Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu po menší očistě

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
s_ebastian
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 22 úno 2007 14:43
Bydliště: Plzeň

Prosím o kontrolu po menší očistě

#1 Příspěvek od s_ebastian »

Zdravím Vás,prosím o kontrolu logu,comp nějak výrazně nezlobil,jen pro jistotu.Děkuji Vám..



Logfile of random's system information tool 1.09 (written by random/random)
Run by Roman at 2011-09-22 07:50:50
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 35 GB (50%) free of 70 GB
Total RAM: 2045 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:51:12, on 22.9.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Hard Disk Sentinel\HDSentinel.exe
C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Roman\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Roman.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.superhry.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.superhry.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [OM2_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe" /OM
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Hard Disk Sentinel] "C:\Program Files\Hard Disk Sentinel\HDSentinel.exe" /AUTORUN
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKCU\..\Run: [OM2_Monitor] "C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-2000478354-1409082233-839522115-1006\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2000478354-1409082233-839522115-1006\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'Default user')
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Application Driver Auto Removal Service (01) (appdrvrem01) - Protection Technology - C:\WINDOWS\System32\appdrvrem01.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: Audio Service (STacSV) - Unknown owner - c:\docume~1\roman\locals~1\temp\cdm\{1a935bf2-f695-45d8-92fe-c54b88f6909c}\STacSV.exe (file missing)
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe

--
End of file - 9684 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Automatic troubleshooting.job
C:\WINDOWS\tasks\SmartDefrag_Startup.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Roman\Data aplikací\Mozilla\Firefox\Profiles\th6hwrn4.default

prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.superhry.cz/"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3, {20a82645-c095-46ed-80e3-08825760534b}:0.0.0, cs@dictionaries.addons.mozilla.org:1.0.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
NPOFF12.DLL
nppdf32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Roman\Data aplikací\Mozilla\Firefox\Profiles\th6hwrn4.default\extensions\
cs@dictionaries.addons.mozilla.org

C:\Documents and Settings\Roman\Data aplikací\Mozilla\Firefox\Profiles\th6hwrn4.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-01-28 1554256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-09-20 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-09-20 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe [2008-05-15 54576]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-08-03 13892200]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2011-07-05 1632360]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Hard Disk Sentinel"=C:\Program Files\Hard Disk Sentinel\HDSentinel.exe [2010-09-08 3850752]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-06-30 2554696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2009-03-12 483422]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe [2008-05-15 95536]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-10-11 14940040]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoSMConfigurePrograms"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Games\Call of Duty 4 - Modern Warfare\iw3mp.exe"="D:\Games\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-09-22 07:50:54 ----D---- C:\Program Files\trend micro
2011-09-22 07:50:50 ----D---- C:\rsit
2011-09-21 18:12:18 ----D---- C:\Documents and Settings\Roman\Data aplikací\Malwarebytes
2011-09-21 18:12:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-09-21 18:12:13 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-09-21 18:12:08 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-09-21 18:12:08 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-09-21 17:57:15 ----D---- C:\Program Files\Microsoft Silverlight
2011-09-21 17:25:47 ----A---- C:\WINDOWS\sttray.exe
2011-09-21 17:25:36 ----A---- C:\WINDOWS\system32\st322000.dll
2011-09-21 17:11:10 ----SHD---- C:\RECYCLER
2011-09-21 17:09:27 ----SD---- C:\Uninstall
2011-09-21 15:28:54 ----A---- C:\Boot.bak
2011-09-21 15:28:48 ----RASHD---- C:\cmdcons
2011-09-21 15:07:31 ----D---- C:\Program Files\Adobe
2011-09-21 14:50:25 ----D---- C:\Program Files\COMODO
2011-09-21 14:35:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Comodo
2011-09-21 14:34:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Comodo Downloader
2011-09-21 13:19:10 ----D---- C:\Program Files\Hard Disk Sentinel
2011-09-21 13:05:51 ----D---- C:\EbuDllTmpDir
2011-09-21 12:57:19 ----D---- C:\Documents and Settings\Roman\Data aplikací\IObit
2011-09-21 12:57:19 ----A---- C:\WINDOWS\system32\SmartDefragBootTime.exe
2011-09-21 12:57:19 ----A---- C:\WINDOWS\system32\drivers\SmartDefragDriver.sys
2011-09-21 12:57:14 ----D---- C:\Program Files\IObit
2011-09-20 19:16:32 ----A---- C:\WINDOWS\system32\muweb.dll
2011-09-20 19:16:32 ----A---- C:\WINDOWS\system32\mucltui.dll
2011-09-20 19:06:08 ----A---- C:\WINDOWS\system32\msonpmon.dll
2011-09-20 19:03:35 ----D---- C:\Program Files\Microsoft Works
2011-09-20 19:02:23 ----D---- C:\Program Files\Common Files\DESIGNER
2011-09-20 19:01:06 ----D---- C:\Program Files\Microsoft.NET
2011-09-20 18:52:54 ----D---- C:\Program Files\Microsoft Visual Studio 8
2011-09-20 18:51:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-09-20 18:50:20 ----RD---- C:\MSOCache
2011-09-20 18:37:29 ----D---- C:\Program Files\DAEMON Tools Lite
2011-09-20 18:37:05 ----D---- C:\Documents and Settings\Roman\Data aplikací\DAEMON Tools Lite
2011-09-20 18:36:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrszht.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrstr.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrsth.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrssv.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrssl.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrssk.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrsru.dll
2011-09-20 18:36:03 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrspt.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrspl.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsno.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsko.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsja.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsit.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrshu.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrshe.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2011-09-20 18:36:02 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrses.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrseng.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrsel.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrsde.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrsda.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrscs.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvrsar.dll
2011-09-20 18:36:01 ----A---- C:\WINDOWS\system32\nvcolor.exe
2011-09-20 18:36:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2011-09-20 18:36:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2011-09-20 18:35:59 ----A---- C:\WINDOWS\system32\nvwddi.dll
2011-09-20 18:35:59 ----A---- C:\WINDOWS\system32\easyupdatusapiu.dll
2011-09-20 18:35:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2011-09-20 18:17:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2570791$
2011-09-20 18:09:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-09-20 18:08:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-09-20 18:08:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-09-20 18:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-09-20 18:08:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-09-20 18:04:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-09-20 18:04:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2616676-v2$
2011-09-20 18:03:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-09-20 18:03:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-09-20 18:03:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-09-20 18:03:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-09-20 18:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-09-20 18:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2011-09-20 18:02:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$
2011-09-20 18:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-09-20 18:02:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-09-20 18:02:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-09-20 18:01:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-09-20 18:01:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-09-20 18:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-09-20 18:00:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-09-20 18:00:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-09-20 17:59:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-09-20 17:59:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$
2011-09-20 17:58:21 ----D---- C:\Documents and Settings\Roman\Data aplikací\Intel
2011-09-20 17:58:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\Intel
2011-09-20 17:55:50 ----D---- C:\Program Files\SystemRequirementsLab
2011-09-20 17:55:35 ----D---- C:\WINDOWS\Sun
2011-09-20 17:55:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2011-09-20 17:55:21 ----D---- C:\Program Files\Common Files\Java
2011-09-20 17:54:51 ----A---- C:\WINDOWS\system32\javaws.exe
2011-09-20 17:54:51 ----A---- C:\WINDOWS\system32\javaw.exe
2011-09-20 17:54:51 ----A---- C:\WINDOWS\system32\java.exe
2011-09-20 17:54:51 ----A---- C:\WINDOWS\system32\deployJava1.dll
2011-09-20 17:54:17 ----D---- C:\Program Files\Java
2011-09-20 17:53:21 ----D---- C:\Documents and Settings\Roman\Data aplikací\Sun
2011-09-20 17:53:20 ----A---- C:\WINDOWS\system32\drivers\intelsmb.sys
2011-09-20 17:53:19 ----A---- C:\WINDOWS\system32\ismbun.exe
2011-09-20 17:53:13 ----A---- C:\WINDOWS\system32\drivers\osaio.sys
2011-09-20 17:49:27 ----A---- C:\WINDOWS\system32\PROUnstl.exe
2011-09-20 17:21:02 ----D---- C:\Program Files\IDT
2011-09-20 17:21:02 ----A---- C:\WINDOWS\system32\stlang.dll
2011-09-20 17:21:02 ----A---- C:\WINDOWS\system32\stacsv.exe
2011-08-24 10:20:48 ----A---- C:\WINDOWS\system32\drivers\appdrv01.sys
2011-08-24 10:20:47 ----A---- C:\WINDOWS\system32\appdrvrem01.exe
2011-08-24 09:00:22 ----D---- C:\Documents and Settings\Roman\Data aplikací\SmashFrenzy3
2011-08-24 09:00:22 ----D---- C:\Documents and Settings\Roman\Data aplikací\MB3

======List of files/folders modified in the last 1 month======

2011-09-22 07:50:54 ----RD---- C:\Program Files
2011-09-22 07:50:54 ----D---- C:\WINDOWS\Prefetch
2011-09-22 07:50:18 ----D---- C:\WINDOWS\Temp
2011-09-22 07:49:26 ----D---- C:\WINDOWS\system32\CatRoot2
2011-09-22 07:49:17 ----D---- C:\Documents and Settings\Roman\Data aplikací\Skype
2011-09-21 18:33:22 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-09-21 18:12:13 ----D---- C:\WINDOWS\system32\drivers
2011-09-21 18:00:02 ----D---- C:\WINDOWS
2011-09-21 17:57:52 ----SHD---- C:\WINDOWS\Installer
2011-09-21 17:57:52 ----D---- C:\Config.Msi
2011-09-21 17:57:51 ----D---- C:\Program Files\Microsoft Office
2011-09-21 17:57:49 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-09-21 17:53:41 ----D---- C:\WINDOWS\Debug
2011-09-21 17:40:49 ----D---- C:\WINDOWS\WinSxS
2011-09-21 17:37:49 ----RSD---- C:\WINDOWS\assembly
2011-09-21 17:37:22 ----D---- C:\WINDOWS\system32\CatRoot
2011-09-21 17:36:42 ----HD---- C:\WINDOWS\inf
2011-09-21 17:25:51 ----D---- C:\WINDOWS\system32\DllCache
2011-09-21 17:25:46 ----D---- C:\WINDOWS\system32
2011-09-21 17:25:42 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-09-21 17:25:21 ----HD---- C:\Program Files\InstallShield Installation Information
2011-09-21 17:09:58 ----SHD---- C:\System Volume Information
2011-09-21 17:09:58 ----D---- C:\WINDOWS\system32\Restore
2011-09-21 16:49:34 ----A---- C:\WINDOWS\system.ini
2011-09-21 16:39:34 ----D---- C:\WINDOWS\AppPatch
2011-09-21 16:39:29 ----D---- C:\Program Files\Common Files
2011-09-21 15:41:26 ----SD---- C:\WINDOWS\Tasks
2011-09-21 15:38:33 ----D---- C:\WINDOWS\system32\drivers\etc
2011-09-21 15:37:49 ----D---- C:\WINDOWS\ehome
2011-09-21 15:28:54 ----RASH---- C:\boot.ini
2011-09-21 15:07:42 ----D---- C:\Program Files\Common Files\Adobe
2011-09-21 15:07:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-09-21 15:01:56 ----SD---- C:\Documents and Settings\Roman\Data aplikací\Microsoft
2011-09-21 15:01:56 ----D---- C:\Documents and Settings\Roman\Data aplikací\Adobe
2011-09-21 13:14:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-09-21 13:14:04 ----RSD---- C:\WINDOWS\Fonts
2011-09-21 01:28:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-09-21 01:22:41 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-09-21 01:19:44 ----A---- C:\WINDOWS\win.ini
2011-09-21 01:19:43 ----D---- C:\Program Files\Common Files\System
2011-09-20 23:42:31 ----D---- C:\WINDOWS\system32\RTCOM
2011-09-20 22:57:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-09-20 22:55:21 ----D---- C:\WINDOWS\Logs
2011-09-20 22:53:07 ----D---- C:\Program Files\CCleaner
2011-09-20 19:18:10 ----D---- C:\WINDOWS\system32\oodag
2011-09-20 19:14:48 ----D---- C:\WINDOWS\SHELLNEW
2011-09-20 19:05:48 ----D---- C:\WINDOWS\system32\config
2011-09-20 19:03:02 ----D---- C:\Program Files\MSBuild
2011-09-20 18:58:51 ----D---- C:\WINDOWS\Help
2011-09-20 18:57:28 ----D---- C:\WINDOWS\Microsoft.NET
2011-09-20 18:36:29 ----D---- C:\Documents and Settings
2011-09-20 18:36:27 ----D---- C:\Program Files\DAEMON Tools Pro
2011-09-20 18:36:25 ----D---- C:\Program Files\NVIDIA Corporation
2011-09-20 18:36:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA Corporation
2011-09-20 18:08:41 ----HD---- C:\WINDOWS\$hf_mig$
2011-09-20 18:01:07 ----D---- C:\WINDOWS\ie8updates
2011-09-20 18:00:11 ----D---- C:\Program Files\Internet Explorer
2011-09-20 17:53:35 ----D---- C:\Program Files\Intel
2011-09-09 11:12:04 ----A---- C:\WINDOWS\system32\crypt32.dll
2011-09-07 13:22:13 ----D---- C:\Program Files\Mozilla Firefox
2011-09-06 22:45:29 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-09-06 13:58:26 ----A---- C:\WINDOWS\system32\MRT.exe
2011-08-24 08:59:34 ----D---- C:\Program Files\Superhry.cz
2011-08-24 08:59:31 ----D---- C:\Program Files\Alawarhry.cz
2011-08-23 21:20:13 ----A---- C:\WINDOWS\NeroDigital.ini
2011-08-23 19:45:53 ----D---- C:\Documents and Settings\Roman\Data aplikací\skypePM

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 Inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\System32\DRIVERS\inspect.sys [2011-06-30 97504]
R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2010-11-26 14776]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2011-09-20 443448]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-09-06 30808]
R1 appdrv01;Application Driver (01); C:\WINDOWS\System32\Drivers\appdrv01.sys [2011-08-24 2911848]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-09-06 34392]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-09-06 442200]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-09-06 320856]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-09-06 52568]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-06-30 242600]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2011-06-30 29400]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.10.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2008-08-12 21275]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-09-06 20568]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-09-06 110552]
R2 osaio;osaio; \??\C:\WINDOWS\system32\drivers\osaio.sys []
R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2005-10-23 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-08-03 12542592]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-08-11 47360]
R3 smbusp;Intel(R) SMBus 2.0 Driver; C:\WINDOWS\system32\DRIVERS\intelsmb.sys [2009-01-22 45184]
R3 STHDA;IDT High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2009-03-12 1550613]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys []
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S0 Si3112r;Si3112r; C:\WINDOWS\system32\drivers\Si3112r.sys []
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 a27c5fvy;a27c5fvy; C:\WINDOWS\system32\drivers\a27c5fvy.sys []
S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys []
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\F:\Ostatni\EVEREST Ultimate Edition\kerneld.wnt []
S3 FLASHSYS;FLASHSYS; \??\C:\Program Files\MSI\Live Update 4\LU4\FLASHSYS.sys []
S3 GMSIPCI;GMSIPCI; \??\G:\INSTALL\GMSIPCI.SYS []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys []
S3 MSICPL;MSICPL; \??\G:\install4\MSICPL.sys []
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2008-05-02 17536]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2008-05-02 20864]
S3 NTACCESS;NTACCESS; \??\G:\NTACCESS.sys []
S3 RT61;Ralink RT61 Wireless Driver; C:\WINDOWS\system32\DRIVERS\RT61.sys [2006-05-04 380928]
S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-03-31 105856]
S3 SetupNTGLM7X;SetupNTGLM7X; \??\G:\NTGLM7X.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;Nokia USB Serial Port; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2008-05-02 8064]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-09-06 44768]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-06-30 1793712]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-09-20 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2011-08-03 146024]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2009-10-30 1021256]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 appdrvrem01;Application Driver Auto Removal Service (01); C:\WINDOWS\System32\appdrvrem01.exe [2011-08-24 304528]
S2 STacSV;Audio Service; c:\docume~1\roman\locals~1\temp\cdm\{1a935bf2-f695-45d8-92fe-c54b88f6909c}\STacSV.exe []
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe [2010-09-28 435016]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu po menší očistě

#2 Příspěvek od Roli »

Zdravím, tohle fixni v HJT :

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-21-2000478354-1409082233-839522115-1006\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2000478354-1409082233-839522115-1006\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetupo.dll" "%SystemRoot%\System32\syssetup.dll" (User 'Default user')


HJT najdeš zde :

C:\Program Files\trend micro\Roman.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém


Pak použij Mbam z mého podpisu a dej mi sem z něj log, předem nic nemazat !!!
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět