Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé RAM Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:15

Soubor RbSystem.ini přijatý 2010.08.07 16:13:11 (UTC)
Současný stav: Dokončeno
Výsledek: 0/42 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 -
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 3039 bytes
MD5...: 98898c6e563db4da1804211f03cecdde
SHA1..: a2d35b7550d75b757cddd0d154b4b9f0a405cb16
SHA256: ea5a9a369428ff96a4061057400c6f7cc68244d99659bb17f1862b6cd14f0441
ssdeep: 48:IIR0+r++K7fSJDKKQ6To1Y81SzL9ZIKjjIhXULBitvjNvTIf8MC5d2g+EOJL6
hXW:IIq+r++KqJDxQUSY8I9iKjkhXEejNvTk
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Generic INI configuration (100.0%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

Reklama
LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:16

Soubor VSHP1018.DLL přijatý 2010.08.07 16:15:39 (UTC)
Současný stav: Dokončeno
Výsledek: 0/42 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 -
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 106496 bytes
MD5...: ef11f02c1f7a5e1297fdcb1f2bf0e29b
SHA1..: cb4b24b8edee4088d375b88ef990e9e0d244525a
SHA256: 7c084db220e7a35e56a0ed4ed8a41a15bffcbc878797d71a4aef430afd66ef33
ssdeep: 1536:e56FE6sRBNrYyE4V1Rd1yq1Oqm3Oy2cmDw8dvDa0lwbSedXlM:ekE6sR7vN
55ixYDa0lwbSedXlM
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x5666
timedatestamp.....: 0x417e8f18 (Tue Oct 26 17:53:28 2004)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x9e0f 0xa000 6.56 19d03c759df1caf26e5d8239c7bf0b0c
.rdata 0xb000 0x2f08 0x3000 5.09 7bd717345754a3311ad43a6831c84a90
.data 0xe000 0x1288 0x1000 1.97 23141d6cc134a6a26287969e04a35cf5
.rsrc 0x10000 0x8400 0x9000 3.06 98b9d4e2b145ca34f5a93fe64abb4b3f
.reloc 0x19000 0x12d4 0x2000 3.00 f9aad1c21f08f127f8b6e96f2028f532

( 5 imports )
> KERNEL32.dll: GetStartupInfoA, GlobalAlloc, lstrcpyA, lstrcmpA, GetPrivateProfileStringA, FindClose, FindFirstFileA, GetSystemDirectoryA, CreateFileA, GetCurrentDirectoryA, WriteFile, SizeofResource, LockResource, LoadResource, FindResourceA, CreateProcessA, GetModuleHandleA, GetDriveTypeA, GetLogicalDrives, lstrcpynA, ReadFile, GetFileSize, InitializeCriticalSection, IsBadCodePtr, IsBadReadPtr, OpenProcess, SetLastError, GetLastError, CloseHandle, lstrlenA, GetVersionExA, GetWindowsDirectoryA, OutputDebugStringA, ExitProcess, RtlUnwind, RaiseException, GetCurrentThreadId, GetCommandLineA, HeapAlloc, HeapFree, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime, GetModuleFileNameA, GetACP, GetOEMCP, GetCPInfo, TlsAlloc, TlsFree, TlsSetValue, TlsGetValue, GetProcAddress, LCMapStringA, WideCharToMultiByte, MultiByteToWideChar, LCMapStringW, SetUnhandledExceptionFilter, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, TerminateProcess, GetCurrentProcess, SetHandleCount, GetStdHandle, GetFileType, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapDestroy, HeapCreate, VirtualFree, UnhandledExceptionFilter, VirtualAlloc, HeapReAlloc, IsBadWritePtr, HeapSize, LoadLibraryA, InterlockedExchange, VirtualQuery, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, VirtualProtect, GetSystemInfo
> USER32.dll: WaitForInputIdle, MessageBoxA, wvsprintfA, wsprintfA, FindWindowA, GetWindowThreadProcessId
> WINSPOOL.DRV: GetPrinterA
> ADVAPI32.dll: RegSetValueExA, RegOpenKeyExA, RegQueryValueExA, RegCloseKey, CreateProcessAsUserA, OpenProcessToken, RegCreateKeyExA
> SHELL32.dll: ShellExecuteA

( 1 exports )
Setup
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win64 Executable Generic (59.6%)
Win32 Executable MS Visual C++ (generic) (26.2%)
Win32 Executable Generic (5.9%)
Win32 Dynamic Link Library (generic) (5.2%)
Generic Win/DOS Executable (1.3%)
sigcheck:
publisher....: n/a
copyright....: Copyright (C) 2002-2005 Zenographics, Inc. All Rights Reserved.
product......: VendorSetup Dynamic Link Library
description..: VendorSetup Dynamic Link Library
original name: VendorSetup.dll
internal name: VendorSetup
file version.: 1, 0, 1026, 0
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:19

Soubor dslang32.dll přijatý 2010.08.07 16:17:13 (UTC)
Současný stav: Dokončeno
Výsledek: 0/42 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 -
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 655360 bytes
MD5...: f29469e9e0cb94d71f867da45f09296c
SHA1..: 9d0d0ee1b75ea5f409dbf7d3c7a0e754340305c4
SHA256: 37f728748b4292125adaee40c4c692f801f55619dda18c9a060804da8ba142d0
ssdeep: 6144:aviKRhhMu1fawL/S85uYdL9UHcZNrpMIYQmV8mHZhH5yr/twhYrCqAy:adx
1faOao9UHcmJCm5hHMr/NvA
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x0
timedatestamp.....: 0x3e4d0be8 (Fri Feb 14 15:31:52 2003)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1f0 0x1000 1.13 8378005afd927d59719f12a591f67a58
.rdata 0x2000 0xe7 0x1000 0.34 f7284b8f853b5b16073aa77f3b7b4664
.data 0x3000 0x8f070 0x90000 6.36 b1f9b14a521b026f269686450aeab1d9
.reloc 0x93000 0xc314 0xd000 5.77 6ec8751afeeb4397c8636a4ac2a306a9

( 1 imports )
> OLEAUT32.dll: -

( 4 exports )
GetLangText, GetLangText2, GetLangText_ext, GetLangText_ext2
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable Generic (68.0%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:21

Soubor ldf251.dll přijatý 2010.08.07 16:19:43 (UTC)
Současný stav: Dokončeno
Výsledek: 0/42 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 -
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 327680 bytes
MD5...: 4b4db29ff0d39190c81a25934317ae3e
SHA1..: b0e14b045f4370ad154fbeb6864fb5ac66c652a1
SHA256: 3011cc8e85758d4b1a71e897fae7380c981506b9c7e15994febf8147bbfdc24d
ssdeep: 6144:o6QxQje0JCw8XvtEBxhmxYqvccoWoeU/:oNQOwoqBxhmxnPVA
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x323f4
timedatestamp.....: 0x3896f2cb (Tue Feb 01 14:50:51 2000)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x38682 0x39000 6.54 eb562cf4ddcd07c4ce24c50cf70a767a
.rdata 0x3a000 0xe23c 0xf000 3.81 2164ed2e7c35c5d7d51080756a29da77
.data 0x49000 0x5b0c 0x5000 2.98 bc357b86d01681369a43f1786c65faa1
.reloc 0x4f000 0x1bbc 0x2000 4.77 57be6307453e7a4b152896a46b7e5ad0

( 1 imports )
> KERNEL32.dll: GetStdHandle, HeapAlloc, HeapReAlloc, HeapFree, GetCommandLineA, GetVersion, EnterCriticalSection, LeaveCriticalSection, HeapDestroy, HeapCreate, VirtualFree, InitializeCriticalSection, DeleteCriticalSection, ExitProcess, VirtualAlloc, GetLastError, ReadFile, SetFilePointer, WriteFile, GetCurrentThreadId, TlsSetValue, TlsAlloc, TlsFree, SetLastError, TlsGetValue, CloseHandle, GetFileType, CreateFileA, GetCurrentProcessId, GetProcAddress, GetModuleHandleA, TerminateProcess, GetCurrentProcess, SetHandleCount, GetFileSize, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStrings, GetEnvironmentStringsW, SetStdHandle, FlushFileBuffers, SetEndOfFile, InterlockedDecrement, InterlockedIncrement, GetCPInfo, GetACP, GetOEMCP, LoadLibraryA, MultiByteToWideChar, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, RtlUnwind

( 21 exports )
ILD_Compress_AppendPage, ILD_Compress_Compress, ILD_Compress_EndProcess, ILD_Compress_GetProp, ILD_Compress_SetCallback, ILD_Compress_SetProp, ILD_Compress_StartProcess, ILD_Decompress_CommitChanges, ILD_Decompress_Decompress, ILD_Decompress_EndProcess, ILD_Decompress_GetLayers, ILD_Decompress_GetNumberPages, ILD_Decompress_GetProp, ILD_Decompress_Merge, ILD_Decompress_NoTempFile, ILD_Decompress_Rotation, ILD_Decompress_SetCallback, ILD_Decompress_SetPage, ILD_Decompress_SetProp, ILD_Decompress_StartProcess, ILD_Decompress_Thumbnail
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:22

Soubor fppent3a.dll přijatý 2010.08.07 16:21:56 (UTC)
Současný stav: Dokončeno
Výsledek: 0/42 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 -
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 86016 bytes
MD5...: ab45a7eb346f4966f005a9e37b01d292
SHA1..: 7a31d32e61a3dd5162c93c0e0ac667342a22c8be
SHA256: 82b761e4db42d716020bf5ca27560c7c159f23fdf1f8bcc19de30abc9a0ed56a
ssdeep: 768:WOT4MQ0QHurk3XLGfWDHGgIE9/8oaDrQgdBoPzXkvZJv1vDvuv9vgvLlTO9y
u0yK:WOT4M1mXXLGfWqMmoM6XMcVyCQn
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x10ee
timedatestamp.....: 0x0 (Thu Jan 01 00:00:00 1970)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x3f6a 0x4000 6.62 7c1d353e33a6f94e4b820c37b4fd4e96
.rdata 0x5000 0xad6 0x1000 4.06 a5df947439b1cf8c7624fd6fef31cc25
.data 0x6000 0x3120 0x3000 0.68 42bb8c9265b64e36ba6464360a5aad37
.rsrc 0xa000 0xac78 0xb000 4.45 d3635f22be7f6f36cd9e69b226b12964
.reloc 0x15000 0xbe6 0x1000 2.87 33a9c9055c045a6b71ba92d2dbcee3a2

( 1 imports )
> KERNEL32.dll: GetCommandLineA, GetVersion, ExitProcess, TerminateProcess, GetCurrentProcess, GetCurrentThreadId, TlsSetValue, TlsAlloc, TlsFree, SetLastError, TlsGetValue, GetLastError, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, DeleteCriticalSection, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStrings, GetEnvironmentStringsW, GetModuleHandleA, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, HeapFree, WriteFile, InitializeCriticalSection, EnterCriticalSection, LeaveCriticalSection, HeapAlloc, GetCPInfo, GetACP, GetOEMCP, VirtualAlloc, HeapReAlloc, GetProcAddress, LoadLibraryA, RtlUnwind, MultiByteToWideChar, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, InterlockedDecrement, InterlockedIncrement

( 1 exports )
DllMain
RDS...: NSRL Reference Data Set
-
trid..: Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
pdfid.: -
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 07 srp 2010 18:26

Soubor igfxCoIn_v4926.dll přijatý 2010.08.07 16:23:02 (UTC)
Současný stav: Dokončeno
Výsledek: 1/42 (2.39%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
AhnLab-V3 2010.08.07.00 2010.08.06 -
AntiVir 8.2.4.34 2010.08.06 -
Antiy-AVL 2.0.3.7 2010.08.06 -
Authentium 5.2.0.5 2010.08.07 -
Avast 4.8.1351.0 2010.08.07 -
Avast5 5.0.332.0 2010.08.07 -
AVG 9.0.0.851 2010.08.07 -
BitDefender 7.2 2010.08.07 -
CAT-QuickHeal 11.00 2010.08.07 -
ClamAV 0.96.0.3-git 2010.08.07 -
Comodo 5672 2010.08.07 -
DrWeb 5.0.2.03300 2010.08.07 -
Emsisoft 5.0.0.36 2010.08.07 -
eSafe 7.0.17.0 2010.08.05 -
eTrust-Vet 36.1.7773 2010.08.07 -
F-Prot 4.6.1.107 2010.08.07 -
F-Secure 9.0.15370.0 2010.08.07 -
Fortinet 4.1.143.0 2010.08.07 -
GData 21 2010.08.07 -
Ikarus T3.1.1.84.0 2010.08.07 -
Jiangmin 13.0.900 2010.08.07 -
Kaspersky 7.0.0.125 2010.08.07 -
McAfee 5.400.0.1158 2010.08.07 -
McAfee-GW-Edition 2010.1 2010.08.06 Heuristic.BehavesLike.Win32.Suspicious.H
Microsoft 1.6004 2010.08.07 -
NOD32 5348 2010.08.06 -
Norman 6.05.11 2010.08.07 -
nProtect 2010-08-07.01 2010.08.07 -
Panda 10.0.2.7 2010.08.07 -
PCTools 7.0.3.5 2010.08.07 -
Prevx 3.0 2010.08.07 -
Rising 22.59.05.04 2010.08.07 -
Sophos 4.56.0 2010.08.07 -
Sunbelt 6698 2010.08.07 -
SUPERAntiSpyware 4.40.0.1006 2010.08.07 -
Symantec 20101.1.1.7 2010.08.07 -
TheHacker 6.5.2.1.336 2010.08.07 -
TrendMicro 9.120.0.1004 2010.08.07 -
TrendMicro-HouseCall 9.120.0.1004 2010.08.07 -
VBA32 3.12.12.8 2010.08.04 -
ViRobot 2010.7.29.3961 2010.08.07 -
VirusBuster 5.0.27.0 2010.08.07 -
Rozšiřující informace
File size: 147456 bytes
MD5...: 1c59745cf3a5f820d3e3854b95272263
SHA1..: 201c04dbac0e5677b5292969e798e9c6f3169216
SHA256: a0f3b3e310f68c575e731ed6f4ce0729193f908a3b85604439b021737aef6687
ssdeep: 1536:/vMfVF4RVqMHKGFhOfTLrYycye0UJrm375xXpgtL69kvi9aSF9F7nmpqot6
wl3il:/vM3wqMHKZg/s3L5Xs09F6pzt6wwl
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0xda62
timedatestamp.....: 0x47b60272 (Fri Feb 15 21:21:54 2008)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x16852 0x17000 6.50 66577bf79ef57b605950c4c710d95064
.rdata 0x18000 0x4c7e 0x5000 5.26 5946f5be252a3c3dd188ad1c11f66a31
.data 0x1d000 0x2ea4 0x2000 1.58 9bff59c52aaab992a750f76b26bc4d20
.rsrc 0x20000 0xb0 0x1000 3.06 a8847978217fc2d284499e414af20308
.reloc 0x21000 0x323c 0x4000 2.79 8a678362bc72f0f6b17ff3d9d1ee4393

( 7 imports )
> SETUPAPI.dll: SetupGetInfInformationA, SetupOpenInfFileA, SetupDiGetDriverInfoDetailA, SetupDiGetSelectedDriverA, SetupDiGetDeviceRegistryPropertyA, SetupDiEnumDeviceInfo, SetupDiGetClassDevsA, SetupGetLineTextA, SetupCloseInfFile, SetupDiGetDeviceInstallParamsA, SetupQueryInfOriginalFileInformationA
> SHLWAPI.dll: PathAppendA, PathRemoveFileSpecA, PathFindFileNameA
> KERNEL32.dll: GetLastError, GetLocalTime, CloseHandle, WaitForSingleObject, CreateProcessA, GetWindowsDirectoryA, CopyFileA, GetSystemDirectoryA, DeleteFileA, CreateFileA, FindNextFileA, FindClose, FindFirstFileA, GetCurrentProcess, GetProcAddress, GetModuleHandleA, GetVersionExA, TerminateProcess, FreeLibrary, LoadLibraryA, WriteFile, GetModuleFileNameA, SetFileAttributesA, Sleep, SetFilePointer, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, InitializeCriticalSection, HeapSize, LCMapStringW, WideCharToMultiByte, LCMapStringA, GetOEMCP, GetACP, GetCPInfo, InterlockedDecrement, InterlockedIncrement, TlsFree, SetLastError, GetSystemTimeAsFileTime, GetConsoleCP, GetConsoleMode, GetStringTypeA, GetStringTypeW, MultiByteToWideChar, GetLocaleInfoA, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, FlushFileBuffers, TlsSetValue, TlsAlloc, TlsGetValue, GetStdHandle, HeapReAlloc, VirtualAlloc, EnterCriticalSection, LeaveCriticalSection, DeleteCriticalSection, VirtualFree, HeapCreate, LocalAlloc, InterlockedExchange, RaiseException, HeapFree, HeapAlloc, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, ExitProcess, GetCurrentThreadId, GetCommandLineA, GetProcessHeap, HeapDestroy
> USER32.dll: SetFocus, SetWindowPos, SendMessageA, SetDlgItemTextA, SendDlgItemMessageA, LoadIconA, LoadStringA, DialogBoxParamA, EndDialog
> GDI32.dll: DeleteObject, CreateSolidBrush, CreateFontA
> ADVAPI32.dll: RegQueryValueExA, RegDeleteValueA, RegEnumValueA, RegCreateKeyExA, RegSetValueExA, RegOpenKeyExA, RegEnumKeyExA, RegCloseKey, RegDeleteKeyA
> SHELL32.dll: SHCreateDirectoryExA

( 2 exports )
CoDeviceInstall, iAlmMFCoInstaller
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod jaro3 » 07 srp 2010 18:54

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

:Files
C:\Programme\Bosch\ESItronic\KTS500\WinIo.sys
C:\Documents and Settings\Sulcar\Data aplikací\ntr

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 09 srp 2010 07:47

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
========== FILES ==========
C:\Programme\Bosch\ESItronic\KTS500\WinIo.sys moved successfully.
C:\Documents and Settings\Sulcar\Data aplikací\ntr folder moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Sulcar
->Temp folder emptied: 644421 bytes
->Temporary Internet Files folder emptied: 140215 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 12246866 bytes
->Flash cache emptied: 682 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 255 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 12,00 mb


OTL by OldTimer - Version 3.2.9.1 log created on 08092010_074027

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\hlktmp scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod jaro3 » 09 srp 2010 08:32

Pozn. BitDefender Online Scan může být užíván pouze prostřednictvím Internet Exploreru, případně Chrome a Firefoxu..

Spusť BitDefender Online Scan

Klikni na I Agree.
Nainstaluj si prosím addony , pokud to bude vyžadováno.
Klikni na START Scan
Nech aktualizovat virovou databázi. Poté se spustí automaticky sken všech souborů a složek.
Je-li nalezena infekce , pokusí se program o její dezinfekci/smazání .
Po skenu klikni na More Detail >>
Jdi k Detected Problems tabulce a klikni na Click here to export the scan report.
Ulož si report jako .html na svojí plochu. Zkopíruj celý text a vlož do pozn. bloku ( notepadu). Ulož si výsledek do pozn. bloku a vlož sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 09 srp 2010 10:40

Nenašlo to žádný problem.



QuickScan Beta 32-bit v0.9.9.30
-------------------------------
Scan date: Mon Aug 09 10:35:36 2010
Machine ID: C4055B1F



No infection found.
-------------------



Processes
---------
<unsigned> Autodata Limited License Service 564 C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
<unsigned> Bluetooth Stack for Windows by TOSHIBA 2596 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
<unsigned> Bluetooth Stack for Windows by TOSHIBA 788 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
<unsigned> Bluetooth Stack for Windows by Toshiba 3184 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
<unsigned> Bluetooth Stack for Windows by TOSHIBA 3576 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
<unsigned> CrypKey Software Licensing System 580 C:\WINDOWS\system32\crypserv.exe
<unsigned> GoQ 3660 C:\Program Files\GoQ - NetRadio\goq.exe
<unsigned> HP Cartridge Order Reminder 4040 C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
<unsigned> InstallAnywhere 192 C:\Program Files\eTECH\OrganiserDBServer.exe
<unsigned> Java(TM) Platform SE 6 U2 448 C:\Program Files\eTECH\jre\bin\java.exe
<unsigned> Microsoft® Visual Studio .NET 1200 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
<unsigned> NetRadio 3472 C:\Program Files\GoQ - NetRadio\NetRadio.exe
<unsigned> Service Runner 1244 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\tomcat6.exe
<unsigned> Transbase/CD Database System 3100 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
<unsigned> Transbase/CD Database System 3292 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
<unsigned> Transbase/CD Database System 3920 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
<unsigned> Transbase/CD Database System 1520 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbmux32.exe
<unsigned> Transbase/CD Database System 1844 C:\TECDOC_CD\3_2010\db\tbmux32.exe

<verified> Bluetooth Stack for Windows by TOSHIBA 1744 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
<verified> ESET Smart Security 1040 C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
<verified> ESET Smart Security 672 C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
<verified> Google Chrome 276 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2692 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2856 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2996 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3044 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3424 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3456 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3468 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3680 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3980 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 1600 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2736 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 3408 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2224 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2280 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2552 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2600 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Chrome 2664 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
<verified> Google Update 1628 C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
<verified> Intel(R) Common User Interface 3796 C:\WINDOWS\system32\hkcmd.exe
<verified> Intel(R) Common User Interface 3804 C:\WINDOWS\system32\igfxpers.exe
<verified> Intel(R) Common User Interface 4008 C:\WINDOWS\system32\igfxsrvc.exe
<verified> Intel(R) Common User Interface 3772 C:\WINDOWS\system32\igfxtray.exe
<verified> Java(TM) Platform SE 6 U20 1172 C:\Program Files\Java\jre6\bin\jqs.exe
<verified> Java(TM) Platform SE Auto Updater 2 0 4016 C:\Program Files\Common Files\Java\Java Update\jusched.exe
<verified> MarkVision for Windows (32 bit) 376 C:\WINDOWS\system32\LEXBCES.EXE
<verified> MarkVision for Windows (32 bit) 440 C:\WINDOWS\system32\LEXPPS.EXE
<verified> Microsoft(R) Windows (R) 2000 Operating 928 C:\WINDOWS\Explorer.EXE
<verified> Microsoft® Windows® Operating System 2164 C:\WINDOWS\System32\alg.exe
<verified> Microsoft® Windows® Operating System 1048 C:\WINDOWS\system32\csrss.exe
<verified> Microsoft® Windows® Operating System 1392 C:\WINDOWS\system32\lsass.exe
<verified> Microsoft® Windows® Operating System 404 C:\WINDOWS\system32\spoolsv.exe
<verified> Microsoft® Windows® Operating System 1896 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1772 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 1632 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1592 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1988 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1676 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1936 C:\WINDOWS\system32\wdfmgr.exe
<verified> Operační systém Microsoft® Windows® 1380 C:\WINDOWS\system32\services.exe
<verified> Operační systém Microsoft® Windows® 636 C:\WINDOWS\System32\smss.exe
<verified> Operační systém Microsoft® Windows® 1304 C:\WINDOWS\system32\winlogon.exe
<verified> Realtek HD Audio Sound Effect Manager 3744 C:\WINDOWS\RTHDCPL.EXE
<verified> Skype 2188 C:\Program Files\Skype\Phone\Skype.exe
<verified> Skype Extras Manager 2844 C:\Program Files\Skype\Plugin Manager\skypePM.exe


Network activity
----------------
Process ekrn.exe (672) connected on port 80 (HTTP) --> 74.125.87.156
Process ekrn.exe (672) connected on port 80 (HTTP) --> 78.128.147.19
Process ekrn.exe (672) connected on port 80 (HTTP) --> 92.122.252.20
Process ekrn.exe (672) connected on port 443 (HTTP over SSL) --> 74.125.43.132
Process ekrn.exe (672) connected on port 80 (HTTP) --> 212.111.3.39
Process ekrn.exe (672) connected on port 80 (HTTP) --> 74.125.87.156
Process ekrn.exe (672) connected on port 80 (HTTP) --> 209.85.135.101
Process ekrn.exe (672) connected on port 80 (HTTP) --> 199.7.52.190
Process ekrn.exe (672) connected on port 80 (HTTP) --> 199.7.52.190
Process ekrn.exe (672) connected on port 80 (HTTP) --> 92.122.245.115
Process Skype.exe (2188) connected on port 6774 --> 89-212-140-178.dynamic.dsl.t-2.net

Process LEXPPS.EXE (440) listens on ports: 1025 (RPC)
Process java.exe (448) listens on ports: 9001
Process tomcat6.exe (1244) listens on ports: 351, 8009
Process tbmux32.exe (1520) listens on ports: 354, 357
Process svchost.exe (1676) listens on ports: 135 (RPC)
Process tbmux32.exe (1844) listens on ports: 2024, 2025
Process Skype.exe (2188) listens on ports: 80 (HTTP), 443 (HTTP over SSL), 14640


Autoruns and critical files
---------------------------
<unsigned> HP Cartridge Order Reminder C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
<unsigned> pdfFactory C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe
<unsigned> WgaLogon.dll C:\WINDOWS\system32\WgaLogon.dll

<verified> Adobe Acrobat C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
<verified> Adobe Reader and Acrobat Manager C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
<verified> ESET Smart Security C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
<verified> Google Update C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
<verified> Intel(R) Common User Interface C:\WINDOWS\system32\hkcmd.exe
<verified> Intel(R) Common User Interface C:\WINDOWS\system32\igfxdev.dll
<verified> Intel(R) Common User Interface C:\WINDOWS\system32\igfxpers.exe
<verified> Intel(R) Common User Interface C:\WINDOWS\system32\igfxtray.exe
<verified> Java(TM) Platform SE Auto Updater 2 0 C:\Program Files\Common Files\Java\Java Update\jusched.exe
<verified> Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\browseui.dll
<verified> Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\shell32.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cscdll.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\dimsntfy.dll
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\crypt32.dll
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\logonui.exe
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\sclgntfy.dll
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\stobject.dll
<verified> Operační systém Microsoft® Windows® c:\windows\system32\userinit.exe
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\webcheck.dll
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\wlnotify.dll
<verified> Realtek HD Audio Sound Effect Manager C:\WINDOWS\RTHDCPL.EXE
<verified> Skype C:\Program Files\Skype\Phone\Skype.exe


Browser plugins
---------------
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
<unsigned> QuickTime Plug-in 7.6.6 C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll

<verified> AcroIEHelperShim Library c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
<verified> Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
<verified> Adobe Acrobat C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
<verified> BitDefender QuickScan C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie\0.9.9.30\npqscan.dll
<verified> BitDefender QuickScan C:\Documents and Settings\Sulcar\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pdnkcidphdcakpkheohlhocaicfamjie\0.9.9.30\npqslauncher.dll
<verified> Flash® Player Installer/Uninstaller C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
<verified> ICQ C:\Program Files\ICQ7.1\ICQ.exe
<verified> Java Deployment Toolkit 6.0.200.2 C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
<verified> Java(TM) Platform SE 6 U20 c:\program files\java\jre6\bin\jp2ssv.dll
<verified> Java(TM) Platform SE 6 U20 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<verified> Messenger C:\Program Files\Messenger\msmsgs.exe
<verified> Microsoft Office 2003 C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
<verified> Microsoft(R) Windows (R) 2000 Operating C:\WINDOWS\system32\shdocvw.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
<verified> Mozilla Default Plug-in C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
<verified> NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
<verified> Operační systém Microsoft® Windows® C:\WINDOWS\system32\mswsock.dll


Missing files
-------------
File not found: C:\Programme\Bosch\ESItronic\KTS500\winio.sys
--> HKLM\System\ControlSet001\services\WINIO\"ImagePath"


Scan
----
<unsigned> MD5: 0d52aa08491a827fba10de8de0e2885f C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
<unsigned> MD5: 6f95324909b502e2651442c1548ab12f C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
<unsigned> MD5: 007b6d58bf6d755b2448390ecc1f4fa8 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\1029\mdmui.dll
<unsigned> MD5: 7cf1b716372b89568ae4c0fe769f5869 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
<unsigned> MD5: 888e745e048f748111adf94d1ae39018 C:\Program Files\eTECH\jre\bin\client\jvm.dll
<unsigned> MD5: f0cbe001c78273cf2af7d91e3cf9db7a C:\Program Files\eTECH\jre\bin\hpi.dll
<unsigned> MD5: aee0cf45c7d173837a8f3083e076c011 C:\Program Files\eTECH\jre\bin\java.dll
<unsigned> MD5: 1897a5b24008d3cc056e260ec4dc73dd C:\Program Files\eTECH\jre\bin\java.exe
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\Program Files\eTECH\jre\bin\msvcr71.dll
<unsigned> MD5: 2e2f1e16b3492e655f6aaa90a778b8fb C:\Program Files\eTECH\jre\bin\net.dll
<unsigned> MD5: d55ac4229036b96fffaa7a1ad48a5a1a C:\Program Files\eTECH\jre\bin\nio.dll
<unsigned> MD5: cf9aab8e59197e7c4929ad3e1b8bc0c5 C:\Program Files\eTECH\jre\bin\verify.dll
<unsigned> MD5: f258085812154c32a6ebd718df7aa1c5 C:\Program Files\eTECH\jre\bin\zip.dll
<unsigned> MD5: e3a35a3fc9f0e484d4ab7b94d71884a9 C:\Program Files\eTECH\OrganiserDBServer.exe
<unsigned> MD5: 61196f58b05263293f82a952fa9c9946 C:\Program Files\GoQ - NetRadio\goq.exe
<unsigned> MD5: 648e55401d92fccaa28f544d907e6075 C:\Program Files\GoQ - NetRadio\NetRadio.exe
<unsigned> MD5: 932b917572e6e76077e19ba0a3824754 C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\Program Files\Java\jre6\bin\msvcr71.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
<unsigned> MD5: e70d106ae988bb3720f9a1a08d42c234 C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
<unsigned> MD5: f0cbe001c78273cf2af7d91e3cf9db7a C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\hpi.dll
<unsigned> MD5: aee0cf45c7d173837a8f3083e076c011 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\java.dll
<unsigned> MD5: 2e2f1e16b3492e655f6aaa90a778b8fb C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\net.dll
<unsigned> MD5: 25cd43db1d552c422dae6143e7be68ef C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\server\jvm.dll
<unsigned> MD5: cf9aab8e59197e7c4929ad3e1b8bc0c5 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\verify.dll
<unsigned> MD5: f258085812154c32a6ebd718df7aa1c5 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\jre1.6.0_02\bin\zip.dll
<unsigned> MD5: 86f1895ae8c5e8b17d99ece768a70732 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\msvcr71.dll
<unsigned> MD5: f46457a93eb6de31d644da762eefcd48 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\tcnative-1.dll
<unsigned> MD5: fbf193a1c5851cc319a7277076b5e513 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\tomcat6.exe
<unsigned> MD5: 31727051d9d8f48f2298785e93350738 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\libmcrypt.dll
<unsigned> MD5: 254f601304f3e2815c01daeef7ac9a7f C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\polycsr.dll
<unsigned> MD5: 559a3ba7089493ccf75215a991130eb0 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbcrypt32.dll
<unsigned> MD5: b9743e100005e115ec667ce205a0c636 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
<unsigned> MD5: 7395e7efbe8053e5989bc99038a6d3b0 C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbmux32.exe
<unsigned> MD5: 2e154ecb31864a9c221a866a545d39a5 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\BtUsrMod.dll
<unsigned> MD5: d187814addd3709a1453dcc0ae72923f C:\Program Files\Toshiba\Bluetooth Toshiba Stack\OemBtAcpiAPI.dll
<unsigned> MD5: 75407dbfc47a6ac6243f557861eeb596 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
<unsigned> MD5: 2c92b17e820094f37037b6ce114beb69 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
<unsigned> MD5: fef735de1a59d43d8640db1fc703e8f2 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
<unsigned> MD5: 42869dc617da31f5318d82334b5c4e69 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtLoad.dll
<unsigned> MD5: 99650307eebdb49b8f092042a0578a11 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
<unsigned> MD5: e16a486409f6b0604c7470fb079a0298 C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMngHelp.dll
<unsigned> MD5: fefa614b9aa8d3191b4539b2c8a8454d C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMngLang.dll
<unsigned> MD5: bc46bb6caa84ce174d5274c310442b5a C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosCpsAPI.dll
<unsigned> MD5: e3a35a3fc9f0e484d4ab7b94d71884a9 C:\PROGRA~1\eTECH\ORGANI~1.EXE
<unsigned> MD5: f47dfb47b1fdcf6f960fa32773a17b96 C:\TECDOC_CD\3_2010\db\tbmux32.exe
<unsigned> MD5: ce1e29d12057c2d685b2ed8dfdf6bae5 C:\WINDOWS\system32\ckldrv.sys
<unsigned> MD5: 133f82b6391f3390becfa429c23fb2be C:\WINDOWS\system32\crypserv.exe
<unsigned> MD5: 59629edd214c35a01e2527ac3b8a7fb3 C:\WINDOWS\system32\DRIVERS\Axtmvflt.sys
<unsigned> MD5: 37e23b1756eca768656097f72c0b458d C:\WINDOWS\system32\DRIVERS\Axtmvmdm.sys
<unsigned> MD5: 2c7170be24eacc0b432eb1832fee0ddc C:\WINDOWS\System32\Drivers\Axtmvprt.sys
<unsigned> MD5: 4d18a377d4a04c94fcfffbacd89c1ca8 C:\WINDOWS\system32\drivers\HLEMU.sys
<unsigned> MD5: 8f4cf62ae41ef416d67d1deda724a13c C:\WINDOWS\system32\Drivers\NSHE.SYS
<unsigned> MD5: ac59b465500e660607ba393587e0e3a1 C:\WINDOWS\system32\DRIVERS\tosrfusb.sys
<unsigned> MD5: a5e0b26be819a7101e8706d426124566 C:\WINDOWS\system32\fppmon3.dll
<unsigned> MD5: 90ea60a27c7c86d831d3d7590496f93f C:\WINDOWS\system32\fppr332.dll
<unsigned> MD5: 78d4336e2d3dc24911aa4105d836fe0d C:\WINDOWS\system32\LCWizard.dll
<unsigned> MD5: a4e5c512b047a6d9dc38549161cac4de C:\WINDOWS\system32\psvince.dll
<unsigned> MD5: 69638278454de880466d2a2d5712109e C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fppdis3a.exe
<unsigned> MD5: 00dd2a31fbcb142275a0c725de372c63 C:\WINDOWS\system32\spool\prtprocs\w32x86\wfxprint2000.dll
<unsigned> MD5: e662722d5c50ad1c0e201499e405fd73 C:\WINDOWS\system32\TBTMon.dll
<unsigned> MD5: 61fb95b6f2a8715282e05c92e4527c5a C:\WINDOWS\system32\tbtmon98Language.dll
<unsigned> MD5: 6a8a953f7eab8a2d0603b029190c3609 C:\WINDOWS\system32\TosAvAPI.dll
<unsigned> MD5: 0bf3b9e43c0d1e1d308149746f5f8b24 C:\WINDOWS\system32\TosAvdtAPI.dll
<unsigned> MD5: 24c78f9258b0052f7d0aa3eca1fbd306 C:\WINDOWS\system32\TosBdAPI.dll
<unsigned> MD5: ab0ae298b34dc6a3c47abc8036194caa C:\WINDOWS\system32\TosBtAPI.dll
<unsigned> MD5: 558c7fe3994fd6269a9170b51d9ab985 C:\WINDOWS\system32\TosBtECCAPI.dll
<unsigned> MD5: de955d6a5097dc306af8c9f67e9a5f2d C:\WINDOWS\system32\TosBtHcrpAPI.dll
<unsigned> MD5: 8b98ba3fde2b12e7d137df45746d237f C:\WINDOWS\system32\TosBtSDDB.dll
<unsigned> MD5: c427d04a9741b9e479e084aa1855f9f6 C:\WINDOWS\system32\TosCommAPI.dll
<unsigned> MD5: 865292ee1bca080d86ed973a52c0d04f C:\WINDOWS\system32\TosGnsAPI.dll
<unsigned> MD5: a31d75246ba79a89141316f31eb17b23 C:\WINDOWS\system32\TosHidAPI.dll
<unsigned> MD5: 9e165d07bf6c08cceee41cbc2d22427d C:\WINDOWS\system32\TosLaneAPI.dll
<unsigned> MD5: e910ebbb4cc16e950e7f99a075663ee7 C:\WINDOWS\system32\TosSndAPI.dll
<unsigned> MD5: cba980e1b5489c92d727fa0e11d5ec5e C:\WINDOWS\system32\TosSndPlug.dll
<unsigned> MD5: 976878bdfeace8ebc72705250ac85ff8 C:\WINDOWS\system32\WgaLogon.dll
<unsigned> MD5: 686b224b4987c22b153fbb545fee9657 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\mfc80u.dll

The following file(s) must be uploaded for server-side scanning:
C:\WINDOWS\system32\ckldrv.sys

Upload started - 1 file(s)
ckldrv.sys (21638)
Upload finished - 1 uploaded, 0 failed

The uploaded file(s) were found clean.

Scan finished - communication took 1 sec
Total traffic - 0.09 MB sent, 2.93 KB recvd
Scanned 1095 files and modules - 228 seconds

==============================================================================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod jaro3 » 09 srp 2010 16:44

jak to vypadá? Je to stejný?

Stáhni si RootRepeal

Rozbal si archív třeba do C:\RootRepeal
Poklepej na RootRepeal.exe ke startu programu ( ve vistě pravým a vybrat spustit jako administrátor).
Klikni v dolní části na Files a potom na Scan .
Objeví se dialog.okno, dej zatržítko na disk, který chceš skenovat( nejčastěji na C:\) , a potom na OK.
Program začne skenovat zatržený disk. Když sken skončí , budou tam vypsané soubory, ale ne všechny musí být legitimní. Klikni na Save Report a ulož si log do dokumentů. Vlož sem prosím celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

LuckkyLuke
nováček
Příspěvky: 44
Registrován: srpen 10
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Pomalá rychlost počítače - kouše se zvuk, nevyužívá celé

Příspěvekod LuckkyLuke » 09 srp 2010 18:09

ROOTREPEAL (c) AD, 2007-2009
==================================================
Scan Start Time: 2010/08/09 18:08
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Hidden/Locked Files
-------------------
Path: C:\RootRepeal
Status: Visible to the Windows API, but not on disk.

Path: c:\windows\temp\httba.tmp
Status: Size mismatch (API: 252444672, Raw: 252313600)

Path: C:\Documents and Settings\Sulcar\Local Settings\Temporary Internet Files\Content.IE5\UBQXWTSJ\CA2BABQH.htm
Status: Visible to the Windows API, but not on disk.

Path: c:\documents and settings\sulcar\local settings\data aplikací\google\chrome\user data\default\current session
Status: Size mismatch (API: 106121, Raw: 105179)


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Majestic-12 [Bot] a 5 hostů