Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problémy s internetem

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Problémy s internetem

#1 Příspěvek od Jaroslav Blažek »

Zdravím

Mám problémy s interneten. Internet je dost pomalý, někdy se stránka načte třeba až za několik minut, někdy se nenačte vůbec. Často to vypadá tak že se stránka celá načte, není vidět že by něco chybělo, a přesto prohlížeč píše že se stránka stále načítá. Jsou tam výkyvy, někdy to jde celkem rychle, někdy dost pomalu. Když jsem zkoušel test připojení, tak mi jednou vyšla stabilita 33,2%, jednou 3,7%.

Internet mám přes ADSL. Mám wifi router a vytvořenou bezdrátovou síť, na kterou se připojuju přes USB adaptér. Používám Windows XP Professional, antivirus Avast, Windows firewall a Fierefox.

Nevím čím to může být. Už jsem zkoušel vyčistit prohlížeč přes CCleaner, a odpojit a znovu připojit wifi adaptér, ale ani jedno nepomohlo.

Vylučuju:

Problém na straně poskytovatele připojení nebo problém s routerem - na 2 dalších počítačích jde všechno normálně.

Problém s prohlížečem - zkoušel jsem Firefox, Chrome i IE, ale ve všech je to stejné.

Málo pravděpodobné možnosti:

Problém s hardwarem počítače - nedávno jsem měnil HDD a přidával novou RAM, a při spouštění jiných programů nejsou s počítačem žádné problémy.

Problém s wifi adaptérem - předpokládám že kdyby s ním byl nějaký problém, tak by internet nešel vůbec, nebo by šel pořád stejně, ale u mě to chvíli jde celkem dobře a chvíli pomalu.

Takže opravdu nevím čím to je. Koukal jsem se do podobných témat, a narazil jsem na radu použít combofix. Protože nevím co by to udělalo, tak jsem zo zatím nezkoušel. Prosím někoho kdo tomu rozumí, aby mi řekl jestli mám combofix použít nebo ne.

Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Re: Problémy s internetem

#2 Příspěvek od Jaroslav Blažek »

Odezva byla v rozsahu od 6ms do zhruba 60ms, jednou asi 110 ms.

V nouzovém režimu jsem to předtím nezkoušel. Teď jsem to teda zkusil, poprvé to ze začátku dělalo stejné problémy, ale po chvíli to začalo fungovat normálně, podruhé už to šlo normálně hned od začátku. Po znovuspuštění internet nefungoval, tak jsem odpojil a znovu připojil wifi adaptér, a teď jde vše normálně. Ale nejsem si jistý jestli to znamená že je to vyřešené, protože už se jednou stalo že to šlo normálně, a pak se problémy zase vrátily.

Log z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jaroslav at 2012-04-07 09:00:46
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 132 GB (87%) free of 153 GB
Total RAM: 1535 MB (79% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:00:55, on 7.4.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Documents and Settings\Jaroslav\Plocha\RSIT.exe
C:\Program Files\trend micro\Jaroslav.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: IEWebHook - {AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2} - C:\Documents and Settings\Jaroslav\Data aplikací\Media Finder\Extensions\IEPlugin32.dll
O2 - BHO: Help the General-Search Project - {CA4520F3-AE13-4FB1-A513-58E23991C86D} - C:\DOCUME~1\Jaroslav\DATAAP~1\MEDIAF~1\EXTENS~1\GENCRA~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Download with &Media Finder - C:\Program Files\Media Finder\hook.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files\ICQ7.7\ICQ.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Documents and Settings\Jaroslav\Plocha\PartyPoker.lnk (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Documents and Settings\Jaroslav\Plocha\PartyPoker.lnk (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Zařazování tisku (Spooler) - Unknown owner - C:\WINDOWS\system32\spoolsv.exe (file missing)

--
End of file - 3772 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Express Files Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Jaroslav\Data aplikací\Mozilla\Firefox\Profiles\2yrmhl83.default

prefs.js - "browser.startup.homepage" - "http://www.google.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-02-23 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}]
Plugin for Media Finder - C:\Documents and Settings\Jaroslav\Data aplikací\Media Finder\Extensions\IEPlugin32.dll [2011-12-07 307200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D}]
Help the General-Search Project - C:\DOCUME~1\Jaroslav\DATAAP~1\MEDIAF~1\EXTENS~1\GENCRA~1.DLL [2011-12-07 428544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-02-23 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-02-23 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-03-07 4241512]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2004-08-17 159232]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
"C:\Program Files\ExpressFiles\ExpressFiles.exe"="C:\Program Files\ExpressFiles\ExpressFiles.exe:*:Enabled:ExpressFiles"
"C:\Program Files\ExpressFiles\ExpressDL.exe"="C:\Program Files\ExpressFiles\ExpressDL.exe:*:Enabled:ExpressFilesDL"
"C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh"
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"C:\Program Files\BitLord\BitLord.exe"="C:\Program Files\BitLord\BitLord.exe:*:Enabled:BitLord"
"C:\Documents and Settings\Jaroslav\Data aplikací\Dropbox\bin\Dropbox.exe"="C:\Documents and Settings\Jaroslav\Data aplikací\Dropbox\bin\Dropbox.exe:*:Enabled:Dropbox"
"C:\Casino\ParadiseCasino\casino.exe"="C:\Casino\ParadiseCasino\casino.exe:*:Enabled:casino"
"C:\Program Files\Liquid Entertainment\Battle Realms\Battle_Realms_F.exe"="C:\Program Files\Liquid Entertainment\Battle Realms\Battle_Realms_F.exe:*:Enabled:Battle_Realms_F"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
"C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh"
"C:\Program Files\BearShare Applications\BearShare\BearShare.exe"="C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=serwvdrv.dll

======List of files/folders created in the last 1 month======

2012-04-07 09:00:46 ----D---- C:\rsit
2012-04-07 09:00:46 ----D---- C:\Program Files\trend micro
2012-04-07 08:36:22 ----ASH---- C:\hiberfil.sys
2012-04-07 08:17:53 ----SHD---- C:\WINDOWS\CSC
2012-04-07 08:16:42 ----D---- C:\WINDOWS\pss
2012-04-05 00:30:33 ----D---- C:\Program Files\DOSBox-0.74
2012-04-05 00:24:59 ----D---- C:\oldgames
2012-04-04 18:46:17 ----D---- C:\Documents and Settings\Jaroslav\Data aplikací\PSpad
2012-04-04 18:45:06 ----D---- C:\Program Files\PSPad editor
2012-03-31 20:07:24 ----D---- C:\Program Files\20Dollars2Surf
2012-03-12 00:16:28 ----D---- C:\Documents and Settings\Jaroslav\Data aplikací\Mozilla-Cache
2012-03-12 00:15:21 ----D---- C:\Program Files\PartyGaming
2012-03-11 08:27:48 ----D---- C:\Program Files\Google
2012-03-11 08:21:45 ----D---- C:\WINDOWS\Minidump

======List of files/folders modified in the last 1 month======

2012-04-07 09:00:46 ----RD---- C:\Program Files
2012-04-07 09:00:40 ----D---- C:\WINDOWS\Prefetch
2012-04-07 08:44:50 ----D---- C:\WINDOWS\Temp
2012-04-07 08:40:35 ----D---- C:\WINDOWS\system32
2012-04-07 08:40:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-04-07 08:36:54 ----SH---- C:\boot.ini
2012-04-07 08:36:54 ----A---- C:\WINDOWS\win.ini
2012-04-07 08:36:54 ----A---- C:\WINDOWS\system.ini
2012-04-07 08:33:17 ----D---- C:\Documents and Settings
2012-04-07 08:17:53 ----D---- C:\WINDOWS
2012-04-07 08:17:13 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-04-07 04:49:05 ----D---- C:\WINDOWS\system32\CatRoot2
2012-04-06 01:48:39 ----D---- C:\Documents and Settings\Jaroslav\Data aplikací\ICQ
2012-04-04 07:35:19 ----D---- C:\WINDOWS\Debug
2012-03-27 13:37:35 ----SHD---- C:\WINDOWS\Installer
2012-03-22 03:19:44 ----HD---- C:\WINDOWS\inf
2012-03-17 08:51:03 ----D---- C:\Program Files\Mozilla Firefox
2012-03-14 13:24:23 ----A---- C:\WINDOWS\system32\MRT.exe
2012-03-11 08:27:59 ----SD---- C:\WINDOWS\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-04 42368]
R0 prohlp02;StarForce Protection Helper Driver v2; C:\WINDOWS\System32\drivers\prohlp02.sys [2004-08-09 114016]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2004-07-19 7040]
R0 sfhlp01;StarForce Protection Helper Driver; C:\WINDOWS\System32\drivers\sfhlp01.sys [2003-12-01 4832]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-01-28 473656]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2012-03-07 24920]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2012-03-07 35672]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2012-03-07 612184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2012-03-07 337880]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2012-03-07 53848]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-08-09 53920]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2012-03-07 20696]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2012-03-07 95704]
R3 AR9271;Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw.sys [2010-01-05 1714176]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2003-02-26 739983]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2012-01-29 242240]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2003-03-04 145408]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 AgereSoftModem;Microcom InPorte Home; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2002-06-21 1133440]
S3 aomo5uqw;aomo5uqw; C:\WINDOWS\system32\drivers\aomo5uqw.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-03-07 44768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-11 136176]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-03-11 136176]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-02-23 153376]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Re: Problémy s internetem

#3 Příspěvek od Jaroslav Blažek »

Jo, byli.
Nevím co to je utorrent.
Vzpomínám si že když jsem se koukal na ty aktualizace, tak mi tam něco z toho vadilo, proto jsem to nenainstaloval.
Mám, ale nechce se mi to zkoušet, musel bych celý počítač přenášet. A nevidím k tomu důvod, v nouzovém režimu internet šel normálně, takmže adaptér je v pořádku.
Ne, rušit ho nic nemůže.
To livecd musím vypalovat na CD nebo DVD, nebo to jde i z flash disku?

MBR:
MBRScan v1.1.1

OS : Windows XP Home Service Pack 2 (32 bit)
PROCESSOR : x86 Family 15 Model 2 Stepping 9, GenuineIntel
BOOT : Normal Boot
DATE : 2012/04/07 (ISO 8601) at 10:38:00
________________________________________________________________________________

DISK : Device\Harddisk0\DR0 __WDC WD1600AAJB-00J3A0 (01.03E01)
BUS_TYPE : (0x03) P-ATA
USE_PIO : YES
MAX_TRANSFER : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________

DISK : Device\Harddisk1\DR6 __USB 2.0 Flash Disk (0.00)
BUS_TYPE : (0x07) USB
USE_PIO : NO
MAX_TRANSFER : 64 Kb
ALIGNMENT_MASK : byte aligned
________________________________________________________________________________

Device\Harddisk0\DR0 149.1 Go [Fixed] ==> XP MBR Code

MBR_MD5 : 8BF674401F75A654178F222F03FE3816
MBR_SHA1 : D8188A6D6929EF423E681243E66F83D0610BC5DA

Device\Harddisk0\Partition1 149.0 Go 0x07 NTFS / HPFS __ BOOTABLE __
________________________________________________________________________________

Device\Harddisk1\DR6 984.0 Mo [Removable] ==> Unknown MBR Code

MBR_MD5 : 1D6847D900D867C99056C927DFD1B836
MBR_SHA1 : 7E38344FA5705F7DE78C495A452C4FED8A86D893

Device\Harddisk1\Partition1 984.0 Mo __ BOOTABLE __
________________________________________________________________________________

############################### Additional scan ################################

SystemStartOptions : NOEXECUTE=OPTIN FASTDETECT

________________________________________________________________________________

_______MBR \Device\Harddisk0\DR0

0x00000000 33 C0 8E D0 BC 00 7C FB 50 07 50 1F FC BE 1B 7C 3À.м.|ûP.P.ü¾.|
0x00000010 BF 1B 06 50 57 B9 E5 01 F3 A4 CB BD BE 07 B1 04 ¿..PW¹å.ó¤Ë½¾.±.
0x00000020 38 6E 00 7C 09 75 13 83 C5 10 E2 F4 CD 18 8B F5 8n.|.u..Å.âôÍ..õ
0x00000030 83 C6 10 49 74 19 38 2C 74 F6 A0 B5 07 B4 07 8B .Æ.It.8,tö.µ.´..
0x00000040 F0 AC 3C 00 74 FC BB 07 00 B4 0E CD 10 EB F2 88 ð¬<.tü»..´.Í.ëò.
0x00000050 4E 10 E8 46 00 73 2A FE 46 10 80 7E 04 0B 74 0B N.èF.s*þF..~..t.
0x00000060 80 7E 04 0C 74 05 A0 B6 07 75 D2 80 46 02 06 83 .~..t..¶.uÒ.F...
0x00000070 46 08 06 83 56 0A 00 E8 21 00 73 05 A0 B6 07 EB F...V..è!.s..¶.ë
0x00000080 BC 81 3E FE 7D 55 AA 74 0B 80 7E 10 00 74 C8 A0 ¼.>þ}Uªt..~..tÈ.
0x00000090 B7 07 EB A9 8B FC 1E 57 8B F5 CB BF 05 00 8A 56 ·.ë©.ü.W.õË¿...V
0x000000A0 00 B4 08 CD 13 72 23 8A C1 24 3F 98 8A DE 8A FC .´.Í.r#.Á$?..Þ.ü
0x000000B0 43 F7 E3 8B D1 86 D6 B1 06 D2 EE 42 F7 E2 39 56 C÷ã.Ñ.Ö±.ÒîB÷â9V
0x000000C0 0A 77 23 72 05 39 46 08 73 1C B8 01 02 BB 00 7C .w#r.9F.s.¸..».|
0x000000D0 8B 4E 02 8B 56 00 CD 13 73 51 4F 74 4E 32 E4 8A .N..V.Í.sQOtN2ä.
0x000000E0 56 00 CD 13 EB E4 8A 56 00 60 BB AA 55 B4 41 CD V.Í.ëä.V.`»ªU´AÍ
0x000000F0 13 72 36 81 FB 55 AA 75 30 F6 C1 01 74 2B 61 60 .r6.ûUªu0öÁ.t+a`
0x00000100 6A 00 6A 00 FF 76 0A FF 76 08 6A 00 68 00 7C 6A j.j..v..v.j.h.|j
0x00000110 01 6A 10 B4 42 8B F4 CD 13 61 61 73 0E 4F 74 0B .j.´B.ôÍ.aas.Ot.
0x00000120 32 E4 8A 56 00 CD 13 EB D6 61 F9 C3 4E 65 70 6C 2ä.V.Í.ëÖaùÃNepl
0x00000130 61 74 6E A0 20 74 61 62 75 6C 6B 61 20 6F 64 64 atn. tabulka odd
0x00000140 A1 6C 85 00 43 68 79 62 61 20 70 FD 69 20 6E 61 ¡l..Chyba pýi na
0x00000150 9F A1 74 A0 6E A1 20 6F 70 65 72 61 9F 6E A1 68 .¡t.n¡ opera.n¡h
0x00000160 6F 20 73 79 73 74 82 6D 75 00 4F 70 65 72 61 9F o syst.mu.Opera.
0x00000170 6E A1 20 73 79 73 74 82 6D 20 6E 65 6E 61 6C 65 n¡ syst.m nenale
0x00000180 7A 65 6E 00 00 00 00 00 00 00 00 00 00 00 00 00 zen.............
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 2C 44 6A 31 32 32 32 00 00 80 01 .....,Dj1222....
0x000001C0 01 00 07 FE FF FF 3F 00 00 00 C1 4B A1 12 00 00 ...þ..?...ÁK¡...
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª

__________________________16_BIT_ASM_CODE

0x0000 33c0 XOR AX, AX
0x0002 8ed0 MOV SS, AX
0x0004 bc 007c MOV SP, 0x7c00
0x0007 fb STI
0x0008 50 PUSH AX
0x0009 07 POP ES
0x000A 50 PUSH AX
0x000B 1f POP DS
0x000C fc CLD
0x000D be 1b7c MOV SI, 0x7c1b
0x0010 bf 1b06 MOV DI, 0x61b
0x0013 50 PUSH AX
0x0014 57 PUSH DI
0x0015 b9 e501 MOV CX, 0x1e5
0x0018 f3 a4 REP MOVSB
0x001A cb RETF
0x001B bd be07 MOV BP, 0x7be
0x001E b1 04 MOV CL, 0x4
0x0020 386e 00 CMP [BP+0x0], CH
0x0023 7c 09 JL 0x2e
0x0025 75 13 JNZ 0x3a
0x0027 83c5 10 ADD BP, 0x10
0x002A e2 f4 LOOP 0x20
0x002C cd 18 INT 0x18
0x002E 8bf5 MOV SI, BP
0x0030 83c6 10 ADD SI, 0x10
0x0033 49 DEC CX
0x0034 74 19 JZ 0x4f
0x0036 382c CMP [SI], CH
0x0038 74 f6 JZ 0x30
0x003A a0 b507 MOV AL, [0x7b5]
0x003D b4 07 MOV AH, 0x7
0x003F 8bf0 MOV SI, AX
0x0041 ac LODSB
0x0042 3c 00 CMP AL, 0x0
0x0044 74 fc JZ 0x42
0x0046 bb 0700 MOV BX, 0x7
0x0049 b4 0e MOV AH, 0xe
0x004B cd 10 INT 0x10
0x004D eb f2 JMP 0x41
0x004F 884e 10 MOV [BP+0x10], CL
0x0052 e8 4600 CALL 0x9b
0x0055 73 2a JAE 0x81
0x0057 fe46 10 INC BYTE [BP+0x10]
0x005A 807e 04 0b CMP BYTE [BP+0x4], 0xb
0x005E 74 0b JZ 0x6b
0x0060 807e 04 0c CMP BYTE [BP+0x4], 0xc
0x0064 74 05 JZ 0x6b
0x0066 a0 b607 MOV AL, [0x7b6]
0x0069 75 d2 JNZ 0x3d
0x006B 8046 02 06 ADD BYTE [BP+0x2], 0x6
0x006F 8346 08 06 ADD WORD [BP+0x8], 0x6
0x0073 8356 0a 00 ADC WORD [BP+0xa], 0x0
0x0077 e8 2100 CALL 0x9b
0x007A 73 05 JAE 0x81
0x007C a0 b607 MOV AL, [0x7b6]
0x007F eb bc JMP 0x3d
0x0081 813e fe7d 55aa CMP WORD [0x7dfe], 0xaa55
0x0087 74 0b JZ 0x94
0x0089 807e 10 00 CMP BYTE [BP+0x10], 0x0
0x008D 74 c8 JZ 0x57
0x008F a0 b707 MOV AL, [0x7b7]
0x0092 eb a9 JMP 0x3d
0x0094 8bfc MOV DI, SP
0x0096 1e PUSH DS
0x0097 57 PUSH DI
0x0098 8bf5 MOV SI, BP
0x009A cb RETF
0x009B bf 0500 MOV DI, 0x5
0x009E 8a56 00 MOV DL, [BP+0x0]
0x00A1 b4 08 MOV AH, 0x8
0x00A3 cd 13 INT 0x13
0x00A5 72 23 JB 0xca
0x00A7 8ac1 MOV AL, CL
0x00A9 24 3f AND AL, 0x3f
0x00AB 98 CBW
0x00AC 8ade MOV BL, DH
0x00AE 8afc MOV BH, AH
0x00B0 43 INC BX
0x00B1 f7e3 MUL BX
0x00B3 8bd1 MOV DX, CX
0x00B5 86d6 XCHG DH, DL
0x00B7 b1 06 MOV CL, 0x6
0x00B9 d2ee SHR DH, CL
0x00BB 42 INC DX
0x00BC f7e2 MUL DX
0x00BE 3956 0a CMP [BP+0xa], DX
0x00C1 77 23 JA 0xe6
0x00C3 72 05 JB 0xca
0x00C5 3946 08 CMP [BP+0x8], AX
0x00C8 73 1c JAE 0xe6
0x00CA b8 0102 MOV AX, 0x201
0x00CD bb 007c MOV BX, 0x7c00
0x00D0 8b4e 02 MOV CX, [BP+0x2]
0x00D3 8b56 00 MOV DX, [BP+0x0]
0x00D6 cd 13 INT 0x13
0x00D8 73 51 JAE 0x12b
0x00DA 4f DEC DI
0x00DB 74 4e JZ 0x12b
0x00DD 32e4 XOR AH, AH
0x00DF 8a56 00 MOV DL, [BP+0x0]
0x00E2 cd 13 INT 0x13
0x00E4 eb e4 JMP 0xca
0x00E6 8a56 00 MOV DL, [BP+0x0]
0x00E9 60 PUSHA
0x00EA bb aa55 MOV BX, 0x55aa
0x00ED b4 41 MOV AH, 0x41
0x00EF cd 13 INT 0x13
0x00F1 72 36 JB 0x129
0x00F3 81fb 55aa CMP BX, 0xaa55
0x00F7 75 30 JNZ 0x129
0x00F9 f6c1 01 TEST CL, 0x1
0x00FC 74 2b JZ 0x129
0x00FE 61 POPA
0x00FF 60 PUSHA
0x0100 6a 00 PUSH 0x0
0x0102 6a 00 PUSH 0x0
0x0104 ff76 0a PUSH WORD [BP+0xa]
0x0107 ff76 08 PUSH WORD [BP+0x8]
0x010A 6a 00 PUSH 0x0
0x010C 68 007c PUSH 0x7c00
0x010F 6a 01 PUSH 0x1
0x0111 6a 10 PUSH 0x10
0x0113 b4 42 MOV AH, 0x42
0x0115 8bf4 MOV SI, SP
0x0117 cd 13 INT 0x13
0x0119 61 POPA
0x011A 61 POPA
0x011B 73 0e JAE 0x12b
0x011D 4f DEC DI
0x011E 74 0b JZ 0x12b
0x0120 32e4 XOR AH, AH
0x0122 8a56 00 MOV DL, [BP+0x0]
0x0125 cd 13 INT 0x13
0x0127 eb d6 JMP 0xff
0x0129 61 POPA
0x012A f9 STC
0x012B c3 RET
0x012C 4e DEC SI
0x012D 65 DB 0x65
0x012D 65 70 6c JO 0x19c
0x0130 61 POPA
0x0131 74 6e JZ 0x1a1
0x0133 a0 2074 MOV AL, [0x7420]
0x0136 61 POPA
0x0137 6275 6c BOUND SI, [DI+0x6c]
0x013A 6b61 20 6f IMUL SP, [BX+DI+0x20], 0x6f
0x013E 64 DB 0x64
0x013F 64 a1 6c85 MOV AX, FS:[0x856c]
0x0143 0043 68 ADD [BP+DI+0x68], AL
0x0146 79 62 JNS 0x1aa
0x0148 61 POPA
0x0149 2070 fd AND [BX+SI-0x3], DH
0x014C 6920 6e61 IMUL SP, [BX+SI], 0x616e
0x0150 9f LAHF
0x0151 a1 74a0 MOV AX, [0xa074]
0x0154 6e OUTSB
0x0155 a1 206f MOV AX, [0x6f20]
0x0158 70 65 JO 0x1bf
0x015A 72 61 JB 0x1bd
0x015C 9f LAHF
0x015D 6e OUTSB
0x015E a1 686f MOV AX, [0x6f68]
0x0161 2073 79 AND [BP+DI+0x79], DH
0x0164 73 74 JAE 0x1da
0x0166 826d 75 00 SUB BYTE [DI+0x75], 0x0
0x016A 4f DEC DI
0x016B 70 65 JO 0x1d2
0x016D 72 61 JB 0x1d0
0x016F 9f LAHF
0x0170 6e OUTSB
0x0171 a1 2073 MOV AX, [0x7320]
0x0174 79 73 JNS 0x1e9
0x0176 74 82 JZ 0xfa
0x0178 6d INSW
0x0179 206e 65 AND [BP+0x65], CH
0x017C 6e OUTSB
0x017D 61 POPA
0x017E 6c INSB
0x017F 65 DB 0x65
0x017F 65 7a 65 JP 0x1e7
0x0182 6e OUTSB
0x0183 0000 ADD [BX+SI], AL
0x0185 0000 ADD [BX+SI], AL
0x0187 0000 ADD [BX+SI], AL
0x0189 0000 ADD [BX+SI], AL
0x018B 0000 ADD [BX+SI], AL
0x018D 0000 ADD [BX+SI], AL
0x018F 0000 ADD [BX+SI], AL
0x0191 0000 ADD [BX+SI], AL
0x0193 0000 ADD [BX+SI], AL
0x0195 0000 ADD [BX+SI], AL
0x0197 0000 ADD [BX+SI], AL
0x0199 0000 ADD [BX+SI], AL
0x019B 0000 ADD [BX+SI], AL
0x019D 0000 ADD [BX+SI], AL
0x019F 0000 ADD [BX+SI], AL
0x01A1 0000 ADD [BX+SI], AL
0x01A3 0000 ADD [BX+SI], AL
0x01A5 0000 ADD [BX+SI], AL
0x01A7 0000 ADD [BX+SI], AL
0x01A9 0000 ADD [BX+SI], AL
0x01AB 0000 ADD [BX+SI], AL
0x01AD 0000 ADD [BX+SI], AL
0x01AF 0000 ADD [BX+SI], AL
0x01B1 0000 ADD [BX+SI], AL
0x01B3 0000 ADD [BX+SI], AL
0x01B5 2c 44 SUB AL, 0x44
0x01B7 6a 31 PUSH 0x31
0x01B9 3232 XOR DH, [BP+SI]
0x01BB 3200 XOR AL, [BX+SI]
0x01BD 0080 0101 ADD [BX+SI+0x101], AL
0x01C1 0007 ADD [BX], AL
0x01C3 fe DB 0xfe
0x01C4 ff DB 0xff
0x01C5 ff DB 0xff
0x01C6 3f AAS
0x01C7 0000 ADD [BX+SI], AL
0x01C9 00c1 ADD CL, AL
0x01CB 4b DEC BX
0x01CC a1 1200 MOV AX, [0x12]
0x01CF 0000 ADD [BX+SI], AL
0x01D1 0000 ADD [BX+SI], AL
0x01D3 0000 ADD [BX+SI], AL
0x01D5 0000 ADD [BX+SI], AL
0x01D7 0000 ADD [BX+SI], AL
0x01D9 0000 ADD [BX+SI], AL
0x01DB 0000 ADD [BX+SI], AL
0x01DD 0000 ADD [BX+SI], AL
0x01DF 0000 ADD [BX+SI], AL
0x01E1 0000 ADD [BX+SI], AL
0x01E3 0000 ADD [BX+SI], AL
0x01E5 0000 ADD [BX+SI], AL
0x01E7 0000 ADD [BX+SI], AL
0x01E9 0000 ADD [BX+SI], AL
0x01EB 0000 ADD [BX+SI], AL
0x01ED 0000 ADD [BX+SI], AL
0x01EF 0000 ADD [BX+SI], AL
0x01F1 0000 ADD [BX+SI], AL
0x01F3 0000 ADD [BX+SI], AL
0x01F5 0000 ADD [BX+SI], AL
0x01F7 0000 ADD [BX+SI], AL
0x01F9 0000 ADD [BX+SI], AL
0x01FB 0000 ADD [BX+SI], AL
0x01FD 0055 aa ADD [DI-0x56], DL


_______MBR \Device\Harddisk1\DR6

0x00000000 FA 33 C0 8E D0 BC 00 7C 8B F4 50 07 50 1F FB FC ú3À.м.|.ôP.P.ûü
0x00000010 BF 00 06 B9 00 01 F2 A5 EA 1D 06 00 00 BE BE 07 ¿..¹..ò¥ê....¾¾.
0x00000020 B3 04 80 3C 80 74 0E 80 3C 00 75 1C 83 C6 10 FE ³..<.t..<.u..Æ.þ
0x00000030 CB 75 EF CD 18 8B 14 8B 4C 02 8B EE 83 C6 10 FE ËuïÍ....L..î.Æ.þ
0x00000040 CB 74 1A 80 3C 00 74 F4 BE 8B 06 AC 3C 00 74 0B Ët..<.tô¾..¬<.t.
0x00000050 56 BB 07 00 B4 0E CD 10 5E EB F0 EB FE BF 05 00 V»..´.Í.^ëðëþ¿..
0x00000060 BB 00 7C B8 01 02 57 CD 13 5F 73 0C 33 C0 CD 13 ».|¸..WÍ._s.3ÀÍ.
0x00000070 4F 75 ED BE A3 06 EB D3 BE C2 06 BF FE 7D 81 3D Ouí¾£.ëÓ¾Â.¿þ}.=
0x00000080 55 AA 75 C7 8B F5 EA 00 7C 00 00 49 6E 76 61 6C UªuÇ.õê.|..Inval
0x00000090 69 64 20 70 61 72 74 69 74 69 6F 6E 20 74 61 62 id partition tab
0x000000A0 6C 65 00 45 72 72 6F 72 20 6C 6F 61 64 69 6E 67 le.Error loading
0x000000B0 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 65 operating syste
0x000000C0 6D 00 4D 69 73 73 69 6E 67 20 6F 70 65 72 61 74 m.Missing operat
0x000000D0 69 6E 67 20 73 79 73 74 65 6D 00 00 00 00 00 00 ing system......
0x000000E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000000F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000100 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000110 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000120 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000130 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000140 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000150 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000160 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000170 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 00 00 00 24 2D F7 91 00 00 80 01 ........$-÷.....
0x000001C0 01 00 06 FE 3F 7C 3F 00 00 00 C0 BF 1E 00 00 00 ...þ?|?...À¿....
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª

__________________________16_BIT_ASM_CODE

0x0000 fa CLI
0x0001 33c0 XOR AX, AX
0x0003 8ed0 MOV SS, AX
0x0005 bc 007c MOV SP, 0x7c00
0x0008 8bf4 MOV SI, SP
0x000A 50 PUSH AX
0x000B 07 POP ES
0x000C 50 PUSH AX
0x000D 1f POP DS
0x000E fb STI
0x000F fc CLD
0x0010 bf 0006 MOV DI, 0x600
0x0013 b9 0001 MOV CX, 0x100
0x0016 f2 a5 REPNZ MOVSW
0x0018 ea 1d06 0000 JMP FAR 0x0:0x61d
0x001D be be07 MOV SI, 0x7be
0x0020 b3 04 MOV BL, 0x4
0x0022 803c 80 CMP BYTE [SI], 0x80
0x0025 74 0e JZ 0x35
0x0027 803c 00 CMP BYTE [SI], 0x0
0x002A 75 1c JNZ 0x48
0x002C 83c6 10 ADD SI, 0x10
0x002F fecb DEC BL
0x0031 75 ef JNZ 0x22
0x0033 cd 18 INT 0x18
0x0035 8b14 MOV DX, [SI]
0x0037 8b4c 02 MOV CX, [SI+0x2]
0x003A 8bee MOV BP, SI
0x003C 83c6 10 ADD SI, 0x10
0x003F fecb DEC BL
0x0041 74 1a JZ 0x5d
0x0043 803c 00 CMP BYTE [SI], 0x0
0x0046 74 f4 JZ 0x3c
0x0048 be 8b06 MOV SI, 0x68b
0x004B ac LODSB
0x004C 3c 00 CMP AL, 0x0
0x004E 74 0b JZ 0x5b
0x0050 56 PUSH SI
0x0051 bb 0700 MOV BX, 0x7
0x0054 b4 0e MOV AH, 0xe
0x0056 cd 10 INT 0x10
0x0058 5e POP SI
0x0059 eb f0 JMP 0x4b
0x005B eb fe JMP 0x5b
0x005D bf 0500 MOV DI, 0x5
0x0060 bb 007c MOV BX, 0x7c00
0x0063 b8 0102 MOV AX, 0x201
0x0066 57 PUSH DI
0x0067 cd 13 INT 0x13
0x0069 5f POP DI
0x006A 73 0c JAE 0x78
0x006C 33c0 XOR AX, AX
0x006E cd 13 INT 0x13
0x0070 4f DEC DI
0x0071 75 ed JNZ 0x60
0x0073 be a306 MOV SI, 0x6a3
0x0076 eb d3 JMP 0x4b
0x0078 be c206 MOV SI, 0x6c2
0x007B bf fe7d MOV DI, 0x7dfe
0x007E 813d 55aa CMP WORD [DI], 0xaa55
0x0082 75 c7 JNZ 0x4b
0x0084 8bf5 MOV SI, BP
0x0086 ea 007c 0000 JMP FAR 0x0:0x7c00
0x008B 49 DEC CX
0x008C 6e OUTSB
0x008D 76 61 JBE 0xf0
0x008F 6c INSB
0x0090 6964 20 7061 IMUL SP, [SI+0x20], 0x6170
0x0095 72 74 JB 0x10b
0x0097 6974 69 6f6e IMUL SI, [SI+0x69], 0x6e6f
0x009C 2074 61 AND [SI+0x61], DH
0x009F 626c 65 BOUND BP, [SI+0x65]
0x00A2 0045 72 ADD [DI+0x72], AL
0x00A5 72 6f JB 0x116
0x00A7 72 20 JB 0xc9
0x00A9 6c INSB
0x00AA 6f OUTSW
0x00AB 61 POPA
0x00AC 64 696e 67 206f IMUL BP, FS:[BP+0x67], 0x6f20
0x00B2 70 65 JO 0x119
0x00B4 72 61 JB 0x117
0x00B6 74 69 JZ 0x121
0x00B8 6e OUTSB
0x00B9 67 2073 79 AND [EBX+0x79], DH
0x00BD 73 74 JAE 0x133
0x00BF 65 6d INS WORD GS:[DI], DX
0x00C1 004d 69 ADD [DI+0x69], CL
0x00C4 73 73 JAE 0x139
0x00C6 696e 67 206f IMUL BP, [BP+0x67], 0x6f20
0x00CB 70 65 JO 0x132
0x00CD 72 61 JB 0x130
0x00CF 74 69 JZ 0x13a
0x00D1 6e OUTSB
0x00D2 67 2073 79 AND [EBX+0x79], DH
0x00D6 73 74 JAE 0x14c
0x00D8 65 6d INS WORD GS:[DI], DX
0x00DA 0000 ADD [BX+SI], AL
0x00DC 0000 ADD [BX+SI], AL
0x00DE 0000 ADD [BX+SI], AL
0x00E0 0000 ADD [BX+SI], AL
0x00E2 0000 ADD [BX+SI], AL
0x00E4 0000 ADD [BX+SI], AL
0x00E6 0000 ADD [BX+SI], AL
0x00E8 0000 ADD [BX+SI], AL
0x00EA 0000 ADD [BX+SI], AL
0x00EC 0000 ADD [BX+SI], AL
0x00EE 0000 ADD [BX+SI], AL
0x00F0 0000 ADD [BX+SI], AL
0x00F2 0000 ADD [BX+SI], AL
0x00F4 0000 ADD [BX+SI], AL
0x00F6 0000 ADD [BX+SI], AL
0x00F8 0000 ADD [BX+SI], AL
0x00FA 0000 ADD [BX+SI], AL
0x00FC 0000 ADD [BX+SI], AL
0x00FE 0000 ADD [BX+SI], AL
0x0100 0000 ADD [BX+SI], AL
0x0102 0000 ADD [BX+SI], AL
0x0104 0000 ADD [BX+SI], AL
0x0106 0000 ADD [BX+SI], AL
0x0108 0000 ADD [BX+SI], AL
0x010A 0000 ADD [BX+SI], AL
0x010C 0000 ADD [BX+SI], AL
0x010E 0000 ADD [BX+SI], AL
0x0110 0000 ADD [BX+SI], AL
0x0112 0000 ADD [BX+SI], AL
0x0114 0000 ADD [BX+SI], AL
0x0116 0000 ADD [BX+SI], AL
0x0118 0000 ADD [BX+SI], AL
0x011A 0000 ADD [BX+SI], AL
0x011C 0000 ADD [BX+SI], AL
0x011E 0000 ADD [BX+SI], AL
0x0120 0000 ADD [BX+SI], AL
0x0122 0000 ADD [BX+SI], AL
0x0124 0000 ADD [BX+SI], AL
0x0126 0000 ADD [BX+SI], AL
0x0128 0000 ADD [BX+SI], AL
0x012A 0000 ADD [BX+SI], AL
0x012C 0000 ADD [BX+SI], AL
0x012E 0000 ADD [BX+SI], AL
0x0130 0000 ADD [BX+SI], AL
0x0132 0000 ADD [BX+SI], AL
0x0134 0000 ADD [BX+SI], AL
0x0136 0000 ADD [BX+SI], AL
0x0138 0000 ADD [BX+SI], AL
0x013A 0000 ADD [BX+SI], AL
0x013C 0000 ADD [BX+SI], AL
0x013E 0000 ADD [BX+SI], AL
0x0140 0000 ADD [BX+SI], AL
0x0142 0000 ADD [BX+SI], AL
0x0144 0000 ADD [BX+SI], AL
0x0146 0000 ADD [BX+SI], AL
0x0148 0000 ADD [BX+SI], AL
0x014A 0000 ADD [BX+SI], AL
0x014C 0000 ADD [BX+SI], AL
0x014E 0000 ADD [BX+SI], AL
0x0150 0000 ADD [BX+SI], AL
0x0152 0000 ADD [BX+SI], AL
0x0154 0000 ADD [BX+SI], AL
0x0156 0000 ADD [BX+SI], AL
0x0158 0000 ADD [BX+SI], AL
0x015A 0000 ADD [BX+SI], AL
0x015C 0000 ADD [BX+SI], AL
0x015E 0000 ADD [BX+SI], AL
0x0160 0000 ADD [BX+SI], AL
0x0162 0000 ADD [BX+SI], AL
0x0164 0000 ADD [BX+SI], AL
0x0166 0000 ADD [BX+SI], AL
0x0168 0000 ADD [BX+SI], AL
0x016A 0000 ADD [BX+SI], AL
0x016C 0000 ADD [BX+SI], AL
0x016E 0000 ADD [BX+SI], AL
0x0170 0000 ADD [BX+SI], AL
0x0172 0000 ADD [BX+SI], AL
0x0174 0000 ADD [BX+SI], AL
0x0176 0000 ADD [BX+SI], AL
0x0178 0000 ADD [BX+SI], AL
0x017A 0000 ADD [BX+SI], AL
0x017C 0000 ADD [BX+SI], AL
0x017E 0000 ADD [BX+SI], AL
0x0180 0000 ADD [BX+SI], AL
0x0182 0000 ADD [BX+SI], AL
0x0184 0000 ADD [BX+SI], AL
0x0186 0000 ADD [BX+SI], AL
0x0188 0000 ADD [BX+SI], AL
0x018A 0000 ADD [BX+SI], AL
0x018C 0000 ADD [BX+SI], AL
0x018E 0000 ADD [BX+SI], AL
0x0190 0000 ADD [BX+SI], AL
0x0192 0000 ADD [BX+SI], AL
0x0194 0000 ADD [BX+SI], AL
0x0196 0000 ADD [BX+SI], AL
0x0198 0000 ADD [BX+SI], AL
0x019A 0000 ADD [BX+SI], AL
0x019C 0000 ADD [BX+SI], AL
0x019E 0000 ADD [BX+SI], AL
0x01A0 0000 ADD [BX+SI], AL
0x01A2 0000 ADD [BX+SI], AL
0x01A4 0000 ADD [BX+SI], AL
0x01A6 0000 ADD [BX+SI], AL
0x01A8 0000 ADD [BX+SI], AL
0x01AA 0000 ADD [BX+SI], AL
0x01AC 0000 ADD [BX+SI], AL
0x01AE 0000 ADD [BX+SI], AL
0x01B0 0000 ADD [BX+SI], AL
0x01B2 0000 ADD [BX+SI], AL
0x01B4 0000 ADD [BX+SI], AL
0x01B6 0000 ADD [BX+SI], AL
0x01B8 24 2d AND AL, 0x2d
0x01BA f791 0000 NOT WORD [BX+DI+0x0]
0x01BE 8001 01 ADD BYTE [BX+DI], 0x1
0x01C1 0006 fe3f ADD [0x3ffe], AL
0x01C5 7c 3f JL 0x206
0x01C7 0000 ADD [BX+SI], AL
0x01C9 00c0 ADD AL, AL
0x01CB bf 1e00 MOV DI, 0x1e
0x01CE 0000 ADD [BX+SI], AL
0x01D0 0000 ADD [BX+SI], AL
0x01D2 0000 ADD [BX+SI], AL
0x01D4 0000 ADD [BX+SI], AL
0x01D6 0000 ADD [BX+SI], AL
0x01D8 0000 ADD [BX+SI], AL
0x01DA 0000 ADD [BX+SI], AL
0x01DC 0000 ADD [BX+SI], AL
0x01DE 0000 ADD [BX+SI], AL
0x01E0 0000 ADD [BX+SI], AL
0x01E2 0000 ADD [BX+SI], AL
0x01E4 0000 ADD [BX+SI], AL
0x01E6 0000 ADD [BX+SI], AL
0x01E8 0000 ADD [BX+SI], AL
0x01EA 0000 ADD [BX+SI], AL
0x01EC 0000 ADD [BX+SI], AL
0x01EE 0000 ADD [BX+SI], AL
0x01F0 0000 ADD [BX+SI], AL
0x01F2 0000 ADD [BX+SI], AL
0x01F4 0000 ADD [BX+SI], AL
0x01F6 0000 ADD [BX+SI], AL
0x01F8 0000 ADD [BX+SI], AL
0x01FA 0000 ADD [BX+SI], AL
0x01FC 0000 ADD [BX+SI], AL
0x01FE 55 PUSH BP
0x01FF aa STOSB

TDSSKiller:
11:29:31.0859 1932 TDSS rootkit removing tool 2.7.26.0 Apr 4 2012 19:52:02
11:29:33.0859 1932 ============================================================
11:29:33.0859 1932 Current date / time: 2012/04/07 11:29:33.0859
11:29:33.0859 1932 SystemInfo:
11:29:33.0859 1932
11:29:33.0859 1932 OS Version: 5.1.2600 ServicePack: 2.0
11:29:33.0859 1932 Product type: Workstation
11:29:33.0859 1932 ComputerName: POČÍTAČ
11:29:33.0859 1932 UserName: Jaroslav
11:29:33.0859 1932 Windows directory: C:\WINDOWS
11:29:33.0859 1932 System windows directory: C:\WINDOWS
11:29:33.0859 1932 Processor architecture: Intel x86
11:29:33.0859 1932 Number of processors: 1
11:29:33.0859 1932 Page size: 0x1000
11:29:33.0859 1932 Boot type: Normal boot
11:29:33.0859 1932 ============================================================
11:29:36.0687 1932 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:29:36.0703 1932 Drive \Device\Harddisk1\DR6 - Size: 0x3D7FFE00 (0.96 Gb), SectorSize: 0x200, Cylinders: 0x7D, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
11:29:36.0703 1932 \Device\Harddisk0\DR0:
11:29:36.0703 1932 MBR used
11:29:36.0703 1932 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x12A14BC1
11:29:36.0703 1932 \Device\Harddisk1\DR6:
11:29:36.0703 1932 MBR used
11:29:36.0703 1932 \Device\Harddisk1\DR6\Partition0: MBR, Type 0x6, StartLBA 0x3F, BlocksNum 0x1EBFC0
11:29:36.0734 1932 Initialize success
11:29:36.0734 1932 ============================================================
11:30:06.0453 0208 ============================================================
11:30:06.0453 0208 Scan started
11:30:06.0453 0208 Mode: Manual; SigCheck; TDLFS;
11:30:06.0453 0208 ============================================================
11:30:06.0953 0208 Aavmker4 (473f97edc5a5312f3665ab2921196c0c) C:\WINDOWS\system32\drivers\Aavmker4.sys
11:30:10.0609 0208 Aavmker4 - ok
11:30:10.0656 0208 Abiosdsk - ok
11:30:10.0687 0208 abp480n5 - ok
11:30:10.0750 0208 ACPI (fa2fbcda96d2385f773b059fe5a125a6) C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:30:11.0656 0208 ACPI - ok
11:30:11.0750 0208 ACPIEC (afdff022a01f0b11c776f0860c3b282f) C:\WINDOWS\system32\drivers\ACPIEC.sys
11:30:11.0937 0208 ACPIEC - ok
11:30:11.0953 0208 adpu160m - ok
11:30:12.0015 0208 aec (1ee7b434ba961ef845de136224c30fec) C:\WINDOWS\system32\drivers\aec.sys
11:30:12.0078 0208 aec - ok
11:30:12.0140 0208 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
11:30:12.0156 0208 AFD - ok
11:30:12.0234 0208 AgereSoftModem (df728d797e2e01520f4f4656e256dd91) C:\WINDOWS\system32\DRIVERS\AGRSM.sys
11:30:12.0343 0208 AgereSoftModem - ok
11:30:12.0406 0208 agp440 (2c428fa0c3e3a01ed93c9b2a27d8d4bb) C:\WINDOWS\system32\DRIVERS\agp440.sys
11:30:12.0593 0208 agp440 - ok
11:30:12.0609 0208 Aha154x - ok
11:30:12.0625 0208 aic78u2 - ok
11:30:12.0640 0208 aic78xx - ok
11:30:12.0703 0208 Alerter (026ddaa7e6f8d49df82c7a98bae5d0d1) C:\WINDOWS\system32\alrsvc.dll
11:30:12.0906 0208 Alerter - ok
11:30:12.0968 0208 ALG (b3f690bf43f93a012a52f28f234faa1b) C:\WINDOWS\System32\alg.exe
11:30:13.0046 0208 ALG - ok
11:30:13.0062 0208 AliIde - ok
11:30:13.0078 0208 amsint - ok
11:30:13.0140 0208 AppMgmt (421184f91eae5c6e78e653c6b32aae84) C:\WINDOWS\System32\appmgmts.dll
11:30:13.0234 0208 AppMgmt - ok
11:30:13.0328 0208 AR9271 (8e2257584b2c52d44b4cb1949947d885) C:\WINDOWS\system32\DRIVERS\athuw.sys
11:30:13.0468 0208 AR9271 - ok
11:30:13.0484 0208 asc - ok
11:30:13.0500 0208 asc3350p - ok
11:30:13.0515 0208 asc3550 - ok
11:30:13.0593 0208 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
11:30:13.0609 0208 aspnet_state - ok
11:30:13.0671 0208 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\WINDOWS\system32\drivers\aswFsBlk.sys
11:30:13.0687 0208 aswFsBlk - ok
11:30:13.0734 0208 aswMon2 (8c30b7ddd2f1d8d138ebe40345af2b11) C:\WINDOWS\system32\drivers\aswMon2.sys
11:30:13.0750 0208 aswMon2 - ok
11:30:13.0781 0208 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\WINDOWS\system32\drivers\aswRdr.sys
11:30:13.0796 0208 aswRdr - ok
11:30:13.0843 0208 aswSnx (dcb199b967375753b5019ec15f008f53) C:\WINDOWS\system32\drivers\aswSnx.sys
11:30:13.0890 0208 aswSnx - ok
11:30:13.0921 0208 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\WINDOWS\system32\drivers\aswSP.sys
11:30:13.0968 0208 aswSP - ok
11:30:14.0000 0208 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\WINDOWS\system32\drivers\aswTdi.sys
11:30:14.0015 0208 aswTdi - ok
11:30:14.0062 0208 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:30:14.0234 0208 AsyncMac - ok
11:30:14.0265 0208 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
11:30:14.0484 0208 atapi - ok
11:30:14.0500 0208 Atdisk - ok
11:30:14.0531 0208 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:30:14.0750 0208 Atmarpc - ok
11:30:14.0781 0208 AudioSrv (40d78f514c8588ef12ec718d2af0fc4e) C:\WINDOWS\System32\audiosrv.dll
11:30:14.0968 0208 AudioSrv - ok
11:30:15.0015 0208 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
11:30:15.0218 0208 audstub - ok
11:30:15.0328 0208 avast! Antivirus (4041d31508a2a084dfb42c595854090f) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:30:15.0328 0208 avast! Antivirus - ok
11:30:15.0406 0208 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
11:30:15.0593 0208 Beep - ok
11:30:15.0656 0208 BITS (e774a26610ec92674273486612c11cfc) C:\WINDOWS\system32\qmgr.dll
11:30:15.0875 0208 BITS - ok
11:30:15.0937 0208 Browser (f219e27e88107a50544153898dd8178e) C:\WINDOWS\System32\browser.dll
11:30:16.0140 0208 Browser - ok
11:30:16.0171 0208 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
11:30:16.0375 0208 cbidf2k - ok
11:30:16.0390 0208 cd20xrnt - ok
11:30:16.0437 0208 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
11:30:16.0625 0208 Cdaudio - ok
11:30:16.0656 0208 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
11:30:16.0843 0208 Cdfs - ok
11:30:16.0906 0208 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:30:17.0109 0208 Cdrom - ok
11:30:17.0125 0208 Changer - ok
11:30:17.0156 0208 CiSvc (9e21229e04e1d301bb40222fe4641cb2) C:\WINDOWS\system32\cisvc.exe
11:30:17.0343 0208 CiSvc - ok
11:30:17.0375 0208 ClipSrv (d3dc45553c8025338e08a60e95b1b91d) C:\WINDOWS\system32\clipsrv.exe
11:30:17.0593 0208 ClipSrv - ok
11:30:17.0625 0208 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:30:17.0640 0208 clr_optimization_v2.0.50727_32 - ok
11:30:17.0703 0208 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:30:17.0718 0208 clr_optimization_v4.0.30319_32 - ok
11:30:17.0734 0208 CmdIde - ok
11:30:17.0812 0208 cmuda (f124682198063d86f003fe841affbfcf) C:\WINDOWS\system32\drivers\cmuda.sys
11:30:17.0906 0208 cmuda - ok
11:30:17.0921 0208 COMSysApp - ok
11:30:17.0953 0208 Cpqarray - ok
11:30:18.0015 0208 CryptSvc (70d2a1756f4b2067658a186c963fcabd) C:\WINDOWS\System32\cryptsvc.dll
11:30:18.0218 0208 CryptSvc - ok
11:30:18.0250 0208 dac2w2k - ok
11:30:18.0265 0208 dac960nt - ok
11:30:18.0328 0208 DcomLaunch (2b269c916766bdb43404f043b763427d) C:\WINDOWS\system32\rpcss.dll
11:30:18.0375 0208 DcomLaunch - ok
11:30:18.0437 0208 Dhcp (06a30f453ca4cb1431037e4813f697cb) C:\WINDOWS\System32\dhcpcsvc.dll
11:30:18.0484 0208 Dhcp - ok
11:30:18.0531 0208 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
11:30:18.0734 0208 Disk - ok
11:30:18.0750 0208 dmadmin - ok
11:30:18.0796 0208 dmboot (e1968edec81c430108feb23ab07bdb14) C:\WINDOWS\system32\drivers\dmboot.sys
11:30:19.0046 0208 dmboot - ok
11:30:19.0062 0208 dmio (1b1520a82e396e46b9ae9fa6b03ff6c6) C:\WINDOWS\system32\drivers\dmio.sys
11:30:19.0250 0208 dmio - ok
11:30:19.0296 0208 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
11:30:19.0515 0208 dmload - ok
11:30:19.0546 0208 dmserver (7b3ca72885923eb947221f17f3e3ac59) C:\WINDOWS\System32\dmserver.dll
11:30:19.0734 0208 dmserver - ok
11:30:19.0781 0208 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
11:30:19.0984 0208 DMusic - ok
11:30:20.0046 0208 Dnscache (0eef8922d46d4846b472b1f6fd0541bc) C:\WINDOWS\System32\dnsrslvr.dll
11:30:20.0078 0208 Dnscache - ok
11:30:20.0093 0208 dpti2o - ok
11:30:20.0140 0208 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
11:30:20.0343 0208 drmkaud - ok
11:30:20.0406 0208 dtsoftbus01 (687af6bb383885ff6a64071b189a7f3e) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
11:30:20.0421 0208 dtsoftbus01 - ok
11:30:20.0453 0208 E100B (98b46b331404a951cabad8b4877e1276) C:\WINDOWS\system32\DRIVERS\e100b325.sys
11:30:20.0484 0208 E100B - ok
11:30:20.0546 0208 ERSvc (d6f7428b201e33bc80066b47144cb568) C:\WINDOWS\System32\ersvc.dll
11:30:20.0750 0208 ERSvc - ok
11:30:20.0812 0208 Eventlog (4f9f7b567970b524f31d9970a23f7c24) C:\WINDOWS\system32\services.exe
11:30:20.0843 0208 Eventlog - ok
11:30:20.0875 0208 EventSystem (398314df0b21338c4996b469101750d1) C:\WINDOWS\system32\es.dll
11:30:20.0906 0208 EventSystem - ok
11:30:20.0968 0208 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
11:30:21.0156 0208 Fastfat - ok
11:30:21.0203 0208 FastUserSwitchingCompatibility (e26edc7afa8da3c528055eabc82c8c79) C:\WINDOWS\System32\shsvcs.dll
11:30:21.0234 0208 FastUserSwitchingCompatibility - ok
11:30:21.0296 0208 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
11:30:21.0484 0208 Fdc - ok
11:30:21.0546 0208 Fips (266dab58619b17bdf37fabbd48d875ca) C:\WINDOWS\system32\drivers\Fips.sys
11:30:21.0734 0208 Fips - ok
11:30:21.0750 0208 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
11:30:21.0937 0208 Flpydisk - ok
11:30:22.0015 0208 FltMgr (3d234fb6d6ee875eb009864a299bea29) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
11:30:22.0046 0208 FltMgr - ok
11:30:22.0140 0208 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
11:30:22.0156 0208 FontCache3.0.0.0 - ok
11:30:22.0203 0208 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:30:22.0390 0208 Fs_Rec - ok
11:30:22.0453 0208 Ftdisk (4e664d8541db4a66b73a24257e322e1f) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:30:22.0625 0208 Ftdisk - ok
11:30:22.0625 0208 GMSIPCI - ok
11:30:22.0687 0208 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:30:22.0859 0208 Gpc - ok
11:30:22.0984 0208 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
11:30:23.0000 0208 gupdate - ok
11:30:23.0015 0208 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
11:30:23.0031 0208 gupdatem - ok
11:30:23.0078 0208 helpsvc (f59152272782fed8a8197fa788287f68) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
11:30:23.0265 0208 helpsvc - ok
11:30:23.0296 0208 HidServ (d2dcf769e5a70027058ad5be1f9b55bf) C:\WINDOWS\System32\hidserv.dll
11:30:23.0468 0208 HidServ - ok
11:30:23.0562 0208 hidusb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
11:30:23.0750 0208 hidusb - ok
11:30:23.0781 0208 hpn - ok
11:30:23.0843 0208 HTTP (cb77bb47e67e84deb17ba29632501730) C:\WINDOWS\system32\Drivers\HTTP.sys
11:30:23.0906 0208 HTTP - ok
11:30:23.0937 0208 HTTPFilter (da826826c5c9116f47e0cd0ca8cc7c11) C:\WINDOWS\System32\w3ssl.dll
11:30:24.0109 0208 HTTPFilter - ok
11:30:24.0125 0208 i2omgmt - ok
11:30:24.0140 0208 i2omp - ok
11:30:24.0187 0208 i8042prt (0f42de9909b5dbf2c48dd1a79d491af5) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:30:24.0375 0208 i8042prt - ok
11:30:24.0500 0208 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:30:24.0562 0208 idsvc - ok
11:30:24.0593 0208 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
11:30:24.0781 0208 Imapi - ok
11:30:24.0812 0208 ImapiService (cf9d286b34cb4912f3b28b4972d5cb33) C:\WINDOWS\system32\imapi.exe
11:30:24.0984 0208 ImapiService - ok
11:30:25.0015 0208 ini910u - ok
11:30:25.0078 0208 IntelIde (ef4fda4841001a4b98c411797db8894a) C:\WINDOWS\system32\DRIVERS\intelide.sys
11:30:25.0250 0208 IntelIde - ok
11:30:25.0296 0208 intelppm (10a3ac0f0df720ad3c3fd13861d50eb9) C:\WINDOWS\system32\DRIVERS\intelppm.sys
11:30:25.0484 0208 intelppm - ok
11:30:25.0500 0208 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
11:30:25.0656 0208 Ip6Fw - ok
11:30:25.0703 0208 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:30:25.0859 0208 IpFilterDriver - ok
11:30:25.0875 0208 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:30:26.0078 0208 IpInIp - ok
11:30:26.0140 0208 IpNat (e2168cbc7098ffe963c6f23f472a3593) C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:30:26.0187 0208 IpNat - ok
11:30:26.0203 0208 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:30:26.0375 0208 IPSec - ok
11:30:26.0421 0208 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
11:30:26.0500 0208 IRENUM - ok
11:30:26.0546 0208 isapnp (1091528512e4dd7ed5fddcc4df1c53d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:30:26.0718 0208 isapnp - ok
11:30:26.0812 0208 JavaQuickStarterService (0a5709543986843d37a92290b7838340) C:\Program Files\Java\jre6\bin\jqs.exe
11:30:26.0828 0208 JavaQuickStarterService - ok
11:30:26.0890 0208 Kbdclass (6f877bf8dc01a550cd666f3bedb2213c) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:30:27.0062 0208 Kbdclass - ok
11:30:27.0125 0208 kbdhid (065b5a83aa78c0c7047bf22e0ab5c821) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
11:30:27.0312 0208 kbdhid - ok
11:30:27.0375 0208 kmixer (ba5deda4d934e6288c2f66caf58d2562) C:\WINDOWS\system32\drivers\kmixer.sys
11:30:27.0406 0208 kmixer - ok
11:30:27.0453 0208 KSecDD (eb7ffe87fd367ea8fca0506f74a87fbb) C:\WINDOWS\system32\drivers\KSecDD.sys
11:30:27.0625 0208 KSecDD - ok
11:30:27.0671 0208 lanmanserver (9757f6e16fd1eab54d6eb9d5eb3cbcb5) C:\WINDOWS\System32\srvsvc.dll
11:30:27.0703 0208 lanmanserver - ok
11:30:27.0765 0208 lanmanworkstation (6bf7baf420dd4422d2c35dfb3e51a29c) C:\WINDOWS\System32\wkssvc.dll
11:30:27.0796 0208 lanmanworkstation - ok
11:30:27.0812 0208 lbrtfdc - ok
11:30:27.0890 0208 LmHosts (f9ee6d2aab0690b34ae35ba9921a1414) C:\WINDOWS\System32\lmhsvc.dll
11:30:28.0062 0208 LmHosts - ok
11:30:28.0109 0208 Messenger (8b2fcbd881879b55be40b41f12ffc431) C:\WINDOWS\System32\msgsvc.dll
11:30:28.0296 0208 Messenger - ok
11:30:28.0359 0208 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
11:30:28.0546 0208 mnmdd - ok
11:30:28.0593 0208 mnmsrvc (7d137132d6a9b41ef800e59a771ed48c) C:\WINDOWS\system32\mnmsrvc.exe
11:30:28.0750 0208 mnmsrvc - ok
11:30:28.0781 0208 Modem (60210deb037846afe521ebf349964f6b) C:\WINDOWS\system32\drivers\Modem.sys
11:30:28.0937 0208 Modem - ok
11:30:28.0968 0208 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
11:30:29.0125 0208 MODEMCSA - ok
11:30:29.0156 0208 Mouclass (b160ec94114715675509115986400fd9) C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:30:29.0343 0208 Mouclass - ok
11:30:29.0390 0208 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
11:30:29.0531 0208 MountMgr - ok
11:30:29.0562 0208 mraid35x - ok
11:30:29.0593 0208 MRxDAV (29414447eb5bde2f8397dc965dbb3156) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:30:29.0640 0208 MRxDAV - ok
11:30:29.0718 0208 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:30:29.0750 0208 MRxSmb - ok
11:30:29.0828 0208 MSDTC (944a24032aed84c59455b981f6ca1c1a) C:\WINDOWS\system32\msdtc.exe
11:30:29.0984 0208 MSDTC - ok
11:30:30.0046 0208 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
11:30:30.0203 0208 Msfs - ok
11:30:30.0218 0208 MSIServer - ok
11:30:30.0265 0208 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:30:30.0421 0208 MSKSSRV - ok
11:30:30.0437 0208 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:30:30.0593 0208 MSPCLOCK - ok
11:30:30.0625 0208 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
11:30:30.0781 0208 MSPQM - ok
11:30:30.0828 0208 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:30:30.0984 0208 mssmbios - ok
11:30:31.0000 0208 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
11:30:31.0156 0208 Mup - ok
11:30:31.0203 0208 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
11:30:31.0359 0208 NDIS - ok
11:30:31.0406 0208 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:30:31.0578 0208 NdisTapi - ok
11:30:31.0609 0208 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:30:31.0750 0208 Ndisuio - ok
11:30:31.0781 0208 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:30:31.0937 0208 NdisWan - ok
11:30:31.0968 0208 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
11:30:32.0109 0208 NDProxy - ok
11:30:32.0140 0208 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
11:30:32.0296 0208 NetBIOS - ok
11:30:32.0359 0208 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
11:30:32.0500 0208 NetBT - ok
11:30:32.0546 0208 NetDDE (818053225bf4aac5f0f718001e492f70) C:\WINDOWS\system32\netdde.exe
11:30:32.0718 0208 NetDDE - ok
11:30:32.0734 0208 NetDDEdsdm (818053225bf4aac5f0f718001e492f70) C:\WINDOWS\system32\netdde.exe
11:30:32.0906 0208 NetDDEdsdm - ok
11:30:32.0937 0208 Netlogon (82a362fe1d4980b71b588d9c10748511) C:\WINDOWS\system32\lsass.exe
11:30:33.0093 0208 Netlogon - ok
11:30:33.0171 0208 Netman (86ad5b0e02f2c968fbb096ab4c555c9c) C:\WINDOWS\System32\netman.dll
11:30:33.0203 0208 Netman - ok
11:30:33.0343 0208 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:30:33.0359 0208 NetTcpPortSharing - ok
11:30:33.0437 0208 Nla (a6e79b60ac73241e5721ab6a573d2b24) C:\WINDOWS\System32\mswsock.dll
11:30:33.0468 0208 Nla - ok
11:30:33.0531 0208 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
11:30:33.0687 0208 Npfs - ok
11:30:33.0765 0208 Ntfs (19a811ef5f1ed5c926a028ce107ff1af) C:\WINDOWS\system32\drivers\Ntfs.sys
11:30:33.0796 0208 Ntfs - ok
11:30:33.0828 0208 NtLmSsp (82a362fe1d4980b71b588d9c10748511) C:\WINDOWS\system32\lsass.exe
11:30:33.0984 0208 NtLmSsp - ok
11:30:34.0046 0208 NtmsSvc (d8d2b13ba93ae830b1a637df571d1195) C:\WINDOWS\system32\ntmssvc.dll
11:30:34.0218 0208 NtmsSvc - ok
11:30:34.0281 0208 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
11:30:34.0437 0208 Null - ok
11:30:34.0546 0208 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
11:30:34.0796 0208 nv - ok
11:30:34.0843 0208 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:30:35.0015 0208 NwlnkFlt - ok
11:30:35.0031 0208 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:30:35.0187 0208 NwlnkFwd - ok
11:30:35.0250 0208 Parport (76a18caa2fefb28a4ced38d76837e86e) C:\WINDOWS\system32\DRIVERS\parport.sys
11:30:35.0406 0208 Parport - ok
11:30:35.0468 0208 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
11:30:35.0625 0208 PartMgr - ok
11:30:35.0656 0208 ParVdm (1fae19d0457176318bba4a8795656ebc) C:\WINDOWS\system32\drivers\ParVdm.sys
11:30:35.0812 0208 ParVdm - ok
11:30:35.0859 0208 PCI (b7979f37bb7b9df2230046134955e6e7) C:\WINDOWS\system32\DRIVERS\pci.sys
11:30:36.0000 0208 PCI - ok
11:30:36.0031 0208 PCIDump - ok
11:30:36.0046 0208 PCIIde (2da4ec85e0ea7a45c6b2a05820492d5a) C:\WINDOWS\system32\drivers\PCIIde.sys
11:30:36.0203 0208 PCIIde - ok
11:30:36.0234 0208 Pcmcia (90505755634407d4ef4c6dea60fc1df9) C:\WINDOWS\system32\drivers\Pcmcia.sys
11:30:36.0390 0208 Pcmcia - ok
11:30:36.0421 0208 PDCOMP - ok
11:30:36.0437 0208 PDFRAME - ok
11:30:36.0453 0208 PDRELI - ok
11:30:36.0468 0208 PDRFRAME - ok
11:30:36.0500 0208 perc2 - ok
11:30:36.0515 0208 perc2hib - ok
11:30:36.0593 0208 PlugPlay (4f9f7b567970b524f31d9970a23f7c24) C:\WINDOWS\system32\services.exe
11:30:36.0640 0208 PlugPlay - ok
11:30:36.0656 0208 PolicyAgent (82a362fe1d4980b71b588d9c10748511) C:\WINDOWS\system32\lsass.exe
11:30:36.0812 0208 PolicyAgent - ok
11:30:36.0843 0208 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:30:36.0984 0208 PptpMiniport - ok
11:30:37.0046 0208 prodrv06 (18d9789a4664bf417eea944d2776091a) C:\WINDOWS\System32\drivers\prodrv06.sys
11:30:37.0062 0208 prodrv06 ( UnsignedFile.Multi.Generic ) - warning
11:30:37.0062 0208 prodrv06 - detected UnsignedFile.Multi.Generic (1)
11:30:37.0125 0208 prohlp02 (8cc9671a7ed2902e747ee0892e1c8575) C:\WINDOWS\system32\drivers\prohlp02.sys
11:30:37.0156 0208 prohlp02 ( UnsignedFile.Multi.Generic ) - warning
11:30:37.0156 0208 prohlp02 - detected UnsignedFile.Multi.Generic (1)
11:30:37.0187 0208 prosync1 (960bce3ed38761b446aabac06c76badf) C:\WINDOWS\system32\drivers\prosync1.sys
11:30:37.0203 0208 prosync1 ( UnsignedFile.Multi.Generic ) - warning
11:30:37.0203 0208 prosync1 - detected UnsignedFile.Multi.Generic (1)
11:30:37.0250 0208 ProtectedStorage (82a362fe1d4980b71b588d9c10748511) C:\WINDOWS\system32\lsass.exe
11:30:37.0406 0208 ProtectedStorage - ok
11:30:37.0453 0208 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
11:30:37.0609 0208 PSched - ok
11:30:37.0656 0208 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:30:37.0796 0208 Ptilink - ok
11:30:37.0812 0208 ql1080 - ok
11:30:37.0843 0208 Ql10wnt - ok
11:30:37.0859 0208 ql12160 - ok
11:30:37.0875 0208 ql1240 - ok
11:30:37.0906 0208 ql1280 - ok
11:30:37.0937 0208 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:30:38.0078 0208 RasAcd - ok
11:30:38.0125 0208 RasAuto (e68b6f9a726a444059705ab43b5656d1) C:\WINDOWS\System32\rasauto.dll
11:30:38.0312 0208 RasAuto - ok
11:30:38.0359 0208 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:30:38.0500 0208 Rasl2tp - ok
11:30:38.0562 0208 RasMan (43a5c7969718ee00940a6d096960dbc8) C:\WINDOWS\System32\rasmans.dll
11:30:38.0593 0208 RasMan - ok
11:30:38.0625 0208 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:30:38.0765 0208 RasPppoe - ok
11:30:38.0812 0208 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
11:30:38.0968 0208 Raspti - ok
11:30:39.0031 0208 Rdbss (03b965b1ca47f6ef60eb5e51cb50e0af) C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:30:39.0078 0208 Rdbss - ok
11:30:39.0109 0208 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:30:39.0250 0208 RDPCDD - ok
11:30:39.0328 0208 rdpdr (a2cae2c60bc37e0751ef9dda7ceaf4ad) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
11:30:39.0468 0208 rdpdr - ok
11:30:39.0546 0208 RDPWD (b54cd38a9ebfbf2b3561426e3fe26f62) C:\WINDOWS\system32\drivers\RDPWD.sys
11:30:39.0578 0208 RDPWD - ok
11:30:39.0609 0208 RDSessMgr (125acf258da9633f748131a0e0185af3) C:\WINDOWS\system32\sessmgr.exe
11:30:39.0750 0208 RDSessMgr - ok
11:30:39.0812 0208 redbook (aba13d33e1f888c9a68599a48a8840d6) C:\WINDOWS\system32\DRIVERS\redbook.sys
11:30:39.0953 0208 redbook - ok
11:30:40.0015 0208 RemoteAccess (eb5e1a601e5a1908a87e4d5a41803d98) C:\WINDOWS\System32\mprdim.dll
11:30:40.0171 0208 RemoteAccess - ok
11:30:40.0234 0208 RemoteRegistry (5b21208fcf8970bb61fe98e19d828714) C:\WINDOWS\system32\regsvc.dll
11:30:40.0406 0208 RemoteRegistry - ok
11:30:40.0453 0208 RpcLocator (c8a3b668985d61249f2dc71716c58de8) C:\WINDOWS\system32\locator.exe
11:30:40.0609 0208 RpcLocator - ok
11:30:40.0671 0208 RpcSs (2b269c916766bdb43404f043b763427d) C:\WINDOWS\system32\rpcss.dll
11:30:40.0718 0208 RpcSs - ok
11:30:40.0750 0208 RSVP (09ab2e71e58b078038e3bfdba7ffc984) C:\WINDOWS\system32\rsvp.exe
11:30:40.0921 0208 RSVP - ok
11:30:40.0953 0208 SamSs (82a362fe1d4980b71b588d9c10748511) C:\WINDOWS\system32\lsass.exe
11:30:41.0109 0208 SamSs - ok
11:30:41.0140 0208 SCardSvr (c177354e995cc1aa1f767bcd9980434a) C:\WINDOWS\System32\SCardSvr.exe
11:30:41.0312 0208 SCardSvr - ok
11:30:41.0375 0208 Schedule (29ac93307c6182dbe336bca314947f28) C:\WINDOWS\system32\schedsvc.dll
11:30:41.0562 0208 Schedule - ok
11:30:41.0656 0208 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:30:41.0671 0208 Secdrv - ok
11:30:41.0703 0208 seclogon (c76cb8a133374fac6805f83ff7b7da03) C:\WINDOWS\System32\seclogon.dll
11:30:41.0859 0208 seclogon - ok
11:30:41.0890 0208 SENS (220ad85ba9c5b3011296354011b901cc) C:\WINDOWS\system32\sens.dll
11:30:42.0046 0208 SENS - ok
11:30:42.0093 0208 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
11:30:42.0234 0208 serenum - ok
11:30:42.0265 0208 Serial (c1ddbc85251551a840212999da3d95f3) C:\WINDOWS\system32\DRIVERS\serial.sys
11:30:42.0421 0208 Serial - ok
11:30:42.0515 0208 sfhlp01 (462aee0ea0481ea8bd45cac876a4ccc4) C:\WINDOWS\system32\drivers\sfhlp01.sys
11:30:42.0515 0208 sfhlp01 ( UnsignedFile.Multi.Generic ) - warning
11:30:42.0515 0208 sfhlp01 - detected UnsignedFile.Multi.Generic (1)
11:30:42.0546 0208 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
11:30:42.0687 0208 Sfloppy - ok
11:30:42.0765 0208 SharedAccess (6a93501bcdebf159109429b022c0ff83) C:\WINDOWS\System32\ipnathlp.dll
11:30:42.0921 0208 SharedAccess - ok
11:30:42.0968 0208 ShellHWDetection (e26edc7afa8da3c528055eabc82c8c79) C:\WINDOWS\System32\shsvcs.dll
11:30:43.0000 0208 ShellHWDetection - ok
11:30:43.0015 0208 Simbad - ok
11:30:43.0046 0208 Sparrow - ok
11:30:43.0109 0208 splitter (0ce218578fff5f4f7e4201539c45c78f) C:\WINDOWS\system32\drivers\splitter.sys
11:30:43.0156 0208 splitter - ok
11:30:43.0171 0208 Spooler - ok
11:30:43.0250 0208 sptd (ab5c8f6e63674dbad9c1e449e8fd77ce) C:\WINDOWS\System32\Drivers\sptd.sys
11:30:43.0281 0208 sptd - ok
11:30:43.0328 0208 sr (a74035ea526db97d9d50d2143a55f5cf) C:\WINDOWS\system32\DRIVERS\sr.sys
11:30:43.0421 0208 sr - ok
11:30:43.0437 0208 srservice (3cd57f31a64d32fdb28918b16d1e6aac) C:\WINDOWS\system32\srsvc.dll
11:30:43.0531 0208 srservice - ok
11:30:43.0578 0208 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\WINDOWS\system32\DRIVERS\srv.sys
11:30:43.0656 0208 Srv - ok
11:30:43.0718 0208 SSDPSRV (88c28f53f53438dafcd95e99c837c61e) C:\WINDOWS\System32\ssdpsrv.dll
11:30:43.0812 0208 SSDPSRV - ok
11:30:43.0875 0208 stisvc (b824215a934a24928cddd1ef7e113035) C:\WINDOWS\system32\wiaservc.dll
11:30:43.0906 0208 stisvc - ok
11:30:43.0953 0208 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
11:30:44.0109 0208 swenum - ok
11:30:44.0171 0208 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
11:30:44.0343 0208 swmidi - ok
11:30:44.0359 0208 SwPrv - ok
11:30:44.0375 0208 symc810 - ok
11:30:44.0406 0208 symc8xx - ok
11:30:44.0421 0208 sym_hi - ok
11:30:44.0437 0208 sym_u3 - ok
11:30:44.0484 0208 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
11:30:44.0640 0208 sysaudio - ok
11:30:44.0703 0208 SysmonLog (d9c9ecff4904e6151525c533aeedf8f4) C:\WINDOWS\system32\smlogsvc.exe
11:30:44.0843 0208 SysmonLog - ok
11:30:44.0906 0208 TapiSrv (250241d65ccf692aeacc318a266413c2) C:\WINDOWS\System32\tapisrv.dll
11:30:44.0953 0208 TapiSrv - ok
11:30:45.0031 0208 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:30:45.0078 0208 Tcpip - ok
11:30:45.0109 0208 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
11:30:45.0250 0208 TDPIPE - ok
11:30:45.0265 0208 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
11:30:45.0437 0208 TDTCP - ok
11:30:45.0484 0208 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
11:30:45.0625 0208 TermDD - ok
11:30:45.0656 0208 TermService (2f5919f2f6ee7a845893d9c3aa2bc56a) C:\WINDOWS\System32\termsrv.dll
11:30:45.0828 0208 TermService - ok
11:30:45.0890 0208 Themes (e26edc7afa8da3c528055eabc82c8c79) C:\WINDOWS\System32\shsvcs.dll
11:30:45.0906 0208 Themes - ok
11:30:45.0968 0208 TlntSvr (535c2fb97336bafa509f4783dd1e5746) C:\WINDOWS\system32\tlntsvr.exe
11:30:46.0078 0208 TlntSvr - ok
11:30:46.0093 0208 TosIde - ok
11:30:46.0156 0208 TrkWks (4dce17221b1a87fb47e36842f3e38753) C:\WINDOWS\system32\trkwks.dll
11:30:46.0328 0208 TrkWks - ok
11:30:46.0375 0208 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
11:30:46.0515 0208 Udfs - ok
11:30:46.0531 0208 ultra - ok
11:30:46.0593 0208 Update (ced744117e91bdc0beb810f7d8608183) C:\WINDOWS\system32\DRIVERS\update.sys
11:30:46.0671 0208 Update - ok
11:30:46.0703 0208 upnphost (0c0c2c77c6b52181369594f2aa36af40) C:\WINDOWS\System32\upnphost.dll
11:30:46.0734 0208 upnphost - ok
11:30:46.0796 0208 UPS (6148a3ba4d9cc628357fc92014fea30e) C:\WINDOWS\System32\ups.exe
11:30:46.0937 0208 UPS - ok
11:30:46.0984 0208 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:30:47.0140 0208 usbccgp - ok
11:30:47.0171 0208 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:30:47.0312 0208 usbehci - ok
11:30:47.0375 0208 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:30:47.0515 0208 usbhub - ok
11:30:47.0546 0208 usbstor (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:30:47.0687 0208 usbstor - ok
11:30:47.0718 0208 usbuhci (f8fd1400092e23c8f2f31406ef06167b) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
11:30:47.0859 0208 usbuhci - ok
11:30:47.0921 0208 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
11:30:48.0078 0208 VgaSave - ok
11:30:48.0093 0208 ViaIde - ok
11:30:48.0156 0208 VolSnap (cd8cce067f7e9cbd762c00bdddecaa34) C:\WINDOWS\system32\drivers\VolSnap.sys
11:30:48.0296 0208 VolSnap - ok
11:30:48.0343 0208 VSS (043539881667bb37b07524032d6ffc3e) C:\WINDOWS\System32\vssvc.exe
11:30:48.0453 0208 VSS - ok
11:30:48.0500 0208 W32Time (2ceebb402187ae56b585701f3d191fb3) C:\WINDOWS\system32\w32time.dll
11:30:48.0656 0208 W32Time - ok
11:30:48.0718 0208 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:30:48.0875 0208 Wanarp - ok
11:30:48.0890 0208 WDICA - ok
11:30:48.0968 0208 wdmaud (efd235ca22b57c81118c1aeb4798f1c1) C:\WINDOWS\system32\drivers\wdmaud.sys
11:30:49.0000 0208 wdmaud - ok
11:30:49.0062 0208 WebClient (4bd50644cf52f00091f894ab7541e538) C:\WINDOWS\System32\webclnt.dll
11:30:49.0109 0208 WebClient - ok
11:30:49.0187 0208 winmgmt (e12084ea622bdf2262c637bef15dd85c) C:\WINDOWS\system32\wbem\WMIsvc.dll
11:30:49.0343 0208 winmgmt - ok
11:30:49.0406 0208 WmdmPmSN (e02e913b3841717a890a644ee167b9a5) C:\WINDOWS\system32\mspmsnsv.dll
11:30:49.0546 0208 WmdmPmSN - ok
11:30:49.0609 0208 Wmi (e428eed87e8055fb995cf0e4d1532d4c) C:\WINDOWS\System32\advapi32.dll
11:30:49.0656 0208 Wmi - ok
11:30:49.0703 0208 WmiApSrv (bcd21b989f0fd4ace78287fc01b4693d) C:\WINDOWS\system32\wbem\wmiapsrv.exe
11:30:49.0859 0208 WmiApSrv - ok
11:30:50.0000 0208 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
11:30:50.0062 0208 WPFFontCache_v0400 - ok
11:30:50.0125 0208 wscsvc (4aded1adef25041d9827f9a79c0fda13) C:\WINDOWS\system32\wscsvc.dll
11:30:50.0281 0208 wscsvc - ok
11:30:50.0343 0208 wuauserv (21f5169ca14e0b25c757644456f637df) C:\WINDOWS\system32\wuauserv.dll
11:30:50.0484 0208 wuauserv - ok
11:30:50.0531 0208 WZCSVC (325cedef696ef4b649ddcd3968d085c9) C:\WINDOWS\System32\wzcsvc.dll
11:30:50.0718 0208 WZCSVC - ok
11:30:50.0781 0208 xmlprov (9b835d4c64860b155a1701d5092ec9e4) C:\WINDOWS\System32\xmlprov.dll
11:30:50.0937 0208 xmlprov - ok
11:30:50.0968 0208 MBR (0x1B8) (413fc2a0c716421b3158746d63736515) \Device\Harddisk0\DR0
11:30:51.0187 0208 \Device\Harddisk0\DR0 - ok
11:30:51.0203 0208 MBR (0x1B8) (e5fa06aca0d60ba9c870d0ef3d9898c9) \Device\Harddisk1\DR6
11:30:54.0562 0208 \Device\Harddisk1\DR6 - ok
11:30:54.0578 0208 Boot (0x1200) (85312e6a869faaf590949fad5d5a0ac0) \Device\Harddisk0\DR0\Partition0
11:30:54.0578 0208 \Device\Harddisk0\DR0\Partition0 - ok
11:30:54.0593 0208 Boot (0x1200) (3d6c9f34504214660c84930080a7e16d) \Device\Harddisk1\DR6\Partition0
11:30:54.0593 0208 \Device\Harddisk1\DR6\Partition0 - ok
11:30:54.0593 0208 ============================================================
11:30:54.0593 0208 Scan finished
11:30:54.0593 0208 ============================================================
11:30:54.0703 1036 Detected object count: 4
11:30:54.0703 1036 Actual detected object count: 4
11:31:28.0140 1036 prodrv06 ( UnsignedFile.Multi.Generic ) - skipped by user
11:31:28.0140 1036 prodrv06 ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:31:28.0140 1036 prohlp02 ( UnsignedFile.Multi.Generic ) - skipped by user
11:31:28.0140 1036 prohlp02 ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:31:28.0156 1036 prosync1 ( UnsignedFile.Multi.Generic ) - skipped by user
11:31:28.0156 1036 prosync1 ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:31:28.0156 1036 sfhlp01 ( UnsignedFile.Multi.Generic ) - skipped by user
11:31:28.0156 1036 sfhlp01 ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:31:58.0562 3048 Deinitialize success
Archive.zip
(90.6 KiB) Staženo 48 x

Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Re: Problémy s internetem

#4 Příspěvek od Jaroslav Blažek »

No tak utorrent jsem nikdy nepoužil. Bitlord jo, ale už je to delší dobu, a problémy začali až teď, takže tím to asi nebude.

Log z combofix:
ComboFix 12-04-07.02 - Jaroslav 07.04.2012 13:27:06.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1535.1137 [GMT 2:00]
Spuštěný z: c:\documents and settings\Jaroslav\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-03-07 do 2012-04-07 )))))))))))))))))))))))))))))))
.
.
2012-04-07 08:44 . 2012-04-07 08:44 512 ----a-w- C:\PhysicalMBR.bin
2012-04-07 07:00 . 2012-04-07 07:00 -------- d-----w- C:\rsit
2012-04-07 07:00 . 2012-04-07 07:00 -------- d-----w- c:\program files\trend micro
2012-04-07 06:33 . 2012-04-07 06:33 -------- d-----w- c:\documents and settings\Administrator
2012-04-04 22:31 . 2012-04-04 22:31 -------- d-----w- c:\documents and settings\Jaroslav\Local Settings\Data aplikací\DOSBox
2012-04-04 22:30 . 2012-04-05 21:51 -------- d-----w- c:\program files\DOSBox-0.74
2012-04-04 22:24 . 2012-04-04 22:24 -------- d-----w- C:\oldgames
2012-04-04 16:46 . 2012-04-04 22:22 -------- d-----w- c:\documents and settings\Jaroslav\Data aplikací\PSpad
2012-04-04 16:45 . 2012-04-04 16:45 -------- d-----w- c:\program files\PSPad editor
2012-03-31 18:07 . 2004-08-05 11:00 59904 ----a-w- c:\windows\system32\wbemdisp.tlb
2012-03-31 18:07 . 2012-03-31 18:07 -------- d-----w- c:\program files\20Dollars2Surf
2012-03-17 06:50 . 2012-03-17 06:50 592824 ----a-w- c:\program files\Mozilla Firefox\gkmedias.dll
2012-03-17 06:50 . 2012-03-17 06:50 44472 ----a-w- c:\program files\Mozilla Firefox\mozglue.dll
2012-03-11 22:16 . 2012-03-11 22:16 -------- d-----w- c:\documents and settings\Jaroslav\Data aplikací\Mozilla-Cache
2012-03-11 22:15 . 2012-03-11 22:23 -------- d-----w- c:\program files\PartyGaming
2012-03-11 06:32 . 2012-03-11 06:32 -------- d-----w- c:\windows\system32\config\systemprofile\Local Settings\Data aplikací\Google
2012-03-11 06:27 . 2012-03-11 06:29 -------- d-----w- c:\documents and settings\Jaroslav\Local Settings\Data aplikací\Google
2012-03-11 06:27 . 2012-03-11 06:29 -------- d-----w- c:\program files\Google
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-07 14:09 . 2012-03-07 14:09 53248 ----a-r- c:\documents and settings\Jaroslav\Data aplikací\Microsoft\Installer\{9AA761E6-CA51-4FF2-A552-D51638BF0595}\_F522ED7EA612_4117_B86D_78467DE01E30.exe
2012-03-07 00:15 . 2012-01-28 13:50 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2012-01-28 13:50 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2012-01-28 13:50 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2012-01-28 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2012-01-28 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2012-01-28 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2012-01-28 13:50 95704 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2012-03-07 00:01 . 2012-01-28 13:50 89048 ----a-w- c:\windows\system32\drivers\aswmon.sys
2012-03-07 00:01 . 2012-01-28 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-03-06 23:58 . 2012-01-28 13:50 24920 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2012-02-23 12:38 . 2012-02-23 12:38 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-02-23 12:38 . 2012-02-23 12:38 472808 ----a-w- c:\windows\system32\deployJava1.dll
2012-02-16 06:06 . 2012-01-27 23:40 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-01-29 00:50 . 2012-01-29 00:50 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-01-28 20:58 . 2012-01-28 20:58 473656 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-01-27 21:20 . 2012-01-27 21:20 0 ----a-w- c:\windows\wininit.tmp
2012-03-17 06:50 . 2012-01-27 20:15 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[7] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
[7] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\system32\dllcache\spoolsv.exe
[7] 2004-08-17 . 21B6FAA88044A41640E03EBB68BE93E8 . 57856 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB896423$\spoolsv.exe
.
c:\windows\System32\spoolsv.exe ... chybí !!
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-03-07 4241512]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ7.7\\ICQ.exe"=
"c:\\Program Files\\BitLord\\BitLord.exe"=
"c:\\Casino\\ParadiseCasino\\casino.exe"=
"c:\\Program Files\\Liquid Entertainment\\Battle Realms\\Battle_Realms_F.exe"=
.
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [28.1.2012 15:50 612184]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [28.1.2012 15:50 337880]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [28.1.2012 15:50 20696]
R3 AR9271;Wireless Network Adapter Service;c:\windows\system32\drivers\athuw.sys [27.1.2012 22:28 1714176]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [29.1.2012 2:50 242240]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 14:16 130384]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [11.3.2012 8:27 136176]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [11.3.2012 8:27 136176]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 14:16 753504]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - 58177440
*NewlyCreated* - DMADMIN
*Deregistered* - 58177440
.
Obsah adresáře 'Naplánované úlohy'
.
2012-04-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-03-11 06:27]
.
2012-04-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-03-11 06:27]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
IE: Download with &Media Finder - c:\program files\Media Finder\hook.html
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: {{77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - c:\program files\ICQ7.7\ICQ.exe
TCP: DhcpNameServer = 78.156.32.2 84.244.102.11
FF - ProfilePath - c:\documents and settings\Jaroslav\Data aplikací\Mozilla\Firefox\Profiles\2yrmhl83.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-04-07 13:31
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
Celkový čas: 2012-04-07 13:33:27
ComboFix-quarantined-files.txt 2012-04-07 11:33
.
Před spuštěním: Volných bajtů: 138 374 844 416
Po spuštění: Volných bajtů: 138 336 206 848
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - 20F5A2755EB9E15D7004C2B26B911138

To livecd jsem nepoužil, nevím kde mám CD s Windows. Pokud je to nutné, tak ho můžu stáhnout, ale myslím že výsledek bude stejný jako v nouzovém režimu.

Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Re: Problémy s internetem

#5 Příspěvek od Jaroslav Blažek »

Na jaký zbytek, co mám ještě udělat?

Jaroslav Blažek
Návštěvník
Návštěvník
Příspěvky: 18
Registrován: 16 srp 2006 18:20

Re: Problémy s internetem

#6 Příspěvek od Jaroslav Blažek »

Zdravím

Internet už funguje, od té doby co to začalo fungovat jsem sem nenapsal, tak jen dávám vědět že už to jde. Nakonec pomohlo na chvíli vytáhnout ze zásuvky router, jako už hodněkrát, ale předtím mě nenapadlo že by to mohlo pomoct, protože na ostatních počítačích šel internet normálně.

Díky za pomoc a mějte se.

Odpovědět