Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problem s explorer.exe

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Problem s explorer.exe

#1 Příspěvek od Busbusak »

Dobry den, z You tube jsem si stahl Fash video file.Kdyz ho chci odstranit tak se mi restartuje plocha i hlavni panel a odstranit nejde,ale na to vyskoci chyba explorer.exe.Prosim o kontrolu logu.Diky

Logfile of random's system information tool 1.09 (written by random/random)
Run by Miroslav at 2011-07-30 12:26:55
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 7 GB (35%) free of 19 GB
Total RAM: 991 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:27:14, on 30.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 SP3 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\em-date.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Aurora\firefox.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Aurora\plugin-container.exe
C:\Documents and Settings\Miroslav\Plocha\Download\RSIT.exe
C:\Program Files\trend micro\Miroslav.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [EM-DATE] C:\Program Files\em-date.exe
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Přeložit - {230D1201-7607-4CF6-A11F-9E4BF0A333E0} - C:\Program Files\Verdict Free\etnxp.dll
O9 - Extra button: (no name) - {2C73F784-D2DE-4422-B070-2E3332FE5744} - C:\Program Files\Verdict Free\etnxp.dll
O9 - Extra 'Tools' menuitem: Internetový překladač... - {2C73F784-D2DE-4422-B070-2E3332FE5744} - C:\Program Files\Verdict Free\etnxp.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 0510636990
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Start BT in service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe

--
End of file - 5779 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\MP Scheduled Scan.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{93135411-9C3F-44EB-BC5D-BB85B3FB0E21}.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{941432C1-AE02-47A0-9A06-9B3EB7B817AA}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Miroslav\Data aplikací\Mozilla\Firefox\Profiles\86m46pif.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/?#obsah"
prefs.js - "extensions.enabledItems" - "externalip@erik.morlin:0.9.9.6, {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2, {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20100908, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, ietab@ip.cn:1.95.20100933, https-everywhere@eff.org:0.9.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.14"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =827316&p="

"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.1.10]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Aurora\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Aurora\components\
binary.manifest
browsercomps.dll

C:\Program Files\Aurora\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Miroslav\Data aplikací\Mozilla\Firefox\Profiles\86m46pif.default\extensions\
ietab@ip(2).cn
ietab@ip.cn
{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
{1018e4d6-728f-4b20-ad56-37578a4de76b}(2)
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Documents and Settings\Miroslav\Data aplikací\Mozilla\Firefox\Profiles\86m46pif.default\searchplugins\
askcom.xml
facebook.xml
galerie-autobusucz.xml
icqplugin.xml
qip-search.xml
seznam.xml
surf-canyon.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-19 1680776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-12 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-07-12 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"EM-DATE"=C:\Program Files\em-date.exe [2011-07-12 104960]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 40448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Badoo Desktop]
C:\Documents and Settings\All Users\Data aplikací\Badoo\Badoo Desktop\1.5.3.949\Badoo.Desktop.exe [2011-06-07 1017344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cmaudio]
RunDll32 cmicnfg.cpl,CMICtrlWnd []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2005-05-11 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe /background []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SNPSTD2]
C:\WINDOWS\vsnpstd2.exe [2004-06-10 286720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Utility Tray.lnk]
C:\WINDOWS\system32\sistray.exe [2005-01-04 331776]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.5\ICQ.exe"="C:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\QIP Infium JadrisPack\qip.exe"="C:\QIP Infium JadrisPack\qip.exe:*:Enabled:QIP Infium"
"C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe"="C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.5\ICQ.exe"="C:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3fhg"=mp3fhg.acm
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll

======List of files/folders created in the last 1 month======

2011-07-30 12:26:56 ----D---- C:\Program Files\trend micro
2011-07-30 12:26:55 ----D---- C:\rsit
2011-07-29 18:27:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2011-07-29 18:25:19 ----D---- C:\Program Files\WinZip
2011-07-29 18:20:39 ----SHD---- C:\Config.Msi
2011-07-26 18:58:47 ----D---- C:\Program Files\Sunbelt Software
2011-07-26 14:10:45 ----D---- C:\Program Files\Aurora
2011-07-24 21:06:30 ----A---- C:\WINDOWS\system32\unrar.dll
2011-07-24 21:06:20 ----A---- C:\WINDOWS\avisplitter.ini
2011-07-24 21:05:55 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2011-07-24 21:05:50 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2011-07-24 21:05:25 ----D---- C:\Program Files\K-Lite Codec Pack
2011-07-24 13:50:54 ----D---- C:\Program Files\NETGATE
2011-07-24 12:23:09 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\vlc
2011-07-24 12:14:10 ----A---- C:\ntuser.dat
2011-07-18 20:13:56 ----D---- C:\Program Files\Mozilla Firefox6
2011-07-17 14:24:44 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\AVG
2011-07-17 14:23:40 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-17 14:22:31 ----D---- C:\Program Files\AVG
2011-07-16 11:21:57 ----D---- C:\WINDOWS\Sun
2011-07-15 22:33:03 ----D---- C:\QIP Infium JadrisPack
2011-07-15 17:10:48 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\WiseDrivers
2011-07-15 14:46:24 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\PhotoScape
2011-07-15 14:44:19 ----D---- C:\Program Files\PhotoScape
2011-07-15 00:15:45 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2011-07-14 12:57:11 ----A---- C:\WINDOWS\system32\mucltui.dll
2011-07-14 11:19:55 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\TuxPaint
2011-07-13 23:48:49 ----D---- C:\Program Files\Vyukoveprogramy
2011-07-13 23:00:25 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Ancestry
2011-07-13 20:41:16 ----D---- C:\WINDOWS\SxsCaPendDel
2011-07-13 15:19:01 ----HD---- C:\WINDOWS\NiwradSoft Shell Pack
2011-07-13 14:40:24 ----D---- C:\Program Files\MSXML 4.0
2011-07-13 14:36:54 ----A---- C:\WINDOWS\system32\NMSDVDXU.dll
2011-07-13 14:36:13 ----HD---- C:\Documents and Settings\Miroslav\Data aplikací\{D94BA408-F110-488B-A65E-3AE7945F79E6}
2011-07-13 14:36:13 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\LG Electronics
2011-07-13 14:26:29 ----D---- C:\Program Files\LG Electronics
2011-07-13 12:54:15 ----A---- C:\WINDOWS\NeroDigital.ini
2011-07-13 12:38:26 ----A---- C:\WINDOWS\d3dx.dat
2011-07-13 01:49:14 ----D---- C:\Program Files\Elaborate Bytes
2011-07-13 01:46:37 ----D---- C:\Program Files\Chroma Crash!
2011-07-13 01:44:29 ----A---- C:\WINDOWS\mgutil_reg.ini
2011-07-13 01:44:23 ----A---- C:\WINDOWS\mgutil_win.ini
2011-07-13 01:43:23 ----D---- C:\Program Files\Mgutil
2011-07-13 01:22:09 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2011-07-13 01:12:26 ----D---- C:\Program Files\Common Files\Adobe
2011-07-13 01:12:26 ----D---- C:\Program Files\Adobe
2011-07-13 01:09:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-13 00:45:25 ----N---- C:\WINDOWS\system32\browserchoice.exe
2011-07-13 00:36:51 ----D---- C:\Program Files\Microsoft Security Client
2011-07-13 00:23:53 ----A---- C:\WINDOWS\system32\hpzll3xu.dll
2011-07-13 00:18:41 ----D---- C:\WINDOWS\system32\PreInstall
2011-07-13 00:15:56 ----D---- C:\WINDOWS\pss
2011-07-13 00:13:05 ----D---- C:\Program Files\CCleaner
2011-07-13 00:08:38 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2011-07-13 00:08:30 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2011-07-13 00:08:26 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2011-07-13 00:08:19 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2011-07-13 00:08:11 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2011-07-13 00:08:03 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2011-07-13 00:07:55 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2011-07-13 00:06:48 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2011-07-13 00:06:30 ----A---- C:\WINDOWS\system32\wmpns.dll
2011-07-13 00:05:11 ----D---- C:\WINDOWS\Prefetch
2011-07-12 23:49:56 ----N---- C:\WINDOWS\system32\msxml6r.dll
2011-07-12 23:49:56 ----N---- C:\WINDOWS\system32\msxml6.dll
2011-07-12 23:49:55 ----N---- C:\WINDOWS\system32\smtpapi.dll
2011-07-12 23:49:55 ----N---- C:\WINDOWS\system32\rwnh.dll
2011-07-12 23:49:55 ----N---- C:\WINDOWS\system32\drivers\irbus.sys
2011-07-12 23:49:55 ----N---- C:\WINDOWS\system32\comsdupd.exe
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\azroles.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ati3duag.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2011-07-12 23:49:51 ----N---- C:\WINDOWS\system32\aaclient.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eapqec.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eappprxy.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eapphost.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eappgnui.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eappcfg.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\eapolqec.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3ui.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3svc.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3msm.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dot3api.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dimsroam.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2011-07-12 23:49:50 ----N---- C:\WINDOWS\system32\credssp.dll
2011-07-12 23:49:49 ----N---- C:\WINDOWS\system32\ieencode.dll
2011-07-12 23:49:49 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2011-07-12 23:49:49 ----N---- C:\WINDOWS\system32\eapsvc.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\mmcperf.exe
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\mmcex.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\kmsvc.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\kbdpash.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2011-07-12 23:49:48 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2011-07-12 23:49:47 ----N---- C:\WINDOWS\system32\napstat.exe
2011-07-12 23:49:47 ----N---- C:\WINDOWS\system32\napmontr.dll
2011-07-12 23:49:47 ----N---- C:\WINDOWS\system32\napipsec.dll
2011-07-12 23:49:47 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2011-07-12 23:49:47 ----N---- C:\WINDOWS\system32\mssha.dll
2011-07-12 23:49:47 ----A---- C:\WINDOWS\system32\msshavmsg.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\slextspk.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\slcoinst.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\setupn.exe
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\s3gnb.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\rasqec.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\qutil.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\qcliprov.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\qagentrt.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\qagent.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\onex.dll
2011-07-12 23:49:46 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\verclsid.exe
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\tzchange.exe
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\tspkg.dll
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\tsgqec.dll
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\slserv.exe
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\slrundll.exe
2011-07-12 23:49:45 ----N---- C:\WINDOWS\system32\slgen.dll
2011-07-12 23:49:45 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2011-07-12 23:49:44 ----N---- C:\WINDOWS\system32\wmphoto.dll
2011-07-12 23:49:44 ----N---- C:\WINDOWS\system32\wlanapi.dll
2011-07-12 23:49:44 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2011-07-12 23:49:44 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2011-07-12 23:49:42 ----N---- C:\WINDOWS\slrundll.exe
2011-07-12 23:49:41 ----D---- C:\WINDOWS\system32\cs
2011-07-12 23:49:41 ----D---- C:\WINDOWS\l2schemas
2011-07-12 23:49:40 ----D---- C:\WINDOWS\system32\bits
2011-07-12 23:47:16 ----D---- C:\Program Files\VideoLAN
2011-07-12 23:45:24 ----D---- C:\WINDOWS\ServicePackFiles
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\ati1btxx.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\amdagp.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\alim1541.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\agpcpq.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\agp440.sys
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv11nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv09nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv08nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv07nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv05nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv02nt5.dll
2011-07-12 23:39:45 ----N---- C:\WINDOWS\system32\drivers\adv01nt5.dll
2011-07-12 23:39:45 ----D---- C:\WINDOWS\network diagnostic
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinxbxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atintuxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinttxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinsnxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinrvxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinraxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinpdxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinmdxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\atinbtxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati2mtag.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1snxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1raxx.sys
2011-07-12 23:39:44 ----N---- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\hidir.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\hidbth.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\gagp30kx.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthusb.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthprint.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthpan.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthmodem.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\bthenum.sys
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atv10nt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atv06nt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atv04nt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atv02nt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atv01nt5.dll
2011-07-12 23:39:43 ----N---- C:\WINDOWS\system32\drivers\atinxsxx.sys
2011-07-12 23:39:42 ----N---- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2011-07-12 23:39:42 ----N---- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2011-07-12 23:39:42 ----N---- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2011-07-12 23:39:41 ----N---- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2011-07-12 23:39:41 ----N---- C:\WINDOWS\system32\drivers\mutohpen.sys
2011-07-12 23:39:41 ----N---- C:\WINDOWS\system32\drivers\mtxparhm.sys
2011-07-12 23:39:41 ----N---- C:\WINDOWS\system32\drivers\mtlstrm.sys
2011-07-12 23:39:40 ----N---- C:\WINDOWS\system32\drivers\s3gnbm.sys
2011-07-12 23:39:40 ----N---- C:\WINDOWS\system32\drivers\rndismpx.sys
2011-07-12 23:39:40 ----N---- C:\WINDOWS\system32\drivers\rfcomm.sys
2011-07-12 23:39:40 ----N---- C:\WINDOWS\system32\drivers\recagent.sys
2011-07-12 23:39:40 ----N---- C:\WINDOWS\system32\drivers\nv4_mini.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\smbali.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\slwdmsup.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\slnthal.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\slntamr.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\slnt7554.sys
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\siint5.dll
2011-07-12 23:39:39 ----N---- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2011-07-12 23:39:38 ----N---- C:\WINDOWS\system32\drivers\vchnt5.dll
2011-07-12 23:39:38 ----N---- C:\WINDOWS\system32\drivers\usbvideo.sys
2011-07-12 23:39:38 ----N---- C:\WINDOWS\system32\drivers\usb8023x.sys
2011-07-12 23:39:38 ----N---- C:\WINDOWS\system32\drivers\uagp35.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\watv10nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\watv06nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\wadv11nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\wadv09nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\wadv08nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\wadv07nt.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\wacompen.sys
2011-07-12 23:39:37 ----N---- C:\WINDOWS\system32\drivers\viaagp.sys
2011-07-12 23:38:08 ----D---- C:\Program Files\Veselé Omalovánky 6
2011-07-12 23:38:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 6
2011-07-12 23:37:49 ----D---- C:\Program Files\Veselé Omalovánky 5
2011-07-12 23:37:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 5
2011-07-12 23:37:30 ----D---- C:\Program Files\Veselé Omalovánky 4
2011-07-12 23:37:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 4
2011-07-12 23:37:10 ----A---- C:\WINDOWS\002647_.tmp
2011-07-12 23:37:05 ----D---- C:\Program Files\Veselé Omalovánky 2
2011-07-12 23:37:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 2
2011-07-12 23:36:44 ----D---- C:\Program Files\Veselé Omalovánky 1
2011-07-12 23:36:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 1
2011-07-12 23:34:19 ----D---- C:\Program Files\Veselé Omalovánky 3
2011-07-12 23:30:17 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-07-12 23:26:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Bluetooth
2011-07-12 23:03:21 ----D---- C:\WINDOWS\ie8updates
2011-07-12 23:03:17 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-12 23:02:06 ----D---- C:\WINDOWS\WBEM
2011-07-12 22:59:52 ----HDC---- C:\WINDOWS\ie8
2011-07-12 22:59:52 ----D---- C:\WINDOWS\system32\cs-CZ
2011-07-12 22:56:21 ----D---- C:\Program Files\IVT Corporation
2011-07-12 22:49:28 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-12 22:49:08 ----N---- C:\WINDOWS\system32\drivers\imagesrv.sys
2011-07-12 22:49:08 ----N---- C:\WINDOWS\system32\drivers\imagedrv.sys
2011-07-12 22:48:37 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2011-07-12 22:48:35 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2011-07-12 22:48:35 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2011-07-12 22:48:35 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2011-07-12 22:48:35 ----N---- C:\WINDOWS\system32\ImagX7.dll
2011-07-12 22:48:34 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2011-07-12 22:48:33 ----D---- C:\Program Files\Common Files\Ahead
2011-07-12 22:48:32 ----D---- C:\Program Files\Ahead
2011-07-12 22:41:59 ----A---- C:\Program Files\em-date.exe
2011-07-12 22:35:24 ----D---- C:\Program Files\Mio DigiWalker
2011-07-12 22:33:41 ----RA---- C:\WINDOWS\system32\drivers\OLD79.tmp
2011-07-12 22:33:34 ----A---- C:\WINDOWS\system32\drivers\wceusbsh.sys
2011-07-12 22:31:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Badoo
2011-07-12 22:16:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2011-07-12 22:16:49 ----D---- C:\Program Files\Common Files\Java
2011-07-12 22:16:22 ----A---- C:\WINDOWS\system32\javaws.exe
2011-07-12 22:16:22 ----A---- C:\WINDOWS\system32\javaw.exe
2011-07-12 22:16:22 ----A---- C:\WINDOWS\system32\java.exe
2011-07-12 22:16:22 ----A---- C:\WINDOWS\system32\deployJava1.dll
2011-07-12 22:15:43 ----D---- C:\Program Files\Java
2011-07-12 22:14:15 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Sun
2011-07-12 22:07:28 ----A---- C:\WINDOWS\system32\drivers\rasirda.sys
2011-07-12 22:07:27 ----A---- C:\WINDOWS\system32\irmon.dll
2011-07-12 22:07:25 ----A---- C:\WINDOWS\system32\drivers\irda.sys
2011-07-12 22:07:22 ----A---- C:\WINDOWS\system32\irftp.exe
2011-07-12 22:07:21 ----A---- C:\WINDOWS\system32\wshirda.dll
2011-07-12 22:06:59 ----RA---- C:\WINDOWS\system32\drivers\uir1100a.sys
2011-07-12 22:01:23 ----D---- C:\WINDOWS\Album
2011-07-12 22:01:23 ----D---- C:\Program Files\KYE
2011-07-12 22:01:23 ----A---- C:\WINDOWS\amcap.exe
2011-07-12 22:00:35 ----A---- C:\WINDOWS\vsnpstd2.exe
2011-07-12 22:00:35 ----A---- C:\WINDOWS\system32\dsnpstd2.dll
2011-07-12 22:00:35 ----A---- C:\WINDOWS\snpstd2.src
2011-07-12 22:00:35 ----A---- C:\WINDOWS\snpstd2.ini
2011-07-12 22:00:25 ----A---- C:\WINDOWS\system32\drivers\snpstd2.sys
2011-07-12 22:00:19 ----A---- C:\WINDOWS\system32\vsnpstd2.dll
2011-07-12 22:00:19 ----A---- C:\WINDOWS\system32\rsnpstd2.dll
2011-07-12 22:00:19 ----A---- C:\WINDOWS\system32\csnpstd2.dll
2011-07-12 22:00:14 ----D---- C:\Program Files\Common Files\snpstd2
2011-07-12 22:00:14 ----A---- C:\WINDOWS\usnpstd2.exe
2011-07-12 21:51:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Veselé Omalovánky 3
2011-07-12 21:44:29 ----A---- C:\WINDOWS\system32\pdfcmnnt.dll
2011-07-12 21:44:16 ----A---- C:\WINDOWS\system32\MSMPIDE.DLL
2011-07-12 21:38:26 ----D---- C:\Program Files\Common Files\HP
2011-07-12 21:26:52 ----D---- C:\Program Files\Hewlett-Packard
2011-07-12 21:21:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2011-07-12 20:49:15 ----D---- C:\Program Files\HP
2011-07-12 20:45:53 ----N---- C:\WINDOWS\hpfmdl05.dat
2011-07-12 20:45:53 ----A---- C:\WINDOWS\hpfins05.dat
2011-07-12 20:44:57 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\HP
2011-07-12 20:27:27 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Skype
2011-07-12 20:26:58 ----RD---- C:\Program Files\Skype
2011-07-12 20:26:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2011-07-12 20:22:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2011-07-12 20:22:29 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\ICQ
2011-07-12 20:22:13 ----D---- C:\Program Files\ICQ7.5
2011-07-12 20:21:01 ----D---- C:\Program Files\Verdict Free
2011-07-12 20:14:46 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Macromedia
2011-07-12 20:14:46 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Adobe
2011-07-12 20:04:13 ----A---- C:\Program Files\LEDCalc.exe
2011-07-12 19:44:02 ----D---- C:\Program Files\Microsoft Works
2011-07-12 19:41:49 ----D---- C:\Program Files\Microsoft Visual Studio
2011-07-12 19:41:48 ----D---- C:\Program Files\Common Files\DESIGNER
2011-07-12 19:31:13 ----D---- C:\WINDOWS\SHELLNEW
2011-07-12 19:30:05 ----D---- C:\Program Files\Microsoft Office
2011-07-12 19:30:01 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-07-12 19:29:10 ----RHD---- C:\MSOCache
2011-07-12 17:03:28 ----A---- C:\WINDOWS\system32\h323log.txt
2011-07-12 17:01:35 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2011-07-12 17:01:33 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2011-07-12 17:01:30 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2011-07-12 17:01:28 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2011-07-12 17:01:26 ----A---- C:\WINDOWS\system32\drivers\dmusic.sys
2011-07-12 17:01:22 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2011-07-12 17:01:19 ----A---- C:\WINDOWS\system32\drivers\mspclock.sys
2011-07-12 17:01:17 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2011-07-12 17:01:14 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2011-07-12 17:01:12 ----A---- C:\WINDOWS\system32\drivers\mspqm.sys
2011-07-12 17:01:10 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2011-07-12 17:01:05 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2011-07-12 17:00:43 ----A---- C:\WINDOWS\system32\drivers\usbaudio.sys
2011-07-12 17:00:00 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2011-07-12 16:59:53 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2011-07-12 16:59:47 ----A---- C:\WINDOWS\system32\ksuser.dll
2011-07-12 16:59:47 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2011-07-12 16:59:47 ----A---- C:\WINDOWS\system32\drivers\msmpu401.sys
2011-07-12 16:59:46 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2011-07-12 16:59:43 ----A---- C:\WINDOWS\system32\drivers\gameenum.sys
2011-07-12 16:59:09 ----A---- C:\WINDOWS\system32\drivers\RTL8139.sys
2011-07-12 16:58:55 ----A---- C:\WINDOWS\system32\usbui.dll
2011-07-12 16:58:48 ----A---- C:\WINDOWS\system32\drivers\sisnic.sys
2011-07-12 16:58:44 ----A---- C:\WINDOWS\system32\drivers\sisagp.sys
2011-07-12 16:56:58 ----SHD---- C:\WINDOWS\Installer
2011-07-12 16:56:58 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-07-12 16:56:57 ----D---- C:\Program Files\Common Files\ODBC
2011-07-12 16:56:57 ----A---- C:\WINDOWS\ODBCINST.INI
2011-07-12 16:56:52 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-07-12 16:56:52 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-07-12 16:56:51 ----RD---- C:\Program Files
2011-07-12 16:56:51 ----D---- C:\Program Files\Common Files
2011-07-12 16:56:47 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2011-07-12 16:56:47 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2011-07-12 16:56:47 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2011-07-12 16:56:44 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2011-07-12 16:56:44 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2011-07-12 16:56:44 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2011-07-12 16:56:44 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2011-07-12 16:56:44 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdur.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdru.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2011-07-12 16:56:43 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2011-07-12 16:56:40 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2011-07-12 16:56:38 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2011-07-12 16:56:38 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2011-07-12 16:56:38 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2011-07-12 16:56:38 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2011-07-12 16:56:38 ----RA---- C:\WINDOWS\system32\kbdest.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdycl.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdsl.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdro.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdpl.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdhu.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\kbdcr.dll
2011-07-12 16:56:32 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2011-07-12 16:56:30 ----A---- C:\WINDOWS\system32\spxcoins.dll
2011-07-12 16:56:30 ----A---- C:\WINDOWS\system32\irclass.dll
2011-07-12 16:56:30 ----A---- C:\WINDOWS\system32\eqnclass.dll
2011-07-12 16:56:30 ----A---- C:\WINDOWS\system32\dgsetup.dll
2011-07-12 16:56:30 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2011-07-12 16:56:27 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2011-07-12 16:56:27 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-07-12 16:56:26 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2011-07-12 16:56:26 ----A---- C:\WINDOWS\system32\batt.dll
2011-07-12 16:56:25 ----A---- C:\WINDOWS\notepad.exe
2011-07-12 16:56:23 ----A---- C:\WINDOWS\system32\storprop.dll
2011-07-12 16:56:12 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-07-12 16:56:05 ----RA---- C:\WINDOWS\SET8.tmp
2011-07-12 16:56:02 ----RA---- C:\WINDOWS\SET4.tmp
2011-07-12 16:56:00 ----RA---- C:\WINDOWS\SET3.tmp
2011-07-12 16:55:54 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-12 16:55:54 ----D---- C:\WINDOWS\system32\CatRoot
2011-07-12 16:55:48 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-07-12 16:55:17 ----D---- C:\Documents and Settings
2011-07-12 16:55:16 ----SHD---- C:\System Volume Information
2011-07-12 16:55:15 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2011-07-12 16:54:44 ----SH---- C:\boot.ini
2011-07-12 16:52:29 ----D---- C:\Program Files\IrfanView
2011-07-12 16:47:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-12 16:47:30 ----RSD---- C:\WINDOWS\Fonts
2011-07-12 16:47:30 ----RD---- C:\WINDOWS\Web
2011-07-12 16:47:30 ----HD---- C:\WINDOWS\inf
2011-07-12 16:47:30 ----D---- C:\WINDOWS\WinSxS
2011-07-12 16:47:30 ----D---- C:\WINDOWS\twain_32
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Temp
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\wins
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\wbem
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\usmt
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\spool
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\ShellExt
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\Setup
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\ras
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\oobe
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\npp
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\mui
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\inetsrv
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\IME
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\icsxml
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\ias
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\export
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\drivers\disdn
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\drivers
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\dhcp
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\config
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\3com_dmi
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\3076
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\2052
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1054
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1042
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1041
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1037
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1033
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1031
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1029
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1028
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32\1025
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system32
2011-07-12 16:47:30 ----D---- C:\WINDOWS\system
2011-07-12 16:47:30 ----D---- C:\WINDOWS\security
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Resources
2011-07-12 16:47:30 ----D---- C:\WINDOWS\repair
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Provisioning
2011-07-12 16:47:30 ----D---- C:\WINDOWS\pchealth
2011-07-12 16:47:30 ----D---- C:\WINDOWS\PeerNet
2011-07-12 16:47:30 ----D---- C:\WINDOWS\mui
2011-07-12 16:47:30 ----D---- C:\WINDOWS\msapps
2011-07-12 16:47:30 ----D---- C:\WINDOWS\msagent
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Media
2011-07-12 16:47:30 ----D---- C:\WINDOWS\java
2011-07-12 16:47:30 ----D---- C:\WINDOWS\ime
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Help
2011-07-12 16:47:30 ----D---- C:\WINDOWS\ehome
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Driver Cache
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Debug
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Cursors
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Connection Wizard
2011-07-12 16:47:30 ----D---- C:\WINDOWS\Config
2011-07-12 16:47:30 ----D---- C:\WINDOWS\AppPatch
2011-07-12 16:47:30 ----D---- C:\WINDOWS\addins
2011-07-12 16:47:30 ----D---- C:\WINDOWS
2011-07-12 16:47:30 ----ASH---- C:\pagefile.sys
2011-07-12 16:45:43 ----N---- C:\WINDOWS\system32\spmsg.dll
2011-07-12 16:45:39 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2011-07-12 16:45:10 ----D---- C:\Program Files\Windows Media Connect 2
2011-07-12 16:44:55 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2011-07-12 16:44:02 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2011-07-12 16:43:11 ----D---- C:\WINDOWS\system32\LogFiles
2011-07-12 16:43:11 ----D---- C:\WINDOWS\system32\drivers\UMDF
2011-07-12 16:43:03 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-07-12 16:43:01 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2011-07-12 16:42:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2011-07-12 16:36:30 ----D---- C:\WINDOWS\system32\appmgmt
2011-07-12 16:28:52 ----D---- C:\Program Files\WinRAR
2011-07-12 16:21:15 ----D---- C:\Program Files\Energie pod palcem
2011-07-12 16:20:55 ----D---- C:\Program Files\Quick Moto
2011-07-12 16:10:36 ----SHD---- C:\RECYCLER
2011-07-12 16:00:36 ----D---- C:\Program Files\MozBackup
2011-07-12 15:57:58 ----A---- C:\WINDOWS\nsreg.dat
2011-07-12 15:57:55 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Mozilla
2011-07-12 15:41:16 ----A---- C:\WINDOWS\system32\a3d.dll
2011-07-12 15:41:15 ----RA---- C:\WINDOWS\system32\udaprop.dll
2011-07-12 15:41:15 ----RA---- C:\WINDOWS\system32\drivers\cmuda.sys
2011-07-12 15:41:15 ----RA---- C:\WINDOWS\system32\cmuda.dll
2011-07-12 15:41:15 ----RA---- C:\WINDOWS\system32\cmirmdrv.exe
2011-07-12 15:41:15 ----RA---- C:\WINDOWS\system32\cmirmdrv.dll
2011-07-12 15:40:50 ----D---- C:\Program Files\C-Media
2011-07-12 15:40:50 ----A---- C:\WINDOWS\CMISETUP.INI
2011-07-12 15:40:50 ----A---- C:\WINDOWS\CMCDPLAY.INI
2011-07-12 15:39:56 ----RA---- C:\WINDOWS\system32\drivers\sisnicxp.sys
2011-07-12 15:39:56 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-07-12 15:32:53 ----N---- C:\WINDOWS\system32\TVMode.dll
2011-07-12 15:32:53 ----N---- C:\WINDOWS\system32\SiSHook.dll
2011-07-12 15:32:53 ----N---- C:\WINDOWS\system32\SiSApCom.dll
2011-07-12 15:32:29 ----A---- C:\WINDOWS\system32\sistray.exe
2011-07-12 15:32:28 ----HD---- C:\Program Files\InstallShield Installation Information
2011-07-12 15:32:27 ----D---- C:\WINDOWS\SiS
2011-07-12 15:32:25 ----A---- C:\WINDOWS\VGAsetup.ini
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\system32\SiSPower.dll
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\system32\SiSParse.dll
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\system32\SiSInst.dll
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\system32\SiSBase.dll
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\InstFunc.exe
2011-07-12 15:32:22 ----RA---- C:\WINDOWS\InstFunc.dll
2011-07-12 15:32:18 ----RA---- C:\WINDOWS\system32\SiSPInst.dll
2011-07-12 15:32:18 ----RA---- C:\WINDOWS\system32\drivers\srvkp.sys
2011-07-12 15:32:17 ----RA---- C:\WINDOWS\system32\sisgl.dll
2011-07-12 15:32:16 ----RA---- C:\WINDOWS\system32\sisgrv.dll
2011-07-12 15:32:16 ----RA---- C:\WINDOWS\system32\drivers\sisgrp.sys
2011-07-12 15:31:35 ----D---- C:\Program Files\SiS VGA Utilities V3.65
2011-07-12 15:31:03 ----D---- C:\WINDOWS\system32\trayres
2011-07-12 15:30:45 ----A---- C:\WINDOWS\system32\VGAunistlog.ini
2011-07-12 15:30:38 ----D---- C:\Program Files\Common Files\InstallShield
2011-07-12 15:23:22 ----D---- C:\Documents and Settings\Miroslav\Data aplikací\Identities
2011-07-12 15:23:19 ----HD---- C:\Program Files\Uninstall Information
2011-07-12 15:23:11 ----ASH---- C:\Documents and Settings\Miroslav\Data aplikací\desktop.ini
2011-07-12 15:23:10 ----SD---- C:\Documents and Settings\Miroslav\Data aplikací\Microsoft
2011-07-12 15:22:51 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2011-07-12 15:19:55 ----D---- C:\WINDOWS\SoftwareDistribution
2011-07-12 15:19:46 ----SD---- C:\WINDOWS\system32\Microsoft
2011-07-12 15:19:45 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-12 15:18:32 ----AS---- C:\WINDOWS\bootstat.dat
2011-07-12 15:14:03 ----D---- C:\WINDOWS\system32\xircom
2011-07-12 15:14:03 ----D---- C:\Program Files\xerox
2011-07-12 15:14:03 ----D---- C:\Program Files\microsoft frontpage
2011-07-12 15:13:16 ----RASH---- C:\MSDOS.SYS
2011-07-12 15:13:16 ----RASH---- C:\IO.SYS
2011-07-12 15:13:16 ----A---- C:\WINDOWS\control.ini
2011-07-12 15:13:16 ----A---- C:\CONFIG.SYS
2011-07-12 15:13:16 ----A---- C:\AUTOEXEC.BAT
2011-07-12 15:12:52 ----A---- C:\WINDOWS\system32\mapi32.dll
2011-07-12 15:11:10 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-07-12 15:11:10 ----RD---- C:\WINDOWS\Offline Web Pages
2011-07-12 15:10:50 ----HD---- C:\Program Files\WindowsUpdate
2011-07-12 15:10:45 ----D---- C:\Program Files\Online Services
2011-07-12 15:10:18 ----D---- C:\WINDOWS\system32\DirectX
2011-07-12 15:09:47 ----A---- C:\WINDOWS\system32\atrace.dll
2011-07-12 15:09:43 ----A---- C:\WINDOWS\system32\desktop.ini
2011-07-12 15:09:43 ----A---- C:\WINDOWS\desktop.ini
2011-07-12 15:09:34 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2011-07-12 15:09:33 ----A---- C:\WINDOWS\system32\acctres.dll
2011-07-12 15:09:32 ----D---- C:\Program Files\Common Files\Services
2011-07-12 15:09:28 ----SD---- C:\WINDOWS\Tasks
2011-07-12 15:09:28 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2011-07-12 15:09:26 ----D---- C:\Program Files\Common Files\MSSoap
2011-07-12 15:09:21 ----D---- C:\WINDOWS\srchasst
2011-07-12 15:09:20 ----D---- C:\WINDOWS\system32\Macromed
2011-07-12 15:09:16 ----A---- C:\WINDOWS\system32\wuweb.dll
2011-07-12 15:09:15 ----A---- C:\WINDOWS\system32\wucltui.dll
2011-07-12 15:09:15 ----A---- C:\WINDOWS\system32\wuauserv.dll
2011-07-12 15:09:15 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2011-07-12 15:09:14 ----A---- C:\WINDOWS\system32\wups.dll
2011-07-12 15:09:14 ----A---- C:\WINDOWS\system32\wuaueng.dll
2011-07-12 15:09:14 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2011-07-12 15:09:14 ----A---- C:\WINDOWS\system32\wuauclt.exe
2011-07-12 15:09:14 ----A---- C:\WINDOWS\system32\wuapi.dll
2011-07-12 15:09:13 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2011-07-12 15:09:13 ----A---- C:\WINDOWS\system32\qmgr.dll
2011-07-12 15:09:13 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2011-07-12 15:09:13 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2011-07-12 15:09:08 ----D---- C:\Program Files\Movie Maker
2011-07-12 15:09:02 ----A---- C:\WINDOWS\system32\safrslv.dll
2011-07-12 15:09:02 ----A---- C:\WINDOWS\system32\safrdm.dll
2011-07-12 15:09:02 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2011-07-12 15:09:02 ----A---- C:\WINDOWS\system32\racpldlg.dll
2011-07-12 15:08:56 ----D---- C:\WINDOWS\system32\Restore
2011-07-12 15:08:56 ----A---- C:\WINDOWS\system32\fltmc.exe
2011-07-12 15:08:56 ----A---- C:\WINDOWS\system32\fltlib.dll
2011-07-12 15:08:56 ----A---- C:\WINDOWS\system32\drivers\fltmgr.sys
2011-07-12 15:08:55 ----A---- C:\WINDOWS\system32\srsvc.dll
2011-07-12 15:08:55 ----A---- C:\WINDOWS\system32\srrstr.dll
2011-07-12 15:08:55 ----A---- C:\WINDOWS\system32\srclient.dll
2011-07-12 15:08:55 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2011-07-12 15:08:54 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2011-07-12 15:08:54 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2011-07-12 15:08:54 ----A---- C:\WINDOWS\system32\mnmdd.dll
2011-07-12 15:08:54 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2011-07-12 15:08:54 ----A---- C:\WINDOWS\system32\ils.dll
2011-07-12 15:08:53 ----A---- C:\WINDOWS\system32\msconf.dll
2011-07-12 15:08:50 ----D---- C:\Program Files\NetMeeting
2011-07-12 15:08:50 ----A---- C:\WINDOWS\system32\msoert2.dll
2011-07-12 15:08:50 ----A---- C:\WINDOWS\system32\msoeacct.dll
2011-07-12 15:08:48 ----A---- C:\WINDOWS\system32\inetres.dll
2011-07-12 15:08:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2011-07-12 15:08:45 ----D---- C:\Program Files\Outlook Express
2011-07-12 15:08:45 ----A---- C:\WINDOWS\system32\schedsvc.dll
2011-07-12 15:08:44 ----A---- C:\WINDOWS\system32\mstinit.exe
2011-07-12 15:08:44 ----A---- C:\WINDOWS\system32\mstask.dll
2011-07-12 15:08:44 ----A---- C:\WINDOWS\system32\icwphbk.dll
2011-07-12 15:08:44 ----A---- C:\WINDOWS\system32\icwdial.dll
2011-07-12 15:08:43 ----A---- C:\WINDOWS\system32\isign32.dll
2011-07-12 15:08:43 ----A---- C:\WINDOWS\system32\inetcfg.dll
2011-07-12 15:08:34 ----D---- C:\Program Files\Common Files\System
2011-07-12 15:08:32 ----D---- C:\Program Files\Internet Explorer
2011-07-12 15:07:37 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2011-07-12 15:07:27 ----D---- C:\Program Files\ComPlus Applications
2011-07-12 15:07:24 ----A---- C:\WINDOWS\vbaddin.ini
2011-07-12 15:07:24 ----A---- C:\WINDOWS\vb.ini
2011-07-12 15:07:19 ----D---- C:\WINDOWS\Registration
2011-07-12 15:07:10 ----D---- C:\Program Files\Windows Media Player
2011-07-12 15:07:01 ----D---- C:\Program Files\Messenger
2011-07-12 15:06:56 ----D---- C:\Program Files\MSN Gaming Zone
2011-07-12 15:06:56 ----A---- C:\WINDOWS\system32\write.exe
2011-07-12 15:06:41 ----A---- C:\WINDOWS\system32\sndvol32.exe
2011-07-12 15:06:41 ----A---- C:\WINDOWS\system32\hticons.dll
2011-07-12 15:06:40 ----A---- C:\WINDOWS\system32\avwav.dll
2011-07-12 15:06:40 ----A---- C:\WINDOWS\system32\avtapi.dll
2011-07-12 15:06:40 ----A---- C:\WINDOWS\system32\avmeter.dll
2011-07-12 15:06:39 ----A---- C:\WINDOWS\system32\winchat.exe
2011-07-12 15:06:30 ----A---- C:\WINDOWS\system32\getuname.dll
2011-07-12 15:06:29 ----A---- C:\WINDOWS\system32\charmap.exe
2011-07-12 15:06:29 ----A---- C:\WINDOWS\system32\calc.exe
2011-07-12 15:06:28 ----A---- C:\WINDOWS\system32\winmine.exe
2011-07-12 15:06:28 ----A---- C:\WINDOWS\system32\sol.exe
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\tskill.exe
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\reset.exe
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2011-07-12 15:06:27 ----A---- C:\WINDOWS\system32\freecell.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\tscon.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\shadow.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\rwinsta.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\regini.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\qwinsta.exe
2011-07-12 15:06:26 ----A---- C:\WINDOWS\system32\qappsrv.exe
2011-07-12 15:06:25 ----A---- C:\WINDOWS\system32\msg.exe
2011-07-12 15:06:25 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2011-07-12 15:06:25 ----A---- C:\WINDOWS\system32\logoff.exe
2011-07-12 15:06:25 ----A---- C:\WINDOWS\system32\cdmodem.dll
2011-07-12 15:06:24 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2011-07-12 15:06:24 ----A---- C:\WINDOWS\system32\mtxex.dll
2011-07-12 15:06:24 ----A---- C:\WINDOWS\system32\mtxdm.dll
2011-07-12 15:06:24 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2011-07-12 15:06:23 ----A---- C:\WINDOWS\system32\stclient.dll
2011-07-12 15:06:23 ----A---- C:\WINDOWS\system32\comsnap.dll
2011-07-12 15:06:23 ----A---- C:\WINDOWS\system32\comrepl.dll
2011-07-12 15:06:23 ----A---- C:\WINDOWS\system32\comaddin.dll
2011-07-12 15:06:15 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2011-07-12 15:06:14 ----A---- C:\WINDOWS\system32\accwiz.exe
2011-07-12 15:06:13 ----A---- C:\WINDOWS\system32\sndrec32.exe
2011-07-12 15:06:13 ----A---- C:\WINDOWS\system32\mplay32.exe
2011-07-12 15:06:13 ----A---- C:\WINDOWS\system32\hypertrm.dll
2011-07-12 15:06:12 ----D---- C:\Program Files\Windows NT
2011-07-12 15:06:12 ----A---- C:\WINDOWS\system32\mspaint.exe
2011-07-12 15:06:12 ----A---- C:\WINDOWS\system32\clipbrd.exe
2011-07-12 15:06:11 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2011-07-12 15:06:11 ----A---- C:\WINDOWS\system32\spider.exe
2011-07-12 15:06:11 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2011-07-12 15:06:11 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2011-07-12 15:06:11 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2011-07-12 15:06:10 ----A---- C:\WINDOWS\system32\remotepg.dll
2011-07-12 15:06:10 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2011-07-12 15:06:10 ----A---- C:\WINDOWS\system32\mstscax.dll
2011-07-12 15:06:10 ----A---- C:\WINDOWS\system32\mstsc.exe
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\termsrv.dll
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\sessmgr.exe
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\rdshost.exe
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2011-07-12 15:06:09 ----A---- C:\WINDOWS\system32\rdchost.dll
2011-07-12 15:06:08 ----D---- C:\WINDOWS\system32\MsDtc
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\rdpclip.exe
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\qprocess.exe
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\icaapi.dll
2011-07-12 15:06:08 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2011-07-12 15:06:07 ----A---- C:\WINDOWS\system32\mtxoci.dll
2011-07-12 15:06:07 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2011-07-12 15:06:06 ----A---- C:\WINDOWS\system32\xolehlp.dll
2011-07-12 15:06:06 ----A---- C:\WINDOWS\system32\msdtctm.dll
2011-07-12 15:06:06 ----A---- C:\WINDOWS\system32\msdtclog.dll
2011-07-12 15:06:06 ----A---- C:\WINDOWS\system32\msdtc.exe
2011-07-12 15:06:05 ----D---- C:\WINDOWS\system32\Com
2011-07-12 15:06:05 ----A---- C:\WINDOWS\system32\colbact.dll
2011-07-12 15:06:05 ----A---- C:\WINDOWS\system32\clbcatex.dll
2011-07-12 15:06:05 ----A---- C:\WINDOWS\system32\catsrvps.dll
2011-07-12 15:06:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2011-07-12 15:06:04 ----A---- C:\WINDOWS\system32\catsrv.dll
2011-07-12 15:06:03 ----A---- C:\WINDOWS\system32\comuid.dll
2011-07-12 15:06:03 ----A---- C:\WINDOWS\system32\comsvcs.dll
2011-07-12 15:06:03 ----A---- C:\WINDOWS\system32\clbcatq.dll
2011-07-12 15:05:53 ----A---- C:\WINDOWS\system32\servdeps.dll
2011-07-12 15:05:53 ----A---- C:\WINDOWS\system32\mmfutil.dll
2011-07-12 15:05:53 ----A---- C:\WINDOWS\system32\licwmi.dll
2011-07-12 15:05:53 ----A---- C:\WINDOWS\system32\cmprops.dll
2011-07-12 15:05:48 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2011-07-12 15:05:48 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 month======

2011-07-29 18:12:52 ----A---- C:\WINDOWS\win.ini
2011-07-13 15:20:04 ----A---- C:\WINDOWS\system32\uxtheme.dll
2011-07-12 16:56:50 ----A---- C:\WINDOWS\system.ini
2011-07-12 15:12:34 ----ASH---- C:\WINDOWS\fonts\desktop.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 sisagp;Filtr SIS sběrnice AGP ; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-14 40960]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 fwdrv;Firewall Driver; C:\WINDOWS\system32\drivers\fwdrv.sys [2006-07-18 284184]
R1 khips;Kerio HIPS Driver; C:\WINDOWS\system32\drivers\khips.sys [2006-07-18 91672]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsl3f0ada3e;MpKsl3f0ada3e; \??\c:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{440374CD-7B11-47BA-940F-1557745C0778}\MpKsl3f0ada3e.sys []
R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2005-01-04 13184]
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-14 88192]
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2007-03-05 34576]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 cmuda;C-Media WDM Audio Interface; C:\WINDOWS\system32\drivers\cmuda.sys [2003-11-06 755392]
R3 LgBttPort;LGE Bluetooth TransPort; C:\WINDOWS\system32\DRIVERS\lgbtport.sys [2009-09-29 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\lgbtbus.sys [2009-09-29 10496]
R3 LGVMODEM;LGE Virtual Modem; C:\WINDOWS\system32\DRIVERS\lgvmodem.sys [2009-09-29 12928]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
R3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2005-01-04 239104]
R3 snpstd2;VideoCAM Look; C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 334080]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VClone;VClone; C:\WINDOWS\system32\DRIVERS\VClone.sys [2009-05-23 29696]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S1 MpKsld46556fc;MpKsld46556fc; \??\c:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{882C348D-C1F4-4C6B-B4A6-CA6A4F890604}\MpKsld46556fc.sys []
S1 MpKslda3eb3f1;MpKslda3eb3f1; \??\c:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2BDDEFFA-CF62-40AB-BAFE-3A199A90117D}\MpKslda3eb3f1.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2007-03-05 39184]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\sisnic.sys [2004-08-04 32768]
S3 SISNICXP;SiS PCI Fast Ethernet Adapter Driver for NDIS51; C:\WINDOWS\system32\DRIVERS\sisnicxp.sys [2004-11-05 32768]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 uir1100a;UIR1100A; C:\WINDOWS\system32\DRIVERS\uir1100a.sys [2004-12-01 31048]
S3 usbbus;LGE Mobile Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgusbbus.sys [2010-10-21 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys [2010-10-21 20864]
S3 USBModem;LGE Mobile USB Modem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys [2010-10-21 25216]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-07-12 153376]
R2 KPF4;Sunbelt Kerio Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe [2011-07-26 1205784]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Start BT in service;Start BT in service; C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [2007-04-21 52080]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]

-----------------EOF-----------------
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Uživatelský avatar
ASAP
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 30 črc 2011 12:13

Re: Problem s explorer.exe

#2 Příspěvek od ASAP »

Dobrý den i tobě.

Zkoušel jsi použít i nástroje určene k mazání - unlocker či OTM? Návody jsou k dispozici, co jsem se díval, zde na fóře.
Obrázek

překladatel MBAM, OTL.

Uživatelský avatar
Pavuk29
VIP in memoriam
VIP in memoriam
Příspěvky: 6953
Registrován: 31 říj 2003 08:26
Bydliště: Banská Bystrica
Kontaktovat uživatele:

Re: Problem s explorer.exe

#3 Příspěvek od Pavuk29 »

ASAP píše:Dobrý den i tobě.

Zkoušel jsi použít i nástroje určene k mazání - unlocker či OTM? Návody jsou k dispozici, co jsem se díval, zde na fóře.
Nechame to na radcov, co ty na to, David? :James008:
------------------------------------------------------------------------------------------------------------------------------
:!: PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA :!: :spam:
------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora, :207: pripadne s inymi uzivatelmi, :whip: kontaktujte ma na ICQ alebo mailom :31: na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
:183: hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
:!: pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601

Uživatelský avatar
ASAP
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 30 črc 2011 12:13

Re: Problem s explorer.exe

#4 Příspěvek od ASAP »

Pavuk29 píše:
ASAP píše:Dobrý den i tobě.

Zkoušel jsi použít i nástroje určene k mazání - unlocker či OTM? Návody jsou k dispozici, co jsem se díval, zde na fóře.
Nechame to na radcov, co ty na to, David? :James008:
Samozřejmně šéfe! :roll:
Obrázek

překladatel MBAM, OTL.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s explorer.exe

#5 Příspěvek od vyosek »

Zdravim a pekny podvecer preji :)

:arrow: Ja to tu s dovolenim tedy prevezmu

:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) (viz muj podpis)
  • Provedte aktualizaci - treti zalozka
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Re: Problem s explorer.exe

#6 Příspěvek od Busbusak »

Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org

Verze databáze: 7326

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

30.7.2011 18:38:07
mbam-log-2011-07-30 (18-38-00).txt

Typ kontroly: Rychlý test
Testované objekty: 160580
Uplynulý čas: 6 minut, 25 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 1
Infikované složky: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s explorer.exe

#7 Příspěvek od vyosek »

:arrow: Nalez smazte a udelejte kompeltni sken

PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Re: Problem s explorer.exe

#8 Příspěvek od Busbusak »

Malwarebytes' Anti-Malware
www.malwarebytes.org

Verze databáze:

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

30.7.2011 22:29:11
mbam-log-2011-07-30 (22-29-05).txt

Typ: Úplná kontrola (C:\|)
Kontrolované objekty: 194829
Uplynulý čas: 52 minut, 25 sekund

Infikované procesy v paměti: 1
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 3

Infikované procesy v paměti:
c:\WINDOWS\system32\calc.exe (Trojan.Agent.Gen) -> 2380 -> No action taken.

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
c:\WINDOWS\system32\calc.exe (Trojan.Agent.Gen) -> No action taken.
c:\qip infium jadrispack\qip infium jadrispack.exe (Trojan.Downloader) -> No action taken.
c:\WINDOWS\servicepackfiles\i386\ctfmon.exe (Trojan.FakeMS) -> No action taken.
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Re: Problem s explorer.exe

#9 Příspěvek od Busbusak »

ComboFix 11-07-29.03 - Miroslav 30.07.2011 22:49:59.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.991.598 [GMT 2:00]
Spuštěný z: c:\documents and settings\Miroslav\Plocha\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
FW: Sunbelt Kerio Personal Firewall *Enabled* {E659E0EE-10E6-49B7-8696-60F38D0EB174}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Nakažená kopie c:\windows\system32\midimap.dll byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\NiwradSoft Shell Pack\Backup\midimap.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-28 do 2011-07-30 )))))))))))))))))))))))))))))))
.
.
2011-07-30 10:26 . 2011-07-30 10:27 -------- d-----w- C:\rsit
2011-07-15 20:33 . 2011-07-17 21:46 -------- d-----w- C:\QIP Infium JadrisPack
2011-07-12 17:29 . 2011-07-12 17:29 -------- d-----r- C:\MSOCache
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-13 13:20 . 2004-08-17 13:49 219648 ----a-w- c:\windows\system32\uxtheme.dll
2011-06-06 11:35 . 2004-08-17 13:44 1858944 ----a-w- c:\windows\system32\win32k.sys
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[7] 2008-04-14 06:51 . E7B375DFFB68A16659CA66474A280C47 . 806912 . . [2001.12.4414.700] . . c:\windows\NiwradSoft Shell Pack\Backup\comres.dll
[-] 2008-04-14 06:51 . 9BBABCB691B887769048255FA7047C05 . 1508864 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 06:51 . 9BBABCB691B887769048255FA7047C05 . 1508864 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[7] 2004-08-17 13:49 . B44F68274AB7B8A54E9AD74AFF0EFAAC . 806912 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[7] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\winlogon.exe
[-] 2008-04-14 . 471341D353962A35DA3C6324D59D09C4 . 547328 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . 471341D353962A35DA3C6324D59D09C4 . 547328 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[7] 2004-08-17 . 221C29AE1B4CC61D11D8B27DE78B2307 . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[7] 2010-08-23 . E145ADD7DAEF759C4F5FB80A180A9C30 . 617472 . . [5.82] . . c:\windows\NiwradSoft Shell Pack\Backup\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[7] 2010-08-23 . 8A72A30FDC803DC06755D3B36D966F31 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[7] 2008-04-14 . D7B7AE36A2EBA312AC4B53862019B3F5 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[7] 2004-08-17 . 876C658C44F2BF4AF050E5534A9F066F . 611328 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[7] 2004-08-17 . F76B3003366A205E05AFC0D034C7D3E9 . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
[7] 2001-10-25 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
.
[7] 2010-05-06 . 06B941C7749A9F071444B4C7563F36B5 . 5950976 . . [8.00.6001.18928] . . c:\windows\NiwradSoft Shell Pack\Backup\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\system32\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\system32\dllcache\mshtml.dll
[7] 2010-05-06 . 3F88F981AA7BC20744E0D2C699F500EF . 5953024 . . [8.00.6001.23019] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\mshtml.dll
[7] 2009-03-08 . D469A0EBA2EF5C6BEE8065B7E3196E5E . 5937152 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB982381-IE8\mshtml.dll
[7] 2004-08-17 . EF74351C9098210CC9C1A3679DB62041 . 3003392 . . [6.00.2900.2180] . . c:\windows\ie8\mshtml.dll
.
[7] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\user32.dll
[-] 2008-04-14 . CCB32D10C69A89822E9134C0C4894BE1 . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . CCB32D10C69A89822E9134C0C4894BE1 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[7] 2004-08-17 . 1B4CCC59980DA34E75F20E42B283B027 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
.
[7] 2010-05-06 . B7ECEF0CCF63119356E174A78C185171 . 916480 . . [8.00.6001.18923] . . c:\windows\NiwradSoft Shell Pack\Backup\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\system32\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\system32\dllcache\wininet.dll
[7] 2010-05-06 . 72064DA077E9D6912F39438D97CC0C60 . 919040 . . [8.00.6001.23014] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\wininet.dll
[7] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB982381-IE8\wininet.dll
[7] 2004-08-17 . 50D263E3454E8357D13BB598129185AD . 657408 . . [6.00.2900.2180] . . c:\windows\ie8\wininet.dll
.
[-] 2008-04-14 . D63C59BB0CA2F83B62D003FD52863090 . 1541120 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[7] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\explorer.exe
[-] 2008-04-14 . D63C59BB0CA2F83B62D003FD52863090 . 1541120 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[7] 2004-08-17 . 53114D57AB73A406AC7F602227781A99 . 1032704 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
.
[-] 2008-04-14 . 6915639F41228891A883B2DA59AA7429 . 277504 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[7] 2008-04-14 . FDEB1D02CAE38665CBF114F44E6B997E . 147968 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\regedit.exe
[-] 2008-04-14 . 6915639F41228891A883B2DA59AA7429 . 277504 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[7] 2004-08-17 . CB5A91928D94224E7E30EE277B45E8A3 . 147968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[7] 2010-07-16 . 6D1A3A355CA2AC64D2D5BAEC25C16427 . 1287680 . . [5.1.2600.6010] . . c:\windows\NiwradSoft Shell Pack\Backup\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\ServicePackFiles\i386\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\system32\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\system32\dllcache\ole32.dll
[7] 2010-07-16 . C85BE0CF9C91EB64CECA1D639D71D4CC . 1288704 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
[7] 2004-08-17 . 7FE54C063DDA8EF226846510852E6B1B . 1281024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ole32.dll
.
[7] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\ctfmon.exe
[-] 2008-04-14 . 0415E09C0BCCBF8B5CD5A05889EFB962 . 40448 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 0415E09C0BCCBF8B5CD5A05889EFB962 . 40448 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[7] 2004-08-17 . A5BAA91475167161DEA02BA3C4CA4F59 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[7] 2008-04-14 . ED18ADEE4AA21EB26977260152D7241A . 345088 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\hnetcfg.dll
[-] 2008-04-14 . FDE84E2C6D0E1F75D61D7CC111A1DA5A . 369152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . FDE84E2C6D0E1F75D61D7CC111A1DA5A . 369152 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[7] 2004-08-17 . FAABA83BE47C5B15F620FAA53267A9B8 . 345088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[7] 2010-12-09 . 40D176442F70573DBA0E05A7E40D3EBB . 2071552 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
[7] 2010-12-09 . 4FE7B81BEDE8D37C9E3D95C99A56A34E . 2071552 . . [5.1.2600.6055] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[7] 2010-12-09 . 4FE7B81BEDE8D37C9E3D95C99A56A34E . 2071552 . . [5.1.2600.6055] . . c:\windows\NiwradSoft Shell Pack\Backup\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\system32\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[7] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[7] 2004-08-17 . E86DD06F2B8F919DDF23F78A3BF2AA23 . 2059008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
.
[7] 2009-03-08 . B60DDDD2D63CE41CB8C487FCFBB6419E . 638816 . . [8.00.6001.18702] . . c:\windows\NiwradSoft Shell Pack\Backup\iexplore.exe
[-] 2009-03-08 . F68C1BAC147227B86FFB36828FF8BEDF . 510816 . . [8.00.6001.18702] . . c:\windows\ServicePackFiles\i386\iexplore.exe
[-] 2009-03-08 . F68C1BAC147227B86FFB36828FF8BEDF . 510816 . . [8.00.6001.18702] . . c:\windows\system32\dllcache\iexplore.exe
[7] 2004-08-17 . 63E527C26AC3059EAD766C6C11746D07 . 93184 . . [6.00.2900.2180] . . c:\windows\ie8\iexplore.exe
.
[7] 2010-12-09 . 8D222D8EF9B1951296F822583A044542 . 2194944 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe
[7] 2010-12-09 . B6C5D4CBB22EEF31FAFBB76C2C6F3D99 . 2194944 . . [5.1.2600.6055] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[7] 2010-12-09 . B6C5D4CBB22EEF31FAFBB76C2C6F3D99 . 2194944 . . [5.1.2600.6055] . . c:\windows\NiwradSoft Shell Pack\Backup\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\system32\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntoskrnl.exe
[7] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[7] 2004-08-17 . 12C80E46DCEC9B82473D1B1B9DA1F16B . 2183168 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EM-DATE"="c:\program files\em-date.exe" [2011-07-12 104960]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 997920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 40448]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Utility Tray.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Utility Tray.lnk
backup=c:\windows\pss\Utility Tray.lnkCommon Startup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Badoo Desktop]
2011-06-07 16:55 1017344 ----a-w- c:\documents and settings\All Users\Data aplikací\Badoo\Badoo Desktop\1.5.3.949\Badoo.Desktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2005-05-11 21:12 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SNPSTD2]
2004-06-10 09:54 286720 ----a-w- c:\windows\vsnpstd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-04-08 10:59 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OutlookFriend"=outinst.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ7.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\QIP Infium JadrisPack\\qip.exe"=
"c:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"=
.
R1 fwdrv;Firewall Driver;c:\windows\system32\drivers\fwdrv.sys [18.7.2006 12:02 284184]
R1 khips;Kerio HIPS Driver;c:\windows\system32\drivers\khips.sys [18.7.2006 12:02 91672]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\drivers\lgbtport.sys [29.9.2009 8:11 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\drivers\lgbtbus.sys [29.9.2009 8:11 10496]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\drivers\lgvmodem.sys [29.9.2009 8:11 12928]
S1 MpKsld46556fc;MpKsld46556fc;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{882C348D-C1F4-4C6B-B4A6-CA6A4F890604}\MpKsld46556fc.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{882C348D-C1F4-4C6B-B4A6-CA6A4F890604}\MpKsld46556fc.sys [?]
S1 MpKslda3eb3f1;MpKslda3eb3f1;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2BDDEFFA-CF62-40AB-BAFE-3A199A90117D}\MpKslda3eb3f1.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2BDDEFFA-CF62-40AB-BAFE-3A199A90117D}\MpKslda3eb3f1.sys [?]
S3 Start BT in service;Start BT in service;c:\program files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [21.4.2007 14:54 52080]
S3 uir1100a;UIR1100A;c:\windows\system32\drivers\uir1100a.sys [12.7.2011 22:06 31048]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-30 c:\windows\Tasks\User_Feed_Synchronization-{93135411-9C3F-44EB-BC5D-BB85B3FB0E21}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
2011-07-30 c:\windows\Tasks\User_Feed_Synchronization-{941432C1-AE02-47A0-9A06-9B3EB7B817AA}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe
IE: {{230D1201-7607-4CF6-A11F-9E4BF0A333E0} - {0DB13731-CEFD-43CF-A8FD-B61DCBC4D5B8} - c:\program files\Verdict Free\etnxp.dll
IE: {{2C73F784-D2DE-4422-B070-2E3332FE5744} - {0320AC26-52C8-4316-B2C4-24BB6FA73C9A} - c:\program files\Verdict Free\etnxp.dll
TCP: DhcpNameServer = 10.29.2.1
FF - ProfilePath - c:\documents and settings\Miroslav\Data aplikací\Mozilla\Firefox\Profiles\86m46pif.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?#obsah
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=827316&p=
FF - prefs.js: network.proxy.type - 4
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.search.openintab - false
FF - user.js: browser.tabs.closeButtons - 1
FF - user.js: browser.tabs.opentabfor.middleclick - true
FF - user.js: browser.tabs.tabMinWidth - 100
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autoFill - false
FF - user.js: browser.urlbar.autofill - true
FF - user.js: browser.urlbar.hideGoButton - false
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.maxtextrun - 4095
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 1000000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 1000000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: layout.spellcheckDefault - 1
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.prefetch-next - true
FF - user.js: nglayout.initialpaint.delay - 1000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-Cmaudio - cmicnfg.cpl
MSConfigStartUp-MSMSGS - c:\program files\Messenger\msmsgs.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-30 23:07
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(828)
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\cscui.dll
.
- - - - - - - > 'lsass.exe'(892)
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\psbase.dll
.
- - - - - - - > 'explorer.exe'(3164)
c:\windows\system32\COMRes.dll
c:\windows\System32\cscui.dll
c:\progra~1\WINDOW~2\wmpband.dll
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\system32\NETSHELL.dll
c:\windows\system32\credui.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Microsoft Security Client\Antimalware\MsMpEng.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4ss.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\windows\system32\wscntfy.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
.
**************************************************************************
.
Celkový čas: 2011-07-30 23:15:54 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-30 21:15
.
Před spuštěním: 6 986 596 352
Po spuštění: 6 958 690 304
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - 5707FB010904D0EEA31C153A609FB99A
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Re: Problem s explorer.exe

#10 Příspěvek od Busbusak »

ComboFix 11-07-29.03 - Miroslav 30.07.2011 22:49:59.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.991.598 [GMT 2:00]
Spuštěný z: c:\documents and settings\Miroslav\Plocha\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
FW: Sunbelt Kerio Personal Firewall *Enabled* {E659E0EE-10E6-49B7-8696-60F38D0EB174}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
Nakažená kopie c:\windows\system32\midimap.dll byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\NiwradSoft Shell Pack\Backup\midimap.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-28 do 2011-07-30 )))))))))))))))))))))))))))))))
.
.
2011-07-30 10:26 . 2011-07-30 10:27 -------- d-----w- C:\rsit
2011-07-15 20:33 . 2011-07-17 21:46 -------- d-----w- C:\QIP Infium JadrisPack
2011-07-12 17:29 . 2011-07-12 17:29 -------- d-----r- C:\MSOCache
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-13 13:20 . 2004-08-17 13:49 219648 ----a-w- c:\windows\system32\uxtheme.dll
2011-06-06 11:35 . 2004-08-17 13:44 1858944 ----a-w- c:\windows\system32\win32k.sys
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[7] 2008-04-14 06:51 . E7B375DFFB68A16659CA66474A280C47 . 806912 . . [2001.12.4414.700] . . c:\windows\NiwradSoft Shell Pack\Backup\comres.dll
[-] 2008-04-14 06:51 . 9BBABCB691B887769048255FA7047C05 . 1508864 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 06:51 . 9BBABCB691B887769048255FA7047C05 . 1508864 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[7] 2004-08-17 13:49 . B44F68274AB7B8A54E9AD74AFF0EFAAC . 806912 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[7] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\winlogon.exe
[-] 2008-04-14 . 471341D353962A35DA3C6324D59D09C4 . 547328 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . 471341D353962A35DA3C6324D59D09C4 . 547328 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[7] 2004-08-17 . 221C29AE1B4CC61D11D8B27DE78B2307 . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[7] 2010-08-23 . E145ADD7DAEF759C4F5FB80A180A9C30 . 617472 . . [5.82] . . c:\windows\NiwradSoft Shell Pack\Backup\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 157577AE3ED2862091111184966FAB66 . 643072 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[7] 2010-08-23 . 8A72A30FDC803DC06755D3B36D966F31 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[7] 2008-04-14 . D7B7AE36A2EBA312AC4B53862019B3F5 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[7] 2004-08-17 . 876C658C44F2BF4AF050E5534A9F066F . 611328 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[7] 2004-08-17 . F76B3003366A205E05AFC0D034C7D3E9 . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
[7] 2001-10-25 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
.
[7] 2010-05-06 . 06B941C7749A9F071444B4C7563F36B5 . 5950976 . . [8.00.6001.18928] . . c:\windows\NiwradSoft Shell Pack\Backup\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\system32\mshtml.dll
[-] 2010-05-06 . E39B4A2F80758A9030D294EAD4FF79DE . 6112256 . . [8.00.6001.18928] . . c:\windows\system32\dllcache\mshtml.dll
[7] 2010-05-06 . 3F88F981AA7BC20744E0D2C699F500EF . 5953024 . . [8.00.6001.23019] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\mshtml.dll
[7] 2009-03-08 . D469A0EBA2EF5C6BEE8065B7E3196E5E . 5937152 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB982381-IE8\mshtml.dll
[7] 2004-08-17 . EF74351C9098210CC9C1A3679DB62041 . 3003392 . . [6.00.2900.2180] . . c:\windows\ie8\mshtml.dll
.
[7] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\user32.dll
[-] 2008-04-14 . CCB32D10C69A89822E9134C0C4894BE1 . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . CCB32D10C69A89822E9134C0C4894BE1 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[7] 2004-08-17 . 1B4CCC59980DA34E75F20E42B283B027 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
.
[7] 2010-05-06 . B7ECEF0CCF63119356E174A78C185171 . 916480 . . [8.00.6001.18923] . . c:\windows\NiwradSoft Shell Pack\Backup\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\system32\wininet.dll
[-] 2010-05-06 . BAE06EB70D31A676860C4952DB239AB4 . 983040 . . [8.00.6001.18923] . . c:\windows\system32\dllcache\wininet.dll
[7] 2010-05-06 . 72064DA077E9D6912F39438D97CC0C60 . 919040 . . [8.00.6001.23014] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\wininet.dll
[7] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB982381-IE8\wininet.dll
[7] 2004-08-17 . 50D263E3454E8357D13BB598129185AD . 657408 . . [6.00.2900.2180] . . c:\windows\ie8\wininet.dll
.
[-] 2008-04-14 . D63C59BB0CA2F83B62D003FD52863090 . 1541120 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[7] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\explorer.exe
[-] 2008-04-14 . D63C59BB0CA2F83B62D003FD52863090 . 1541120 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[7] 2004-08-17 . 53114D57AB73A406AC7F602227781A99 . 1032704 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
.
[-] 2008-04-14 . 6915639F41228891A883B2DA59AA7429 . 277504 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[7] 2008-04-14 . FDEB1D02CAE38665CBF114F44E6B997E . 147968 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\regedit.exe
[-] 2008-04-14 . 6915639F41228891A883B2DA59AA7429 . 277504 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[7] 2004-08-17 . CB5A91928D94224E7E30EE277B45E8A3 . 147968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[7] 2010-07-16 . 6D1A3A355CA2AC64D2D5BAEC25C16427 . 1287680 . . [5.1.2600.6010] . . c:\windows\NiwradSoft Shell Pack\Backup\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\ServicePackFiles\i386\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\system32\ole32.dll
[-] 2010-07-16 . 81206718E930BEF6D92A64725907D973 . 1312768 . . [5.1.2600.6010] . . c:\windows\system32\dllcache\ole32.dll
[7] 2010-07-16 . C85BE0CF9C91EB64CECA1D639D71D4CC . 1288704 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
[7] 2004-08-17 . 7FE54C063DDA8EF226846510852E6B1B . 1281024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ole32.dll
.
[7] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\ctfmon.exe
[-] 2008-04-14 . 0415E09C0BCCBF8B5CD5A05889EFB962 . 40448 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 0415E09C0BCCBF8B5CD5A05889EFB962 . 40448 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[7] 2004-08-17 . A5BAA91475167161DEA02BA3C4CA4F59 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[7] 2008-04-14 . ED18ADEE4AA21EB26977260152D7241A . 345088 . . [5.1.2600.5512] . . c:\windows\NiwradSoft Shell Pack\Backup\hnetcfg.dll
[-] 2008-04-14 . FDE84E2C6D0E1F75D61D7CC111A1DA5A . 369152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . FDE84E2C6D0E1F75D61D7CC111A1DA5A . 369152 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[7] 2004-08-17 . FAABA83BE47C5B15F620FAA53267A9B8 . 345088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[7] 2010-12-09 . 40D176442F70573DBA0E05A7E40D3EBB . 2071552 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
[7] 2010-12-09 . 4FE7B81BEDE8D37C9E3D95C99A56A34E . 2071552 . . [5.1.2600.6055] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[7] 2010-12-09 . 4FE7B81BEDE8D37C9E3D95C99A56A34E . 2071552 . . [5.1.2600.6055] . . c:\windows\NiwradSoft Shell Pack\Backup\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\system32\ntkrnlpa.exe
[-] 2010-12-09 . 3E500054792EA59F7D79B888C67AB669 . 2232704 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[7] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[7] 2004-08-17 . E86DD06F2B8F919DDF23F78A3BF2AA23 . 2059008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
.
[7] 2009-03-08 . B60DDDD2D63CE41CB8C487FCFBB6419E . 638816 . . [8.00.6001.18702] . . c:\windows\NiwradSoft Shell Pack\Backup\iexplore.exe
[-] 2009-03-08 . F68C1BAC147227B86FFB36828FF8BEDF . 510816 . . [8.00.6001.18702] . . c:\windows\ServicePackFiles\i386\iexplore.exe
[-] 2009-03-08 . F68C1BAC147227B86FFB36828FF8BEDF . 510816 . . [8.00.6001.18702] . . c:\windows\system32\dllcache\iexplore.exe
[7] 2004-08-17 . 63E527C26AC3059EAD766C6C11746D07 . 93184 . . [6.00.2900.2180] . . c:\windows\ie8\iexplore.exe
.
[7] 2010-12-09 . 8D222D8EF9B1951296F822583A044542 . 2194944 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe
[7] 2010-12-09 . B6C5D4CBB22EEF31FAFBB76C2C6F3D99 . 2194944 . . [5.1.2600.6055] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[7] 2010-12-09 . B6C5D4CBB22EEF31FAFBB76C2C6F3D99 . 2194944 . . [5.1.2600.6055] . . c:\windows\NiwradSoft Shell Pack\Backup\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\system32\ntoskrnl.exe
[-] 2010-12-09 . 5C09C92D01E24786F1156E0512A488FF . 2356096 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntoskrnl.exe
[7] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[7] 2004-08-17 . 12C80E46DCEC9B82473D1B1B9DA1F16B . 2183168 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EM-DATE"="c:\program files\em-date.exe" [2011-07-12 104960]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 997920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 40448]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2005-5-11 282624]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Utility Tray.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Utility Tray.lnk
backup=c:\windows\pss\Utility Tray.lnkCommon Startup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Badoo Desktop]
2011-06-07 16:55 1017344 ----a-w- c:\documents and settings\All Users\Data aplikací\Badoo\Badoo Desktop\1.5.3.949\Badoo.Desktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2005-05-11 21:12 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SNPSTD2]
2004-06-10 09:54 286720 ----a-w- c:\windows\vsnpstd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-04-08 10:59 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"OutlookFriend"=outinst.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ7.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\QIP Infium JadrisPack\\qip.exe"=
"c:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"=
.
R1 fwdrv;Firewall Driver;c:\windows\system32\drivers\fwdrv.sys [18.7.2006 12:02 284184]
R1 khips;Kerio HIPS Driver;c:\windows\system32\drivers\khips.sys [18.7.2006 12:02 91672]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\drivers\lgbtport.sys [29.9.2009 8:11 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\drivers\lgbtbus.sys [29.9.2009 8:11 10496]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\drivers\lgvmodem.sys [29.9.2009 8:11 12928]
S1 MpKsld46556fc;MpKsld46556fc;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{882C348D-C1F4-4C6B-B4A6-CA6A4F890604}\MpKsld46556fc.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{882C348D-C1F4-4C6B-B4A6-CA6A4F890604}\MpKsld46556fc.sys [?]
S1 MpKslda3eb3f1;MpKslda3eb3f1;\??\c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2BDDEFFA-CF62-40AB-BAFE-3A199A90117D}\MpKslda3eb3f1.sys --> c:\documents and settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{2BDDEFFA-CF62-40AB-BAFE-3A199A90117D}\MpKslda3eb3f1.sys [?]
S3 Start BT in service;Start BT in service;c:\program files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [21.4.2007 14:54 52080]
S3 uir1100a;UIR1100A;c:\windows\system32\drivers\uir1100a.sys [12.7.2011 22:06 31048]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-30 c:\windows\Tasks\User_Feed_Synchronization-{93135411-9C3F-44EB-BC5D-BB85B3FB0E21}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
2011-07-30 c:\windows\Tasks\User_Feed_Synchronization-{941432C1-AE02-47A0-9A06-9B3EB7B817AA}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe
IE: {{230D1201-7607-4CF6-A11F-9E4BF0A333E0} - {0DB13731-CEFD-43CF-A8FD-B61DCBC4D5B8} - c:\program files\Verdict Free\etnxp.dll
IE: {{2C73F784-D2DE-4422-B070-2E3332FE5744} - {0320AC26-52C8-4316-B2C4-24BB6FA73C9A} - c:\program files\Verdict Free\etnxp.dll
TCP: DhcpNameServer = 10.29.2.1
FF - ProfilePath - c:\documents and settings\Miroslav\Data aplikací\Mozilla\Firefox\Profiles\86m46pif.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?#obsah
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=827316&p=
FF - prefs.js: network.proxy.type - 4
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.search.openintab - false
FF - user.js: browser.tabs.closeButtons - 1
FF - user.js: browser.tabs.opentabfor.middleclick - true
FF - user.js: browser.tabs.tabMinWidth - 100
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autoFill - false
FF - user.js: browser.urlbar.autofill - true
FF - user.js: browser.urlbar.hideGoButton - false
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.maxtextrun - 4095
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 1000000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 1000000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: layout.spellcheckDefault - 1
FF - user.js: network.http.max-connections - 48
FF - user.js: network.http.max-connections-per-server - 16
FF - user.js: network.http.max-persistent-connections-per-proxy - 16
FF - user.js: network.http.max-persistent-connections-per-server - 8
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.prefetch-next - true
FF - user.js: nglayout.initialpaint.delay - 1000
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-Cmaudio - cmicnfg.cpl
MSConfigStartUp-MSMSGS - c:\program files\Messenger\msmsgs.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-30 23:07
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(828)
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\cscui.dll
.
- - - - - - - > 'lsass.exe'(892)
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\psbase.dll
.
- - - - - - - > 'explorer.exe'(3164)
c:\windows\system32\COMRes.dll
c:\windows\System32\cscui.dll
c:\progra~1\WINDOW~2\wmpband.dll
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\system32\NETSHELL.dll
c:\windows\system32\credui.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Microsoft Security Client\Antimalware\MsMpEng.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4ss.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\windows\system32\wscntfy.exe
c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
.
**************************************************************************
.
Celkový čas: 2011-07-30 23:15:54 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-30 21:15
.
Před spuštěním: 6 986 596 352
Po spuštění: 6 958 690 304
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - 5707FB010904D0EEA31C153A609FB99A
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s explorer.exe

#11 Příspěvek od vyosek »

Jak se chova PC :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Busbusak
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 12 lis 2009 09:35
Bydliště: Chropyně
Kontaktovat uživatele:

Re: Problem s explorer.exe

#12 Příspěvek od Busbusak »

Zda se ze se dalo dohromady,jen jsem musel obnovit jazyk.panel ktrey se ztratil.Jeste se zbavit Combofixu.Jinak je log cistej?
AMD Duron(tm) Prosessor 1.02 GHz , 992 MB RAM , XPSP3

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Problem s explorer.exe

#13 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: Odinstalujte Combofix
  • Prejmenujte ComboFix na Uninstall
  • Spustte jej
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :turned:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět