Dobrý den, prosím může mi někdo nějak pomoci s odstraněním viru, který se šíří přes fb? Přikládám tedy log z RSIT
Logfile of random's system information tool 1.09 (written by random/random)
Run by Dan at 2011-07-25 22:59:00
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 15 GB (30%) free of 50 GB
Total RAM: 895 MB (35% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:59:14, on 25.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\sysdriver32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\WINDOWS\services32.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\l1rezerv.exe
C:\WINDOWS\systemup.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\WINDOWS\System32\svchost.exe
C:\DOCUME~1\Dan\LOCALS~1\Temp\55169040.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Dan.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O3 - Toolbar: Nero Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [tray_ico0] C:\WINDOWS\update.tray-9-0\svchost.exe
O4 - HKLM\..\Run: [tray_ico1] C:\WINDOWS\update.tray-14-0\svchost.exe
O4 - HKLM\..\Run: [2015008.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "C:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "C:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [9929479.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe"
O4 - HKLM\..\Run: [3039631.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe"
O4 - HKLM\..\Run: [2819715.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe"
O4 - HKLM\..\Run: [4526448.exe] "C:\WINDOWS\TEMP\4526448.exe"
O4 - HKLM\..\Run: [2333489.exe] "C:\WINDOWS\TEMP\2333489.exe"
O4 - HKLM\..\Run: [l1rezerv.exe] "C:\WINDOWS\l1rezerv.exe"
O4 - HKLM\..\Run: [systemup] "C:\WINDOWS\systemup.exe" stand
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe (file missing)
O23 - Service: Microsoft Antimalware Service (MsMpSvc) - Unknown owner - C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (file missing)
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: srvbtcclient - Unknown owner - C:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - C:\WINDOWS\sysdriver32.exe
O23 - Service: wxpdrivers - Unknown owner - C:\WINDOWS\update.1\svchost.exe
--
End of file - 14515 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default
prefs.js - "browser.startup.homepage" - "http://google.atcomet.com/b/"
prefs.js - "extensions.enabledItems" - "fastYoutubeDownloader@yevgenyandrov.net:1.1, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}:6.0.18, jqs@sun.com:1.0, support@fbskinner.com:1.0, {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.19, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}"=C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\
"{B7082FAA-CB62-4872-9106-E42DD88EDE45}"=C:\Program Files\McAfee\SiteAdvisor
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18]
"Description"=Veetle TV Core
"Path"=C:\Program Files\Veetle\plugins\npVeetle.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18]
"Description"=Veetle TV Player
"Path"=C:\Program Files\Veetle\Player\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsIBitCometAgent.xpt
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeploytk.dll
npnul32.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default\extensions\
fastYoutubeDownloader@yevgenyandrov.net
staged-xpis
support@fbskinner.com
toolbar@ask.com
vshare@toolbar
{20a82645-c095-46ed-80e3-08825760534b}
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{043C5167-00BB-4324-AF7E-62013FAEDACF}]
vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll [2011-04-11 767280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-05 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-24 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{043C5167-00BB-4324-AF7E-62013FAEDACF} - vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=nwiz.exe /installquiet []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-07-08 86016]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-07-08 13762560]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-12-08 18789920]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2005-10-26 159744]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-02-19 49152]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-02-21 77824]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NokiaMusic FastStart"=C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe [2010-10-20 2192752]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-14 1094144]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-9-0\svchost.exe [2011-07-14 1094144]
"tray_ico1"=C:\WINDOWS\update.tray-14-0\svchost.exe [2011-07-14 1094144]
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"2015008.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe []
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-07-14 224768]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-07-14 224768]
"9929479.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe []
"3039631.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe []
"2819715.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe []
"4526448.exe"=C:\WINDOWS\TEMP\4526448.exe []
"2333489.exe"=C:\WINDOWS\TEMP\2333489.exe []
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-14 110592]
"systemup"=C:\WINDOWS\systemup.exe [2011-07-14 114176]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DWQueuedReporting"=C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe [2008-11-04 435096]
"Google Update"=C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-12-10 39408]
""= []
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-12-20 697856]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-17 3318784]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\Dan\Nabídka Start\Programy\Po spuštění
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"D:\BitComet\BitComet.exe"="D:\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
"D:\Starship Troopers\STGame.exe"="D:\Starship Troopers\STGame.exe:*:Enabled:Starship Troopers E1"
"D:\torrent\uTorrent.exe"="D:\torrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe"="C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe:*:Enabled:Zoo Tycoon 2 Executable"
"C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.tray-14-0\svchost.exe"="C:\WINDOWS\update.tray-14-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-14-0\svchost.exe"
"C:\WINDOWS\sysdriver32.exe"="C:\WINDOWS\sysdriver32.exe:*:Disabled:sysdriver32"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.ffds"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
======List of files/folders created in the last 1 month======
2011-07-25 22:59:00 ----D---- C:\rsit
2011-07-25 22:59:00 ----D---- C:\Program Files\trend micro
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\Dan\Data aplikací\Spyware Terminator
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-07-25 22:12:18 ----D---- C:\Program Files\Spyware Terminator
2011-07-25 22:12:05 ----D---- C:\Program Files\ESET
2011-07-19 12:19:25 ----D---- C:\Documents and Settings\Dan\Data aplikací\Malwarebytes
2011-07-19 12:19:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-19 11:08:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Soluto
2011-07-17 21:02:01 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2011-07-17 20:34:15 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-07-16 19:00:00 ----D---- C:\WINDOWS\rpcminer
2011-07-16 19:00:00 ----D---- C:\WINDOWS\phoenix
2011-07-16 18:23:20 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-16 18:22:19 ----HD---- C:\WINDOWS\update.5.0
2011-07-15 12:09:22 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-15 12:07:53 ----D---- C:\WINDOWS\update.2
2011-07-14 12:12:31 ----D---- C:\Program Files\Anti Trojan Elite
2011-07-14 11:53:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-14 10:54:38 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-14 10:54:22 ----A---- C:\WINDOWS\systemup.exe
2011-07-14 10:54:20 ----A---- C:\WINDOWS\l1rezerv.exe
2011-07-14 10:46:11 ----A---- C:\WINDOWS\iplist.txt
2011-07-14 10:40:55 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-07-14 10:40:41 ----A---- C:\WINDOWS\sysdriver32.exe
2011-07-14 10:40:12 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-14 10:40:05 ----D---- C:\WINDOWS\av_ico
2011-07-14 10:38:51 ----HD---- C:\WINDOWS\update.1
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-14 10:28:39 ----A---- C:\WINDOWS\services32.exe
2011-07-13 13:59:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 13:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files\McAfee
2011-06-29 16:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\InstallShield
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\Identities
2011-06-28 23:24:51 ----D---- C:\Program Files\MSXML 4.0
2011-06-28 23:24:51 ----D---- C:\Program Files\ComPlus Applications
2011-06-28 23:24:51 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-06-28 23:24:50 ----HD---- C:\Program Files\Uninstall Information
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Connection Wizard
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Config
2011-06-28 23:24:50 ----D---- C:\WINDOWS\addins
2011-06-28 23:24:50 ----D---- C:\Translator
2011-06-28 23:24:50 ----D---- C:\Translat
2011-06-28 23:24:50 ----D---- C:\Trans
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\DAEMON Tools Lite
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\wins
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\ShellExt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\Lang
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\export
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\dhcp
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\appmgmt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3com_dmi
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3076
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\2052
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1054
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1042
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1041
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1037
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1031
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1028
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1025
2011-06-28 23:24:49 ----D---- C:\WINDOWS\SxsCaPendDel
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Sun
2011-06-28 23:24:49 ----D---- C:\WINDOWS\mui
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Minidump
2011-06-28 23:24:49 ----D---- C:\WINDOWS\java
2011-06-28 23:24:47 ----D---- C:\Program Files\Common Files\ODBC
2011-06-28 23:23:51 ----D---- C:\Documents and Settings\Dan\Data aplikací\AskToolbar
2011-06-28 23:23:51 ----D---- C:\Config.Msi
2011-06-28 23:23:49 ----D---- C:\Documents and Settings\Dan\Data aplikací\uTorrent
2011-06-28 22:41:43 ----D---- C:\Documents and Settings\Dan\Data aplikací\Pmcc
2011-06-27 23:01:26 ----D---- C:\UDISK 2.0 (H)
======List of files/folders modified in the last 1 month======
2011-07-25 22:59:14 ----D---- C:\WINDOWS\Prefetch
2011-07-25 22:59:00 ----RD---- C:\Program Files
2011-07-25 22:16:20 ----D---- C:\WINDOWS\Temp
2011-07-25 22:13:03 ----D---- C:\WINDOWS\system32\config
2011-07-25 22:12:41 ----D---- C:\WINDOWS\system32\wbem
2011-07-25 22:12:40 ----D---- C:\WINDOWS\Registration
2011-07-25 22:12:15 ----D---- C:\WINDOWS\system32\drivers
2011-07-25 22:12:10 ----SHD---- C:\WINDOWS\Installer
2011-07-25 22:12:10 ----D---- C:\WINDOWS
2011-07-25 22:12:06 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-07-25 22:12:01 ----D---- C:\Program Files\Microsoft Security Client
2011-07-25 22:11:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-25 22:11:23 ----SD---- C:\WINDOWS\Tasks
2011-07-25 22:00:06 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-25 21:49:43 ----D---- C:\Program Files\Mozilla Firefox
2011-07-25 21:47:10 ----SHD---- C:\WINDOWS\CSC
2011-07-21 13:36:19 ----D---- C:\Documents and Settings\Dan\Data aplikací\ICQ
2011-07-19 12:41:38 ----HD---- C:\WINDOWS\inf
2011-07-19 12:27:08 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2011-07-19 11:28:17 ----RSD---- C:\WINDOWS\assembly
2011-07-19 11:16:35 ----D---- C:\WINDOWS\system32
2011-07-17 20:48:16 ----D---- C:\WINDOWS\network diagnostic
2011-07-17 20:22:01 ----SD---- C:\Documents and Settings\Dan\Data aplikací\Microsoft
2011-07-15 12:09:23 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-15 12:08:30 ----D---- C:\Program Files\Windows NT
2011-07-15 12:08:11 ----D---- C:\Program Files\Internet Explorer
2011-07-14 10:55:40 ----SHD---- C:\System Volume Information
2011-07-14 10:55:40 ----D---- C:\WINDOWS\system32\Restore
2011-07-14 10:53:01 ----A---- C:\boot.ini
2011-07-13 13:59:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-13 13:54:17 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 13:54:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-07-13 13:53:30 ----A---- C:\WINDOWS\imsins.BAK
2011-07-13 13:52:27 ----D---- C:\Documents and Settings\Dan\Data aplikací\BitComet
2011-07-13 12:04:02 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-09 20:41:28 ----D---- C:\FOTO
2011-07-09 20:36:31 ----D---- C:\Downloads
2011-06-30 19:47:35 ----D---- C:\WINDOWS\Microsoft.NET
2011-06-30 10:26:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-30 10:25:50 ----D---- C:\WINDOWS\WinSxS
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files
2011-06-28 23:25:09 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\Adobe
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\spool
2011-06-28 23:24:49 ----D---- C:\WINDOWS\msapps
2011-06-28 23:24:48 ----D---- C:\Documents and Settings\Dan\Data aplikací\Zoner
2011-06-28 23:20:12 ----D---- C:\Program Files\Google
2011-06-28 23:17:36 ----RD---- C:\Program Files\Skype
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\oobe
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\mui
2011-06-28 22:46:46 ----D---- C:\WINDOWS\SoftwareDistribution
2011-06-28 22:46:45 ----D---- C:\WINDOWS\pchealth
2011-06-28 22:46:44 ----D---- C:\WINDOWS\ime
2011-06-28 22:46:35 ----D---- C:\Program Files\Windows Media Player
2011-06-28 22:46:25 ----D---- C:\Program Files\DivX
2011-06-28 22:46:11 ----D---- C:\Documents and Settings\Dan\Data aplikací\Skype
2011-06-28 22:46:10 ----D---- C:\Documents and Settings\Dan\Data aplikací\Mozilla
2011-06-28 22:45:57 ----D---- C:\Documents and Settings\Dan\Data aplikací\DivX
2011-06-28 21:56:33 ----D---- C:\WINDOWS\system32\CatRoot
2011-06-26 11:25:17 ----RSD---- C:\WINDOWS\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2009-06-30 164896]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-12-24 436792]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 prodrv03;Star Force copy protection driver v3; C:\WINDOWS\System32\drivers\prodrv03.sys [2010-12-26 115968]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-12-08 6017568]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-08 7967712]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2009-07-01 66688]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2009-07-01 13824]
S1 MpKsl00c87967;MpKsl00c87967; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys []
S1 MpKsl01394755;MpKsl01394755; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys []
S1 MpKsl068f5470;MpKsl068f5470; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys []
S1 MpKsl07b53ac8;MpKsl07b53ac8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys []
S1 MpKsl0a9552c7;MpKsl0a9552c7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys []
S1 MpKsl0eb701f2;MpKsl0eb701f2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys []
S1 MpKsl116537d8;MpKsl116537d8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys []
S1 MpKsl12e13dc4;MpKsl12e13dc4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys []
S1 MpKsl1c385edb;MpKsl1c385edb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys []
S1 MpKsl1d5ac9ee;MpKsl1d5ac9ee; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys []
S1 MpKsl2820e8ae;MpKsl2820e8ae; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys []
S1 MpKsl2ee83ac0;MpKsl2ee83ac0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys []
S1 MpKsl3851075d;MpKsl3851075d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys []
S1 MpKsl3f453cd6;MpKsl3f453cd6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys []
S1 MpKsl3f929d5a;MpKsl3f929d5a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys []
S1 MpKsl471e77c9;MpKsl471e77c9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys []
S1 MpKsl4a2d2ace;MpKsl4a2d2ace; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys []
S1 MpKsl6423dcf9;MpKsl6423dcf9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys []
S1 MpKsl683237ec;MpKsl683237ec; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys []
S1 MpKsl6953a58b;MpKsl6953a58b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys []
S1 MpKsl6cb3c2f9;MpKsl6cb3c2f9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys []
S1 MpKsl73affc1f;MpKsl73affc1f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys []
S1 MpKsl76212d33;MpKsl76212d33; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys []
S1 MpKsl7afcbe0e;MpKsl7afcbe0e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys []
S1 MpKsl7dd390b0;MpKsl7dd390b0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys []
S1 MpKsl872afb16;MpKsl872afb16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys []
S1 MpKsla3217c44;MpKsla3217c44; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys []
S1 MpKslacb2bac6;MpKslacb2bac6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys []
S1 MpKslb2f33c83;MpKslb2f33c83; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys []
S1 MpKslbfb06b36;MpKslbfb06b36; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys []
S1 MpKslc2c3db1a;MpKslc2c3db1a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys []
S1 MpKslc8e224fa;MpKslc8e224fa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys []
S1 MpKslcddcbeb3;MpKslcddcbeb3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys []
S1 MpKsld1681259;MpKsld1681259; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys []
S1 MpKsle4e22c80;MpKsle4e22c80; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys []
S1 MpKslf1494c16;MpKslf1494c16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys []
S1 MpKslf2337827;MpKslf2337827; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2009-08-26 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2009-08-26 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2009-08-26 21568]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2005-06-03 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2005-06-03 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2005-06-03 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2005-06-03 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2005-06-03 79488]
S3 LLRING0;LLRING0; \??\C:\Documents and Settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-24 153376]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-07-08 168004]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-07-17 496128]
R2 srvsysdriver32;srvsysdriver32; C:\WINDOWS\sysdriver32.exe [2011-07-14 224768]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe []
S2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe []
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2007-08-09 73728]
S2 srvbtcclient;srvbtcclient; C:\WINDOWS\update.5.0\svchost.exe [2011-07-17 340480]
S2 wxpdrivers;wxpdrivers; C:\WINDOWS\update.1\svchost.exe [2011-07-14 1094144]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-10 182768]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím pomozte s odstraněním viru, který se šíří po FB.
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
Omlouvám se, že to tak trvalo mám teď vše strašně zpomalené. Přikládám log
Malwarebytes' Anti-Malware
www.malwarebytes.org
Verze databáze:
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
26.7.2011 0:38:39
mbam-log-2011-07-26 (00-38-27).txt
Typ: Úplná kontrola (C:\|D:\|)
Kontrolované objekty: 290273
Uplynulý čas: 38 minut, 45 sekund
Infikované procesy v paměti: 3
Infikované moduly v paměti: 0
Infikované klíče v registru: 6
Infikované hodnoty v registru: 7
Infikované datové položky v registru: 3
Infikované složky: 0
Infikované soubory: 13
Infikované procesy v paměti:
c:\WINDOWS\sysdriver32.exe (Trojan.Agent) -> 1612 -> No action taken.
c:\WINDOWS\l1rezerv.exe (Backdoor.Delf) -> 684 -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> 984 -> No action taken.
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvsysdriver32 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtcclient (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SRVSYSDRIVER32 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WXPDRIVERS (Trojan.Agent) -> No action taken.
Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32.exe (Trojan.Agent) -> Value: sysdriver32.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\l1rezerv.exe (Backdoor.Delf) -> Value: l1rezerv.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\systemup (Trojan.Agent) -> Value: systemup -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico0 (Trojan.Agent) -> Value: tray_ico0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico1 (Trojan.Agent) -> Value: tray_ico1 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32_.exe (Trojan.Agent) -> Value: sysdriver32_.exe -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpDrivers\ImagePath (Trojan.Agent) -> Value: ImagePath -> No action taken.
Infikované datové položky v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
c:\WINDOWS\sysdriver32.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\l1rezerv.exe (Backdoor.Delf) -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP522\A0152169.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP522\A0152174.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165409.exe (Backdoor.Delf) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165410.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165411.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\update.tray-9-0\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.tray-14-0\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\sysdriver32_.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> No action taken.
Malwarebytes' Anti-Malware
www.malwarebytes.org
Verze databáze:
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
26.7.2011 0:38:39
mbam-log-2011-07-26 (00-38-27).txt
Typ: Úplná kontrola (C:\|D:\|)
Kontrolované objekty: 290273
Uplynulý čas: 38 minut, 45 sekund
Infikované procesy v paměti: 3
Infikované moduly v paměti: 0
Infikované klíče v registru: 6
Infikované hodnoty v registru: 7
Infikované datové položky v registru: 3
Infikované složky: 0
Infikované soubory: 13
Infikované procesy v paměti:
c:\WINDOWS\sysdriver32.exe (Trojan.Agent) -> 1612 -> No action taken.
c:\WINDOWS\l1rezerv.exe (Backdoor.Delf) -> 684 -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> 984 -> No action taken.
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvsysdriver32 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtcclient (Trojan.Downloader) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SRVSYSDRIVER32 (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WXPDRIVERS (Trojan.Agent) -> No action taken.
Infikované hodnoty v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32.exe (Trojan.Agent) -> Value: sysdriver32.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\l1rezerv.exe (Backdoor.Delf) -> Value: l1rezerv.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\systemup (Trojan.Agent) -> Value: systemup -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico0 (Trojan.Agent) -> Value: tray_ico0 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tray_ico1 (Trojan.Agent) -> Value: tray_ico1 -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysdriver32_.exe (Trojan.Agent) -> Value: sysdriver32_.exe -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wxpDrivers\ImagePath (Trojan.Agent) -> Value: ImagePath -> No action taken.
Infikované datové položky v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
c:\WINDOWS\sysdriver32.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\l1rezerv.exe (Backdoor.Delf) -> No action taken.
c:\WINDOWS\systemup.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP522\A0152169.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP522\A0152174.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165409.exe (Backdoor.Delf) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165410.exe (Trojan.Agent) -> No action taken.
c:\system volume information\_restore{051441fe-e1d5-41dd-8062-ab705a17384f}\RP526\A0165411.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.5.0\svchost.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\update.tray-9-0\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.tray-14-0\svchost.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\sysdriver32_.exe (Trojan.Agent) -> No action taken.
c:\WINDOWS\update.1\svchost.exe (Trojan.Agent) -> No action taken.
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
Vše, co MBAM nalezl, smažte a dejte nový log z RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
Tak tady to je
Logfile of random's system information tool 1.09 (written by random/random)
Run by Dan at 2011-07-26 12:12:59
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 14 GB (27%) free of 50 GB
Total RAM: 895 MB (35% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:13:05, on 26.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\WINDOWS\services32.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Plocha\Ondra\RSIT.exe
C:\Program Files\trend micro\Dan.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O3 - Toolbar: Nero Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [2015008.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe"
O4 - HKLM\..\Run: [9929479.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe"
O4 - HKLM\..\Run: [3039631.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe"
O4 - HKLM\..\Run: [2819715.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe"
O4 - HKLM\..\Run: [4526448.exe] "C:\WINDOWS\TEMP\4526448.exe"
O4 - HKLM\..\Run: [2333489.exe] "C:\WINDOWS\TEMP\2333489.exe"
O4 - HKLM\..\Run: [96540754-loader2.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\96540754-loader2.exe"
O4 - HKLM\..\Run: [1265715.exe] "C:\WINDOWS\TEMP\1265715.exe"
O4 - HKLM\..\Run: [8774447.exe] "C:\WINDOWS\TEMP\8774447.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe (file missing)
O23 - Service: Microsoft Antimalware Service (MsMpSvc) - Unknown owner - C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (file missing)
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 13905 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default
prefs.js - "browser.startup.homepage" - "http://google.atcomet.com/b/"
prefs.js - "extensions.enabledItems" - "fastYoutubeDownloader@yevgenyandrov.net:1.1, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}:6.0.18, jqs@sun.com:1.0, support@fbskinner.com:1.0, {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.19, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}"=C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\
"{B7082FAA-CB62-4872-9106-E42DD88EDE45}"=C:\Program Files\McAfee\SiteAdvisor
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18]
"Description"=Veetle TV Core
"Path"=C:\Program Files\Veetle\plugins\npVeetle.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18]
"Description"=Veetle TV Player
"Path"=C:\Program Files\Veetle\Player\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsIBitCometAgent.xpt
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeploytk.dll
npnul32.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default\extensions\
fastYoutubeDownloader@yevgenyandrov.net
staged-xpis
support@fbskinner.com
toolbar@ask.com
vshare@toolbar
{20a82645-c095-46ed-80e3-08825760534b}
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{043C5167-00BB-4324-AF7E-62013FAEDACF}]
vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll [2011-04-11 767280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-05 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-24 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{043C5167-00BB-4324-AF7E-62013FAEDACF} - vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=nwiz.exe /installquiet []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-07-08 86016]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-07-08 13762560]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-12-08 18789920]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2005-10-26 159744]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-02-19 49152]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-02-21 77824]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NokiaMusic FastStart"=C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe [2010-10-20 2192752]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-14 1094144]
"tray_ico"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"2015008.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe []
"9929479.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe []
"3039631.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe []
"2819715.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe []
"4526448.exe"=C:\WINDOWS\TEMP\4526448.exe []
"2333489.exe"=C:\WINDOWS\TEMP\2333489.exe []
"96540754-loader2.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\96540754-loader2.exe [2011-07-26 256000]
"1265715.exe"=C:\WINDOWS\TEMP\1265715.exe [2011-07-26 256000]
"8774447.exe"=C:\WINDOWS\TEMP\8774447.exe [2011-07-26 495616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DWQueuedReporting"=C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe [2008-11-04 435096]
"Google Update"=C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-12-10 39408]
""= []
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-12-20 697856]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-17 3318784]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\Dan\Nabídka Start\Programy\Po spuštění
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"D:\BitComet\BitComet.exe"="D:\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
"D:\Starship Troopers\STGame.exe"="D:\Starship Troopers\STGame.exe:*:Enabled:Starship Troopers E1"
"D:\torrent\uTorrent.exe"="D:\torrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe"="C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe:*:Enabled:Zoo Tycoon 2 Executable"
"C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.tray-14-0\svchost.exe"="C:\WINDOWS\update.tray-14-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-14-0\svchost.exe"
"C:\WINDOWS\sysdriver32.exe"="C:\WINDOWS\sysdriver32.exe:*:Disabled:sysdriver32"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.ffds"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
======List of files/folders created in the last 1 month======
2011-07-26 01:16:54 ----D---- C:\WINDOWS\ufa
2011-07-26 01:16:53 ----A---- C:\WINDOWS\unrar.exe
2011-07-25 23:57:28 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-07-25 23:57:24 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-07-25 23:57:24 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-07-25 22:59:00 ----D---- C:\rsit
2011-07-25 22:59:00 ----D---- C:\Program Files\trend micro
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\Dan\Data aplikací\Spyware Terminator
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-07-25 22:12:18 ----D---- C:\Program Files\Spyware Terminator
2011-07-25 22:12:05 ----D---- C:\Program Files\ESET
2011-07-19 12:19:25 ----D---- C:\Documents and Settings\Dan\Data aplikací\Malwarebytes
2011-07-19 12:19:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-19 11:08:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Soluto
2011-07-17 21:02:01 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2011-07-17 20:34:15 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-07-16 19:00:00 ----D---- C:\WINDOWS\rpcminer
2011-07-16 19:00:00 ----D---- C:\WINDOWS\phoenix
2011-07-16 18:23:20 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-16 18:22:19 ----HD---- C:\WINDOWS\update.5.0
2011-07-15 12:09:22 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-15 12:07:53 ----HD---- C:\WINDOWS\update.2
2011-07-14 12:12:31 ----D---- C:\Program Files\Anti Trojan Elite
2011-07-14 11:53:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-14 10:54:38 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-14 10:46:11 ----A---- C:\WINDOWS\iplist.txt
2011-07-14 10:40:12 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-14 10:40:05 ----D---- C:\WINDOWS\av_ico
2011-07-14 10:38:51 ----HD---- C:\WINDOWS\update.1
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-14 10:28:39 ----A---- C:\WINDOWS\services32.exe
2011-07-13 13:59:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 13:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files\McAfee
2011-06-29 16:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\InstallShield
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\Identities
2011-06-28 23:24:51 ----D---- C:\Program Files\MSXML 4.0
2011-06-28 23:24:51 ----D---- C:\Program Files\ComPlus Applications
2011-06-28 23:24:51 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-06-28 23:24:50 ----HD---- C:\Program Files\Uninstall Information
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Connection Wizard
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Config
2011-06-28 23:24:50 ----D---- C:\WINDOWS\addins
2011-06-28 23:24:50 ----D---- C:\Translator
2011-06-28 23:24:50 ----D---- C:\Translat
2011-06-28 23:24:50 ----D---- C:\Trans
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\DAEMON Tools Lite
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\wins
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\ShellExt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\Lang
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\export
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\dhcp
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\appmgmt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3com_dmi
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3076
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\2052
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1054
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1042
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1041
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1037
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1031
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1028
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1025
2011-06-28 23:24:49 ----D---- C:\WINDOWS\SxsCaPendDel
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Sun
2011-06-28 23:24:49 ----D---- C:\WINDOWS\mui
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Minidump
2011-06-28 23:24:49 ----D---- C:\WINDOWS\java
2011-06-28 23:24:47 ----D---- C:\Program Files\Common Files\ODBC
2011-06-28 23:23:51 ----D---- C:\Documents and Settings\Dan\Data aplikací\AskToolbar
2011-06-28 23:23:51 ----D---- C:\Config.Msi
2011-06-28 23:23:49 ----D---- C:\Documents and Settings\Dan\Data aplikací\uTorrent
2011-06-28 22:41:43 ----D---- C:\Documents and Settings\Dan\Data aplikací\Pmcc
2011-06-27 23:01:26 ----D---- C:\UDISK 2.0 (H)
======List of files/folders modified in the last 1 month======
2011-07-26 12:11:20 ----D---- C:\WINDOWS\Temp
2011-07-26 12:09:15 ----D---- C:\WINDOWS\system32\drivers
2011-07-26 12:08:51 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-26 12:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-07-26 12:08:03 ----D---- C:\WINDOWS
2011-07-26 08:43:40 ----D---- C:\FOTO
2011-07-25 23:57:24 ----RD---- C:\Program Files
2011-07-25 23:41:02 ----D---- C:\Documents and Settings\Dan\Data aplikací\ICQ
2011-07-25 22:59:14 ----D---- C:\WINDOWS\Prefetch
2011-07-25 22:13:03 ----D---- C:\WINDOWS\system32\config
2011-07-25 22:12:41 ----D---- C:\WINDOWS\system32\wbem
2011-07-25 22:12:40 ----D---- C:\WINDOWS\Registration
2011-07-25 22:12:10 ----SHD---- C:\WINDOWS\Installer
2011-07-25 22:12:06 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-07-25 22:12:01 ----D---- C:\Program Files\Microsoft Security Client
2011-07-25 22:11:23 ----SD---- C:\WINDOWS\Tasks
2011-07-25 22:00:06 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-25 21:49:43 ----D---- C:\Program Files\Mozilla Firefox
2011-07-25 21:47:10 ----SHD---- C:\WINDOWS\CSC
2011-07-19 12:41:38 ----HD---- C:\WINDOWS\inf
2011-07-19 12:27:08 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2011-07-19 11:28:17 ----RSD---- C:\WINDOWS\assembly
2011-07-19 11:16:35 ----D---- C:\WINDOWS\system32
2011-07-17 20:48:16 ----D---- C:\WINDOWS\network diagnostic
2011-07-17 20:22:01 ----SD---- C:\Documents and Settings\Dan\Data aplikací\Microsoft
2011-07-15 12:09:23 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-15 12:08:30 ----D---- C:\Program Files\Windows NT
2011-07-15 12:08:11 ----D---- C:\Program Files\Internet Explorer
2011-07-14 10:55:40 ----SHD---- C:\System Volume Information
2011-07-14 10:55:40 ----D---- C:\WINDOWS\system32\Restore
2011-07-14 10:53:01 ----A---- C:\boot.ini
2011-07-13 13:59:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-13 13:54:17 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 13:54:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-07-13 13:53:30 ----A---- C:\WINDOWS\imsins.BAK
2011-07-13 13:52:27 ----D---- C:\Documents and Settings\Dan\Data aplikací\BitComet
2011-07-13 12:04:02 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-09 20:36:31 ----D---- C:\Downloads
2011-06-30 19:47:35 ----D---- C:\WINDOWS\Microsoft.NET
2011-06-30 10:26:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-30 10:25:50 ----D---- C:\WINDOWS\WinSxS
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files
2011-06-28 23:25:09 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\Adobe
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\spool
2011-06-28 23:24:49 ----D---- C:\WINDOWS\msapps
2011-06-28 23:24:48 ----D---- C:\Documents and Settings\Dan\Data aplikací\Zoner
2011-06-28 23:20:12 ----D---- C:\Program Files\Google
2011-06-28 23:17:36 ----RD---- C:\Program Files\Skype
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\oobe
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\mui
2011-06-28 22:46:46 ----D---- C:\WINDOWS\SoftwareDistribution
2011-06-28 22:46:45 ----D---- C:\WINDOWS\pchealth
2011-06-28 22:46:44 ----D---- C:\WINDOWS\ime
2011-06-28 22:46:35 ----D---- C:\Program Files\Windows Media Player
2011-06-28 22:46:25 ----D---- C:\Program Files\DivX
2011-06-28 22:46:11 ----D---- C:\Documents and Settings\Dan\Data aplikací\Skype
2011-06-28 22:46:10 ----D---- C:\Documents and Settings\Dan\Data aplikací\Mozilla
2011-06-28 22:45:57 ----D---- C:\Documents and Settings\Dan\Data aplikací\DivX
2011-06-28 21:56:33 ----D---- C:\WINDOWS\system32\CatRoot
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2009-06-30 164896]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-12-24 436792]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 prodrv03;Star Force copy protection driver v3; C:\WINDOWS\System32\drivers\prodrv03.sys [2010-12-26 115968]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-12-08 6017568]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-08 7967712]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2009-07-01 66688]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2009-07-01 13824]
S1 MpKsl00c87967;MpKsl00c87967; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys []
S1 MpKsl01394755;MpKsl01394755; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys []
S1 MpKsl068f5470;MpKsl068f5470; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys []
S1 MpKsl07b53ac8;MpKsl07b53ac8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys []
S1 MpKsl0a9552c7;MpKsl0a9552c7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys []
S1 MpKsl0eb701f2;MpKsl0eb701f2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys []
S1 MpKsl116537d8;MpKsl116537d8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys []
S1 MpKsl12e13dc4;MpKsl12e13dc4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys []
S1 MpKsl1c385edb;MpKsl1c385edb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys []
S1 MpKsl1d5ac9ee;MpKsl1d5ac9ee; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys []
S1 MpKsl2820e8ae;MpKsl2820e8ae; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys []
S1 MpKsl2ee83ac0;MpKsl2ee83ac0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys []
S1 MpKsl3851075d;MpKsl3851075d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys []
S1 MpKsl3f453cd6;MpKsl3f453cd6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys []
S1 MpKsl3f929d5a;MpKsl3f929d5a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys []
S1 MpKsl471e77c9;MpKsl471e77c9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys []
S1 MpKsl4a2d2ace;MpKsl4a2d2ace; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys []
S1 MpKsl6423dcf9;MpKsl6423dcf9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys []
S1 MpKsl683237ec;MpKsl683237ec; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys []
S1 MpKsl6953a58b;MpKsl6953a58b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys []
S1 MpKsl6cb3c2f9;MpKsl6cb3c2f9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys []
S1 MpKsl73affc1f;MpKsl73affc1f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys []
S1 MpKsl76212d33;MpKsl76212d33; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys []
S1 MpKsl7afcbe0e;MpKsl7afcbe0e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys []
S1 MpKsl7dd390b0;MpKsl7dd390b0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys []
S1 MpKsl872afb16;MpKsl872afb16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys []
S1 MpKsla3217c44;MpKsla3217c44; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys []
S1 MpKslacb2bac6;MpKslacb2bac6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys []
S1 MpKslb2f33c83;MpKslb2f33c83; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys []
S1 MpKslbfb06b36;MpKslbfb06b36; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys []
S1 MpKslc2c3db1a;MpKslc2c3db1a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys []
S1 MpKslc8e224fa;MpKslc8e224fa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys []
S1 MpKslcddcbeb3;MpKslcddcbeb3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys []
S1 MpKsld1681259;MpKsld1681259; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys []
S1 MpKsle4e22c80;MpKsle4e22c80; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys []
S1 MpKslf1494c16;MpKslf1494c16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys []
S1 MpKslf2337827;MpKslf2337827; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2009-08-26 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2009-08-26 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2009-08-26 21568]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2005-06-03 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2005-06-03 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2005-06-03 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2005-06-03 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2005-06-03 79488]
S3 LLRING0;LLRING0; \??\C:\Documents and Settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-24 153376]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-07-08 168004]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-07-17 496128]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe []
S2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe []
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2007-08-09 73728]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-10 182768]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Dan at 2011-07-26 12:12:59
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 14 GB (27%) free of 50 GB
Total RAM: 895 MB (35% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:13:05, on 26.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\WINDOWS\services32.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Dan\Plocha\Ondra\RSIT.exe
C:\Program Files\trend micro\Dan.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll
O3 - Toolbar: Nero Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [NokiaMusic FastStart] "C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe" /command:faststart
O4 - HKLM\..\Run: [wxpdrv] C:\WINDOWS\services32.exe
O4 - HKLM\..\Run: [2015008.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe"
O4 - HKLM\..\Run: [9929479.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe"
O4 - HKLM\..\Run: [3039631.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe"
O4 - HKLM\..\Run: [2819715.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe"
O4 - HKLM\..\Run: [4526448.exe] "C:\WINDOWS\TEMP\4526448.exe"
O4 - HKLM\..\Run: [2333489.exe] "C:\WINDOWS\TEMP\2333489.exe"
O4 - HKLM\..\Run: [96540754-loader2.exe] "C:\DOCUME~1\Dan\LOCALS~1\Temp\96540754-loader2.exe"
O4 - HKLM\..\Run: [1265715.exe] "C:\WINDOWS\TEMP\1265715.exe"
O4 - HKLM\..\Run: [8774447.exe] "C:\WINDOWS\TEMP\8774447.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://D:\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\icq\ICQ7.0\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\mcieplg.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe (file missing)
O23 - Service: Microsoft Antimalware Service (MsMpSvc) - Unknown owner - C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (file missing)
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 13905 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-299502267-1788223648-725345543-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default
prefs.js - "browser.startup.homepage" - "http://google.atcomet.com/b/"
prefs.js - "extensions.enabledItems" - "fastYoutubeDownloader@yevgenyandrov.net:1.1, {20a82645-c095-46ed-80e3-08825760534b}:1.1, {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}:6.0.18, jqs@sun.com:1.0, support@fbskinner.com:1.0, {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.19, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}"=C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\
"{B7082FAA-CB62-4872-9106-E42DD88EDE45}"=C:\Program Files\McAfee\SiteAdvisor
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18]
"Description"=Veetle TV Core
"Path"=C:\Program Files\Veetle\plugins\npVeetle.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18]
"Description"=Veetle TV Player
"Path"=C:\Program Files\Veetle\Player\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsIBitCometAgent.xpt
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
npdeploytk.dll
npnul32.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default\extensions\
fastYoutubeDownloader@yevgenyandrov.net
staged-xpis
support@fbskinner.com
toolbar@ask.com
vshare@toolbar
{20a82645-c095-46ed-80e3-08825760534b}
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{043C5167-00BB-4324-AF7E-62013FAEDACF}]
vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - D:\BitComet\tools\BitCometBHO_1.5.4.11.dll [2011-04-11 767280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-05 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-24 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{043C5167-00BB-4324-AF7E-62013FAEDACF} - vShare Plugin - C:\Program Files\vShare\vshare_toolbar.dll [2010-10-20 481872]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Nero Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-10-11 1244040]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-05 298160]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\progra~1\mcafee\sitead~1\mcieplg.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=nwiz.exe /installquiet []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-07-08 86016]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-07-08 13762560]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-12-08 18789920]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2005-10-26 159744]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-02-19 49152]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-02-21 77824]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"NokiaMusic FastStart"=C:\Program Files\Nokia\Ovi Player\NokiaOviPlayer.exe [2010-10-20 2192752]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-14 1094144]
"tray_ico"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"2015008.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2015008.exe []
"9929479.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\9929479.exe []
"3039631.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\3039631.exe []
"2819715.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\2819715.exe []
"4526448.exe"=C:\WINDOWS\TEMP\4526448.exe []
"2333489.exe"=C:\WINDOWS\TEMP\2333489.exe []
"96540754-loader2.exe"=C:\DOCUME~1\Dan\LOCALS~1\Temp\96540754-loader2.exe [2011-07-26 256000]
"1265715.exe"=C:\WINDOWS\TEMP\1265715.exe [2011-07-26 256000]
"8774447.exe"=C:\WINDOWS\TEMP\8774447.exe [2011-07-26 495616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DWQueuedReporting"=C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe [2008-11-04 435096]
"Google Update"=C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-12-10 39408]
""= []
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-12-20 697856]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency\SpyEmergency.exe []
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-17 3318784]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\Dan\Nabídka Start\Programy\Po spuštění
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"D:\BitComet\BitComet.exe"="D:\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
"D:\Starship Troopers\STGame.exe"="D:\Starship Troopers\STGame.exe:*:Enabled:Starship Troopers E1"
"D:\torrent\uTorrent.exe"="D:\torrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Dan\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe"="C:\Program Files\Microsoft Games\Zoo Tycoon 2\zt.exe:*:Enabled:Zoo Tycoon 2 Executable"
"C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"="C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\Dan\Dokumenty\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-9-0\svchost.exe"="C:\WINDOWS\update.tray-9-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-9-0\svchost.exe"
"C:\WINDOWS\update.tray-14-0\svchost.exe"="C:\WINDOWS\update.tray-14-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-14-0\svchost.exe"
"C:\WINDOWS\sysdriver32.exe"="C:\WINDOWS\sysdriver32.exe:*:Disabled:sysdriver32"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\icq\ICQ7.0\ICQ.exe"="D:\icq\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"D:\icq\ICQ7.0\aolload.exe"="D:\icq\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.ffds"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
======List of files/folders created in the last 1 month======
2011-07-26 01:16:54 ----D---- C:\WINDOWS\ufa
2011-07-26 01:16:53 ----A---- C:\WINDOWS\unrar.exe
2011-07-25 23:57:28 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-07-25 23:57:24 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-07-25 23:57:24 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-07-25 22:59:00 ----D---- C:\rsit
2011-07-25 22:59:00 ----D---- C:\Program Files\trend micro
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\Dan\Data aplikací\Spyware Terminator
2011-07-25 22:12:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-07-25 22:12:18 ----D---- C:\Program Files\Spyware Terminator
2011-07-25 22:12:05 ----D---- C:\Program Files\ESET
2011-07-19 12:19:25 ----D---- C:\Documents and Settings\Dan\Data aplikací\Malwarebytes
2011-07-19 12:19:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-19 11:08:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Soluto
2011-07-17 21:02:01 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2011-07-17 20:34:15 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-07-16 19:00:00 ----D---- C:\WINDOWS\rpcminer
2011-07-16 19:00:00 ----D---- C:\WINDOWS\phoenix
2011-07-16 18:23:20 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-16 18:22:19 ----HD---- C:\WINDOWS\update.5.0
2011-07-15 12:09:22 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-15 12:07:53 ----HD---- C:\WINDOWS\update.2
2011-07-14 12:12:31 ----D---- C:\Program Files\Anti Trojan Elite
2011-07-14 11:53:23 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-14 10:54:38 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-14 10:46:11 ----A---- C:\WINDOWS\iplist.txt
2011-07-14 10:40:12 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-14 10:40:05 ----D---- C:\WINDOWS\av_ico
2011-07-14 10:38:51 ----HD---- C:\WINDOWS\update.1
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-9-0
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0-lnk
2011-07-14 10:38:34 ----HD---- C:\WINDOWS\update.tray-14-0
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-14 10:28:47 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-14 10:28:39 ----A---- C:\WINDOWS\services32.exe
2011-07-13 13:59:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 13:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files\McAfee
2011-06-29 16:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\InstallShield
2011-06-28 23:25:08 ----D---- C:\Documents and Settings\Dan\Data aplikací\Identities
2011-06-28 23:24:51 ----D---- C:\Program Files\MSXML 4.0
2011-06-28 23:24:51 ----D---- C:\Program Files\ComPlus Applications
2011-06-28 23:24:51 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-06-28 23:24:50 ----HD---- C:\Program Files\Uninstall Information
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Connection Wizard
2011-06-28 23:24:50 ----D---- C:\WINDOWS\Config
2011-06-28 23:24:50 ----D---- C:\WINDOWS\addins
2011-06-28 23:24:50 ----D---- C:\Translator
2011-06-28 23:24:50 ----D---- C:\Translat
2011-06-28 23:24:50 ----D---- C:\Trans
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\DAEMON Tools Lite
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\wins
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\ShellExt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\Lang
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\export
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\dhcp
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\appmgmt
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3com_dmi
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\3076
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\2052
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1054
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1042
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1041
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1037
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1031
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1028
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\1025
2011-06-28 23:24:49 ----D---- C:\WINDOWS\SxsCaPendDel
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Sun
2011-06-28 23:24:49 ----D---- C:\WINDOWS\mui
2011-06-28 23:24:49 ----D---- C:\WINDOWS\Minidump
2011-06-28 23:24:49 ----D---- C:\WINDOWS\java
2011-06-28 23:24:47 ----D---- C:\Program Files\Common Files\ODBC
2011-06-28 23:23:51 ----D---- C:\Documents and Settings\Dan\Data aplikací\AskToolbar
2011-06-28 23:23:51 ----D---- C:\Config.Msi
2011-06-28 23:23:49 ----D---- C:\Documents and Settings\Dan\Data aplikací\uTorrent
2011-06-28 22:41:43 ----D---- C:\Documents and Settings\Dan\Data aplikací\Pmcc
2011-06-27 23:01:26 ----D---- C:\UDISK 2.0 (H)
======List of files/folders modified in the last 1 month======
2011-07-26 12:11:20 ----D---- C:\WINDOWS\Temp
2011-07-26 12:09:15 ----D---- C:\WINDOWS\system32\drivers
2011-07-26 12:08:51 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-26 12:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-07-26 12:08:03 ----D---- C:\WINDOWS
2011-07-26 08:43:40 ----D---- C:\FOTO
2011-07-25 23:57:24 ----RD---- C:\Program Files
2011-07-25 23:41:02 ----D---- C:\Documents and Settings\Dan\Data aplikací\ICQ
2011-07-25 22:59:14 ----D---- C:\WINDOWS\Prefetch
2011-07-25 22:13:03 ----D---- C:\WINDOWS\system32\config
2011-07-25 22:12:41 ----D---- C:\WINDOWS\system32\wbem
2011-07-25 22:12:40 ----D---- C:\WINDOWS\Registration
2011-07-25 22:12:10 ----SHD---- C:\WINDOWS\Installer
2011-07-25 22:12:06 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-07-25 22:12:01 ----D---- C:\Program Files\Microsoft Security Client
2011-07-25 22:11:23 ----SD---- C:\WINDOWS\Tasks
2011-07-25 22:00:06 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-25 21:49:43 ----D---- C:\Program Files\Mozilla Firefox
2011-07-25 21:47:10 ----SHD---- C:\WINDOWS\CSC
2011-07-19 12:41:38 ----HD---- C:\WINDOWS\inf
2011-07-19 12:27:08 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2011-07-19 11:28:17 ----RSD---- C:\WINDOWS\assembly
2011-07-19 11:16:35 ----D---- C:\WINDOWS\system32
2011-07-17 20:48:16 ----D---- C:\WINDOWS\network diagnostic
2011-07-17 20:22:01 ----SD---- C:\Documents and Settings\Dan\Data aplikací\Microsoft
2011-07-15 12:09:23 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-15 12:08:30 ----D---- C:\Program Files\Windows NT
2011-07-15 12:08:11 ----D---- C:\Program Files\Internet Explorer
2011-07-14 10:55:40 ----SHD---- C:\System Volume Information
2011-07-14 10:55:40 ----D---- C:\WINDOWS\system32\Restore
2011-07-14 10:53:01 ----A---- C:\boot.ini
2011-07-13 13:59:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-13 13:54:17 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 13:54:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-07-13 13:53:30 ----A---- C:\WINDOWS\imsins.BAK
2011-07-13 13:52:27 ----D---- C:\Documents and Settings\Dan\Data aplikací\BitComet
2011-07-13 12:04:02 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-09 20:36:31 ----D---- C:\Downloads
2011-06-30 19:47:35 ----D---- C:\WINDOWS\Microsoft.NET
2011-06-30 10:26:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-30 10:25:50 ----D---- C:\WINDOWS\WinSxS
2011-06-29 20:55:38 ----D---- C:\Program Files\Common Files
2011-06-28 23:25:09 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-06-28 23:25:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2011-06-28 23:24:50 ----D---- C:\Documents and Settings\Dan\Data aplikací\Adobe
2011-06-28 23:24:49 ----D---- C:\WINDOWS\system32\spool
2011-06-28 23:24:49 ----D---- C:\WINDOWS\msapps
2011-06-28 23:24:48 ----D---- C:\Documents and Settings\Dan\Data aplikací\Zoner
2011-06-28 23:20:12 ----D---- C:\Program Files\Google
2011-06-28 23:17:36 ----RD---- C:\Program Files\Skype
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\oobe
2011-06-28 22:46:49 ----D---- C:\WINDOWS\system32\mui
2011-06-28 22:46:46 ----D---- C:\WINDOWS\SoftwareDistribution
2011-06-28 22:46:45 ----D---- C:\WINDOWS\pchealth
2011-06-28 22:46:44 ----D---- C:\WINDOWS\ime
2011-06-28 22:46:35 ----D---- C:\Program Files\Windows Media Player
2011-06-28 22:46:25 ----D---- C:\Program Files\DivX
2011-06-28 22:46:11 ----D---- C:\Documents and Settings\Dan\Data aplikací\Skype
2011-06-28 22:46:10 ----D---- C:\Documents and Settings\Dan\Data aplikací\Mozilla
2011-06-28 22:45:57 ----D---- C:\Documents and Settings\Dan\Data aplikací\DivX
2011-06-28 21:56:33 ----D---- C:\WINDOWS\system32\CatRoot
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvgts;nvgts; C:\WINDOWS\system32\DRIVERS\nvgts.sys [2009-06-30 164896]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-12-24 436792]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 prodrv03;Star Force copy protection driver v3; C:\WINDOWS\System32\drivers\prodrv03.sys [2010-12-26 115968]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-12-08 6017568]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-08 7967712]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2009-07-01 66688]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2009-07-01 13824]
S1 MpKsl00c87967;MpKsl00c87967; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys []
S1 MpKsl01394755;MpKsl01394755; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys []
S1 MpKsl068f5470;MpKsl068f5470; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys []
S1 MpKsl07b53ac8;MpKsl07b53ac8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys []
S1 MpKsl0a9552c7;MpKsl0a9552c7; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys []
S1 MpKsl0eb701f2;MpKsl0eb701f2; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys []
S1 MpKsl116537d8;MpKsl116537d8; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys []
S1 MpKsl12e13dc4;MpKsl12e13dc4; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys []
S1 MpKsl1c385edb;MpKsl1c385edb; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys []
S1 MpKsl1d5ac9ee;MpKsl1d5ac9ee; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys []
S1 MpKsl2820e8ae;MpKsl2820e8ae; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys []
S1 MpKsl2ee83ac0;MpKsl2ee83ac0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys []
S1 MpKsl3851075d;MpKsl3851075d; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys []
S1 MpKsl3f453cd6;MpKsl3f453cd6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys []
S1 MpKsl3f929d5a;MpKsl3f929d5a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys []
S1 MpKsl471e77c9;MpKsl471e77c9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys []
S1 MpKsl4a2d2ace;MpKsl4a2d2ace; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys []
S1 MpKsl6423dcf9;MpKsl6423dcf9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys []
S1 MpKsl683237ec;MpKsl683237ec; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys []
S1 MpKsl6953a58b;MpKsl6953a58b; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys []
S1 MpKsl6cb3c2f9;MpKsl6cb3c2f9; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys []
S1 MpKsl73affc1f;MpKsl73affc1f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys []
S1 MpKsl76212d33;MpKsl76212d33; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys []
S1 MpKsl7afcbe0e;MpKsl7afcbe0e; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys []
S1 MpKsl7dd390b0;MpKsl7dd390b0; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys []
S1 MpKsl872afb16;MpKsl872afb16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys []
S1 MpKsla3217c44;MpKsla3217c44; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys []
S1 MpKslacb2bac6;MpKslacb2bac6; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys []
S1 MpKslb2f33c83;MpKslb2f33c83; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys []
S1 MpKslbfb06b36;MpKslbfb06b36; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys []
S1 MpKslc2c3db1a;MpKslc2c3db1a; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys []
S1 MpKslc8e224fa;MpKslc8e224fa; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys []
S1 MpKslcddcbeb3;MpKslcddcbeb3; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys []
S1 MpKsld1681259;MpKsld1681259; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys []
S1 MpKsle4e22c80;MpKsle4e22c80; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys []
S1 MpKslf1494c16;MpKslf1494c16; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys []
S1 MpKslf2337827;MpKslf2337827; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2009-08-26 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2009-08-26 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2009-08-26 21568]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2005-06-03 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2005-06-03 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2005-06-03 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2005-06-03 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2005-06-03 79488]
S3 LLRING0;LLRING0; \??\C:\Documents and Settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys []
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-24 153376]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-07-08 168004]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-07-17 496128]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe []
S2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe []
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2007-08-09 73728]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-12-10 182768]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
Ještě zlikviduje to, co tam zbylo. Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím pomozte s odstraněním viru, který se šíří po FB.
log z combofix
ComboFix 11-07-26.02 - Dan 26.07.2011 14:44:58.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.381 [GMT 2:00]
Spuštěný z: c:\documents and settings\Dan\Dokumenty\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\Dan\LOCALS~1\Temp\96540754-loader2.exe
c:\documents and settings\Dan\WINDOWS
c:\windows\btc_client_iplist.txt
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix.rar
c:\windows\proc_list1.log
c:\windows\rpcminer.rar
c:\windows\services32.exe
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\TEMP\1265715.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.2
c:\windows\update.5.0
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
c:\windows\winsetupapi.log
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SRVIECHECK
-------\Legacy_WXPDRIVERS
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-25 23:16 . 2011-07-25 23:16 -------- d-----w- c:\windows\ufa
2011-07-25 23:16 . 2011-07-25 23:16 246272 ----a-w- c:\windows\unrar.exe
2011-07-25 21:57 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-07-25 21:57 . 2011-07-25 21:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-25 21:57 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-07-25 20:59 . 2011-07-26 10:13 -------- d-----w- c:\program files\trend micro
2011-07-25 20:59 . 2011-07-25 20:59 -------- d-----w- C:\rsit
2011-07-25 20:12 . 2011-07-25 20:12 -------- d-----w- c:\windows\system32\wbem\Repository
2011-07-25 20:12 . 2011-07-26 10:12 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Spyware Terminator
2011-07-25 20:12 . 2011-07-26 09:28 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Spyware Terminator
2011-07-25 20:12 . 2011-07-25 20:27 -------- d-----w- c:\program files\Spyware Terminator
2011-07-25 20:12 . 2011-07-25 20:12 -------- d-----w- c:\program files\ESET
2011-07-19 10:19 . 2011-07-19 10:19 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Malwarebytes
2011-07-19 10:19 . 2011-07-19 10:19 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-07-19 09:09 . 2011-07-19 09:09 -------- d-----w- c:\documents and settings\All Users\Soluto
2011-07-19 09:08 . 2011-07-25 20:12 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Soluto
2011-07-17 19:02 . 2011-07-17 19:02 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2011-07-17 18:34 . 2011-07-17 18:58 -------- d-----w- c:\program files\Spybot - Search & Destroy
2011-07-16 18:09 . 2011-07-16 18:09 -------- d-----w- c:\documents and settings\ondra\Local Settings\Data aplikací\Nokia
2011-07-16 17:00 . 2011-07-25 23:16 -------- d-----w- c:\windows\rpcminer
2011-07-16 17:00 . 2011-07-25 23:16 -------- d-----w- c:\windows\phoenix
2011-07-14 10:12 . 2011-07-17 18:22 -------- d-----w- c:\program files\Anti Trojan Elite
2011-07-14 09:53 . 2011-07-17 18:58 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-14 08:40 . 2011-07-14 08:40 -------- d-----w- c:\windows\av_ico
2011-07-14 08:38 . 2011-07-26 10:08 -------- d--h--w- c:\windows\update.tray-9-0
2011-07-14 08:38 . 2011-07-26 10:08 -------- d--h--w- c:\windows\update.tray-14-0
2011-07-14 08:38 . 2011-07-14 08:38 -------- d--h--w- c:\windows\update.tray-9-0-lnk
2011-07-14 08:38 . 2011-07-14 08:38 -------- d--h--w- c:\windows\update.tray-14-0-lnk
2011-07-14 08:28 . 2011-07-14 08:28 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-07-13 10:10 . 2011-06-07 06:55 7074640 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D3F29A6D-AB86-4A7E-82FE-2DA17EB75733}\mpengine.dll
2011-07-03 14:51 . 2011-07-03 14:51 1409 ----a-w- c:\windows\QTFont.for
2011-06-29 18:55 . 2011-06-29 18:55 -------- d-----w- c:\program files\Common Files\McAfee
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\All Users\Oblíbené položky
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Suite
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\Dan\Data aplikací\InstallShield
2011-06-28 21:23 . 2011-07-26 07:05 -------- d-----w- c:\documents and settings\Dan\Plocha
2011-06-28 21:23 . 2011-06-28 21:23 -------- d-----w- c:\documents and settings\Dan\Data aplikací\AskToolbar
2011-06-28 21:23 . 2011-06-28 21:23 -------- d-----w- c:\documents and settings\Dan\Local Settings\Data aplikací\AskToolbar
2011-06-28 21:23 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\Dan\Data aplikací\uTorrent
2011-06-28 20:41 . 2011-06-28 20:41 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Pmcc
2011-06-28 20:21 . 2011-06-28 20:21 -------- d-----w- c:\documents and settings\Dan\Local Settings\Data aplikací\Identities
2011-06-27 21:01 . 2011-06-28 21:26 -------- d-----w- C:\UDISK 2.0 (H)
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-19 18:52 . 2011-06-19 18:52 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-07 06:55 . 2010-10-03 12:25 7074640 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-06-06 11:35 . 2004-08-17 13:44 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-05-26 18:30 . 2011-05-26 16:40 247455 ----a-w- c:\documents and settings\Dan\Data aplikací\mdbu.bin
2011-05-02 15:32 . 2010-02-06 16:52 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 17:25 . 2004-08-17 13:49 151552 ----a-w- c:\windows\system32\schannel.dll
2011-04-29 16:19 . 2004-08-03 21:15 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-10-11 15:12 1244040 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-10-11 1244040]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-10-11 1244040]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-12-10 39408]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2010-12-20 697856]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-17 3318784]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"nwiz"="nwiz.exe" [2009-07-08 1657376]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-07-08 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-08 13762560]
"RTHDCPL"="RTHDCPL.EXE" [2009-12-08 18789920]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 49152]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-02-21 77824]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-09-16 1164584]
"NokiaMusic FastStart"="c:\program files\Nokia\Ovi Player\NokiaOviPlayer.exe" [2010-10-20 2192752]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
.
c:\documents and settings\Dan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Věýezy obrazovky a spuçtŘnˇ aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2006-2-19 288472]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\icq\\ICQ7.0\\ICQ.exe"=
"d:\\icq\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"d:\\BitComet\\BitComet.exe"=
"d:\\Starship Troopers\\STGame.exe"=
"d:\\torrent\\uTorrent.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Documents and Settings\\Dan\\Local Settings\\Data aplikací\\Google\\Chrome\\Application\\chrome.exe"=
"d:\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Microsoft Games\\Zoo Tycoon 2\\zt.exe"=
"c:\\Program Files\\Spyware Terminator\\SpywareTerminatorUpdate.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"19194:TCP"= 19194:TCP:BitComet 19194 TCP
"19194:UDP"= 19194:UDP:BitComet 19194 UDP
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [16.12.2010 15:32 436792]
R1 prodrv03;Star Force copy protection driver v3;c:\windows\system32\drivers\prodrv03.sys [26.12.2010 17:06 115968]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [17.7.2011 21:02 142592]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [9.2.2010 17:34 246520]
R2 NAUpdate;@c:\program files\Nero\Update\NASvc.exe,-200;c:\program files\Nero\Update\NASvc.exe [4.5.2010 13:07 503080]
S1 MpKsl00c87967;MpKsl00c87967;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys [?]
S1 MpKsl01394755;MpKsl01394755;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys [?]
S1 MpKsl068f5470;MpKsl068f5470;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys [?]
S1 MpKsl07b53ac8;MpKsl07b53ac8;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys [?]
S1 MpKsl0a9552c7;MpKsl0a9552c7;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys [?]
S1 MpKsl0eb701f2;MpKsl0eb701f2;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys [?]
S1 MpKsl116537d8;MpKsl116537d8;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys [?]
S1 MpKsl12e13dc4;MpKsl12e13dc4;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys [?]
S1 MpKsl1c385edb;MpKsl1c385edb;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys [?]
S1 MpKsl1d5ac9ee;MpKsl1d5ac9ee;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys [?]
S1 MpKsl2820e8ae;MpKsl2820e8ae;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys [?]
S1 MpKsl2ee83ac0;MpKsl2ee83ac0;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys [?]
S1 MpKsl3851075d;MpKsl3851075d;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys [?]
S1 MpKsl3f453cd6;MpKsl3f453cd6;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys [?]
S1 MpKsl3f929d5a;MpKsl3f929d5a;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys [?]
S1 MpKsl471e77c9;MpKsl471e77c9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys [?]
S1 MpKsl4a2d2ace;MpKsl4a2d2ace;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys [?]
S1 MpKsl6423dcf9;MpKsl6423dcf9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys [?]
S1 MpKsl683237ec;MpKsl683237ec;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys [?]
S1 MpKsl6953a58b;MpKsl6953a58b;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys [?]
S1 MpKsl6cb3c2f9;MpKsl6cb3c2f9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys [?]
S1 MpKsl73affc1f;MpKsl73affc1f;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys [?]
S1 MpKsl76212d33;MpKsl76212d33;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys [?]
S1 MpKsl7afcbe0e;MpKsl7afcbe0e;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys [?]
S1 MpKsl7dd390b0;MpKsl7dd390b0;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys [?]
S1 MpKsl872afb16;MpKsl872afb16;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys [?]
S1 MpKsla3217c44;MpKsla3217c44;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys [?]
S1 MpKslacb2bac6;MpKslacb2bac6;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys [?]
S1 MpKslb2f33c83;MpKslb2f33c83;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys [?]
S1 MpKslbfb06b36;MpKslbfb06b36;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys [?]
S1 MpKslc2c3db1a;MpKslc2c3db1a;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys [?]
S1 MpKslc8e224fa;MpKslc8e224fa;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys [?]
S1 MpKslcddcbeb3;MpKslcddcbeb3;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys [?]
S1 MpKsld1681259;MpKsld1681259;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys [?]
S1 MpKsle4e22c80;MpKsle4e22c80;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys [?]
S1 MpKslf1494c16;MpKslf1494c16;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys [?]
S1 MpKslf2337827;MpKslf2337827;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys [?]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [10.12.2010 15:22 136176]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~1\mcafee\SITEAD~1\mcsacore.exe --> c:\progra~1\mcafee\SITEAD~1\mcsacore.exe [?]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [6.2.2010 19:26 1691480]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [10.12.2010 15:22 136176]
S3 LLRING0;LLRING0;\??\c:\documents and settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys --> c:\documents and settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [25.7.2011 23:57 41272]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-10 13:22]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-10 13:22]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Stáhnout odkaz s použitím BitCometu - d:\bitcomet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - d:\bitcomet\BitComet.exe/AddAllLink.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
TCP: DhcpNameServer = 94.74.192.252 94.74.192.244
FF - ProfilePath - c:\documents and settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default\
FF - prefs.js: browser.startup.homepage - hxxp://google.atcomet.com/b/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
FF - Ext: Fast Youtube Downloader: fastYoutubeDownloader@yevgenyandrov.net - %profile%\extensions\fastYoutubeDownloader@yevgenyandrov.net
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Skinner: support@fbskinner.com - %profile%\extensions\support@fbskinner.com
FF - Ext: BitComet Video Downloader: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB} - %profile%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-SpyEmergency - c:\program files\NETGATE\Spy Emergency\SpyEmergency.exe
HKLM-Run-MSC - c:\program files\Microsoft Security Client\msseces.exe
HKLM-Run-wxpdrv - c:\windows\services32.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
AddRemove-ESET Online Scanner - c:\program files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
AddRemove-Microsoft Security Client - c:\program files\Microsoft Security Client\Setup.exe
AddRemove-ZAV_DOMA_is1 - c:\zav_doma\unins000.exe
AddRemove-{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} - c:\program files\McAfee\SiteAdvisor\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-26 14:54
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3832)
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Spyware Terminator\sp_rsser.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Common Files\Teleca Shared\CapabilityManager.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\Common Files\Teleca Shared\Generic.exe
c:\program files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
c:\windows\system32\wscntfy.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
c:\program files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 14:57:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 12:56
.
Před spuštěním: Volných bajtů: 14 354 182 144
Po spuštění: Volných bajtů: 15 578 566 656
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=AlwaysOff /fastdetect
.
- - End Of File - - A1FA37B39D4F3EC9BB2D587984347561
ComboFix 11-07-26.02 - Dan 26.07.2011 14:44:58.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.895.381 [GMT 2:00]
Spuštěný z: c:\documents and settings\Dan\Dokumenty\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\Dan\LOCALS~1\Temp\96540754-loader2.exe
c:\documents and settings\Dan\WINDOWS
c:\windows\btc_client_iplist.txt
c:\windows\ddh_iplist.txt
c:\windows\front_ip_list.txt
c:\windows\iecheck_iplist.txt
c:\windows\info1
c:\windows\iplist.txt
c:\windows\loader2.exe_ok
c:\windows\phoenix.rar
c:\windows\proc_list1.log
c:\windows\rpcminer.rar
c:\windows\services32.exe
c:\windows\system32\drivers\etc\HSTS~1
c:\windows\TEMP\1265715.exe
c:\windows\ufa.rar
c:\windows\update.1
c:\windows\update.2
c:\windows\update.5.0
c:\windows\winlog-dirs.txt
c:\windows\winlog-ids.txt
c:\windows\winsetupapi.log
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SRVIECHECK
-------\Legacy_WXPDRIVERS
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-26 do 2011-07-26 )))))))))))))))))))))))))))))))
.
.
2011-07-25 23:16 . 2011-07-25 23:16 -------- d-----w- c:\windows\ufa
2011-07-25 23:16 . 2011-07-25 23:16 246272 ----a-w- c:\windows\unrar.exe
2011-07-25 21:57 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-07-25 21:57 . 2011-07-25 21:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-25 21:57 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-07-25 20:59 . 2011-07-26 10:13 -------- d-----w- c:\program files\trend micro
2011-07-25 20:59 . 2011-07-25 20:59 -------- d-----w- C:\rsit
2011-07-25 20:12 . 2011-07-25 20:12 -------- d-----w- c:\windows\system32\wbem\Repository
2011-07-25 20:12 . 2011-07-26 10:12 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Spyware Terminator
2011-07-25 20:12 . 2011-07-26 09:28 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Spyware Terminator
2011-07-25 20:12 . 2011-07-25 20:27 -------- d-----w- c:\program files\Spyware Terminator
2011-07-25 20:12 . 2011-07-25 20:12 -------- d-----w- c:\program files\ESET
2011-07-19 10:19 . 2011-07-19 10:19 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Malwarebytes
2011-07-19 10:19 . 2011-07-19 10:19 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-07-19 09:09 . 2011-07-19 09:09 -------- d-----w- c:\documents and settings\All Users\Soluto
2011-07-19 09:08 . 2011-07-25 20:12 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Soluto
2011-07-17 19:02 . 2011-07-17 19:02 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2011-07-17 18:34 . 2011-07-17 18:58 -------- d-----w- c:\program files\Spybot - Search & Destroy
2011-07-16 18:09 . 2011-07-16 18:09 -------- d-----w- c:\documents and settings\ondra\Local Settings\Data aplikací\Nokia
2011-07-16 17:00 . 2011-07-25 23:16 -------- d-----w- c:\windows\rpcminer
2011-07-16 17:00 . 2011-07-25 23:16 -------- d-----w- c:\windows\phoenix
2011-07-14 10:12 . 2011-07-17 18:22 -------- d-----w- c:\program files\Anti Trojan Elite
2011-07-14 09:53 . 2011-07-17 18:58 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-07-14 08:40 . 2011-07-14 08:40 -------- d-----w- c:\windows\av_ico
2011-07-14 08:38 . 2011-07-26 10:08 -------- d--h--w- c:\windows\update.tray-9-0
2011-07-14 08:38 . 2011-07-26 10:08 -------- d--h--w- c:\windows\update.tray-14-0
2011-07-14 08:38 . 2011-07-14 08:38 -------- d--h--w- c:\windows\update.tray-9-0-lnk
2011-07-14 08:38 . 2011-07-14 08:38 -------- d--h--w- c:\windows\update.tray-14-0-lnk
2011-07-14 08:28 . 2011-07-14 08:28 -------- d-----w- c:\documents and settings\LocalService\Nabídka Start
2011-07-13 10:10 . 2011-06-07 06:55 7074640 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D3F29A6D-AB86-4A7E-82FE-2DA17EB75733}\mpengine.dll
2011-07-03 14:51 . 2011-07-03 14:51 1409 ----a-w- c:\windows\QTFont.for
2011-06-29 18:55 . 2011-06-29 18:55 -------- d-----w- c:\program files\Common Files\McAfee
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\All Users\Oblíbené položky
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Suite
2011-06-28 21:25 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\Dan\Data aplikací\InstallShield
2011-06-28 21:23 . 2011-07-26 07:05 -------- d-----w- c:\documents and settings\Dan\Plocha
2011-06-28 21:23 . 2011-06-28 21:23 -------- d-----w- c:\documents and settings\Dan\Data aplikací\AskToolbar
2011-06-28 21:23 . 2011-06-28 21:23 -------- d-----w- c:\documents and settings\Dan\Local Settings\Data aplikací\AskToolbar
2011-06-28 21:23 . 2011-06-28 21:25 -------- d-----w- c:\documents and settings\Dan\Data aplikací\uTorrent
2011-06-28 20:41 . 2011-06-28 20:41 -------- d-----w- c:\documents and settings\Dan\Data aplikací\Pmcc
2011-06-28 20:21 . 2011-06-28 20:21 -------- d-----w- c:\documents and settings\Dan\Local Settings\Data aplikací\Identities
2011-06-27 21:01 . 2011-06-28 21:26 -------- d-----w- C:\UDISK 2.0 (H)
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-19 18:52 . 2011-06-19 18:52 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-07 06:55 . 2010-10-03 12:25 7074640 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-06-06 11:35 . 2004-08-17 13:44 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-05-26 18:30 . 2011-05-26 16:40 247455 ----a-w- c:\documents and settings\Dan\Data aplikací\mdbu.bin
2011-05-02 15:32 . 2010-02-06 16:52 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 17:25 . 2004-08-17 13:49 151552 ----a-w- c:\windows\system32\schannel.dll
2011-04-29 16:19 . 2004-08-03 21:15 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-10-11 15:12 1244040 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-10-11 1244040]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-10-11 1244040]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-12-10 39408]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2010-12-20 697856]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2011-07-17 3318784]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"nwiz"="nwiz.exe" [2009-07-08 1657376]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-07-08 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-08 13762560]
"RTHDCPL"="RTHDCPL.EXE" [2009-12-08 18789920]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 49152]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-02-21 77824]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-09-16 1164584]
"NokiaMusic FastStart"="c:\program files\Nokia\Ovi Player\NokiaOviPlayer.exe" [2010-10-20 2192752]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
.
c:\documents and settings\Dan\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Věýezy obrazovky a spuçtŘnˇ aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2006-2-19 288472]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\icq\\ICQ7.0\\ICQ.exe"=
"d:\\icq\\ICQ7.0\\aolload.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"d:\\BitComet\\BitComet.exe"=
"d:\\Starship Troopers\\STGame.exe"=
"d:\\torrent\\uTorrent.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Documents and Settings\\Dan\\Local Settings\\Data aplikací\\Google\\Chrome\\Application\\chrome.exe"=
"d:\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Microsoft Games\\Zoo Tycoon 2\\zt.exe"=
"c:\\Program Files\\Spyware Terminator\\SpywareTerminatorUpdate.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"19194:TCP"= 19194:TCP:BitComet 19194 TCP
"19194:UDP"= 19194:UDP:BitComet 19194 UDP
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [16.12.2010 15:32 436792]
R1 prodrv03;Star Force copy protection driver v3;c:\windows\system32\drivers\prodrv03.sys [26.12.2010 17:06 115968]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [17.7.2011 21:02 142592]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [9.2.2010 17:34 246520]
R2 NAUpdate;@c:\program files\Nero\Update\NASvc.exe,-200;c:\program files\Nero\Update\NASvc.exe [4.5.2010 13:07 503080]
S1 MpKsl00c87967;MpKsl00c87967;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{746B1129-CFE6-4C65-BB1E-38A5FB37B8D7}\MpKsl00c87967.sys [?]
S1 MpKsl01394755;MpKsl01394755;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl01394755.sys [?]
S1 MpKsl068f5470;MpKsl068f5470;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{6F7071DE-920C-46DB-9E5B-D712055ECFB3}\MpKsl068f5470.sys [?]
S1 MpKsl07b53ac8;MpKsl07b53ac8;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl07b53ac8.sys [?]
S1 MpKsl0a9552c7;MpKsl0a9552c7;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{035C5FD6-6892-43A1-95B9-729C13B1B866}\MpKsl0a9552c7.sys [?]
S1 MpKsl0eb701f2;MpKsl0eb701f2;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{9D5A68F4-4353-4884-BC07-1D7B540E9A77}\MpKsl0eb701f2.sys [?]
S1 MpKsl116537d8;MpKsl116537d8;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{941EE022-F351-4B3D-BF37-2C32E4C67BB8}\MpKsl116537d8.sys [?]
S1 MpKsl12e13dc4;MpKsl12e13dc4;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DC9ABDF5-FB02-4335-8A54-012821A0762F}\MpKsl12e13dc4.sys [?]
S1 MpKsl1c385edb;MpKsl1c385edb;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl1c385edb.sys [?]
S1 MpKsl1d5ac9ee;MpKsl1d5ac9ee;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B1BDF4B4-A77E-4EAA-A28B-104BD227DEC2}\MpKsl1d5ac9ee.sys [?]
S1 MpKsl2820e8ae;MpKsl2820e8ae;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{3DF40D11-7EA8-41D7-800B-E62F062F6B21}\MpKsl2820e8ae.sys [?]
S1 MpKsl2ee83ac0;MpKsl2ee83ac0;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AB8F7871-3416-45C3-8BAA-9B3D95752BCB}\MpKsl2ee83ac0.sys [?]
S1 MpKsl3851075d;MpKsl3851075d;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{E632227B-3276-4224-83D8-124D06D8AE22}\MpKsl3851075d.sys [?]
S1 MpKsl3f453cd6;MpKsl3f453cd6;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{1E31AF2F-80DF-4DB8-B593-4D4874EAA425}\MpKsl3f453cd6.sys [?]
S1 MpKsl3f929d5a;MpKsl3f929d5a;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C31F7799-4C7C-4E81-B58F-2E00E30B27FD}\MpKsl3f929d5a.sys [?]
S1 MpKsl471e77c9;MpKsl471e77c9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2738CFA0-C6BB-4231-B270-76544832BED1}\MpKsl471e77c9.sys [?]
S1 MpKsl4a2d2ace;MpKsl4a2d2ace;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7328EC65-A6FB-4DB4-AD75-0842575694D1}\MpKsl4a2d2ace.sys [?]
S1 MpKsl6423dcf9;MpKsl6423dcf9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{BCB5423D-DFF1-43B6-89BF-CEA126C922BD}\MpKsl6423dcf9.sys [?]
S1 MpKsl683237ec;MpKsl683237ec;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl683237ec.sys [?]
S1 MpKsl6953a58b;MpKsl6953a58b;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D5F36884-3CE4-4F0A-84B8-83C61B0140E0}\MpKsl6953a58b.sys [?]
S1 MpKsl6cb3c2f9;MpKsl6cb3c2f9;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{F8C9140E-7D95-4571-98CA-AAB25E0AD8ED}\MpKsl6cb3c2f9.sys [?]
S1 MpKsl73affc1f;MpKsl73affc1f;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{031E0519-FEFB-49A3-A33E-9D5189F0A657}\MpKsl73affc1f.sys [?]
S1 MpKsl76212d33;MpKsl76212d33;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DFC480A4-66E7-4589-B091-29D45B685465}\MpKsl76212d33.sys [?]
S1 MpKsl7afcbe0e;MpKsl7afcbe0e;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{AA846B1E-39DF-4AFE-A5B6-00F0CAD1886B}\MpKsl7afcbe0e.sys [?]
S1 MpKsl7dd390b0;MpKsl7dd390b0;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{02EF2B46-E740-4AA3-8937-2A164785C7D5}\MpKsl7dd390b0.sys [?]
S1 MpKsl872afb16;MpKsl872afb16;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsl872afb16.sys [?]
S1 MpKsla3217c44;MpKsla3217c44;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4D455CCD-6F4C-47F9-993C-E99D39AB8ED2}\MpKsla3217c44.sys [?]
S1 MpKslacb2bac6;MpKslacb2bac6;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{ED80446D-7EF4-4237-A29F-5C6DD96D6BB3}\MpKslacb2bac6.sys [?]
S1 MpKslb2f33c83;MpKslb2f33c83;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{D0775C62-6B84-4A5E-89E3-89C35BC6772F}\MpKslb2f33c83.sys [?]
S1 MpKslbfb06b36;MpKslbfb06b36;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKslbfb06b36.sys [?]
S1 MpKslc2c3db1a;MpKslc2c3db1a;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{370B724D-6498-431A-A651-070EB38C7C33}\MpKslc2c3db1a.sys [?]
S1 MpKslc8e224fa;MpKslc8e224fa;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{5636F824-831C-44F2-BB53-2CDB23923677}\MpKslc8e224fa.sys [?]
S1 MpKslcddcbeb3;MpKslcddcbeb3;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{09766A91-8001-4DDD-B2B2-4BB3535A310E}\MpKslcddcbeb3.sys [?]
S1 MpKsld1681259;MpKsld1681259;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{30D5AF16-589A-4647-B8BA-72E22282FCE4}\MpKsld1681259.sys [?]
S1 MpKsle4e22c80;MpKsle4e22c80;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{7D09E6D8-5238-49FC-93A5-CC10470F0532}\MpKsle4e22c80.sys [?]
S1 MpKslf1494c16;MpKslf1494c16;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{4377182B-48CB-4BC6-8F9F-EB25C3CA69F7}\MpKslf1494c16.sys [?]
S1 MpKslf2337827;MpKslf2337827;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{B5536DCB-60EF-4801-9F38-0BF57C045C5A}\MpKslf2337827.sys [?]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [10.12.2010 15:22 136176]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~1\mcafee\SITEAD~1\mcsacore.exe --> c:\progra~1\mcafee\SITEAD~1\mcsacore.exe [?]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [6.2.2010 19:26 1691480]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [10.12.2010 15:22 136176]
S3 LLRING0;LLRING0;\??\c:\documents and settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys --> c:\documents and settings\Dan\Plocha\Ondra\MU\MuOnlineS6\MuGuard\llck.sys [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [25.7.2011 23:57 41272]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-10 13:22]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-12-10 13:22]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Stáhnout odkaz s použitím BitCometu - d:\bitcomet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - d:\bitcomet\BitComet.exe/AddAllLink.htm
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
TCP: DhcpNameServer = 94.74.192.252 94.74.192.244
FF - ProfilePath - c:\documents and settings\Dan\Data aplikací\Mozilla\Firefox\Profiles\5xn0lm6b.default\
FF - prefs.js: browser.startup.homepage - hxxp://google.atcomet.com/b/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
FF - Ext: Fast Youtube Downloader: fastYoutubeDownloader@yevgenyandrov.net - %profile%\extensions\fastYoutubeDownloader@yevgenyandrov.net
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Skinner: support@fbskinner.com - %profile%\extensions\support@fbskinner.com
FF - Ext: BitComet Video Downloader: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB} - %profile%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-SpyEmergency - c:\program files\NETGATE\Spy Emergency\SpyEmergency.exe
HKLM-Run-MSC - c:\program files\Microsoft Security Client\msseces.exe
HKLM-Run-wxpdrv - c:\windows\services32.exe
HKLM-Run-tray_ico - (no file)
HKLM-Run-tray_ico2 - (no file)
HKLM-Run-tray_ico3 - (no file)
HKLM-Run-tray_ico4 - (no file)
AddRemove-ESET Online Scanner - c:\program files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
AddRemove-Microsoft Security Client - c:\program files\Microsoft Security Client\Setup.exe
AddRemove-ZAV_DOMA_is1 - c:\zav_doma\unins000.exe
AddRemove-{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} - c:\program files\McAfee\SiteAdvisor\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-26 14:54
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3832)
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Spyware Terminator\sp_rsser.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files\Common Files\Teleca Shared\CapabilityManager.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\Common Files\Teleca Shared\Generic.exe
c:\program files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
c:\windows\system32\wscntfy.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
c:\program files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
.
**************************************************************************
.
Celkový čas: 2011-07-26 14:57:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-26 12:56
.
Před spuštěním: Volných bajtů: 14 354 182 144
Po spuštění: Volných bajtů: 15 578 566 656
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=AlwaysOff /fastdetect
.
- - End Of File - - A1FA37B39D4F3EC9BB2D587984347561