ICQ.exe"="D:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe"="D:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\ICQ6.5\ICQ.exe"="D:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Documents and Settings\Radim\Local Settings\Temp\Nero Web\SetupXu.exe"="D:\Documents and Settings\Radim\Local Settings\Temp\Nero Web\SetupXu.exe:*:Enabled:Nero ProductSetup"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\Pinnacle\Studio 14\Programs\RM.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\RM.exe:*:Enabled:Render Manager"
"D:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe:*:Enabled:Studio"
"D:\Program Files\Pinnacle\Studio 14\Programs\umi.exe"="D:\Program Files\Pinnacle\Studio 14\Programs\umi.exe:*:Enabled:umi"
"C:\Program Files\WallynSrv.exe"="C:\Program Files\WallynSrv.exe:*:Disabled:WallynSrv"
"C:\Program Files\EuroSrv.exe"="C:\Program Files\EuroSrv.exe:*:Disabled:EuroSrv"
"C:\Program Files\VarosSrv.exe"="C:\Program Files\VarosSrv.exe:*:Disabled:VarosSrv"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5cf5119f-79ad-11da-96ad-806d6172696f}]
shell\AutoRun\command - E:\ASUSACPI.exe
======File associations======
.scr - open - "D:\WINDOWS\notepad.exe" "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-02-21 07:04:01 ----D---- D:\rsit
2010-02-20 20:31:18 ----D---- D:\Program Files\Common Files\Sony Shared
2010-02-20 20:30:28 ----D---- D:\Program Files\Sony
2010-02-20 20:30:28 ----D---- D:\Documents and Settings\All Users\Data aplikací\Sony Corporation
2010-02-20 20:29:02 ----D---- D:\Program Files\QuickTime
2010-02-20 20:28:35 ----SHD---- D:\Config.Msi
2010-02-20 20:27:55 ----D---- D:\Program Files\Common Files\Apple
2010-02-20 20:27:38 ----D---- D:\Program Files\Apple Software Update
2010-02-20 20:27:38 ----D---- D:\Documents and Settings\All Users\Data aplikací\Apple
2010-02-20 20:23:52 ----D---- D:\Documents and Settings\Radim\Data aplikací\Sony Setup
2010-02-20 20:23:52 ----D---- D:\Documents and Settings\Radim\Data aplikací\Sony
2010-02-20 20:23:41 ----D---- D:\Program Files\Sony Setup
2010-02-15 19:51:21 ----A---- D:\WINDOWS\WallynSrv.ini
2010-02-14 12:48:26 ----A---- D:\WINDOWS\system32\PCLEGetGuid.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\vdrmux.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\vdrcodec.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\MLPagAx.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\langserv.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\Cachex.dll
2010-02-14 12:48:22 ----A---- D:\WINDOWS\system32\Aviprax.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\RALMain.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\MMAviAx.dll
2010-02-14 12:48:21 ----A---- D:\WINDOWS\system32\DiskIO.dll
2010-02-14 12:48:18 ----A---- D:\WINDOWS\system32\Ltrio13n.dll
2010-02-14 12:48:18 ----A---- D:\WINDOWS\system32\Ltr13n.dll
2010-02-14 12:48:16 ----A---- D:\WINDOWS\unvise32.exe
2010-02-14 12:45:41 ----A---- D:\WINDOWS\system32\pclepim1.dll
2010-02-14 12:45:41 ----A---- D:\WINDOWS\system32\miroDV2Bmp.dll
2010-02-14 12:45:38 ----D---- D:\Program Files\Pinnacle
2010-02-12 14:20:11 ----D---- D:\Program Files\Common Files\Pinnacle
2010-02-12 14:19:26 ----D---- D:\Documents and Settings\All Users\Data aplikací\Pinnacle Studio Ultimate Collection
2010-02-12 14:03:21 ----HD---- D:\WINDOWS\$NtUninstallKB942288-v3$
2010-02-12 14:02:43 ----D---- D:\Documents and Settings\All Users\Data aplikací\Pinnacle
2010-02-10 18:50:58 ----HD---- D:\WINDOWS\$NtUninstallKB978262$
2010-02-10 18:50:07 ----HD---- D:\WINDOWS\$NtUninstallKB971468$
2010-02-10 18:46:23 ----HD---- D:\WINDOWS\$NtUninstallKB978037$
2010-02-10 18:46:16 ----HD---- D:\WINDOWS\$NtUninstallKB975713$
2010-02-10 18:46:07 ----HD---- D:\WINDOWS\$NtUninstallKB978251$
2010-02-10 18:45:59 ----HD---- D:\WINDOWS\$NtUninstallKB975560$
2010-02-10 18:45:49 ----HD---- D:\WINDOWS\$NtUninstallKB977914$
2010-02-10 18:44:44 ----HD---- D:\WINDOWS\$NtUninstallKB978706$
2010-02-10 18:44:25 ----HD---- D:\WINDOWS\$NtUninstallKB977165$
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\javaws.exe
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\javaw.exe
2010-02-08 17:53:47 ----N---- D:\WINDOWS\system32\java.exe
2010-02-07 11:45:44 ----HD---- D:\WINDOWS\$NtUninstallKB939683$
2010-02-07 11:44:50 ----HD---- D:\WINDOWS\$NtUninstallKB954154_WM11$
2010-02-06 16:59:32 ----D---- D:\Documents and Settings\All Users\Data aplikací\vsosdk
2010-02-06 14:33:21 ----A---- D:\Documents and Settings\Radim\Data aplikací\inst.exe
2010-02-06 14:33:20 ----D---- D:\Documents and Settings\Radim\Data aplikací\Vso
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\Pncrt.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv43260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv33260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\drv23260.dll
2010-02-06 14:33:11 ----N---- D:\WINDOWS\system32\cook3260.dll
2010-02-06 14:33:10 ----N---- D:\WINDOWS\system32\wvc1dmod.dll
2010-02-06 14:33:10 ----N---- D:\WINDOWS\system32\vp7vfw.dll
2010-02-06 14:33:10 ----A---- D:\WINDOWS\gdiplus.dll
2010-02-06 14:33:07 ----D---- D:\Program Files\VSO
2010-02-06 14:08:14 ----N---- D:\WINDOWS\system32\spmsg.dll
2010-02-06 14:08:13 ----HD---- D:\WINDOWS\$NtUninstallMSCompPackV1$
2010-02-06 14:07:48 ----D---- D:\Program Files\Windows Media Connect 2
2010-02-06 14:07:35 ----HD---- D:\WINDOWS\$NtUninstallwmp11$
2010-01-27 18:07:40 ----D---- D:\Program Files\MSECache
======List of files/folders modified in the last 1 months======
2010-02-20 21:15:30 ----A---- D:\WINDOWS\SchedLgU.Txt
2010-02-15 20:00:36 ----A---- D:\WINDOWS\NeroDigital.ini
2010-02-10 18:51:04 ----A---- D:\WINDOWS\imsins.BAK
2010-02-06 14:07:58 ----A---- D:\WINDOWS\win.ini
2010-02-06 13:56:16 ----A---- D:\WINDOWS\winamp.ini
2010-02-01 20:26:20 ----N---- D:\WINDOWS\system32\MRT.exe
2010-01-26 20:58:32 ----N---- D:\WINDOWS\system32\PerfStringBackup.INI
2010-01-24 10:44:28 ----A---- D:\WINDOWS\Wtran32.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; D:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AmdK7;Ovladač procesoru AMD K7; D:\WINDOWS\System32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 aslm75;aslm75; \??\D:\WINDOWS\system32\drivers\aslm75.sys []
R1 aswSP;avast! Self Protection; D:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; D:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; D:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 aswFsBlk;aswFsBlk; D:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; D:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 UMAXPCLS;Ovladač skeneru na portu tiskárny; D:\WINDOWS\system32\DRIVERS\umaxpcls.sys [2001-08-17 22912]
R3 Arp1394;Protokol 1394 ARP Client; D:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; D:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-01-05 1420288]
R3 cmuda;C-Media WDM Audio Interface; D:\WINDOWS\system32\drivers\cmuda.sys [2006-06-09 1373120]
R3 NIC1394;1394 Net Driver; D:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; D:\WINDOWS\System32\Drivers\pcouffin.sys [2010-02-06 47360]
R3 pfc;PADUS ASPI SHELL; D:\WINDOWS\system32\drivers\pfc.sys [2002-06-13 14604]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; D:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 seehcri;Sony Ericsson seehcri Device Driver; D:\WINDOWS\system32\DRIVERS\seehcri.sys [2008-01-09 27632]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; D:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; D:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; D:\WINDOWS\System32\DRIVERS\usbohci.sys [2008-04-13 17152]
S1 glaide32;glaide32; \??\D:\WINDOWS\system32\drivers\glaide32.sys []
S2 wincom32;wincom32; \??\D:\WINDOWS\system32\wincom32.sys []
S3 61883;61883 Unit Device; D:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-13 48128]
S3 AIRPLUS;D-Link AirPlus Wireless Adapter; D:\WINDOWS\System32\DRIVERS\airplus.sys [2003-09-08 255360]
S3 Avc;AVC Device; D:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BtAudio;Bluetooth Audio; D:\WINDOWS\system32\DRIVERS\btaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; D:\WINDOWS\system32\DRIVERS\btport.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; D:\WINDOWS\system32\DRIVERS\btwdndis.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; D:\WINDOWS\System32\Drivers\btwusb.sys []
S3 CCDECODE;Dekodér Closed Caption; D:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ggflt;SEMC USB Flash Driver Filter; D:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-10-20 13352]
S3 ggsemc;SEMC USB Flash Driver; D:\WINDOWS\system32\DRIVERS\ggsemc.sys [2008-10-20 21672]
S3 hamachi;Hamachi Network Interface; D:\WINDOWS\System32\DRIVERS\hamachi.sys [2006-01-01 10345]
S3 k750bus;Sony Ericsson 750 driver (WDM); D:\WINDOWS\system32\DRIVERS\k750bus.sys [2005-07-07 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2005-07-07 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; D:\WINDOWS\system32\DRIVERS\k750mdm.sys [2005-07-07 89872]
S3 MarvinBus;Pinnacle Marvin Bus; D:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 MSDV;Microsoft DV Camera and VCR; D:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; D:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; D:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; D:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\D:\WINDOWS\system32\NSNDIS5.SYS []
S3 Rasirda;WAN Miniport (IrDA); D:\WINDOWS\System32\DRIVERS\rasirda.sys [2001-08-17 19584]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; D:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); D:\WINDOWS\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; D:\WINDOWS\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); D:\WINDOWS\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); D:\WINDOWS\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; D:\WINDOWS\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); D:\WINDOWS\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM); D:\WINDOWS\system32\DRIVERS\s3017bus.sys [2007-12-10 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter; D:\WINDOWS\system32\DRIVERS\s3017mdfl.sys [2007-12-10 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver; D:\WINDOWS\system32\DRIVERS\s3017mdm.sys [2007-12-10 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM); D:\WINDOWS\system32\DRIVERS\s3017mgmt.sys [2007-12-10 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS); D:\WINDOWS\system32\DRIVERS\s3017nd5.sys [2007-12-10 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface; D:\WINDOWS\system32\DRIVERS\s3017obex.sys [2007-12-10 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM); D:\WINDOWS\system32\DRIVERS\s3017unic.sys [2007-12-10 110120]
S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 STIrUsb;STIrUsb.sys USB-IrDA Adapter; D:\WINDOWS\System32\DRIVERS\irstusb.sys [2001-08-17 26624]
S3 streamip;BDA IPSink; D:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; D:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; D:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Wdf01000; D:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; D:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 ZD1211BU(TP-LINK);TL-WN422G Wireless USB Adapter Driver(TP-LINK); D:\WINDOWS\system32\DRIVERS\zd1211Bu.sys [2007-06-25 500736]
S4 IntelIde;IntelIde; D:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2006-01-05 405504]
R2 avast! Antivirus;avast! Antivirus; D:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
R2 MDM;Machine Debug Manager; D:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 OMSI download service;Sony Ericsson OMSI download service; D:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [2009-04-30 90112]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; D:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R3 avast! Mail Scanner;avast! Mail Scanner; D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; D:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 ATI Smart;ATI Smart; D:\WINDOWS\system32\ati2sgag.exe [2006-01-04 520192]
S2 gupdate1c9c5dedc0d2892;Služba Google Update (gupdate1c9c5dedc0d2892); D:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-25 133104]
S3 aspnet_state;Stavová služba ASP.NET; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 Autodesk Licensing Service;Autodesk Licensing Service; D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2006-10-06 74360]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 NBService;NBService; D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S3 NMIndexingService;NMIndexingService; D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; D:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Active Common Service;Active Common Service; D:\WINDOWS\system32\commserv.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
Dobrý den
pošlete ještě log z Combofix:
Stáhneme na plochu, ukončíme všechna aktivní okna a spustíme ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Po spuštění potvrdíme podmínky užití
- Dále postupujeme dle pokynů, během aplikování ComboFixu neklikejte do zobrazujících se oken
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt
- ComboFix je třeba spustit pod účtem s právy administrátora

pošlete ještě log z Combofix:
Stáhneme na plochu, ukončíme všechna aktivní okna a spustíme ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Po spuštění potvrdíme podmínky užití
- Dále postupujeme dle pokynů, během aplikování ComboFixu neklikejte do zobrazujících se oken
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt
- ComboFix je třeba spustit pod účtem s právy administrátora
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
ComboFix 10-02-20.04 - Radim 21.02.2010 8:34.1.1 - FAT32x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.767.366 [GMT 1:00]
Spuštěný z: d:\documents and settings\Radim\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100220-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
d:\documents and settings\All Users\Data aplikací\hpe9.dll
d:\documents and settings\Radim\Dokumenty\cc_20081228_194222.reg
d:\documents and settings\Radim\Dokumenty\cc_20081228_194314.reg
d:\windows\system32\_000012_.tmp.dll
d:\windows\system32\Thumbs.db
d:\windows\system32\drivers\null.sys chyběl.
Obnovena kopie z - d:\windows\system32\dllcache\null.sys
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ACTIVE_COMMON_SERVICE
-------\Legacy_WINCOM32
-------\Service_Active Common Service
-------\Service_glaide32
-------\Service_wincom32
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-21 do 2010-02-21 )))))))))))))))))))))))))))))))
.
2010-02-21 07:39 . 2001-10-25 11:00 2944 ----a-w- d:\windows\system32\drivers\null.sys
2010-02-21 07:39 . 2001-10-25 11:00 2944 ----a-w- d:\windows\system32\dllcache\null.sys
2010-02-21 06:04 . 2010-02-21 06:04 -------- d-----w- D:\rsit
2010-02-20 19:31 . 2010-02-20 19:31 -------- d-----w- d:\program files\Common Files\Sony Shared
2010-02-20 19:30 . 2010-02-20 19:30 -------- d-----w- d:\program files\Sony
2010-02-20 19:29 . 2010-02-20 19:29 -------- d-----w- d:\program files\QuickTime
2010-02-20 19:27 . 2010-02-20 19:27 -------- d-----w- d:\program files\Common Files\Apple
2010-02-20 19:27 . 2010-02-20 19:27 -------- d-----w- d:\program files\Apple Software Update
2010-02-20 19:23 . 2010-02-20 19:23 -------- d-----w- d:\program files\Sony Setup
2010-02-14 11:46 . 2002-06-13 14:08 14604 ----a-w- d:\windows\system32\drivers\pfc.sys
2010-02-14 11:45 . 2002-08-08 15:58 61440 ----a-w- d:\windows\system32\pclepim1.dll
2010-02-14 11:45 . 2000-03-09 08:34 60416 ----a-w- d:\windows\system32\miroDV2Bmp.dll
2010-02-14 11:45 . 2010-02-14 11:45 -------- d-----w- d:\program files\Pinnacle
2010-02-12 13:20 . 2005-09-23 21:18 171520 ------w- d:\windows\system32\drivers\MarvinBus.sys
2010-02-12 13:20 . 2010-02-12 13:20 -------- d-----w- d:\program files\Common Files\Pinnacle
2010-02-12 13:19 . 2010-02-12 13:19 -------- d-----w- d:\documents and settings\All Users\Data aplikac
2010-02-06 13:33 . 2010-02-06 13:33 47360 ------w- d:\windows\system32\drivers\pcouffin.sys
2010-02-06 13:33 . 2007-03-18 20:37 65602 ------w- d:\windows\system32\cook3260.dll
2010-02-06 13:33 . 2006-09-29 12:26 176165 ------w- d:\windows\system32\drv23260.dll
2010-02-06 13:33 . 2006-09-29 12:25 208935 ------w- d:\windows\system32\drv33260.dll
2010-02-06 13:33 . 2006-09-29 12:24 217127 ------w- d:\windows\system32\drv43260.dll
2010-02-06 13:33 . 2006-05-20 16:16 1184984 ------w- d:\windows\system32\wvc1dmod.dll
2010-02-06 13:33 . 2006-05-11 19:21 626688 ------w- d:\windows\system32\vp7vfw.dll
2010-02-06 13:33 . 2004-05-04 11:53 1645320 ----a-w- d:\windows\gdiplus.dll
2010-02-06 13:33 . 2010-02-06 13:33 -------- d-----w- d:\program files\VSO
2010-02-06 13:07 . 2010-02-06 13:07 -------- d-----w- d:\program files\Windows Media Connect 2
2010-01-27 17:07 . 2010-01-27 17:07 -------- d-----w- d:\program files\MSECache
2010-01-26 17:06 . 2008-04-13 19:46 38912 ------w- d:\windows\system32\drivers\avc.sys
2010-01-26 17:06 . 2008-04-13 19:46 38912 ------w- d:\windows\system32\dllcache\avc.sys
2010-01-26 17:06 . 2008-04-13 19:46 48128 ------w- d:\windows\system32\drivers\61883.sys
2010-01-26 17:06 . 2008-04-13 19:46 48128 ------w- d:\windows\system32\dllcache\61883.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-26 19:58 . 2001-10-25 11:00 82356 ------w- d:\windows\system32\perfc005.dat
2010-01-26 19:58 . 2001-10-25 11:00 440222 ------w- d:\windows\system32\perfh005.dat
2009-12-31 16:50 . 2001-10-25 11:00 353792 ------w- d:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2005-10-21 15:49 916480 ------w- d:\windows\system32\wininet.dll
2009-12-17 07:42 . 2005-12-31 03:23 343552 ------w- d:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2001-10-25 11:00 33280 ------w- d:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2001-10-25 11:00 2191360 ------w- d:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2001-10-24 10:46 2068224 ------w- d:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2001-10-25 11:00 455424 ------w- d:\windows\system32\drivers\mrxsmb.sys
2009-11-27 17:14 . 2005-12-31 03:19 17920 ------w- d:\windows\system32\msyuv.dll
2009-11-27 17:14 . 2005-08-30 08:26 1294336 ------w- d:\windows\system32\quartz.dll
2009-11-27 16:09 . 2001-10-25 11:00 28672 ------w- d:\windows\system32\msvidc32.dll
2009-11-27 16:09 . 2001-10-24 11:25 8704 ------w- d:\windows\system32\tsbyuv.dll
2009-11-27 16:09 . 2005-12-31 03:23 84992 ------w- d:\windows\system32\avifil32.dll
2009-11-27 16:09 . 2005-12-31 03:23 11264 ------w- d:\windows\system32\msrle32.dll
2009-11-27 16:09 . 2001-10-24 11:24 48128 ------w- d:\windows\system32\iyuv_32.dll
2009-11-24 23:54 . 2005-12-31 14:32 1280480 ------w- d:\windows\system32\aswBoot.exe
2009-11-24 23:51 . 2008-12-30 18:11 93424 ------w- d:\windows\system32\drivers\aswmon.sys
2009-11-24 23:51 . 2008-12-30 18:11 94160 ------w- d:\windows\system32\drivers\aswmon2.sys
2009-11-24 23:50 . 2008-12-30 18:11 114768 ------w- d:\windows\system32\drivers\aswSP.sys
2009-11-24 23:50 . 2008-12-30 18:11 20560 ------w- d:\windows\system32\drivers\aswFsBlk.sys
2009-11-24 23:49 . 2008-12-30 18:11 48560 ------w- d:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2005-12-31 14:32 23120 ------w- d:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2008-12-30 18:11 27408 ------w- d:\windows\system32\drivers\aavmker4.sys
2009-11-24 23:47 . 2005-12-31 14:32 97480 ------w- d:\windows\system32\AVASTSS.scr
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sony Ericsson PC Suite"="d:\program files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" [2009-09-24 434176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="d:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NeroFilterCheck"="d:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2008-05-28 570664]
"Adobe Reader Speed Launcher"="d:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="d:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
"SunJavaUpdateSched"="d:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"Adobe Photo Downloader"="d:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]
"QuickTime Task"="d:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
[HKLM\~\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^Konfabulator.lnk]
path=d:\documents and settings\Radim\Nabídka Start\Programy\Po spuštění\Konfabulator.lnk
backup=d:\windows\pss\Konfabulator.lnkStartup
[HKLM\~\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
path=d:\documents and settings\Radim\Nabídka Start\Programy\Po spuštění\OpenOffice.org 3.0.lnk
backup=d:\windows\pss\OpenOffice.org 3.0.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
2008-01-22 10:13 152872 ----a-w- d:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
2007-03-01 06:01 180736 ------w- d:\windows\system32\spool\drivers\w32x86\3\E_FATICAE.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2008-05-28 07:27 570664 ----a-w- d:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVMixerTray]
2004-06-03 19:51 131072 ----a-w- d:\program files\NVIDIA Corporation\NvMixer\NvMixerTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVRaidService]
2004-06-11 03:15 83968 ------w- d:\windows\system32\nvraidservice.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- d:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"d:\\WINDOWS\\system32\\sessmgr.exe"=
"d:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\WallynSrv.exe"=
"c:\\Program Files\\EuroSrv.exe"=
"c:\\Program Files\\VarosSrv.exe"=
R1 aswSP;avast! Self Protection;d:\windows\system32\drivers\aswSP.sys [30.12.2008 19:11 114768]
R2 aswFsBlk;aswFsBlk;d:\windows\system32\drivers\aswFsBlk.sys [30.12.2008 19:11 20560]
R2 OMSI download service;Sony Ericsson OMSI download service;d:\program files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [30.11.2009 10:56 90112]
R3 seehcri;Sony Ericsson seehcri Device Driver;d:\windows\system32\drivers\seehcri.sys [30.11.2009 10:56 27632]
S2 gupdate1c9c5dedc0d2892;Služba Google Update (gupdate1c9c5dedc0d2892);d:\program files\Google\Update\GoogleUpdate.exe [25.4.2009 21:48 133104]
S3 ggflt;SEMC USB Flash Driver Filter;d:\windows\system32\drivers\ggflt.sys [20.10.2008 18:36 13352]
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM);d:\windows\system32\drivers\s3017bus.sys [26.4.2009 10:57 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter;d:\windows\system32\drivers\s3017mdfl.sys [26.4.2009 10:57 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver;d:\windows\system32\drivers\s3017mdm.sys [26.4.2009 10:57 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM);d:\windows\system32\drivers\s3017mgmt.sys [26.4.2009 10:58 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS);d:\windows\system32\drivers\s3017nd5.sys [26.4.2009 10:59 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface;d:\windows\system32\drivers\s3017obex.sys [26.4.2009 10:58 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM);d:\windows\system32\drivers\s3017unic.sys [26.4.2009 10:58 110120]
S3 ZD1211BU(TP-LINK);TL-WN422G Wireless USB Adapter Driver(TP-LINK);d:\windows\system32\drivers\ZD1211BU.sys [18.4.2009 20:50 500736]
.
Obsah adresáře 'Naplánované úlohy'
2010-02-21 d:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-04-25 20:48]
2010-02-21 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-04-25 20:48]
2010-02-20 d:\windows\Tasks\AppleSoftwareUpdate.job
- d:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = socks=
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: &ICQ Toolbar Search - d:\program files\ICQToolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Office Excel - d:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\Radim\Data aplikací\Mozilla\Firefox\Profiles\604irwgy.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - plugin: d:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: d:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: d:\program files\Sony\Media Go\npmediago.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - d:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
d:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKLM-Run-Cmaudio - cmicnfg.cpl
MSConfigStartUp-SunJavaUpdateSched - d:\program files\Java\jre1.6.0_01\bin\jusched.exe
AddRemove-ACDSee - d:\progra~1\ACD\ACDSEE\UNWISE.EXE
AddRemove-HijackThis - d:\documents and settings\Radim\Plocha\HijackThis.exe
AddRemove-Network Play System (Patching) - d:\program files\Electronic Arts\Network Play System\NPSPatch.isu
AddRemove-NVIDIA Drivers - d:\windows\system32\nvuenet.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-21 08:42
Windows 5.1.2600 Service Pack 3 FAT NTAPI
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(548)
d:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(2136)
d:\windows\system32\msi.dll
d:\windows\system32\webcheck.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
d:\windows\system32\Ati2evxx.exe
d:\windows\system32\Ati2evxx.exe
d:\program files\Alwil Software\Avast4\aswUpdSv.exe
d:\program files\Alwil Software\Avast4\ashServ.exe
d:\windows\system32\RunDll32.exe
d:\program files\Java\jre6\bin\jqs.exe
d:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\windows\system32\IoctlSvc.exe
d:\program files\Alwil Software\Avast4\ashMaiSv.exe
d:\program files\Alwil Software\Avast4\ashWebSv.exe
d:\windows\System32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2010-02-21 08:46:47 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-02-21 07:46
Před spuštěním: Volných bajtů: 11 463 933 952
Po spuštění: Volných bajtů: 11 687 444 480
Current=2 Default=2 Failed=1 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 14E6F28E875CA0C6F03E934F2CCF31FC
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.767.366 [GMT 1:00]
Spuštěný z: d:\documents and settings\Radim\Plocha\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100220-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
d:\documents and settings\All Users\Data aplikací\hpe9.dll
d:\documents and settings\Radim\Dokumenty\cc_20081228_194222.reg
d:\documents and settings\Radim\Dokumenty\cc_20081228_194314.reg
d:\windows\system32\_000012_.tmp.dll
d:\windows\system32\Thumbs.db
d:\windows\system32\drivers\null.sys chyběl.
Obnovena kopie z - d:\windows\system32\dllcache\null.sys
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ACTIVE_COMMON_SERVICE
-------\Legacy_WINCOM32
-------\Service_Active Common Service
-------\Service_glaide32
-------\Service_wincom32
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-21 do 2010-02-21 )))))))))))))))))))))))))))))))
.
2010-02-21 07:39 . 2001-10-25 11:00 2944 ----a-w- d:\windows\system32\drivers\null.sys
2010-02-21 07:39 . 2001-10-25 11:00 2944 ----a-w- d:\windows\system32\dllcache\null.sys
2010-02-21 06:04 . 2010-02-21 06:04 -------- d-----w- D:\rsit
2010-02-20 19:31 . 2010-02-20 19:31 -------- d-----w- d:\program files\Common Files\Sony Shared
2010-02-20 19:30 . 2010-02-20 19:30 -------- d-----w- d:\program files\Sony
2010-02-20 19:29 . 2010-02-20 19:29 -------- d-----w- d:\program files\QuickTime
2010-02-20 19:27 . 2010-02-20 19:27 -------- d-----w- d:\program files\Common Files\Apple
2010-02-20 19:27 . 2010-02-20 19:27 -------- d-----w- d:\program files\Apple Software Update
2010-02-20 19:23 . 2010-02-20 19:23 -------- d-----w- d:\program files\Sony Setup
2010-02-14 11:46 . 2002-06-13 14:08 14604 ----a-w- d:\windows\system32\drivers\pfc.sys
2010-02-14 11:45 . 2002-08-08 15:58 61440 ----a-w- d:\windows\system32\pclepim1.dll
2010-02-14 11:45 . 2000-03-09 08:34 60416 ----a-w- d:\windows\system32\miroDV2Bmp.dll
2010-02-14 11:45 . 2010-02-14 11:45 -------- d-----w- d:\program files\Pinnacle
2010-02-12 13:20 . 2005-09-23 21:18 171520 ------w- d:\windows\system32\drivers\MarvinBus.sys
2010-02-12 13:20 . 2010-02-12 13:20 -------- d-----w- d:\program files\Common Files\Pinnacle
2010-02-12 13:19 . 2010-02-12 13:19 -------- d-----w- d:\documents and settings\All Users\Data aplikac
2010-02-06 13:33 . 2010-02-06 13:33 47360 ------w- d:\windows\system32\drivers\pcouffin.sys
2010-02-06 13:33 . 2007-03-18 20:37 65602 ------w- d:\windows\system32\cook3260.dll
2010-02-06 13:33 . 2006-09-29 12:26 176165 ------w- d:\windows\system32\drv23260.dll
2010-02-06 13:33 . 2006-09-29 12:25 208935 ------w- d:\windows\system32\drv33260.dll
2010-02-06 13:33 . 2006-09-29 12:24 217127 ------w- d:\windows\system32\drv43260.dll
2010-02-06 13:33 . 2006-05-20 16:16 1184984 ------w- d:\windows\system32\wvc1dmod.dll
2010-02-06 13:33 . 2006-05-11 19:21 626688 ------w- d:\windows\system32\vp7vfw.dll
2010-02-06 13:33 . 2004-05-04 11:53 1645320 ----a-w- d:\windows\gdiplus.dll
2010-02-06 13:33 . 2010-02-06 13:33 -------- d-----w- d:\program files\VSO
2010-02-06 13:07 . 2010-02-06 13:07 -------- d-----w- d:\program files\Windows Media Connect 2
2010-01-27 17:07 . 2010-01-27 17:07 -------- d-----w- d:\program files\MSECache
2010-01-26 17:06 . 2008-04-13 19:46 38912 ------w- d:\windows\system32\drivers\avc.sys
2010-01-26 17:06 . 2008-04-13 19:46 38912 ------w- d:\windows\system32\dllcache\avc.sys
2010-01-26 17:06 . 2008-04-13 19:46 48128 ------w- d:\windows\system32\drivers\61883.sys
2010-01-26 17:06 . 2008-04-13 19:46 48128 ------w- d:\windows\system32\dllcache\61883.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-26 19:58 . 2001-10-25 11:00 82356 ------w- d:\windows\system32\perfc005.dat
2010-01-26 19:58 . 2001-10-25 11:00 440222 ------w- d:\windows\system32\perfh005.dat
2009-12-31 16:50 . 2001-10-25 11:00 353792 ------w- d:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2005-10-21 15:49 916480 ------w- d:\windows\system32\wininet.dll
2009-12-17 07:42 . 2005-12-31 03:23 343552 ------w- d:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2001-10-25 11:00 33280 ------w- d:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2001-10-25 11:00 2191360 ------w- d:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2001-10-24 10:46 2068224 ------w- d:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2001-10-25 11:00 455424 ------w- d:\windows\system32\drivers\mrxsmb.sys
2009-11-27 17:14 . 2005-12-31 03:19 17920 ------w- d:\windows\system32\msyuv.dll
2009-11-27 17:14 . 2005-08-30 08:26 1294336 ------w- d:\windows\system32\quartz.dll
2009-11-27 16:09 . 2001-10-25 11:00 28672 ------w- d:\windows\system32\msvidc32.dll
2009-11-27 16:09 . 2001-10-24 11:25 8704 ------w- d:\windows\system32\tsbyuv.dll
2009-11-27 16:09 . 2005-12-31 03:23 84992 ------w- d:\windows\system32\avifil32.dll
2009-11-27 16:09 . 2005-12-31 03:23 11264 ------w- d:\windows\system32\msrle32.dll
2009-11-27 16:09 . 2001-10-24 11:24 48128 ------w- d:\windows\system32\iyuv_32.dll
2009-11-24 23:54 . 2005-12-31 14:32 1280480 ------w- d:\windows\system32\aswBoot.exe
2009-11-24 23:51 . 2008-12-30 18:11 93424 ------w- d:\windows\system32\drivers\aswmon.sys
2009-11-24 23:51 . 2008-12-30 18:11 94160 ------w- d:\windows\system32\drivers\aswmon2.sys
2009-11-24 23:50 . 2008-12-30 18:11 114768 ------w- d:\windows\system32\drivers\aswSP.sys
2009-11-24 23:50 . 2008-12-30 18:11 20560 ------w- d:\windows\system32\drivers\aswFsBlk.sys
2009-11-24 23:49 . 2008-12-30 18:11 48560 ------w- d:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2005-12-31 14:32 23120 ------w- d:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2008-12-30 18:11 27408 ------w- d:\windows\system32\drivers\aavmker4.sys
2009-11-24 23:47 . 2005-12-31 14:32 97480 ------w- d:\windows\system32\AVASTSS.scr
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sony Ericsson PC Suite"="d:\program files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" [2009-09-24 434176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="d:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NeroFilterCheck"="d:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2008-05-28 570664]
"Adobe Reader Speed Launcher"="d:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="d:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
"SunJavaUpdateSched"="d:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"Adobe Photo Downloader"="d:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]
"QuickTime Task"="d:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
d:\documents and settings\Radim\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Registration-Studio 8 SE.lnk - d:\program files\Pinnacle\Studio 8\Register\RegTool.exe [2010-2-14 241664]
[HKLM\~\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^Konfabulator.lnk]
path=d:\documents and settings\Radim\Nabídka Start\Programy\Po spuštění\Konfabulator.lnk
backup=d:\windows\pss\Konfabulator.lnkStartup
[HKLM\~\startupfolder\D:^Documents and Settings^Radim^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.0.lnk]
path=d:\documents and settings\Radim\Nabídka Start\Programy\Po spuštění\OpenOffice.org 3.0.lnk
backup=d:\windows\pss\OpenOffice.org 3.0.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
2008-01-22 10:13 152872 ----a-w- d:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus DX4400 Series]
2007-03-01 06:01 180736 ------w- d:\windows\system32\spool\drivers\w32x86\3\E_FATICAE.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2008-05-28 07:27 570664 ----a-w- d:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVMixerTray]
2004-06-03 19:51 131072 ----a-w- d:\program files\NVIDIA Corporation\NvMixer\NvMixerTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NVRaidService]
2004-06-11 03:15 83968 ------w- d:\windows\system32\nvraidservice.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2009-11-10 22:08 417792 ----a-w- d:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"d:\\WINDOWS\\system32\\sessmgr.exe"=
"d:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\WallynSrv.exe"=
"c:\\Program Files\\EuroSrv.exe"=
"c:\\Program Files\\VarosSrv.exe"=
R1 aswSP;avast! Self Protection;d:\windows\system32\drivers\aswSP.sys [30.12.2008 19:11 114768]
R2 aswFsBlk;aswFsBlk;d:\windows\system32\drivers\aswFsBlk.sys [30.12.2008 19:11 20560]
R2 OMSI download service;Sony Ericsson OMSI download service;d:\program files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [30.11.2009 10:56 90112]
R3 seehcri;Sony Ericsson seehcri Device Driver;d:\windows\system32\drivers\seehcri.sys [30.11.2009 10:56 27632]
S2 gupdate1c9c5dedc0d2892;Služba Google Update (gupdate1c9c5dedc0d2892);d:\program files\Google\Update\GoogleUpdate.exe [25.4.2009 21:48 133104]
S3 ggflt;SEMC USB Flash Driver Filter;d:\windows\system32\drivers\ggflt.sys [20.10.2008 18:36 13352]
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM);d:\windows\system32\drivers\s3017bus.sys [26.4.2009 10:57 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter;d:\windows\system32\drivers\s3017mdfl.sys [26.4.2009 10:57 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver;d:\windows\system32\drivers\s3017mdm.sys [26.4.2009 10:57 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM);d:\windows\system32\drivers\s3017mgmt.sys [26.4.2009 10:58 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS);d:\windows\system32\drivers\s3017nd5.sys [26.4.2009 10:59 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface;d:\windows\system32\drivers\s3017obex.sys [26.4.2009 10:58 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM);d:\windows\system32\drivers\s3017unic.sys [26.4.2009 10:58 110120]
S3 ZD1211BU(TP-LINK);TL-WN422G Wireless USB Adapter Driver(TP-LINK);d:\windows\system32\drivers\ZD1211BU.sys [18.4.2009 20:50 500736]
.
Obsah adresáře 'Naplánované úlohy'
2010-02-21 d:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-04-25 20:48]
2010-02-21 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-04-25 20:48]
2010-02-20 d:\windows\Tasks\AppleSoftwareUpdate.job
- d:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = socks=
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: &ICQ Toolbar Search - d:\program files\ICQToolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Office Excel - d:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\Radim\Data aplikací\Mozilla\Firefox\Profiles\604irwgy.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - plugin: d:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: d:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: d:\program files\Sony\Media Go\npmediago.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - d:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
d:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
HKLM-Run-Cmaudio - cmicnfg.cpl
MSConfigStartUp-SunJavaUpdateSched - d:\program files\Java\jre1.6.0_01\bin\jusched.exe
AddRemove-ACDSee - d:\progra~1\ACD\ACDSEE\UNWISE.EXE
AddRemove-HijackThis - d:\documents and settings\Radim\Plocha\HijackThis.exe
AddRemove-Network Play System (Patching) - d:\program files\Electronic Arts\Network Play System\NPSPatch.isu
AddRemove-NVIDIA Drivers - d:\windows\system32\nvuenet.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-21 08:42
Windows 5.1.2600 Service Pack 3 FAT NTAPI
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(548)
d:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(2136)
d:\windows\system32\msi.dll
d:\windows\system32\webcheck.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
d:\windows\system32\Ati2evxx.exe
d:\windows\system32\Ati2evxx.exe
d:\program files\Alwil Software\Avast4\aswUpdSv.exe
d:\program files\Alwil Software\Avast4\ashServ.exe
d:\windows\system32\RunDll32.exe
d:\program files\Java\jre6\bin\jqs.exe
d:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\windows\system32\IoctlSvc.exe
d:\program files\Alwil Software\Avast4\ashMaiSv.exe
d:\program files\Alwil Software\Avast4\ashWebSv.exe
d:\windows\System32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2010-02-21 08:46:47 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-02-21 07:46
Před spuštěním: Volných bajtů: 11 463 933 952
Po spuštění: Volných bajtů: 11 687 444 480
Current=2 Default=2 Failed=1 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 14E6F28E875CA0C6F03E934F2CCF31FC
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
OK, použijte http://sweb.cz/Marinus/T-Cleaner.exe - pro potvrzení stiskněte vždy klávesu A nebo Enter
potom CCleaner - položky Čistič a Registry - čištění opakujte do odstranění všech problémů
a nakonec ATF Cleaner - http://www.atribune.org/ccount/click.php?id=1:
po spuštění staženého souboru se objeví okno:

zatrhněte Select All, klikněte na Empty Selected a Exit
stejným způsobem vymažte případně cache Firefoxu a Opery
restartujte PC
potom CCleaner - položky Čistič a Registry - čištění opakujte do odstranění všech problémů
a nakonec ATF Cleaner - http://www.atribune.org/ccount/click.php?id=1:
po spuštění staženého souboru se objeví okno:

zatrhněte Select All, klikněte na Empty Selected a Exit
stejným způsobem vymažte případně cache Firefoxu a Opery

restartujte PC
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
tak jsem udělala všechno co jste po mě žádal. Mám zde hodit znova log?
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
a pořád se to seká?
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
No sekat ani ne, ale spomalený je furt. Dlouho mu trvá než cokoliv načte.
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
zkuste ještě provést defragmentaci disků, pokud to nepomůže, tak navýšit velikost RAM paměti
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
Děkuji, dobře vyskoušíme a uvidíme. A mám počítač rozdělený na 2 hardisky mohla bych poslat ještě log i s toho druhého? jen tak pro jistotu.
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
to je v pořádku, logy jsou společné pro oba disky
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
PC má 2 hardisky a každý má svůj systém win xp
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
aha... a PC je pomalé v obou systémech?
"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
ten druhý systém není tak v provozu, je spíše záložní.
-
- Vzorný návštěvník
- Příspěvky: 308
- Registrován: 07 led 2007 15:20
- Bydliště: Pardubice
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
no pak to asi nemá význam, ale jak chcete 

"Život je život, louka je louka, koukneš se do trávy – a vidíš brouka."
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
"Neodpovídej tupci na jeho tupost, aby ses mu sám nezačal podobat. Odpověz tupci na jeho tupost, aby si přestal moudrý připadat...."
(Přísloví krále Šalomouna)
-
- Návštěvník
- Příspěvky: 17
- Registrován: 28 pro 2008 19:03
Re: Prosím o kontrolu logu, PC je zpomalený, seká se
jen tak pro jistotu, pak až by se něco stalo mohlo by být pozdě 
