Witam,
Pasek ładowania systemu przebiega 12-13 razy, a kiedy załaduje mi się tapeta pulpitu i sidebar od google, to musze jeszcze poczekać 2min, zanim uruchomi się KIS 7 i wyświetlą mi się ikonki.
Oto log z combofix:
ComboFix 08-01-17.5 - Dampc 2008-01-17 12:58:45.2 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.256 [GMT 1:00] Running from: I:\ComboFix.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\WINDOWS\system32\ebdaa_g.dll . ((((((((((((((((((((((((( Files Created from 2007-12-17 to 2008-01-17 ))))))))))))))))))))))))))))))) . 2008-01-17 12:28 . 2005-08-05 21:05 516,096 --------- C:\WINDOWS\system32\ati2sgag.exe 2008-01-17 12:17 . 2008-01-17 12:31 2008-01-17 12:06 . 2008-01-17 12:09 2008-01-17 11:59 . 2008-01-17 12:10 2,560 --a------ C:\WINDOWS\system32\settings.aaw 2008-01-17 11:59 . 2008-01-17 12:10 736 --a------ C:\WINDOWS\system32\history.aaw 2008-01-17 11:20 . 2008-01-17 11:20 2008-01-17 11:17 . 2008-01-17 11:18 2008-01-17 11:10 . 2008-01-17 12:55 2008-01-17 11:10 . 2007-09-04 17:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll 2008-01-17 11:10 . 1999-03-26 00:00 101,888 --a------ C:\WINDOWS\system32\vb6stkit.dll 2008-01-17 11:09 . 2008-01-17 11:09 2008-01-17 11:09 . 2007-12-24 13:49 7,680 --a------ C:\WINDOWS\system32\ff_vfw.dll 2008-01-17 11:09 . 2007-07-10 17:10 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest 2008-01-17 11:01 . 2007-10-12 15:14 3,734,536 --a------ C:\WINDOWS\system32\d3dx9_36.dll 2008-01-17 11:01 . 2007-10-12 15:14 1,374,232 --a------ C:\WINDOWS\system32\D3DCompiler_36.dll 2008-01-17 11:01 . 2007-10-02 09:56 444,776 --a------ C:\WINDOWS\system32\d3dx10_36.dll 2008-01-17 11:01 . 2007-10-22 03:39 267,272 --a------ C:\WINDOWS\system32\xactengine2_10.dll 2008-01-17 10:48 . 2008-01-17 10:48 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe 2008-01-17 10:39 . 2008-01-17 10:39 2008-01-17 10:39 . 2008-01-17 10:39 2008-01-17 10:38 . 2008-01-17 11:46 2008-01-17 10:38 . 2008-01-17 10:38 2008-01-17 10:38 . 2008-01-17 10:38 2008-01-17 10:37 . 2008-01-17 10:37 2008-01-16 19:43 . 2008-01-16 19:43 2008-01-15 16:48 . 2008-01-15 16:48 43 --a------ C:\WINDOWS\papatka.cfg 2008-01-15 15:40 . 2008-01-15 15:40 2008-01-12 13:03 . 2008-01-12 13:03 2008-01-12 13:03 . 2008-01-12 13:03 69,632 --a------ C:\WINDOWS\system32\Clifford Uninstall.exe 2008-01-12 13:03 . 2008-01-12 13:03 98 --a------ C:\WINDOWS\CR.ini 2008-01-11 15:52 . 2008-01-11 15:52 136 --a------ C:\WINDOWS\ODBC.INI 2008-01-10 20:13 . 2008-01-10 20:13 2008-01-04 20:56 . 2008-01-17 00:44 4,333 --a------ C:\WINDOWS\system32\LOCALSERVICE.INI 2008-01-04 20:56 . 2008-01-04 20:56 1,210 --a------ C:\WINDOWS\system32\SHORTCUT.INI 2008-01-04 20:56 . 2008-01-04 20:59 100 --a------ C:\WINDOWS\system32\LOCALDEVICE.INI 2008-01-04 20:56 . 2008-01-04 21:00 84 --a------ C:\WINDOWS\system32\REMOTEDEVICE.INI 2008-01-04 20:52 . 2008-01-04 20:52 0 --a------ C:\WINDOWS\system32\BSPRINT.INI 2008-01-04 20:51 . 2008-01-04 20:51 2008-01-04 20:50 . 2008-01-04 20:52 32 --a------ C:\WINDOWS\0 2008-01-04 20:50 . 2008-01-04 20:50 0 --a------ C:\WINDOWS\system32\0 2008-01-04 20:49 . 2008-01-17 12:02 2007-12-27 21:44 . 2008-01-17 11:33 2007-12-24 19:12 . 2007-12-24 19:12 . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-01-17 12:00 804,896 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat 2008-01-17 11:56 --------- d-----w C:\Program Files\cFosSpeed 2008-01-17 11:54 --------- d—a-w C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2008-01-17 11:39 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab 2008-01-17 11:35 82,508 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx 2008-01-17 11:35 369,644 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx 2008-01-17 11:35 27,018,016 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat 2008-01-17 11:28 --------- d-----w C:\Program Files\ATI Technologies 2008-01-17 11:14 --------- d–h--w C:\Program Files\InstallShield Installation Information 2008-01-17 11:05 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\DMCache 2008-01-17 10:41 --------- d-----w C:\Program Files\Java 2008-01-17 10:33 --------- d-----w C:\Program Files\GEOM v1.2 2008-01-17 10:32 --------- d-----w C:\Program Files\Red Skies 2008-01-17 10:31 --------- d-----w C:\Program Files\AidemMedia 2008-01-17 10:26 --------- d-----w C:\Program Files\QuickTime 2008-01-17 10:17 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\URSoft 2008-01-17 10:02 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\uTorrent 2008-01-17 09:42 --------- d-----w C:\Program Files\Winamp 2008-01-16 19:35 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\OpenOffice.ux.pl2 2008-01-04 19:59 34,312 ----a-w C:\WINDOWS\system32\drivers\blueletaudio.sys 2008-01-04 19:51 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Bluetooth 2007-12-31 13:24 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\IDM 2007-12-21 20:22 91,492 ----a-w C:\WINDOWS\system32\drivers\klin.dat 2007-12-20 16:41 85,860 ----a-w C:\WINDOWS\system32\drivers\klick.dat 2007-12-14 06:35 --------- d-----w C:\Program Files\Faktury 2007 2007-12-13 22:52 --------- d-----w C:\Program Files\Draco - Faktury VAT 2007-12-04 13:15 --------- d-----w C:\Program Files\Ulica Sezamkowa 2007-12-03 20:47 --------- d-----w C:\Program Files\Common Files\Borland Shared 2007-11-25 18:18 --------- d-----w C:\Program Files\MARCOM 2007-11-20 21:34 --------- d-----w C:\Program Files\Faktura VAT 2006 2007-11-20 20:34 --------- d-----w C:\Program Files\Polpress 2007-11-20 14:49 --------- d-----w C:\Program Files\Programer 2007-11-20 14:49 --------- d-----w C:\Documents and Settings\Dampc\Dane aplikacji\Programer 2007-11-18 16:35 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\DVD Shrink 2007-11-18 16:34 --------- d-----w C:\Program Files\DVD Shrink 2007-11-07 09:50 729,088 ----a-w C:\WINDOWS\system32\lsasrv.dll 2007-11-02 22:38 237,568 ----a-w C:\WINDOWS\system32\JkDefragScreenSaver.exe 2007-11-02 16:04 110,592 ----a-w C:\WINDOWS\system32\JkDefragScreenSaver.scr 2007-10-29 22:44 1,291,264 ----a-w C:\WINDOWS\system32\quartz.dll 2007-10-29 17:02 281,552 ----a-w C:\WINDOWS\system32\cfosspeed.dll 2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll 2007-10-22 02:37 17,928 ----a-w C:\WINDOWS\system32\X3DAudio1_2.dll . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries legit default entries are not shown REGEDIT4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “AVP”=“C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe” [2007-06-28 11:51 218376] “cFosSpeed”=“C:\Program Files\cFosSpeed\cFosSpeed.exe” [2007-10-29 18:02 850896] “Google Desktop Search”=“C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe” [2008-01-16 19:43 29744] “AAWTray”=“C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe” [2007-08-08 15:53 88024] “ATICCC”=“C:\Program Files\ATI Technologies\ATI.ACE\cli.exe” [2005-08-06 01:07 61440] “MSConfig”=“C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe” [2005-09-28 19:13 171520] [HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] “CTFMON.EXE”=“C:\WINDOWS\system32\CTFMON.EXE” [2004-08-03 23:44 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer] “NoLowDiscSpaceChecks”= 000000000000f03f [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] “NoSMConfigurePrograms”= 1 (0x1) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] “AppInit_DLLs”=C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Speed Launch.lnk] backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Synchronizer.lnk] backup=C:\WINDOWS\pss\Adobe Reader Synchronizer.lnkCommon Startup [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^ATI CATALYST System Tray.lnk] path=C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ATI CATALYST System Tray.lnk backup=C:\WINDOWS\pss\ATI CATALYST System Tray.lnkCommon Startup [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^BlueSoleil.lnk] backup=C:\WINDOWS\pss\BlueSoleil.lnkCommon Startup [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^HP Digital Imaging Monitor.lnk] backup=C:\WINDOWS\pss\HP Digital Imaging Monitor.lnkCommon Startup [HKLM~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^HP Image Zone - szybkie uruchamianie.lnk] backup=C:\WINDOWS\pss\HP Image Zone - szybkie uruchamianie.lnkCommon Startup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtiPTA] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoConnect] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray] --a------ 2008-01-04 20:58 258134 C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE] --a------ 2004-08-03 23:44 15360 C:\WINDOWS\system32\ctfmon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent] --a------ 2007-06-22 13:45 133576 C:\Program Files\DAEMON Tools Pro\DTProAgent.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager] --a------ 2004-05-12 14:18 241664 C:\Program Files\HP\hpcoretech\hpcmpmgr.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] --a------ 2004-02-12 12:38 49152 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] --a------ 2007-12-14 03:42 144784 C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent] --a------ 2007-12-20 16:16 37376 C:\Program Files\Winamp\winampa.exe R0 viasraid;viasraid;C:\WINDOWS\system32\drivers\viasraid.sys [2003-10-31 12:22] R2 BlueSoleilCS;BlueSoleilCS;C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2008-01-04 20:58] R3 BsHelpCS;BsHelpCS;C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2007-08-17 15:58] R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 13:58] R3 USBSTOR;Sterownik magazynu masowego USB;C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 22:08] S3 GoogleDesktopManager-010108-205858;Menedżer Google Desktop 5.7.801.1629;“C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe” [2008-01-16 19:43] S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-01-17 10:48] S3 usbscan;Sterownik skanera USB;C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 21:58] . Contents of the ‘Scheduled Tasks’ folder “2007-08-09 20:37:31 C:\WINDOWS\Tasks\WebReg 20070809223731.job” - C:\Program Files\HP\Digital Imaging\bin\hpqwrg.exeX/TaskName 20070809223731 /N . ************************************************************************** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-01-17 13:00:32 Windows 5.1.2600 Dodatek Service Pack 2 NTFS scanning hidden processes … scanning hidden autostart entries … scanning hidden files … scan completed successfully hidden files: 0 ************************************************************************** . Completion time: 2008-01-17 13:01:11 ComboFix-quarantined-files.txt 2008-01-17 12:00:58
sido1906
(Patryk91 Nh)
17 Styczeń 2008 13:41
#2
Może skorzystaj z jakiegoś narzędzia do optymalizacji systemu np.WinXP Manager.
Nie pomaga,ten, jak i kilka innych.
enigma79
(Enigma)
17 Styczeń 2008 14:16
#4
Heh, bardziej zoptymalizować autostaru nie mogę, mam chyba tylko 3aplikacje, KIS7, Cfosspeed i google desktop.