Logfile of random's system information tool 1.09 (written by random/random)
Run by Fyrt at 2012-03-03 11:12:22
Microsoft Windows XP Professional Service Pack 3, v.3264
System drive C: has 10 GB (51%) free of 20 GB
Total RAM: 959 MB (37% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Fyrt\Application Data\Mozilla\Firefox\Profiles\zeecb2w3.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
npwangwang.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-02-25 192112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll [2012-01-12 1003576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-28 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-06-28 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-02-25 192112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-04-27 7561216]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-04-27 86016]
"ACU"=C:\Program Files\ASUS WLAN Adapter\ACU.exe [2006-04-27 307200]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2011-06-28 149280]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"Nikon Message Center 2"=C:\Program Files\Nikon\Nikon Message Center 2\NkMC2.exe [2010-05-25 619008]
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2007-11-30 208896]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-01-12 32768]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-09-22 3080264]
"TNOD UP"=C:\Program Files\TNod User & Password Finder\TNODUP.exe [2011-09-18 1892352]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2007-11-30 15360]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2011-08-26 39408]
"VoipGain"=C:\Program Files\VoipGain.com\VoipGain\VoipGain.exe [2011-08-12 13919536]
"Sony Ericsson PC Companion"=C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-12-07 433872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Akamai NetSession Interface]
C:\Documents and Settings\Fyrt\Local Settings\Application Data\Akamai\netsession_win.exe [2012-02-02 3329824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ7.7\ICQ.exe [2012-01-23 127040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2006-06-13 16239616]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2011-09-12 17351304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, credssp.dll, msnsspc.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\VoipGain.com\VoipGain\VoipGain.exe"="C:\Program Files\VoipGain.com\VoipGain\VoipGain.exe:*:Enabled:VoipGain"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Spotify\spotify.exe"="C:\Program Files\Spotify\spotify.exe:*:Enabled:Spotify"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Fyrt\Local Settings\Application Data\Akamai\netsession_win.exe"="C:\Documents and Settings\Fyrt\Local Settings\Application Data\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
"C:\Program Files\trademanager\AliIM.exe"="C:\Program Files\trademanager\AliIM.exe:*:Enabled:AliIM"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.voxacm160"=vct3216.acm
"msacm.scg726"=scg726.acm
"msacm.alf2cd"=alf2cd.acm
"msacm.ac3acm"=ac3acm.acm
"vidc.dvsd"=mcdvd_32.dll
"vidc.xvid"=xvidvfw.dll
"vidc.DIVX"=DivX.dll
"vidc.mpg4"=mpg4c32.dll
"vidc.mp42"=mpg4c32.dll
"vidc.mp43"=mpg4c32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.YV12"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 3 months======
2012-03-03 11:12:24 ----D---- C:\Program Files\trend micro
2012-03-03 11:12:22 ----D---- C:\rsit
2012-03-03 10:19:17 ----D---- C:\Program Files\TNod User & Password Finder
2012-03-03 09:55:27 ----D---- C:\Documents and Settings\Fyrt\Application Data\ESET
2012-03-02 22:00:30 ----D---- C:\WINDOWS\system32\appmgmt
2012-03-02 20:55:54 ----D---- C:\WINDOWS\pss
2012-03-01 19:23:05 ----A---- C:\WINDOWS\system32\d3d9caps.dat
2012-03-01 00:37:30 ----SHD---- C:\WINDOWS\CSC
2012-03-01 00:26:38 ----A---- C:\WINDOWS\ntbtlog.txt
2012-02-21 11:04:51 ----D---- C:\WINDOWS\system32\aliedit
2012-02-21 11:04:33 ----D---- C:\Program Files\trademanager
2012-01-27 12:06:49 ----D---- C:\Documents and Settings\Fyrt\Application Data\Media Player Classic
2012-01-25 08:33:11 ----D---- C:\WINDOWS\Minidump
2012-01-24 21:42:02 ----A---- C:\WINDOWS\system32\unrar.dll
2012-01-24 21:41:44 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2012-01-24 21:41:33 ----D---- C:\Program Files\K-Lite Codec Pack
2012-01-24 21:25:20 ----D---- C:\Documents and Settings\All Users\Application Data\AVS4YOU
2012-01-24 21:24:00 ----D---- C:\Program Files\Common Files\AVSMedia
2012-01-24 21:23:15 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2012-01-24 21:23:15 ----A---- C:\WINDOWS\system32\xvidcore.dll
2012-01-24 21:23:15 ----A---- C:\WINDOWS\system32\mcdvd_32.dll
2012-01-24 21:23:15 ----A---- C:\WINDOWS\system32\divx.dll
2012-01-24 21:23:14 ----A---- C:\WINDOWS\system32\msxml3a.dll
2012-01-24 21:23:14 ----A---- C:\WINDOWS\system32\msvcp70.dll
2012-01-24 21:23:14 ----A---- C:\WINDOWS\system32\mpg4c32.dll
2012-01-24 21:23:14 ----A---- C:\WINDOWS\system32\mfc70.dll
2012-01-24 21:23:14 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2012-01-24 21:23:13 ----D---- C:\Program Files\AVS4YOU
2012-01-24 21:23:13 ----A---- C:\WINDOWS\system32\msvcr70.dll
2012-01-17 21:53:59 ----D---- C:\Documents and Settings\Fyrt\Application Data\CyberLink
2012-01-17 21:53:55 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2012-01-17 21:29:09 ----N---- C:\WINDOWS\system32\msvcr71.dll
2012-01-17 21:29:09 ----N---- C:\WINDOWS\system32\msvcp71.dll
2012-01-17 21:29:08 ----D---- C:\Program Files\CyberLink
2012-01-17 09:25:24 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-01-17 09:24:39 ----D---- C:\Program Files\Sony Ericsson
2012-01-17 09:24:39 ----D---- C:\Documents and Settings\All Users\Application Data\Sony Ericsson
2012-01-17 09:21:49 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2012-01-17 09:21:22 ----D---- C:\WINDOWS\system32\LogFiles
2012-01-17 09:21:22 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-01-17 09:21:15 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2012-01-16 14:25:19 ----N---- C:\WINDOWS\system32\nvuide.exe
2012-01-16 14:25:01 ----A---- C:\WINDOWS\system32\nvunrm.exe
2012-01-16 14:25:01 ----A---- C:\WINDOWS\system32\drivers\nvtcp.sys
2012-01-16 14:24:59 ----A---- C:\WINDOWS\system32\nvusmb.exe
2012-01-16 14:24:49 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-01-13 11:52:08 ----D---- C:\Program Files\VoipGain.com
2012-01-01 13:09:41 ----D---- C:\Documents and Settings\All Users\Application Data\Nikon
2011-12-30 20:22:45 ----D---- C:\s
2011-12-30 13:50:07 ----A---- C:\WINDOWS\ViewNX2.INI
2011-12-30 13:29:33 ----D---- C:\Documents and Settings\Fyrt\Application Data\Nikon
2011-12-30 13:25:16 ----D---- C:\Program Files\Common Files\Nikon
2011-12-30 13:24:48 ----A---- C:\WINDOWS\system32\ATL71.DLL
2011-12-30 13:24:35 ----H---- C:\Documents and Settings\All Users\Application Data\PKP_DLev.DAT
2011-12-30 13:24:35 ----H---- C:\Documents and Settings\All Users\Application Data\PKP_DLes.DAT
2011-12-30 13:24:35 ----D---- C:\Documents and Settings\All Users\Application Data\Jazz
2011-12-30 13:24:35 ----D---- C:\Documents and Settings\All Users\Application Data\Importer
2011-12-30 13:24:34 ----H---- C:\Documents and Settings\All Users\Application Data\PKP_DLet.DAT
2011-12-30 13:24:34 ----D---- C:\Documents and Settings\All Users\Application Data\Ultima_T15
2011-12-30 13:24:34 ----D---- C:\Documents and Settings\All Users\Application Data\Hybrid Synthesizers
2011-12-30 13:24:34 ----D---- C:\Documents and Settings\All Users\Application Data\EnterNHelp
2011-12-30 13:23:56 ----D---- C:\Program Files\Nikon
2011-12-30 13:23:05 ----D---- C:\Program Files\QuickTime
2011-12-30 13:23:03 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2011-12-30 13:22:22 ----D---- C:\Program Files\Common Files\Apple
2011-12-30 13:22:22 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2011-12-30 13:21:30 ----D---- C:\WINDOWS\SxsCaPendDel
2011-12-14 12:43:58 ----D---- C:\Documents and Settings\Fyrt\Application Data\ICQ
2011-12-14 12:43:45 ----D---- C:\Program Files\ICQ7.7
2011-12-11 15:02:15 ----A---- C:\WINDOWS\system32\ptpusb.dll
2011-12-11 15:02:15 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2011-12-11 15:02:14 ----A---- C:\WINDOWS\system32\ptpusd.dll
======List of files/folders modified in the last 3 months======
2012-03-03 11:12:24 ----RD---- C:\Program Files
2012-03-03 11:10:12 ----A---- C:\WINDOWS\wincmd.ini
2012-03-03 11:10:09 ----D---- C:\WINDOWS\system32\CatRoot2
2012-03-03 11:10:06 ----HD---- C:\WINDOWS\inf
2012-03-03 11:06:20 ----D---- C:\WINDOWS\Temp
2012-03-03 10:15:46 ----D---- C:\WINDOWS\system32
2012-03-03 10:15:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-03-03 10:12:50 ----D---- C:\Program Files\ESET
2012-03-03 10:11:43 ----D---- C:\Program Files\Common Files\Akamai
2012-03-03 10:10:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-03-03 10:10:16 ----D---- C:\WINDOWS
2012-03-03 10:07:01 ----SH---- C:\boot.ini
2012-03-03 10:07:01 ----A---- C:\WINDOWS\win.ini
2012-03-03 10:07:01 ----A---- C:\WINDOWS\system.ini
2012-03-03 09:42:07 ----SHD---- C:\WINDOWS\Installer
2012-03-03 09:41:43 ----D---- C:\WINDOWS\Prefetch
2012-03-03 09:41:41 ----D---- C:\WINDOWS\system32\drivers
2012-03-03 09:40:25 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2012-03-02 22:04:05 ----D---- C:\Documents and Settings\Fyrt\Application Data\Skype
2012-02-28 13:05:46 ----HD---- C:\Program Files\InstallShield Installation Information
2012-02-28 13:05:34 ----D---- C:\Program Files\Common Files\InstallShield
2012-02-27 13:12:45 ----D---- C:\Documents and Settings\Fyrt\Application Data\uTorrent
2012-02-24 09:36:13 ----D---- C:\Documents and Settings\Fyrt\Application Data\VoipGain
2012-02-21 11:04:53 ----D---- C:\Program Files\Mozilla Firefox
2012-02-17 22:06:53 ----A---- C:\WINDOWS\NeroDigital.ini
2012-02-01 07:25:03 ----D---- C:\Documents and Settings
2012-01-24 21:24:20 ----RSD---- C:\WINDOWS\Fonts
2012-01-24 21:24:00 ----RD---- C:\Program Files\Common Files
2012-01-24 21:23:59 ----D---- C:\WINDOWS\WinSxS
2012-01-19 07:29:41 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2012-01-17 19:52:31 ----D---- C:\WINDOWS\system32\Restore
2012-01-17 09:22:08 ----D---- C:\Program Files\Windows Media Player
2012-01-17 09:21:59 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-17 09:21:29 ----A---- C:\WINDOWS\imsins.BAK
2012-01-17 09:17:38 ----D---- C:\WINDOWS\security
2012-01-08 22:40:38 ----D---- C:\Documents and Settings\Fyrt\Application Data\Adobe
2011-12-30 13:26:18 ----SD---- C:\Documents and Settings\Fyrt\Application Data\Microsoft
2011-12-30 13:23:44 ----D---- C:\Program Files\Internet Explorer
2011-12-15 08:07:32 ----SD---- C:\WINDOWS\Tasks
2011-12-15 08:07:29 ----D---- C:\Program Files\Google
2011-12-15 08:06:56 ----D---- C:\Documents and Settings\Fyrt\Application Data\Google
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-01-28 99584]
R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2007-11-30 61312]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2011-08-04 118104]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2011-08-04 61936]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2007-11-30 8832]
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B}; \??\C:\Program Files\CyberLink\PowerDVD\000.fcl []
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.10.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2011-06-22 21275]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2011-08-09 154136]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2011-08-04 147480]
R3 AR5211;Atheros Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2006-04-09 471264]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-02-01 60800]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2011-08-09 39824]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-02-01 137728]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-06-14 4299264]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-02-01 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-04-27 3659968]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-05-09 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-05-09 13184]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2007-11-30 79232]
R3 sffdisk;SFF Storage Class Driver; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2007-11-30 11904]
R3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2007-11-30 11008]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2007-11-30 26368]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2007-11-30 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2007-11-30 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2007-11-30 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2007-11-30 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACS;ASUS Configuration Service; C:\WINDOWS\system32\acs.exe [2006-03-28 36864]
R2 Akamai;Akamai NetSession Interface; C:\WINDOWS\System32\svchost.exe [2007-11-30 14336]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-09-22 974944]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-06-28 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-04-27 143427]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2007-11-30 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-12-15 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-12-15 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-08-26 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-12-05 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2011-06-29 155344]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
ESET našel trojany,prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: ESET našel trojany,prosím o kontrolu logu
Nejedná se o můj počítač. Je to notebook mého kamaráda. Jak je počítač zaneřáděn až po monitor?
- Pavuk29
- VIP in memoriam
- Příspěvky: 6953
- Registrován: 31 říj 2003 08:26
- Bydliště: Banská Bystrica
- Kontaktovat uživatele:
Re: ESET našel trojany,prosím o kontrolu logu
Nejake problemy?
------------------------------------------------------------------------------------------------------------------------------
PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA

------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,
pripadne s inymi uzivatelmi,
kontaktujte ma na ICQ alebo mailom
na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601



------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,



http://www.icq.com/people/267560078/


Re: ESET našel trojany,prosím o kontrolu logu
Zatím jsem jen v rámci testování a vypnutí podezřelých aplikaci po spouštění narazil: na jeden bluescreen, a eset ve zkušebním režimu mi našel nějaké trojány. Jinak spíše hardwarové problémy protože notebook již má nějaké ty léta za sebou a asi bude vyměněn za novější.
- Pavuk29
- VIP in memoriam
- Příspěvky: 6953
- Registrován: 31 říj 2003 08:26
- Bydliště: Banská Bystrica
- Kontaktovat uživatele:
Re: ESET našel trojany,prosím o kontrolu logu
Ja sa pytam na ten ESS.
------------------------------------------------------------------------------------------------------------------------------
PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA

------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,
pripadne s inymi uzivatelmi,
kontaktujte ma na ICQ alebo mailom
na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601



------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,



http://www.icq.com/people/267560078/


Re: ESET našel trojany,prosím o kontrolu logu
U ESS žádné problémy, podezřelé soubory jsem smazal.
- Pavuk29
- VIP in memoriam
- Příspěvky: 6953
- Registrován: 31 říj 2003 08:26
- Bydliště: Banská Bystrica
- Kontaktovat uživatele:
Re: ESET našel trojany,prosím o kontrolu logu
Naughty píše:Prosím o lock. Ilegálni ESS.

------------------------------------------------------------------------------------------------------------------------------
PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA

------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,
pripadne s inymi uzivatelmi,
kontaktujte ma na ICQ alebo mailom
na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601



------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora,



http://www.icq.com/people/267560078/

