
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nouzový režim PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Nouzový režim PC
Dobrý den, mám asi zavirovaný počítač. Přestal mi jít zvuk ,systém je hrozně pomalý a PC jde pouze v nouzovém režimu.Prosím Vás mohli by jste mi pomoci tuto závadu odstranit? Předem děkuji.
Připojuji oba logy z RZITU.
---------------------------------------------------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jonáš at 2012-03-07 08:39:55
WIN_VISTA Service Pack 2
System drive C: has 49 GB (32%) free of 153 GB
Total RAM: 2039 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:40:19, on 7.3.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Safe mode with network support
Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Jonáš\Desktop\RSIT.exe
C:\Program Files\trend micro\Jonáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Labtec\WebCam10\WebCam10.exe" /hide
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S5A0B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series (kopie 1)] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S935B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User '?')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [AdobeBridge] (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe (User '?')
O4 - S-1-5-21-458586356-3566987795-1268713004-1000 Startup: PowerReg Scheduler.exe (User '?')
O4 - Startup: PowerReg Scheduler.exe
O4 - Global Startup: Remote Control.lnk = C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LVSrvLauncher - Labtec Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 8936 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default
prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=109993&ba ... bafbaf1&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ngm.nexoneu.com/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.1.11]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\extensions\
battlefieldplay4free@ea.com
cs@dictionaries.addons.mozilla.org
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo Layers - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll [2011-06-21 787744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-26 138008]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-26 154392]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-26 133912]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe [2007-03-06 488984]
""= []
"LogitechQuickCamRibbon"=C:\Program Files\Labtec\WebCam10\WebCam10.exe [2007-03-06 1060376]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-02-23 4031368]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-12-23 500208]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"QuickTime Task"=C:\Program Files\QuickTime Alternative\QTTask.exe [2010-11-29 421888]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-08-26 10828392]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"=C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe [2007-01-19 864768]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"EPSON Stylus DX4400 Series (kopie 1)"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-01-15 147456]
"Google Update"=C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe [2011-01-23 136176]
"Akamai NetSession Interface"=C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe [2012-02-02 3329824]
"AdobeBridge"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe [2011-10-05 1051760]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Remote Control.lnk - C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe
C:\Users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PowerReg Scheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-22 200704]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"MSVideo"=vfwwdm32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.mpng"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.mvjp"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.444p"=C:\Program Files\t@b\0.958\686\tabdec.dll
"VIDC.FPS1"=frapsvid.dll
"vidc.dvsd"=pdvcodec.dll
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"vidc.mjpg"=bdmjpeg.dll
"vidc.mpeg"=bdmpegv.dll
"msacm.bdmpeg"=bdmpega.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-07 08:39:55 ----D---- C:\rsit
2012-03-07 08:39:55 ----D---- C:\Program Files\trend micro
2012-03-06 22:47:22 ----D---- C:\Program Files\ESET
2012-03-06 22:44:02 ----A---- C:\Windows\ntbtlog.txt
2012-03-06 22:30:53 ----D---- C:\Windows\system32\RTCOM
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesLib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\tosade.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSWOW.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSXT.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSHD.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSHP360.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SFNHK.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFCOM.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFAPO.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RtkAPO.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RCoRes.dat
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\KAAPORT.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\FMAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTARen.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTACap.dll
2012-03-06 22:21:04 ----A---- C:\user.js
2012-03-06 22:21:01 ----D---- C:\Program Files\BabylonToolbar
2012-03-06 22:20:38 ----D---- C:\ProgramData\Babylon
2012-03-06 22:20:37 ----D---- C:\Users\Jonáš\AppData\Roaming\Babylon
2012-03-05 22:01:02 ----HD---- C:\Program Files\Temp
2012-03-05 19:33:38 ----D---- C:\ProgramData\NexonEU
2012-03-05 18:28:50 ----D---- C:\ProgramData\Nexon
2012-03-05 17:22:42 ----D---- C:\Program Files\BandiMPEG1
2012-03-05 17:11:28 ----D---- C:\Nexon
2012-03-05 17:07:21 ----D---- C:\ProgramData\NexonUS
2012-03-01 08:42:52 ----D---- C:\Program Files\LogMeIn Hamachi
2012-02-29 22:03:04 ----D---- C:\Program Files\MatroskaProp
2012-02-29 22:02:33 ----D---- C:\Program Files\Matroska Pack
2012-02-27 08:16:25 ----D---- C:\Program Files\Google
2012-02-21 15:34:16 ----A---- C:\Windows\system32\NVUNINST.EXE
2012-02-21 15:33:58 ----D---- C:\NVIDIA
2012-02-16 17:46:12 ----D---- C:\ProgramData\Badoo
2012-02-16 15:20:45 ----A---- C:\Windows\system32\mshtmled.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\jscript.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\iertutil.dll
2012-02-16 15:20:43 ----A---- C:\Windows\system32\jscript9.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\wininet.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\url.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\ieui.dll
2012-02-16 15:20:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-02-16 15:20:39 ----A---- C:\Windows\system32\mshtml.dll
2012-02-16 15:20:36 ----A---- C:\Windows\system32\ieframe.dll
2012-02-16 15:20:35 ----A---- C:\Windows\system32\urlmon.dll
2012-02-15 07:22:44 ----A---- C:\Windows\system32\win32k.sys
2012-02-15 07:22:43 ----A---- C:\Windows\system32\msvcrt.dll
======List of files/folders modified in the last 1 month======
2012-03-07 08:39:55 ----RD---- C:\Program Files
2012-03-07 07:20:51 ----D---- C:\Windows\Temp
2012-03-06 22:44:02 ----AD---- C:\Windows
2012-03-06 22:42:29 ----D---- C:\Users\Jonáš\AppData\Roaming\Skype
2012-03-06 22:38:21 ----D---- C:\Windows\Prefetch
2012-03-06 22:33:44 ----D---- C:\Program Files\Common Files\Akamai
2012-03-06 22:31:06 ----AD---- C:\Windows\System32
2012-03-06 22:30:53 ----D---- C:\Windows\system32\drivers
2012-03-06 22:30:47 ----D---- C:\Windows\system32\catroot
2012-03-06 22:30:46 ----D---- C:\Windows\system32\catroot2
2012-03-06 22:30:42 ----D---- C:\Windows\inf
2012-03-06 22:30:04 ----A---- C:\Windows\DIFxAPI.dll
2012-03-06 22:29:25 ----HD---- C:\Program Files\InstallShield Installation Information
2012-03-06 22:20:38 ----HD---- C:\ProgramData
2012-03-06 21:26:31 ----D---- C:\Users\Jonáš\AppData\Roaming\uTorrent
2012-03-05 22:19:20 ----D---- C:\Program Files\Realtek
2012-03-05 20:09:17 ----SHD---- C:\System Volume Information
2012-03-05 16:40:56 ----D---- C:\ProgramData\PMB Files
2012-03-04 14:00:30 ----SHD---- C:\Windows\Installer
2012-03-03 11:45:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-02-28 21:34:11 ----D---- C:\Program Files\EA Games
2012-02-27 08:17:21 ----D---- C:\Windows\Tasks
2012-02-27 08:17:21 ----D---- C:\Windows\system32\Tasks
2012-02-26 21:43:40 ----A---- C:\Windows\system32\PnkBstrB.exe
2012-02-26 14:20:48 ----A---- C:\Windows\system32\PnkBstrA.exe
2012-02-23 17:23:21 ----A---- C:\Windows\system32\aswBoot.exe
2012-02-23 11:07:29 ----RSD---- C:\Windows\assembly
2012-02-22 10:19:39 ----D---- C:\Program Files\Turbine
2012-02-21 15:16:01 ----D---- C:\Program Files\GameSpy Arcade
2012-02-21 15:15:15 ----RD---- C:\Users
2012-02-17 22:12:53 ----D---- C:\Program Files\Mozilla Firefox
2012-02-16 16:04:47 ----D---- C:\Windows\Microsoft.NET
2012-02-16 16:04:14 ----D---- C:\Windows\winsxs
2012-02-16 15:40:00 ----D---- C:\Windows\system32\migration
2012-02-16 15:40:00 ----D---- C:\Program Files\Internet Explorer
2012-02-16 15:22:15 ----A---- C:\Windows\system32\mrt.exe
2012-02-16 15:20:20 ----D---- C:\Program Files\Windows Mail
2012-02-15 17:53:00 ----D---- C:\Users\Jonáš\AppData\Roaming\Sony
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-02-23 35672]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-01-15 70144]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-02-23 610648]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-02-23 337112]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-02-23 53848]
S1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-12-17 26024]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-02-23 20696]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-02-23 57688]
S3 3xHybrid;3xHybrid service; C:\Windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-08-30 3659240]
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-03-06 1669664]
S3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-03-06 2261792]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-03-06 41376]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2006-11-02 1083520]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2007-03-06 491168]
S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 XDva380;XDva380; \??\C:\Windows\system32\XDva380.sys []
S3 XDva383;XDva383; \??\C:\Windows\system32\XDva383.sys []
S3 XDva385;XDva385; \??\C:\Windows\system32\XDva385.sys []
S3 XDva390;XDva390; \??\C:\Windows\system32\XDva390.sys []
S3 XDva393;XDva393; \??\C:\Windows\system32\XDva393.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-02-23 44768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-03-06 105248]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-02-26 75136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-01-15 266240]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-04-28 403240]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Připojuji oba logy z RZITU.
---------------------------------------------------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Jonáš at 2012-03-07 08:39:55
WIN_VISTA Service Pack 2
System drive C: has 49 GB (32%) free of 153 GB
Total RAM: 2039 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:40:19, on 7.3.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Safe mode with network support
Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Jonáš\Desktop\RSIT.exe
C:\Program Files\trend micro\Jonáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Labtec\WebCam10\WebCam10.exe" /hide
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S5A0B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON Stylus DX4400 Series (kopie 1)] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\Windows\TEMP\E_S935B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User '?')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Center Agent] C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Google Update] "C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Akamai NetSession Interface] "C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe" (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [AdobeBridge] (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized (User '?')
O4 - HKUS\S-1-5-21-458586356-3566987795-1268713004-1000\..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe (User '?')
O4 - S-1-5-21-458586356-3566987795-1268713004-1000 Startup: PowerReg Scheduler.exe (User '?')
O4 - Startup: PowerReg Scheduler.exe
O4 - Global Startup: Remote Control.lnk = C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: LVSrvLauncher - Labtec Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 8936 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-458586356-3566987795-1268713004-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default
prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
prefs.js - "keyword.URL" - "http://search.babylon.com/?AF=109993&ba ... bafbaf1&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\Alwil Software\Avast5\WebRep\FF
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ngm.nexoneu.com/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.1.11]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
babylon.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\extensions\
battlefieldplay4free@ea.com
cs@dictionaries.addons.mozilla.org
{77d2ed30-4cd2-11e0-b8af-0800200c9a66}
{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo Layers - C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll [2011-06-21 787744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2012-02-23 998560]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-26 138008]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-26 154392]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-26 133912]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe [2007-03-06 488984]
""= []
"LogitechQuickCamRibbon"=C:\Program Files\Labtec\WebCam10\WebCam10.exe [2007-03-06 1060376]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-02-23 4031368]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-12-23 500208]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"QuickTime Task"=C:\Program Files\QuickTime Alternative\QTTask.exe [2010-11-29 421888]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2011-08-26 10828392]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"=C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe [2007-01-19 864768]
"EPSON Stylus DX4400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"EPSON Stylus DX4400 Series (kopie 1)"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE [2007-03-01 180736]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-01-15 147456]
"Google Update"=C:\Users\Jonáš\AppData\Local\Google\Update\GoogleUpdate.exe [2011-01-23 136176]
"Akamai NetSession Interface"=C:\Users\Jonáš\AppData\Local\Akamai\netsession_win.exe [2012-02-02 3329824]
"AdobeBridge"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"Badoo Desktop"=C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe [2011-10-05 1051760]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Remote Control.lnk - C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe
C:\Users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PowerReg Scheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-22 200704]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"VIDC.I420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"MSVideo"=vfwwdm32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"vidc.mpng"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.mvjp"=C:\Program Files\t@b\0.958\686\tabdec.dll
"vidc.444p"=C:\Program Files\t@b\0.958\686\tabdec.dll
"VIDC.FPS1"=frapsvid.dll
"vidc.dvsd"=pdvcodec.dll
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"vidc.mjpg"=bdmjpeg.dll
"vidc.mpeg"=bdmpegv.dll
"msacm.bdmpeg"=bdmpega.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-07 08:39:55 ----D---- C:\rsit
2012-03-07 08:39:55 ----D---- C:\Program Files\trend micro
2012-03-06 22:47:22 ----D---- C:\Program Files\ESET
2012-03-06 22:44:02 ----A---- C:\Windows\ntbtlog.txt
2012-03-06 22:30:53 ----D---- C:\Windows\system32\RTCOM
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesLib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-03-06 22:29:38 ----A---- C:\Windows\system32\tosade.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\tadefxapo.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSWOW.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSXT.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSTSHD.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SRSHP360.dll
2012-03-06 22:29:37 ----A---- C:\Windows\system32\SFNHK.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFCOM.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\SFAPO.dll
2012-03-06 22:29:36 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2012-03-06 22:29:35 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RtkAPO.dll
2012-03-06 22:29:34 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RTEED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\RCoRes.dat
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EED32A.dll
2012-03-06 22:29:33 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2012-03-06 22:29:32 ----A---- C:\Windows\system32\KAAPORT.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\FMAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-03-06 22:29:28 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTARen.dll
2012-03-06 22:29:27 ----A---- C:\Windows\system32\AERTACap.dll
2012-03-06 22:21:04 ----A---- C:\user.js
2012-03-06 22:21:01 ----D---- C:\Program Files\BabylonToolbar
2012-03-06 22:20:38 ----D---- C:\ProgramData\Babylon
2012-03-06 22:20:37 ----D---- C:\Users\Jonáš\AppData\Roaming\Babylon
2012-03-05 22:01:02 ----HD---- C:\Program Files\Temp
2012-03-05 19:33:38 ----D---- C:\ProgramData\NexonEU
2012-03-05 18:28:50 ----D---- C:\ProgramData\Nexon
2012-03-05 17:22:42 ----D---- C:\Program Files\BandiMPEG1
2012-03-05 17:11:28 ----D---- C:\Nexon
2012-03-05 17:07:21 ----D---- C:\ProgramData\NexonUS
2012-03-01 08:42:52 ----D---- C:\Program Files\LogMeIn Hamachi
2012-02-29 22:03:04 ----D---- C:\Program Files\MatroskaProp
2012-02-29 22:02:33 ----D---- C:\Program Files\Matroska Pack
2012-02-27 08:16:25 ----D---- C:\Program Files\Google
2012-02-21 15:34:16 ----A---- C:\Windows\system32\NVUNINST.EXE
2012-02-21 15:33:58 ----D---- C:\NVIDIA
2012-02-16 17:46:12 ----D---- C:\ProgramData\Badoo
2012-02-16 15:20:45 ----A---- C:\Windows\system32\mshtmled.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\jscript.dll
2012-02-16 15:20:44 ----A---- C:\Windows\system32\iertutil.dll
2012-02-16 15:20:43 ----A---- C:\Windows\system32\jscript9.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\wininet.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\url.dll
2012-02-16 15:20:42 ----A---- C:\Windows\system32\ieui.dll
2012-02-16 15:20:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-02-16 15:20:39 ----A---- C:\Windows\system32\mshtml.dll
2012-02-16 15:20:36 ----A---- C:\Windows\system32\ieframe.dll
2012-02-16 15:20:35 ----A---- C:\Windows\system32\urlmon.dll
2012-02-15 07:22:44 ----A---- C:\Windows\system32\win32k.sys
2012-02-15 07:22:43 ----A---- C:\Windows\system32\msvcrt.dll
======List of files/folders modified in the last 1 month======
2012-03-07 08:39:55 ----RD---- C:\Program Files
2012-03-07 07:20:51 ----D---- C:\Windows\Temp
2012-03-06 22:44:02 ----AD---- C:\Windows
2012-03-06 22:42:29 ----D---- C:\Users\Jonáš\AppData\Roaming\Skype
2012-03-06 22:38:21 ----D---- C:\Windows\Prefetch
2012-03-06 22:33:44 ----D---- C:\Program Files\Common Files\Akamai
2012-03-06 22:31:06 ----AD---- C:\Windows\System32
2012-03-06 22:30:53 ----D---- C:\Windows\system32\drivers
2012-03-06 22:30:47 ----D---- C:\Windows\system32\catroot
2012-03-06 22:30:46 ----D---- C:\Windows\system32\catroot2
2012-03-06 22:30:42 ----D---- C:\Windows\inf
2012-03-06 22:30:04 ----A---- C:\Windows\DIFxAPI.dll
2012-03-06 22:29:25 ----HD---- C:\Program Files\InstallShield Installation Information
2012-03-06 22:20:38 ----HD---- C:\ProgramData
2012-03-06 21:26:31 ----D---- C:\Users\Jonáš\AppData\Roaming\uTorrent
2012-03-05 22:19:20 ----D---- C:\Program Files\Realtek
2012-03-05 20:09:17 ----SHD---- C:\System Volume Information
2012-03-05 16:40:56 ----D---- C:\ProgramData\PMB Files
2012-03-04 14:00:30 ----SHD---- C:\Windows\Installer
2012-03-03 11:45:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-02-28 21:34:11 ----D---- C:\Program Files\EA Games
2012-02-27 08:17:21 ----D---- C:\Windows\Tasks
2012-02-27 08:17:21 ----D---- C:\Windows\system32\Tasks
2012-02-26 21:43:40 ----A---- C:\Windows\system32\PnkBstrB.exe
2012-02-26 14:20:48 ----A---- C:\Windows\system32\PnkBstrA.exe
2012-02-23 17:23:21 ----A---- C:\Windows\system32\aswBoot.exe
2012-02-23 11:07:29 ----RSD---- C:\Windows\assembly
2012-02-22 10:19:39 ----D---- C:\Program Files\Turbine
2012-02-21 15:16:01 ----D---- C:\Program Files\GameSpy Arcade
2012-02-21 15:15:15 ----RD---- C:\Users
2012-02-17 22:12:53 ----D---- C:\Program Files\Mozilla Firefox
2012-02-16 16:04:47 ----D---- C:\Windows\Microsoft.NET
2012-02-16 16:04:14 ----D---- C:\Windows\winsxs
2012-02-16 15:40:00 ----D---- C:\Windows\system32\migration
2012-02-16 15:40:00 ----D---- C:\Program Files\Internet Explorer
2012-02-16 15:22:15 ----A---- C:\Windows\system32\mrt.exe
2012-02-16 15:20:20 ----D---- C:\Program Files\Windows Mail
2012-02-15 17:53:00 ----D---- C:\Users\Jonáš\AppData\Roaming\Sony
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-02-23 35672]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-01-15 70144]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-02-23 610648]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-02-23 337112]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-02-23 53848]
S1 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2009-12-17 26024]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-02-23 20696]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-02-23 57688]
S3 3xHybrid;3xHybrid service; C:\Windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-22 1662464]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2011-08-30 3659240]
S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-03-06 1669664]
S3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-03-06 2261792]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-03-06 41376]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2006-11-02 1083520]
S3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2007-03-06 491168]
S3 Revoflt;Revoflt; C:\Windows\system32\DRIVERS\revoflt.sys [2009-12-30 27192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 XDva380;XDva380; \??\C:\Windows\system32\XDva380.sys []
S3 XDva383;XDva383; \??\C:\Windows\system32\XDva383.sys []
S3 XDva385;XDva385; \??\C:\Windows\system32\XDva385.sys []
S3 XDva390;XDva390; \??\C:\Windows\system32\XDva390.sys []
S3 XDva393;XDva393; \??\C:\Windows\system32\XDva393.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
S2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-02-23 44768]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-03-06 105248]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-02-26 75136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-02-27 136176]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-01-15 266240]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-04-28 403240]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Re: Nouzový režim PC
Druhý LOG!!!!!!!
-------------------------------------
info.txt logfile of random's system information tool 1.09 2012-03-07 08:40:24
======Uninstall list======
-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Flash Player 11 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil11f_Plugin.exe -maintain plugin
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Reader X (10.1.2) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Adobe Shockwave Player 11.6-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Aegisub 2.1.8-->"C:\Program Files\Aegisub\unins000.exe"
Akamai NetSession Interface-->C:\Program Files\Common Files\Akamai\uninstall.exe
Apple Application Support-->MsiExec.exe /I{EE6097DD-05F4-4178-9719-D3170BF098E8}
Ashampoo Burning Studio 9.21-->"C:\Program Files\Ashampoo\Ashampoo Burning Studio 9\unins000.exe"
Ashampoo Photo Commander 7.31-->"C:\Program Files\Ashampoo\Ashampoo Photo Commander 7\unins000.exe"
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
Babylon toolbar on IE-->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe"
Badoo Desktop-->MsiExec.exe /X{040FF9BD-17BE-427B-85DD-67694FB8F786}
Bandisoft MPEG-1 Decoder-->"C:\Program Files\BandiMPEG1\uninstall.exe"
BS.Player PRO-->"C:\Program Files\Webteh\BSplayerPro\uninstall.exe"
CloneDVD2-->"C:\Program Files\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD2"
Combined Community Codec Pack 2011-07-30-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\SETUP.EXE" -l0x9 -UnInstall
EPSON Printer Software-->C:\Windows\system32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
Fraps (remove only)-->"C:\Fraps\uninstall.exe"
GameSpy Arcade-->C:\PROGRA~1\GAMESP~1\UNWISE.EXE C:\PROGRA~1\GAMESP~1\INSTALL.LOG
GIMP 2.6.11-->"C:\Program Files\GIMP-2.0\setup\unins000.exe"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\17.0.963.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level --verbose-logging
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HyperMediaCenter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6AE9A059-6372-435D-A5FE-0568A3B67F19}\Setup.exe" -l0x9
Intel(R) Graphics Media Accelerator Driver-->C:\Windows\system32\igxpun.exe -uninstall
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216022FF}
K-Lite Codec Pack 5.8.3 (Basic)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
KWorld TV Tuner Card Utilities-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{49F864F5-1A85-4E69-8764-C7E4EABD8BA0}\Setup.exe" -l0x9 -uninst
KWorld TV713X BDA Driver-->C:\Windows\p3xunist.exe
Labtec WebCam-->MsiExec.exe /X{995BF1A7-30E5-49E5-A0E4-AD3213D9E330}
Labtec® Camera Driver-->"C:\Program Files\Common Files\Labtec\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
Logitech Audio Echo Cancellation Component-->MsiExec.exe /X{BEF726DD-4037-4214-8C6A-E625C02D2870}
Logitech Video Enumerator-->MsiExec.exe /X{EA516024-D84D-41F1-814F-83175A6188F2}
LogMeIn Hamachi-->C:\Windows\system32\\msiexec.exe /i {E2494AD8-314D-44F8-B39C-4358A60DC184} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{E2494AD8-314D-44F8-B39C-4358A60DC184}
MediaInfo 0.7.48-->C:\Program Files\MediaInfo\uninst.exe
Microsoft .NET Framework 1.1 Security Update (KB2656353)-->"C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft .NET Framework 4 Extended CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ExtendedLP
Microsoft .NET Framework 4 Extended CSY Language Pack-->MsiExec.exe /X{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{0A0CADCF-78DA-33C4-A350-CD51849B9702}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570-->MsiExec.exe /X{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Mozilla Firefox 10.0.2 (x86 cs)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT Redists-->MsiExec.exe /I{5DF7AA5E-A1CB-11E0-A7D6-0013D3D69929}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MVision-->MsiExec.exe /I{35725FBC-A136-4A46-9F29-091759D9BB93}
Need for Speed™ Most Wanted-->C:\Program Files\EA GAMES\Need for Speed Most Wanted\EAUninstall.exe
OpenLibraries-->C:\Program Files\OpenLibraries\uninst-openlibraries.exe
OpenOffice.org 3.2-->MsiExec.exe /I{5DE71D48-01EB-4BF2-A643-50FE6C9B6AC9}
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
QuickTime Alternative 2.7.0-->"C:\Program Files\QuickTime Alternative\unins000.exe"
QuickTime-->MsiExec.exe /I{57752979-A1C9-4C02-856B-FBB27AC4E02C}
Real Alternative 1.9.0-->"C:\Program Files\Real Alternative\unins000.exe"
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0005 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Revo Uninstaller Pro 2.4.1-->"C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe"
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {F6F5AC31-9833-3E77-AC8E-8E910CAB39AE} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {3E0806DB-3085-378A-840A-F0D3AE3609D1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7E97AB83-C1FE-38DE-B848-877E0A4BD81E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {42A3562E-8B4E-39A4-B82D-CC12F82889E3} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Extended
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.5-->MsiExec.exe /X{AA59DDE4-B672-4621-A016-4C248204957A}
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
TeamSpeak 3 Client-->"C:\Program Files\TeamSpeak 3 Client\uninstall.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Extended
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
Vegas Pro 10.0-->MsiExec.exe /X{5AC11070-A1CB-11E0-A0DC-0013D3D69929}
VLC media player 1.1.11-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Yontoo Layers Runtime 1.10.01-->C:\PROGRA~2\TARMAI~1\{889DF~1\Setup.exe /remove /q0
======Hosts File======
127.0.0.1 activate.adobe.com
Securitycenter WMI appears to be broken
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\OpenLibraries\bin;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\QuickTime Alternative\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=0f02
"NUMBER_OF_PROCESSORS"=2
"configsetroot"=%SystemRoot%\ConfigSetRoot
"PYTHONPATH"=C:\Program Files\OpenLibraries\python
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=NETWORK
-----------------EOF-----------------
-------------------------------------
info.txt logfile of random's system information tool 1.09 2012-03-07 08:40:24
======Uninstall list======
-->C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{ACEB2BAF-96DF-48FD-ADD5-43842D4C443D}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Flash Player 11 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil11e_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil11f_Plugin.exe -maintain plugin
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Reader X (10.1.2) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AA1000000001}
Adobe Shockwave Player 11.6-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Aegisub 2.1.8-->"C:\Program Files\Aegisub\unins000.exe"
Akamai NetSession Interface-->C:\Program Files\Common Files\Akamai\uninstall.exe
Apple Application Support-->MsiExec.exe /I{EE6097DD-05F4-4178-9719-D3170BF098E8}
Ashampoo Burning Studio 9.21-->"C:\Program Files\Ashampoo\Ashampoo Burning Studio 9\unins000.exe"
Ashampoo Photo Commander 7.31-->"C:\Program Files\Ashampoo\Ashampoo Photo Commander 7\unins000.exe"
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
Babylon toolbar on IE-->"C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe"
Badoo Desktop-->MsiExec.exe /X{040FF9BD-17BE-427B-85DD-67694FB8F786}
Bandisoft MPEG-1 Decoder-->"C:\Program Files\BandiMPEG1\uninstall.exe"
BS.Player PRO-->"C:\Program Files\Webteh\BSplayerPro\uninstall.exe"
CloneDVD2-->"C:\Program Files\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD2"
Combined Community Codec Pack 2011-07-30-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\SETUP.EXE" -l0x9 -UnInstall
EPSON Printer Software-->C:\Windows\system32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
Fraps (remove only)-->"C:\Fraps\uninstall.exe"
GameSpy Arcade-->C:\PROGRA~1\GAMESP~1\UNWISE.EXE C:\PROGRA~1\GAMESP~1\INSTALL.LOG
GIMP 2.6.11-->"C:\Program Files\GIMP-2.0\setup\unins000.exe"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\17.0.963.56\Installer\setup.exe" --uninstall --multi-install --chrome --system-level --verbose-logging
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HyperMediaCenter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6AE9A059-6372-435D-A5FE-0568A3B67F19}\Setup.exe" -l0x9
Intel(R) Graphics Media Accelerator Driver-->C:\Windows\system32\igxpun.exe -uninstall
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216022FF}
K-Lite Codec Pack 5.8.3 (Basic)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
KWorld TV Tuner Card Utilities-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{49F864F5-1A85-4E69-8764-C7E4EABD8BA0}\Setup.exe" -l0x9 -uninst
KWorld TV713X BDA Driver-->C:\Windows\p3xunist.exe
Labtec WebCam-->MsiExec.exe /X{995BF1A7-30E5-49E5-A0E4-AD3213D9E330}
Labtec® Camera Driver-->"C:\Program Files\Common Files\Labtec\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
Logitech Audio Echo Cancellation Component-->MsiExec.exe /X{BEF726DD-4037-4214-8C6A-E625C02D2870}
Logitech Video Enumerator-->MsiExec.exe /X{EA516024-D84D-41F1-814F-83175A6188F2}
LogMeIn Hamachi-->C:\Windows\system32\\msiexec.exe /i {E2494AD8-314D-44F8-B39C-4358A60DC184} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{E2494AD8-314D-44F8-B39C-4358A60DC184}
MediaInfo 0.7.48-->C:\Program Files\MediaInfo\uninst.exe
Microsoft .NET Framework 1.1 Security Update (KB2656353)-->"C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\Windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft .NET Framework 4 Extended CSY Language Pack-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ExtendedLP\Setup.exe /repair /x86 /lcid 1029 /parameterfolder ExtendedLP
Microsoft .NET Framework 4 Extended CSY Language Pack-->MsiExec.exe /X{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{0A0CADCF-78DA-33C4-A350-CD51849B9702}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570-->MsiExec.exe /X{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
Microsoft XNA Framework Redistributable 3.1-->MsiExec.exe /I{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}
Mozilla Firefox 10.0.2 (x86 cs)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT Redists-->MsiExec.exe /I{5DF7AA5E-A1CB-11E0-A7D6-0013D3D69929}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MVision-->MsiExec.exe /I{35725FBC-A136-4A46-9F29-091759D9BB93}
Need for Speed™ Most Wanted-->C:\Program Files\EA GAMES\Need for Speed Most Wanted\EAUninstall.exe
OpenLibraries-->C:\Program Files\OpenLibraries\uninst-openlibraries.exe
OpenOffice.org 3.2-->MsiExec.exe /I{5DE71D48-01EB-4BF2-A643-50FE6C9B6AC9}
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
QuickTime Alternative 2.7.0-->"C:\Program Files\QuickTime Alternative\unins000.exe"
QuickTime-->MsiExec.exe /I{57752979-A1C9-4C02-856B-FBB27AC4E02C}
Real Alternative 1.9.0-->"C:\Program Files\Real Alternative\unins000.exe"
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0005 -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Revo Uninstaller Pro 2.4.1-->"C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe"
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {F6F5AC31-9833-3E77-AC8E-8E910CAB39AE} /qb+ REBOOTPROMPT=""
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {3E0806DB-3085-378A-840A-F0D3AE3609D1} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7E97AB83-C1FE-38DE-B848-877E0A4BD81E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DB31DEDD-BF95-31E7-A9B7-5480561CEFF3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8DDEFC7E-0C61-3D11-AFC6-5414F2DAFD01} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2478663)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {728D9A6A-2206-31E8-9F65-C3EABEFCF53E} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Client Profile CSY Language Pack (KB2518870)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\setup.exe /uninstallpatch {2CE2EB39-45C8-32D4-8A99-5529C38F1B99} /parameterfolder ClientLP
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {42A3562E-8B4E-39A4-B82D-CC12F82889E3} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4952F442-5C1A-38EB-8C23-B18EFE77E20C} /parameterfolder Extended
Skype Click to Call-->MsiExec.exe /I{B6CF2967-C81E-40C0-9815-C05774FEF120}
Skype™ 5.5-->MsiExec.exe /X{AA59DDE4-B672-4621-A016-4C248204957A}
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
TeamSpeak 3 Client-->"C:\Program Files\TeamSpeak 3 Client\uninstall.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {5E9CF3A4-ADB3-3080-A8BF-976A28340758} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->c:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {81EBB9D7-173C-32E3-B477-149C8DE075E4} /parameterfolder Extended
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
Vegas Pro 10.0-->MsiExec.exe /X{5AC11070-A1CB-11E0-A0DC-0013D3D69929}
VLC media player 1.1.11-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Yontoo Layers Runtime 1.10.01-->C:\PROGRA~2\TARMAI~1\{889DF~1\Setup.exe /remove /q0
======Hosts File======
127.0.0.1 activate.adobe.com
Securitycenter WMI appears to be broken
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\OpenLibraries\bin;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\QuickTime Alternative\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 2, GenuineIntel
"PROCESSOR_REVISION"=0f02
"NUMBER_OF_PROCESSORS"=2
"configsetroot"=%SystemRoot%\ConfigSetRoot
"PYTHONPATH"=C:\Program Files\OpenLibraries\python
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=NETWORK
-----------------EOF-----------------
Re: Nouzový režim PC
Dobrý den. Včera jsem Vás poprosil o pomoc s PC a zatím se mi nikdo neozval. Prosím Vás , zda by mi mohl od Vás někdo pomoci. Předem Vám moc děkuji.
Re: Nouzový režim PC
Dobrý večer
Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix

Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC
ComboFix 12-03-10.01 - Jonáš 10.03.2012 12:24:35.1.2 - x86
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Tarma Installer
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setup.dll
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico
c:\windows\IsUn0407.exe
c:\windows\PFRO.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-10 do 2012-03-10 )))))))))))))))))))))))))))))))
.
.
2012-03-10 11:37 . 2012-03-10 11:38 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-10 11:37 . 2012-03-10 11:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-06 21:30 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-06 21:31 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-02-21 14:15 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-03-06 21:30 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2011-12-14 07:41 . 2011-12-14 07:41 515856 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-13 10:01 . 2010-10-13 07:55 1698408 ----a-w- c:\windows\RtlExUpd.dll
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-08-26 10828392]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-AdobeBridge - (no file)
AddRemove-{889DF117-14D1-44EE-9F31-C5FB5D47F68B} - c:\progra~2\TARMAI~1\{889DF~1\Setup.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-10 12:38
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\avast! sandbox
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-10 12:42:49
ComboFix-quarantined-files.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 558 906 880
Po spuštění: Volných bajtů: 47 067 451 392
.
- - End Of File - - 544C7BF18440E928A7318DF30870DCA7
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Tarma Installer
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\_Setup.dll
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.dat
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.exe
c:\programdata\Tarma Installer\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}\Setup.ico
c:\windows\IsUn0407.exe
c:\windows\PFRO.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-10 do 2012-03-10 )))))))))))))))))))))))))))))))
.
.
2012-03-10 11:37 . 2012-03-10 11:38 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-10 11:37 . 2012-03-10 11:37 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-06 21:30 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-06 21:31 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-02-21 14:15 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-03-06 21:30 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2011-12-14 07:41 . 2011-12-14 07:41 515856 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-13 10:01 . 2010-10-13 07:55 1698408 ----a-w- c:\windows\RtlExUpd.dll
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-08-26 10828392]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-AdobeBridge - (no file)
AddRemove-{889DF117-14D1-44EE-9F31-C5FB5D47F68B} - c:\progra~2\TARMAI~1\{889DF~1\Setup.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-10 12:38
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
.
C:\avast! sandbox
.
sken byl úspešně dokončen
skryté soubory: 1
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-10 12:42:49
ComboFix-quarantined-files.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 558 906 880
Po spuštění: Volných bajtů: 47 067 451 392
.
- - End Of File - - 544C7BF18440E928A7318DF30870DCA7
Re: Nouzový režim PC
Akamai a babylon používáte?
Tuto složku znáte?
c:\users\Joná?
Změnilo se něco s pc?
Tuto složku znáte?
c:\users\Joná?
Změnilo se něco s pc?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC
----------------------------------------------------------motji píše:Akamai a babylon používáte?
Tuto složku znáte?
c:\users\Joná?
Změnilo se něco s pc?
Dobrý den, na otázku :Akamai a babylon používáte?
tyto aplikace nepoužívám, pravděpodobně byly nainstalovány s nějakou mojí hrou,kterou jsem už vymazal. Můžeme tedy odstranit pokud to půjde.
na otázku:Tuto složku znáte?
c:\users\Joná?
odpovídám ,že složka je prázdná a nepoužívá se. Možno také odstranit.
PC už nemusím mít v nouzovém režimu a chová se celkem standartně.
Ve spodní liště PC (na pravé straně dole) mám pořád v "připojení k internetu"křížek(červený -poznámka STAV PŘIPOJENÍ NEZNÁMÝ - TŘÍDA NENÍ ZAREGISTROVÁNA, nevím co se tam děje, dříve to tam nebylo(myšleno před závadou). Dále potíže se zvukem přetrvávají, tedy nejde vůbec žádný zvuk z PC , který mi zmizel těsně před závadou v PC. Snažil jsem se to také vyřešit, ač marně....

Re: Nouzový režim PC
Mrkněte do správce zařízení, zda Vám tam nechybí nějaké drivery.
Stáhněte TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.

- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC
10:24:05.0159 1008 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43
10:24:05.0362 1008 ============================================================
10:24:05.0362 1008 Current date / time: 2012/03/11 10:24:05.0362
10:24:05.0362 1008 SystemInfo:
10:24:05.0363 1008
10:24:05.0363 1008 OS Version: 6.0.6002 ServicePack: 2.0
10:24:05.0363 1008 Product type: Workstation
10:24:05.0363 1008 ComputerName: JONÁŠ-PC
10:24:05.0363 1008 UserName: Jonáš
10:24:05.0363 1008 Windows directory: C:\Windows
10:24:05.0363 1008 System windows directory: C:\Windows
10:24:05.0363 1008 Processor architecture: Intel x86
10:24:05.0363 1008 Number of processors: 2
10:24:05.0363 1008 Page size: 0x1000
10:24:05.0363 1008 Boot type: Normal boot
10:24:05.0363 1008 ============================================================
10:24:06.0769 1008 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:24:06.0833 1008 \Device\Harddisk0\DR0:
10:24:06.0833 1008 MBR used
10:24:06.0833 1008 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12A18800
10:24:06.0888 1008 Initialize success
10:24:06.0888 1008 ============================================================
10:25:08.0080 2008 ============================================================
10:25:08.0080 2008 Scan started
10:25:08.0080 2008 Mode: Manual;
10:25:08.0080 2008 ============================================================
10:25:08.0918 2008 3xHybrid (f2882b93bb527a71d3527a3761085e2d) C:\Windows\system32\DRIVERS\3xHybrid.sys
10:25:08.0982 2008 3xHybrid - ok
10:25:09.0035 2008 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
10:25:09.0048 2008 ACPI - ok
10:25:09.0058 2008 adfs - ok
10:25:09.0127 2008 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
10:25:09.0209 2008 adp94xx - ok
10:25:09.0230 2008 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
10:25:09.0252 2008 adpahci - ok
10:25:09.0270 2008 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
10:25:09.0276 2008 adpu160m - ok
10:25:09.0315 2008 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
10:25:09.0333 2008 adpu320 - ok
10:25:09.0457 2008 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
10:25:09.0464 2008 AFD - ok
10:25:09.0497 2008 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
10:25:09.0499 2008 agp440 - ok
10:25:09.0522 2008 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
10:25:09.0528 2008 aic78xx - ok
10:25:09.0568 2008 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
10:25:09.0570 2008 aliide - ok
10:25:09.0590 2008 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
10:25:09.0593 2008 amdagp - ok
10:25:09.0614 2008 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
10:25:09.0617 2008 amdide - ok
10:25:09.0641 2008 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
10:25:09.0643 2008 AmdK7 - ok
10:25:09.0662 2008 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
10:25:09.0664 2008 AmdK8 - ok
10:25:09.0705 2008 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
10:25:09.0708 2008 arc - ok
10:25:09.0731 2008 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
10:25:09.0736 2008 arcsas - ok
10:25:09.0824 2008 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\Windows\system32\drivers\aswFsBlk.sys
10:25:09.0831 2008 aswFsBlk - ok
10:25:09.0874 2008 aswMonFlt (6693141560b1615d8dccf0d8eb00087e) C:\Windows\system32\drivers\aswMonFlt.sys
10:25:09.0880 2008 aswMonFlt - ok
10:25:09.0907 2008 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\Windows\system32\drivers\aswRdr.sys
10:25:09.0949 2008 aswRdr - ok
10:25:10.0067 2008 aswSnx (dcb199b967375753b5019ec15f008f53) C:\Windows\system32\drivers\aswSnx.sys
10:25:10.0100 2008 aswSnx - ok
10:25:10.0134 2008 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\Windows\system32\drivers\aswSP.sys
10:25:10.0160 2008 aswSP - ok
10:25:10.0179 2008 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\Windows\system32\drivers\aswTdi.sys
10:25:10.0186 2008 aswTdi - ok
10:25:10.0254 2008 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
10:25:10.0256 2008 AsyncMac - ok
10:25:10.0283 2008 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
10:25:10.0284 2008 atapi - ok
10:25:10.0371 2008 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
10:25:10.0373 2008 Beep - ok
10:25:10.0397 2008 blbdrive - ok
10:25:10.0460 2008 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
10:25:10.0467 2008 bowser - ok
10:25:10.0501 2008 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
10:25:10.0507 2008 BrFiltLo - ok
10:25:10.0520 2008 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
10:25:10.0522 2008 BrFiltUp - ok
10:25:10.0547 2008 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
10:25:10.0554 2008 Brserid - ok
10:25:10.0583 2008 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
10:25:10.0585 2008 BrSerWdm - ok
10:25:10.0610 2008 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
10:25:10.0612 2008 BrUsbMdm - ok
10:25:10.0623 2008 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
10:25:10.0626 2008 BrUsbSer - ok
10:25:10.0643 2008 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
10:25:10.0645 2008 BTHMODEM - ok
10:25:10.0733 2008 catchme - ok
10:25:10.0806 2008 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
10:25:10.0812 2008 cdfs - ok
10:25:10.0862 2008 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
10:25:10.0867 2008 cdrom - ok
10:25:10.0906 2008 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
10:25:10.0914 2008 circlass - ok
10:25:11.0002 2008 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
10:25:11.0016 2008 CLFS - ok
10:25:11.0047 2008 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
10:25:11.0049 2008 cmdide - ok
10:25:11.0068 2008 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
10:25:11.0069 2008 Compbatt - ok
10:25:11.0093 2008 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
10:25:11.0098 2008 crcdisk - ok
10:25:11.0120 2008 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
10:25:11.0122 2008 Crusoe - ok
10:25:11.0193 2008 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
10:25:11.0200 2008 DfsC - ok
10:25:11.0293 2008 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
10:25:11.0333 2008 disk - ok
10:25:11.0405 2008 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
10:25:11.0408 2008 drmkaud - ok
10:25:11.0476 2008 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
10:25:11.0506 2008 DXGKrnl - ok
10:25:11.0547 2008 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
10:25:11.0556 2008 E1G60 - ok
10:25:11.0580 2008 EagleNT - ok
10:25:11.0605 2008 EagleXNt - ok
10:25:11.0704 2008 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
10:25:11.0712 2008 Ecache - ok
10:25:11.0760 2008 ElbyCDIO (44996a2addd2db7454f2ca40b67d8941) C:\Windows\system32\Drivers\ElbyCDIO.sys
10:25:11.0781 2008 ElbyCDIO - ok
10:25:11.0814 2008 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
10:25:11.0834 2008 elxstor - ok
10:25:11.0917 2008 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
10:25:11.0949 2008 exfat - ok
10:25:12.0013 2008 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
10:25:12.0022 2008 fastfat - ok
10:25:12.0058 2008 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
10:25:12.0059 2008 fdc - ok
10:25:12.0135 2008 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
10:25:12.0140 2008 FileInfo - ok
10:25:12.0197 2008 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
10:25:12.0231 2008 Filetrace - ok
10:25:12.0279 2008 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
10:25:12.0283 2008 flpydisk - ok
10:25:12.0380 2008 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
10:25:12.0389 2008 FltMgr - ok
10:25:12.0422 2008 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
10:25:12.0424 2008 Fs_Rec - ok
10:25:12.0452 2008 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
10:25:12.0457 2008 gagp30kx - ok
10:25:12.0462 2008 GMSIPCI - ok
10:25:12.0566 2008 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys
10:25:12.0572 2008 hamachi - ok
10:25:12.0614 2008 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
10:25:12.0626 2008 HdAudAddService - ok
10:25:12.0672 2008 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
10:25:12.0708 2008 HDAudBus - ok
10:25:12.0741 2008 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
10:25:12.0745 2008 HidBth - ok
10:25:12.0765 2008 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
10:25:12.0767 2008 HidIr - ok
10:25:12.0814 2008 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
10:25:12.0818 2008 HidUsb - ok
10:25:12.0852 2008 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
10:25:12.0854 2008 HpCISSs - ok
10:25:12.0895 2008 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
10:25:12.0904 2008 HTTP - ok
10:25:12.0923 2008 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
10:25:12.0925 2008 i2omp - ok
10:25:12.0963 2008 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
10:25:13.0001 2008 i8042prt - ok
10:25:13.0105 2008 ialm (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0183 2008 ialm - ok
10:25:13.0221 2008 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
10:25:13.0233 2008 iaStorV - ok
10:25:13.0295 2008 igfx (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0309 2008 igfx - ok
10:25:13.0334 2008 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
10:25:13.0336 2008 iirsp - ok
10:25:13.0486 2008 IntcAzAudAddService (d4394a481b845cc1df361a85751c071a) C:\Windows\system32\drivers\RTKVHDA.sys
10:25:13.0694 2008 IntcAzAudAddService - ok
10:25:13.0733 2008 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
10:25:13.0737 2008 intelide - ok
10:25:13.0770 2008 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
10:25:13.0772 2008 intelppm - ok
10:25:13.0842 2008 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:25:13.0848 2008 IpFilterDriver - ok
10:25:13.0864 2008 IpInIp - ok
10:25:13.0898 2008 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
10:25:13.0904 2008 IPMIDRV - ok
10:25:13.0967 2008 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
10:25:13.0973 2008 IPNAT - ok
10:25:14.0035 2008 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
10:25:14.0038 2008 IRENUM - ok
10:25:14.0079 2008 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
10:25:14.0085 2008 isapnp - ok
10:25:14.0127 2008 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
10:25:14.0132 2008 iScsiPrt - ok
10:25:14.0150 2008 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
10:25:14.0152 2008 iteatapi - ok
10:25:14.0180 2008 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
10:25:14.0185 2008 iteraid - ok
10:25:14.0218 2008 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
10:25:14.0222 2008 kbdclass - ok
10:25:14.0237 2008 kbdhid (d2600cb17b7408b4a83f231dc9a11ac3) C:\Windows\system32\drivers\kbdhid.sys
10:25:14.0239 2008 kbdhid - ok
10:25:14.0303 2008 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
10:25:14.0328 2008 KSecDD - ok
10:25:14.0408 2008 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
10:25:14.0415 2008 lltdio - ok
10:25:14.0467 2008 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
10:25:14.0479 2008 LSI_FC - ok
10:25:14.0563 2008 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
10:25:14.0602 2008 LSI_SAS - ok
10:25:14.0725 2008 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
10:25:14.0741 2008 LSI_SCSI - ok
10:25:14.0803 2008 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
10:25:14.0840 2008 luafv - ok
10:25:15.0004 2008 LVcKap (b72e763eb92b8dbe45c455ba6e4babd0) C:\Windows\system32\DRIVERS\LVcKap.sys
10:25:15.0162 2008 LVcKap - ok
10:25:15.0280 2008 LVMVDrv (e8a376abc340c35318a79b766c2406bb) C:\Windows\system32\DRIVERS\LVMVDrv.sys
10:25:15.0393 2008 LVMVDrv - ok
10:25:15.0482 2008 LVUSBSta (839da24941c0395c69c681f12b721a47) C:\Windows\system32\drivers\LVUSBSta.sys
10:25:15.0489 2008 LVUSBSta - ok
10:25:15.0538 2008 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
10:25:15.0542 2008 megasas - ok
10:25:15.0607 2008 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
10:25:15.0611 2008 Modem - ok
10:25:15.0646 2008 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
10:25:15.0649 2008 monitor - ok
10:25:15.0679 2008 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
10:25:15.0683 2008 mouclass - ok
10:25:15.0698 2008 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
10:25:15.0702 2008 mouhid - ok
10:25:15.0768 2008 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
10:25:15.0773 2008 MountMgr - ok
10:25:15.0823 2008 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
10:25:15.0829 2008 mpio - ok
10:25:15.0889 2008 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
10:25:15.0894 2008 mpsdrv - ok
10:25:15.0933 2008 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
10:25:15.0939 2008 Mraid35x - ok
10:25:16.0019 2008 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
10:25:16.0026 2008 MRxDAV - ok
10:25:16.0109 2008 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
10:25:16.0116 2008 mrxsmb - ok
10:25:16.0174 2008 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:25:16.0185 2008 mrxsmb10 - ok
10:25:16.0200 2008 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:25:16.0207 2008 mrxsmb20 - ok
10:25:16.0229 2008 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
10:25:16.0233 2008 msahci - ok
10:25:16.0251 2008 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
10:25:16.0257 2008 msdsm - ok
10:25:16.0329 2008 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
10:25:16.0332 2008 Msfs - ok
10:25:16.0367 2008 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
10:25:16.0373 2008 msisadrv - ok
10:25:16.0446 2008 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
10:25:16.0451 2008 MSKSSRV - ok
10:25:16.0505 2008 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
10:25:16.0507 2008 MSPCLOCK - ok
10:25:16.0560 2008 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
10:25:16.0565 2008 MSPQM - ok
10:25:16.0649 2008 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
10:25:16.0659 2008 MsRPC - ok
10:25:16.0678 2008 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
10:25:16.0682 2008 mssmbios - ok
10:25:16.0694 2008 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
10:25:16.0703 2008 MSTEE - ok
10:25:16.0788 2008 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
10:25:16.0793 2008 Mup - ok
10:25:16.0885 2008 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
10:25:16.0895 2008 NativeWifiP - ok
10:25:17.0022 2008 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
10:25:17.0052 2008 NDIS - ok
10:25:17.0120 2008 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
10:25:17.0124 2008 NdisTapi - ok
10:25:17.0180 2008 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
10:25:17.0183 2008 Ndisuio - ok
10:25:17.0264 2008 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
10:25:17.0271 2008 NdisWan - ok
10:25:17.0330 2008 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
10:25:17.0334 2008 NDProxy - ok
10:25:17.0390 2008 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
10:25:17.0394 2008 NetBIOS - ok
10:25:17.0479 2008 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
10:25:17.0490 2008 netbt - ok
10:25:17.0566 2008 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
10:25:17.0570 2008 nfrd960 - ok
10:25:17.0626 2008 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
10:25:17.0632 2008 Npfs - ok
10:25:17.0688 2008 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
10:25:17.0692 2008 nsiproxy - ok
10:25:17.0800 2008 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
10:25:17.0872 2008 Ntfs - ok
10:25:17.0896 2008 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
10:25:17.0902 2008 ntrigdigi - ok
10:25:17.0932 2008 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
10:25:17.0937 2008 Null - ok
10:25:17.0975 2008 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
10:25:17.0981 2008 nvraid - ok
10:25:17.0998 2008 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
10:25:18.0003 2008 nvstor - ok
10:25:18.0031 2008 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
10:25:18.0037 2008 nv_agp - ok
10:25:18.0048 2008 NwlnkFlt - ok
10:25:18.0062 2008 NwlnkFwd - ok
10:25:18.0110 2008 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
10:25:18.0118 2008 ohci1394 - ok
10:25:18.0174 2008 Parport (8a79fdf04a73428597e2caf9d0d67850) C:\Windows\system32\DRIVERS\parport.sys
10:25:18.0183 2008 Parport - ok
10:25:18.0263 2008 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
10:25:18.0267 2008 partmgr - ok
10:25:18.0286 2008 Parvdm (6c580025c81caf3ae9e3617c22cad00e) C:\Windows\system32\DRIVERS\parvdm.sys
10:25:18.0289 2008 Parvdm - ok
10:25:18.0324 2008 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
10:25:18.0336 2008 pci - ok
10:25:18.0359 2008 pciide (3b1901e401473e03eb8c874271e50c26) C:\Windows\system32\drivers\pciide.sys
10:25:18.0363 2008 pciide - ok
10:25:18.0394 2008 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
10:25:18.0404 2008 pcmcia - ok
10:25:18.0455 2008 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
10:25:18.0523 2008 PEAUTH - ok
10:25:18.0604 2008 Ph3xIB32 (514fadd940a5ee06d6caa5cd0f6725d6) C:\Windows\system32\DRIVERS\Ph3xIB32.sys
10:25:18.0680 2008 Ph3xIB32 - ok
10:25:18.0729 2008 PID_0928 (d395b2dc1705454aa36a34099e066df0) C:\Windows\system32\DRIVERS\LV561AV.SYS
10:25:18.0762 2008 PID_0928 - ok
10:25:18.0850 2008 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
10:25:18.0855 2008 PptpMiniport - ok
10:25:18.0897 2008 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
10:25:18.0904 2008 Processor - ok
10:25:19.0009 2008 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
10:25:19.0015 2008 PSched - ok
10:25:19.0070 2008 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
10:25:19.0131 2008 ql2300 - ok
10:25:19.0164 2008 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
10:25:19.0170 2008 ql40xx - ok
10:25:19.0231 2008 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
10:25:19.0235 2008 QWAVEdrv - ok
10:25:19.0290 2008 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
10:25:19.0294 2008 RasAcd - ok
10:25:19.0362 2008 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
10:25:19.0368 2008 Rasl2tp - ok
10:25:19.0456 2008 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
10:25:19.0461 2008 RasPppoe - ok
10:25:19.0511 2008 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
10:25:19.0518 2008 RasSstp - ok
10:25:19.0570 2008 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
10:25:19.0582 2008 rdbss - ok
10:25:19.0637 2008 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
10:25:19.0642 2008 RDPCDD - ok
10:25:19.0698 2008 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
10:25:19.0716 2008 rdpdr - ok
10:25:19.0735 2008 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
10:25:19.0737 2008 RDPENCDD - ok
10:25:19.0787 2008 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
10:25:19.0801 2008 RDPWD - ok
10:25:19.0856 2008 Revoflt (b9bb8e2093c1615ad6ea55ad96214354) C:\Windows\system32\DRIVERS\revoflt.sys
10:25:19.0861 2008 Revoflt - ok
10:25:19.0942 2008 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
10:25:19.0951 2008 rspndr - ok
10:25:20.0135 2008 RTL8169 (904fd29ec1ff2709099ae2cd1c09a913) C:\Windows\system32\DRIVERS\Rtlh86.sys
10:25:20.0143 2008 RTL8169 - ok
10:25:20.0360 2008 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
10:25:20.0372 2008 sbp2port - ok
10:25:20.0417 2008 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
10:25:20.0421 2008 secdrv - ok
10:25:20.0467 2008 Serenum (ce9ec966638ef0b10b864ddedf62a099) C:\Windows\system32\DRIVERS\serenum.sys
10:25:20.0471 2008 Serenum - ok
10:25:20.0521 2008 Serial (6d663022db3e7058907784ae14b69898) C:\Windows\system32\DRIVERS\serial.sys
10:25:20.0557 2008 Serial - ok
10:25:20.0601 2008 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
10:25:20.0605 2008 sermouse - ok
10:25:20.0641 2008 sffdisk (103b79418da647736ee95645f305f68a) C:\Windows\system32\drivers\sffdisk.sys
10:25:20.0643 2008 sffdisk - ok
10:25:20.0667 2008 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
10:25:20.0673 2008 sffp_mmc - ok
10:25:20.0700 2008 sffp_sd (9cfa05fcfcb7124e69cfc812b72f9614) C:\Windows\system32\drivers\sffp_sd.sys
10:25:20.0704 2008 sffp_sd - ok
10:25:20.0732 2008 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
10:25:20.0735 2008 sfloppy - ok
10:25:20.0798 2008 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
10:25:20.0803 2008 sisagp - ok
10:25:20.0836 2008 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
10:25:20.0841 2008 SiSRaid2 - ok
10:25:20.0879 2008 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
10:25:20.0885 2008 SiSRaid4 - ok
10:25:20.0987 2008 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
10:25:20.0990 2008 Smb - ok
10:25:21.0070 2008 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
10:25:21.0072 2008 spldr - ok
10:25:21.0157 2008 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
10:25:21.0228 2008 srv - ok
10:25:21.0381 2008 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
10:25:21.0410 2008 srv2 - ok
10:25:21.0496 2008 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
10:25:21.0503 2008 srvnet - ok
10:25:21.0576 2008 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
10:25:21.0582 2008 swenum - ok
10:25:21.0631 2008 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
10:25:21.0634 2008 Symc8xx - ok
10:25:21.0662 2008 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
10:25:21.0664 2008 Sym_hi - ok
10:25:21.0692 2008 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
10:25:21.0698 2008 Sym_u3 - ok
10:25:21.0795 2008 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
10:25:21.0867 2008 Tcpip - ok
10:25:21.0894 2008 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
10:25:21.0902 2008 Tcpip6 - ok
10:25:21.0935 2008 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
10:25:21.0939 2008 tcpipreg - ok
10:25:22.0001 2008 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
10:25:22.0003 2008 TDPIPE - ok
10:25:22.0064 2008 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
10:25:22.0067 2008 TDTCP - ok
10:25:22.0153 2008 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
10:25:22.0159 2008 tdx - ok
10:25:22.0193 2008 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
10:25:22.0199 2008 TermDD - ok
10:25:22.0266 2008 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
10:25:22.0268 2008 tssecsrv - ok
10:25:22.0298 2008 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
10:25:22.0301 2008 tunmp - ok
10:25:22.0337 2008 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
10:25:22.0339 2008 tunnel - ok
10:25:22.0375 2008 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
10:25:22.0377 2008 uagp35 - ok
10:25:22.0456 2008 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
10:25:22.0469 2008 udfs - ok
10:25:22.0513 2008 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
10:25:22.0516 2008 uliagpkx - ok
10:25:22.0538 2008 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
10:25:22.0558 2008 uliahci - ok
10:25:22.0585 2008 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
10:25:22.0591 2008 UlSata - ok
10:25:22.0622 2008 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
10:25:22.0630 2008 ulsata2 - ok
10:25:22.0664 2008 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
10:25:22.0670 2008 umbus - ok
10:25:22.0720 2008 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
10:25:22.0726 2008 usbccgp - ok
10:25:22.0764 2008 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
10:25:22.0768 2008 usbcir - ok
10:25:22.0818 2008 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
10:25:22.0822 2008 usbehci - ok
10:25:22.0858 2008 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
10:25:22.0869 2008 usbhub - ok
10:25:22.0894 2008 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
10:25:22.0896 2008 usbohci - ok
10:25:22.0923 2008 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
10:25:22.0927 2008 usbprint - ok
10:25:22.0973 2008 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
10:25:22.0978 2008 usbscan - ok
10:25:22.0997 2008 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
10:25:23.0002 2008 USBSTOR - ok
10:25:23.0030 2008 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
10:25:23.0034 2008 usbuhci - ok
10:25:23.0075 2008 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
10:25:23.0077 2008 vga - ok
10:25:23.0142 2008 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
10:25:23.0144 2008 VgaSave - ok
10:25:23.0175 2008 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
10:25:23.0182 2008 viaagp - ok
10:25:23.0209 2008 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
10:25:23.0217 2008 ViaC7 - ok
10:25:23.0241 2008 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
10:25:23.0247 2008 viaide - ok
10:25:23.0275 2008 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
10:25:23.0281 2008 volmgr - ok
10:25:23.0373 2008 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
10:25:23.0380 2008 volmgrx - ok
10:25:23.0416 2008 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
10:25:23.0429 2008 volsnap - ok
10:25:23.0459 2008 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
10:25:23.0463 2008 vsmraid - ok
10:25:23.0494 2008 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
10:25:23.0501 2008 WacomPen - ok
10:25:23.0562 2008 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0567 2008 Wanarp - ok
10:25:23.0583 2008 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0585 2008 Wanarpv6 - ok
10:25:23.0621 2008 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys
10:25:23.0625 2008 Wd - ok
10:25:23.0695 2008 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
10:25:23.0721 2008 Wdf01000 - ok
10:25:23.0810 2008 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
10:25:23.0815 2008 WmiAcpi - ok
10:25:23.0904 2008 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
10:25:23.0909 2008 WpdUsb - ok
10:25:23.0974 2008 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
10:25:23.0976 2008 ws2ifsl - ok
10:25:24.0062 2008 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
10:25:24.0065 2008 WUDFRd - ok
10:25:24.0081 2008 XDva380 - ok
10:25:24.0106 2008 XDva383 - ok
10:25:24.0134 2008 XDva385 - ok
10:25:24.0148 2008 XDva390 - ok
10:25:24.0162 2008 XDva393 - ok
10:25:24.0192 2008 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
10:25:24.0272 2008 \Device\Harddisk0\DR0 - ok
10:25:24.0279 2008 Boot (0x1200) (db095508602461e6d59b95f8bb682028) \Device\Harddisk0\DR0\Partition0
10:25:24.0282 2008 \Device\Harddisk0\DR0\Partition0 - ok
10:25:24.0282 2008 ============================================================
10:25:24.0282 2008 Scan finished
10:25:24.0282 2008 ============================================================
10:25:24.0304 0520 Detected object count: 0
10:25:24.0304 0520 Actual detected object count: 0
10:24:05.0362 1008 ============================================================
10:24:05.0362 1008 Current date / time: 2012/03/11 10:24:05.0362
10:24:05.0362 1008 SystemInfo:
10:24:05.0363 1008
10:24:05.0363 1008 OS Version: 6.0.6002 ServicePack: 2.0
10:24:05.0363 1008 Product type: Workstation
10:24:05.0363 1008 ComputerName: JONÁŠ-PC
10:24:05.0363 1008 UserName: Jonáš
10:24:05.0363 1008 Windows directory: C:\Windows
10:24:05.0363 1008 System windows directory: C:\Windows
10:24:05.0363 1008 Processor architecture: Intel x86
10:24:05.0363 1008 Number of processors: 2
10:24:05.0363 1008 Page size: 0x1000
10:24:05.0363 1008 Boot type: Normal boot
10:24:05.0363 1008 ============================================================
10:24:06.0769 1008 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:24:06.0833 1008 \Device\Harddisk0\DR0:
10:24:06.0833 1008 MBR used
10:24:06.0833 1008 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x12A18800
10:24:06.0888 1008 Initialize success
10:24:06.0888 1008 ============================================================
10:25:08.0080 2008 ============================================================
10:25:08.0080 2008 Scan started
10:25:08.0080 2008 Mode: Manual;
10:25:08.0080 2008 ============================================================
10:25:08.0918 2008 3xHybrid (f2882b93bb527a71d3527a3761085e2d) C:\Windows\system32\DRIVERS\3xHybrid.sys
10:25:08.0982 2008 3xHybrid - ok
10:25:09.0035 2008 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
10:25:09.0048 2008 ACPI - ok
10:25:09.0058 2008 adfs - ok
10:25:09.0127 2008 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys
10:25:09.0209 2008 adp94xx - ok
10:25:09.0230 2008 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys
10:25:09.0252 2008 adpahci - ok
10:25:09.0270 2008 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys
10:25:09.0276 2008 adpu160m - ok
10:25:09.0315 2008 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys
10:25:09.0333 2008 adpu320 - ok
10:25:09.0457 2008 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
10:25:09.0464 2008 AFD - ok
10:25:09.0497 2008 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys
10:25:09.0499 2008 agp440 - ok
10:25:09.0522 2008 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
10:25:09.0528 2008 aic78xx - ok
10:25:09.0568 2008 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys
10:25:09.0570 2008 aliide - ok
10:25:09.0590 2008 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys
10:25:09.0593 2008 amdagp - ok
10:25:09.0614 2008 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys
10:25:09.0617 2008 amdide - ok
10:25:09.0641 2008 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys
10:25:09.0643 2008 AmdK7 - ok
10:25:09.0662 2008 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys
10:25:09.0664 2008 AmdK8 - ok
10:25:09.0705 2008 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys
10:25:09.0708 2008 arc - ok
10:25:09.0731 2008 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys
10:25:09.0736 2008 arcsas - ok
10:25:09.0824 2008 aswFsBlk (0ae43c6c411254049279c2ee55630f95) C:\Windows\system32\drivers\aswFsBlk.sys
10:25:09.0831 2008 aswFsBlk - ok
10:25:09.0874 2008 aswMonFlt (6693141560b1615d8dccf0d8eb00087e) C:\Windows\system32\drivers\aswMonFlt.sys
10:25:09.0880 2008 aswMonFlt - ok
10:25:09.0907 2008 aswRdr (da12626fd9a67f4e917e2f2fbe1e1764) C:\Windows\system32\drivers\aswRdr.sys
10:25:09.0949 2008 aswRdr - ok
10:25:10.0067 2008 aswSnx (dcb199b967375753b5019ec15f008f53) C:\Windows\system32\drivers\aswSnx.sys
10:25:10.0100 2008 aswSnx - ok
10:25:10.0134 2008 aswSP (b32873e5a1443c0a1e322266e203bf10) C:\Windows\system32\drivers\aswSP.sys
10:25:10.0160 2008 aswSP - ok
10:25:10.0179 2008 aswTdi (6ff544175a9180c5d88534d3d9c9a9f7) C:\Windows\system32\drivers\aswTdi.sys
10:25:10.0186 2008 aswTdi - ok
10:25:10.0254 2008 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
10:25:10.0256 2008 AsyncMac - ok
10:25:10.0283 2008 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
10:25:10.0284 2008 atapi - ok
10:25:10.0371 2008 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
10:25:10.0373 2008 Beep - ok
10:25:10.0397 2008 blbdrive - ok
10:25:10.0460 2008 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
10:25:10.0467 2008 bowser - ok
10:25:10.0501 2008 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
10:25:10.0507 2008 BrFiltLo - ok
10:25:10.0520 2008 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
10:25:10.0522 2008 BrFiltUp - ok
10:25:10.0547 2008 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
10:25:10.0554 2008 Brserid - ok
10:25:10.0583 2008 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
10:25:10.0585 2008 BrSerWdm - ok
10:25:10.0610 2008 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
10:25:10.0612 2008 BrUsbMdm - ok
10:25:10.0623 2008 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
10:25:10.0626 2008 BrUsbSer - ok
10:25:10.0643 2008 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
10:25:10.0645 2008 BTHMODEM - ok
10:25:10.0733 2008 catchme - ok
10:25:10.0806 2008 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
10:25:10.0812 2008 cdfs - ok
10:25:10.0862 2008 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
10:25:10.0867 2008 cdrom - ok
10:25:10.0906 2008 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys
10:25:10.0914 2008 circlass - ok
10:25:11.0002 2008 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
10:25:11.0016 2008 CLFS - ok
10:25:11.0047 2008 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys
10:25:11.0049 2008 cmdide - ok
10:25:11.0068 2008 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys
10:25:11.0069 2008 Compbatt - ok
10:25:11.0093 2008 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys
10:25:11.0098 2008 crcdisk - ok
10:25:11.0120 2008 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys
10:25:11.0122 2008 Crusoe - ok
10:25:11.0193 2008 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
10:25:11.0200 2008 DfsC - ok
10:25:11.0293 2008 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
10:25:11.0333 2008 disk - ok
10:25:11.0405 2008 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
10:25:11.0408 2008 drmkaud - ok
10:25:11.0476 2008 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
10:25:11.0506 2008 DXGKrnl - ok
10:25:11.0547 2008 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys
10:25:11.0556 2008 E1G60 - ok
10:25:11.0580 2008 EagleNT - ok
10:25:11.0605 2008 EagleXNt - ok
10:25:11.0704 2008 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
10:25:11.0712 2008 Ecache - ok
10:25:11.0760 2008 ElbyCDIO (44996a2addd2db7454f2ca40b67d8941) C:\Windows\system32\Drivers\ElbyCDIO.sys
10:25:11.0781 2008 ElbyCDIO - ok
10:25:11.0814 2008 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys
10:25:11.0834 2008 elxstor - ok
10:25:11.0917 2008 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
10:25:11.0949 2008 exfat - ok
10:25:12.0013 2008 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
10:25:12.0022 2008 fastfat - ok
10:25:12.0058 2008 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys
10:25:12.0059 2008 fdc - ok
10:25:12.0135 2008 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
10:25:12.0140 2008 FileInfo - ok
10:25:12.0197 2008 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
10:25:12.0231 2008 Filetrace - ok
10:25:12.0279 2008 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys
10:25:12.0283 2008 flpydisk - ok
10:25:12.0380 2008 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
10:25:12.0389 2008 FltMgr - ok
10:25:12.0422 2008 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
10:25:12.0424 2008 Fs_Rec - ok
10:25:12.0452 2008 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys
10:25:12.0457 2008 gagp30kx - ok
10:25:12.0462 2008 GMSIPCI - ok
10:25:12.0566 2008 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys
10:25:12.0572 2008 hamachi - ok
10:25:12.0614 2008 HdAudAddService (3f90e001369a07243763bd5a523d8722) C:\Windows\system32\drivers\HdAudio.sys
10:25:12.0626 2008 HdAudAddService - ok
10:25:12.0672 2008 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
10:25:12.0708 2008 HDAudBus - ok
10:25:12.0741 2008 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
10:25:12.0745 2008 HidBth - ok
10:25:12.0765 2008 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
10:25:12.0767 2008 HidIr - ok
10:25:12.0814 2008 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
10:25:12.0818 2008 HidUsb - ok
10:25:12.0852 2008 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys
10:25:12.0854 2008 HpCISSs - ok
10:25:12.0895 2008 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
10:25:12.0904 2008 HTTP - ok
10:25:12.0923 2008 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys
10:25:12.0925 2008 i2omp - ok
10:25:12.0963 2008 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
10:25:13.0001 2008 i8042prt - ok
10:25:13.0105 2008 ialm (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0183 2008 ialm - ok
10:25:13.0221 2008 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys
10:25:13.0233 2008 iaStorV - ok
10:25:13.0295 2008 igfx (dbb0588936e43c5f16b643f90f53c06d) C:\Windows\system32\DRIVERS\igdkmd32.sys
10:25:13.0309 2008 igfx - ok
10:25:13.0334 2008 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
10:25:13.0336 2008 iirsp - ok
10:25:13.0486 2008 IntcAzAudAddService (d4394a481b845cc1df361a85751c071a) C:\Windows\system32\drivers\RTKVHDA.sys
10:25:13.0694 2008 IntcAzAudAddService - ok
10:25:13.0733 2008 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
10:25:13.0737 2008 intelide - ok
10:25:13.0770 2008 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
10:25:13.0772 2008 intelppm - ok
10:25:13.0842 2008 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:25:13.0848 2008 IpFilterDriver - ok
10:25:13.0864 2008 IpInIp - ok
10:25:13.0898 2008 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys
10:25:13.0904 2008 IPMIDRV - ok
10:25:13.0967 2008 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
10:25:13.0973 2008 IPNAT - ok
10:25:14.0035 2008 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
10:25:14.0038 2008 IRENUM - ok
10:25:14.0079 2008 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys
10:25:14.0085 2008 isapnp - ok
10:25:14.0127 2008 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
10:25:14.0132 2008 iScsiPrt - ok
10:25:14.0150 2008 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
10:25:14.0152 2008 iteatapi - ok
10:25:14.0180 2008 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
10:25:14.0185 2008 iteraid - ok
10:25:14.0218 2008 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
10:25:14.0222 2008 kbdclass - ok
10:25:14.0237 2008 kbdhid (d2600cb17b7408b4a83f231dc9a11ac3) C:\Windows\system32\drivers\kbdhid.sys
10:25:14.0239 2008 kbdhid - ok
10:25:14.0303 2008 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys
10:25:14.0328 2008 KSecDD - ok
10:25:14.0408 2008 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
10:25:14.0415 2008 lltdio - ok
10:25:14.0467 2008 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys
10:25:14.0479 2008 LSI_FC - ok
10:25:14.0563 2008 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys
10:25:14.0602 2008 LSI_SAS - ok
10:25:14.0725 2008 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys
10:25:14.0741 2008 LSI_SCSI - ok
10:25:14.0803 2008 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
10:25:14.0840 2008 luafv - ok
10:25:15.0004 2008 LVcKap (b72e763eb92b8dbe45c455ba6e4babd0) C:\Windows\system32\DRIVERS\LVcKap.sys
10:25:15.0162 2008 LVcKap - ok
10:25:15.0280 2008 LVMVDrv (e8a376abc340c35318a79b766c2406bb) C:\Windows\system32\DRIVERS\LVMVDrv.sys
10:25:15.0393 2008 LVMVDrv - ok
10:25:15.0482 2008 LVUSBSta (839da24941c0395c69c681f12b721a47) C:\Windows\system32\drivers\LVUSBSta.sys
10:25:15.0489 2008 LVUSBSta - ok
10:25:15.0538 2008 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys
10:25:15.0542 2008 megasas - ok
10:25:15.0607 2008 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
10:25:15.0611 2008 Modem - ok
10:25:15.0646 2008 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
10:25:15.0649 2008 monitor - ok
10:25:15.0679 2008 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
10:25:15.0683 2008 mouclass - ok
10:25:15.0698 2008 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
10:25:15.0702 2008 mouhid - ok
10:25:15.0768 2008 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
10:25:15.0773 2008 MountMgr - ok
10:25:15.0823 2008 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys
10:25:15.0829 2008 mpio - ok
10:25:15.0889 2008 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
10:25:15.0894 2008 mpsdrv - ok
10:25:15.0933 2008 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
10:25:15.0939 2008 Mraid35x - ok
10:25:16.0019 2008 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
10:25:16.0026 2008 MRxDAV - ok
10:25:16.0109 2008 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
10:25:16.0116 2008 mrxsmb - ok
10:25:16.0174 2008 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:25:16.0185 2008 mrxsmb10 - ok
10:25:16.0200 2008 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:25:16.0207 2008 mrxsmb20 - ok
10:25:16.0229 2008 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys
10:25:16.0233 2008 msahci - ok
10:25:16.0251 2008 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys
10:25:16.0257 2008 msdsm - ok
10:25:16.0329 2008 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
10:25:16.0332 2008 Msfs - ok
10:25:16.0367 2008 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
10:25:16.0373 2008 msisadrv - ok
10:25:16.0446 2008 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
10:25:16.0451 2008 MSKSSRV - ok
10:25:16.0505 2008 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
10:25:16.0507 2008 MSPCLOCK - ok
10:25:16.0560 2008 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
10:25:16.0565 2008 MSPQM - ok
10:25:16.0649 2008 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
10:25:16.0659 2008 MsRPC - ok
10:25:16.0678 2008 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
10:25:16.0682 2008 mssmbios - ok
10:25:16.0694 2008 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
10:25:16.0703 2008 MSTEE - ok
10:25:16.0788 2008 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
10:25:16.0793 2008 Mup - ok
10:25:16.0885 2008 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
10:25:16.0895 2008 NativeWifiP - ok
10:25:17.0022 2008 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
10:25:17.0052 2008 NDIS - ok
10:25:17.0120 2008 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
10:25:17.0124 2008 NdisTapi - ok
10:25:17.0180 2008 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
10:25:17.0183 2008 Ndisuio - ok
10:25:17.0264 2008 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
10:25:17.0271 2008 NdisWan - ok
10:25:17.0330 2008 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
10:25:17.0334 2008 NDProxy - ok
10:25:17.0390 2008 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
10:25:17.0394 2008 NetBIOS - ok
10:25:17.0479 2008 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
10:25:17.0490 2008 netbt - ok
10:25:17.0566 2008 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
10:25:17.0570 2008 nfrd960 - ok
10:25:17.0626 2008 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
10:25:17.0632 2008 Npfs - ok
10:25:17.0688 2008 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
10:25:17.0692 2008 nsiproxy - ok
10:25:17.0800 2008 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
10:25:17.0872 2008 Ntfs - ok
10:25:17.0896 2008 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
10:25:17.0902 2008 ntrigdigi - ok
10:25:17.0932 2008 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
10:25:17.0937 2008 Null - ok
10:25:17.0975 2008 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys
10:25:17.0981 2008 nvraid - ok
10:25:17.0998 2008 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys
10:25:18.0003 2008 nvstor - ok
10:25:18.0031 2008 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys
10:25:18.0037 2008 nv_agp - ok
10:25:18.0048 2008 NwlnkFlt - ok
10:25:18.0062 2008 NwlnkFwd - ok
10:25:18.0110 2008 ohci1394 (be32da025a0be1878f0ee8d6d9386cd5) C:\Windows\system32\drivers\ohci1394.sys
10:25:18.0118 2008 ohci1394 - ok
10:25:18.0174 2008 Parport (8a79fdf04a73428597e2caf9d0d67850) C:\Windows\system32\DRIVERS\parport.sys
10:25:18.0183 2008 Parport - ok
10:25:18.0263 2008 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
10:25:18.0267 2008 partmgr - ok
10:25:18.0286 2008 Parvdm (6c580025c81caf3ae9e3617c22cad00e) C:\Windows\system32\DRIVERS\parvdm.sys
10:25:18.0289 2008 Parvdm - ok
10:25:18.0324 2008 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
10:25:18.0336 2008 pci - ok
10:25:18.0359 2008 pciide (3b1901e401473e03eb8c874271e50c26) C:\Windows\system32\drivers\pciide.sys
10:25:18.0363 2008 pciide - ok
10:25:18.0394 2008 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
10:25:18.0404 2008 pcmcia - ok
10:25:18.0455 2008 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
10:25:18.0523 2008 PEAUTH - ok
10:25:18.0604 2008 Ph3xIB32 (514fadd940a5ee06d6caa5cd0f6725d6) C:\Windows\system32\DRIVERS\Ph3xIB32.sys
10:25:18.0680 2008 Ph3xIB32 - ok
10:25:18.0729 2008 PID_0928 (d395b2dc1705454aa36a34099e066df0) C:\Windows\system32\DRIVERS\LV561AV.SYS
10:25:18.0762 2008 PID_0928 - ok
10:25:18.0850 2008 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
10:25:18.0855 2008 PptpMiniport - ok
10:25:18.0897 2008 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys
10:25:18.0904 2008 Processor - ok
10:25:19.0009 2008 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
10:25:19.0015 2008 PSched - ok
10:25:19.0070 2008 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys
10:25:19.0131 2008 ql2300 - ok
10:25:19.0164 2008 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
10:25:19.0170 2008 ql40xx - ok
10:25:19.0231 2008 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
10:25:19.0235 2008 QWAVEdrv - ok
10:25:19.0290 2008 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
10:25:19.0294 2008 RasAcd - ok
10:25:19.0362 2008 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
10:25:19.0368 2008 Rasl2tp - ok
10:25:19.0456 2008 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
10:25:19.0461 2008 RasPppoe - ok
10:25:19.0511 2008 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
10:25:19.0518 2008 RasSstp - ok
10:25:19.0570 2008 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
10:25:19.0582 2008 rdbss - ok
10:25:19.0637 2008 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
10:25:19.0642 2008 RDPCDD - ok
10:25:19.0698 2008 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys
10:25:19.0716 2008 rdpdr - ok
10:25:19.0735 2008 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
10:25:19.0737 2008 RDPENCDD - ok
10:25:19.0787 2008 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
10:25:19.0801 2008 RDPWD - ok
10:25:19.0856 2008 Revoflt (b9bb8e2093c1615ad6ea55ad96214354) C:\Windows\system32\DRIVERS\revoflt.sys
10:25:19.0861 2008 Revoflt - ok
10:25:19.0942 2008 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
10:25:19.0951 2008 rspndr - ok
10:25:20.0135 2008 RTL8169 (904fd29ec1ff2709099ae2cd1c09a913) C:\Windows\system32\DRIVERS\Rtlh86.sys
10:25:20.0143 2008 RTL8169 - ok
10:25:20.0360 2008 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
10:25:20.0372 2008 sbp2port - ok
10:25:20.0417 2008 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
10:25:20.0421 2008 secdrv - ok
10:25:20.0467 2008 Serenum (ce9ec966638ef0b10b864ddedf62a099) C:\Windows\system32\DRIVERS\serenum.sys
10:25:20.0471 2008 Serenum - ok
10:25:20.0521 2008 Serial (6d663022db3e7058907784ae14b69898) C:\Windows\system32\DRIVERS\serial.sys
10:25:20.0557 2008 Serial - ok
10:25:20.0601 2008 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
10:25:20.0605 2008 sermouse - ok
10:25:20.0641 2008 sffdisk (103b79418da647736ee95645f305f68a) C:\Windows\system32\drivers\sffdisk.sys
10:25:20.0643 2008 sffdisk - ok
10:25:20.0667 2008 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys
10:25:20.0673 2008 sffp_mmc - ok
10:25:20.0700 2008 sffp_sd (9cfa05fcfcb7124e69cfc812b72f9614) C:\Windows\system32\drivers\sffp_sd.sys
10:25:20.0704 2008 sffp_sd - ok
10:25:20.0732 2008 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
10:25:20.0735 2008 sfloppy - ok
10:25:20.0798 2008 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys
10:25:20.0803 2008 sisagp - ok
10:25:20.0836 2008 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys
10:25:20.0841 2008 SiSRaid2 - ok
10:25:20.0879 2008 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys
10:25:20.0885 2008 SiSRaid4 - ok
10:25:20.0987 2008 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
10:25:20.0990 2008 Smb - ok
10:25:21.0070 2008 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
10:25:21.0072 2008 spldr - ok
10:25:21.0157 2008 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
10:25:21.0228 2008 srv - ok
10:25:21.0381 2008 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
10:25:21.0410 2008 srv2 - ok
10:25:21.0496 2008 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
10:25:21.0503 2008 srvnet - ok
10:25:21.0576 2008 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
10:25:21.0582 2008 swenum - ok
10:25:21.0631 2008 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
10:25:21.0634 2008 Symc8xx - ok
10:25:21.0662 2008 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
10:25:21.0664 2008 Sym_hi - ok
10:25:21.0692 2008 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
10:25:21.0698 2008 Sym_u3 - ok
10:25:21.0795 2008 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
10:25:21.0867 2008 Tcpip - ok
10:25:21.0894 2008 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
10:25:21.0902 2008 Tcpip6 - ok
10:25:21.0935 2008 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
10:25:21.0939 2008 tcpipreg - ok
10:25:22.0001 2008 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
10:25:22.0003 2008 TDPIPE - ok
10:25:22.0064 2008 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
10:25:22.0067 2008 TDTCP - ok
10:25:22.0153 2008 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
10:25:22.0159 2008 tdx - ok
10:25:22.0193 2008 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
10:25:22.0199 2008 TermDD - ok
10:25:22.0266 2008 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
10:25:22.0268 2008 tssecsrv - ok
10:25:22.0298 2008 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
10:25:22.0301 2008 tunmp - ok
10:25:22.0337 2008 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
10:25:22.0339 2008 tunnel - ok
10:25:22.0375 2008 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys
10:25:22.0377 2008 uagp35 - ok
10:25:22.0456 2008 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
10:25:22.0469 2008 udfs - ok
10:25:22.0513 2008 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys
10:25:22.0516 2008 uliagpkx - ok
10:25:22.0538 2008 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys
10:25:22.0558 2008 uliahci - ok
10:25:22.0585 2008 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
10:25:22.0591 2008 UlSata - ok
10:25:22.0622 2008 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
10:25:22.0630 2008 ulsata2 - ok
10:25:22.0664 2008 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
10:25:22.0670 2008 umbus - ok
10:25:22.0720 2008 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
10:25:22.0726 2008 usbccgp - ok
10:25:22.0764 2008 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
10:25:22.0768 2008 usbcir - ok
10:25:22.0818 2008 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
10:25:22.0822 2008 usbehci - ok
10:25:22.0858 2008 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
10:25:22.0869 2008 usbhub - ok
10:25:22.0894 2008 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
10:25:22.0896 2008 usbohci - ok
10:25:22.0923 2008 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
10:25:22.0927 2008 usbprint - ok
10:25:22.0973 2008 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
10:25:22.0978 2008 usbscan - ok
10:25:22.0997 2008 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
10:25:23.0002 2008 USBSTOR - ok
10:25:23.0030 2008 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
10:25:23.0034 2008 usbuhci - ok
10:25:23.0075 2008 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys
10:25:23.0077 2008 vga - ok
10:25:23.0142 2008 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
10:25:23.0144 2008 VgaSave - ok
10:25:23.0175 2008 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys
10:25:23.0182 2008 viaagp - ok
10:25:23.0209 2008 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys
10:25:23.0217 2008 ViaC7 - ok
10:25:23.0241 2008 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys
10:25:23.0247 2008 viaide - ok
10:25:23.0275 2008 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
10:25:23.0281 2008 volmgr - ok
10:25:23.0373 2008 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
10:25:23.0380 2008 volmgrx - ok
10:25:23.0416 2008 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
10:25:23.0429 2008 volsnap - ok
10:25:23.0459 2008 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys
10:25:23.0463 2008 vsmraid - ok
10:25:23.0494 2008 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
10:25:23.0501 2008 WacomPen - ok
10:25:23.0562 2008 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0567 2008 Wanarp - ok
10:25:23.0583 2008 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
10:25:23.0585 2008 Wanarpv6 - ok
10:25:23.0621 2008 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys
10:25:23.0625 2008 Wd - ok
10:25:23.0695 2008 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
10:25:23.0721 2008 Wdf01000 - ok
10:25:23.0810 2008 WmiAcpi (701a9f884a294327e9141d73746ee279) C:\Windows\system32\drivers\wmiacpi.sys
10:25:23.0815 2008 WmiAcpi - ok
10:25:23.0904 2008 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
10:25:23.0909 2008 WpdUsb - ok
10:25:23.0974 2008 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
10:25:23.0976 2008 ws2ifsl - ok
10:25:24.0062 2008 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
10:25:24.0065 2008 WUDFRd - ok
10:25:24.0081 2008 XDva380 - ok
10:25:24.0106 2008 XDva383 - ok
10:25:24.0134 2008 XDva385 - ok
10:25:24.0148 2008 XDva390 - ok
10:25:24.0162 2008 XDva393 - ok
10:25:24.0192 2008 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
10:25:24.0272 2008 \Device\Harddisk0\DR0 - ok
10:25:24.0279 2008 Boot (0x1200) (db095508602461e6d59b95f8bb682028) \Device\Harddisk0\DR0\Partition0
10:25:24.0282 2008 \Device\Harddisk0\DR0\Partition0 - ok
10:25:24.0282 2008 ============================================================
10:25:24.0282 2008 Scan finished
10:25:24.0282 2008 ============================================================
10:25:24.0304 0520 Detected object count: 0
10:25:24.0304 0520 Actual detected object count: 0
Re: Nouzový režim PC
Díval jste se do toho správce zařízení?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC


Ve spodní liště se stále také objevuje okénko s označením pro připojení internetu "citace" - PŘIPOJENÍ NEZNÁMÉ.Počítač se také dost seká, což také nebývalo před závadou.
Re: Nouzový režim PC
Já tam nic moc nevidím
.
stáhněte
http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V


http://www.slunecnice.cz/sw/crystaldiskinfo/
- spusťte ho a v nabídce zvolte Kopírovat.
-Data ze schránky sem pak vložte pomocí Ctrl+V
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC

----------------------------------------------------------------------------
CrystalDiskInfo 4.1.3 (C) 2008-2011 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows Vista Home Premium Edition SP2 [6.0 Build 6002] (x86)
Date : 2012/03/12 15:48:08
-- Controller Map ----------------------------------------------------------
-- Disk List ---------------------------------------------------------------
(1) WDC WD1600AAJS-08PSA0 : 160.0 GB [0-X-X, pd1]
----------------------------------------------------------------------------
(1) WDC WD1600AAJS-08PSA0
----------------------------------------------------------------------------
Model : WDC WD1600AAJS-08PSA0
Firmware : 05.06H05
Serial Number : WD-WCAP90705449
Disk Size : 160.0 GB (8.4/137.4/160.0)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 312581808
Rotation Rate : Neznámy údaj
Interface : Serial ATA
Major Version : ATA/ATAPI-7
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 21864 hod.
Power On Count : 2223 krát
Temparature : 39 C (102 F)
Health Status : Dobrý
Features : S.M.A.R.T., AAM, 48bit LBA, NCQ
APM Level : ----
AAM Level : 8080h [ON]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 158 155 _21 000000000BFA Čas na roztočení ploten
04 _98 _98 __0 0000000008D0 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 _51 000000000000 Počet chybných hledání
09 _71 _71 __0 000000005568 Hodin v činnosti
0A 100 100 _51 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 _51 000000000000 Počet pokusů o překalibrování
0C _98 _98 __0 0000000008AF Počet cyklů zapnutí zařízení
C0 200 200 __0 000000000051 Počet vypnutí disku
C1 200 200 __0 0000000008DC Počet cyklů načítání/vymazání
C2 104 _95 __0 000000000027 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 200 200 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 200 200 _51 000000000000 Počet chyb při zápisu sektorů
-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 42 7A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 57 44 2D 57 43 41 50
020: 39 30 37 30 35 34 34 39 00 00 40 00 00 32 30 35
030: 2E 30 36 48 30 35 57 44 43 20 57 44 31 36 30 30
040: 41 41 4A 53 2D 30 38 50 53 41 30 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 01 00 00 00 00 00 07 3F FF 00 10
070: 00 3F FC 10 00 FB 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 07 06 00 00 00 44 00 40
0A0: 00 FE 00 00 74 6B 7F 61 41 23 74 69 BE 41 41 23
0B0: 20 7F 00 16 00 00 00 00 FF FE 00 00 80 80 00 00
0C0: 00 00 00 00 00 00 00 00 9E B0 12 A1 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 01 4E E1 00 39 D2 6D
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 10
0F0: 40 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 09 00 00 00 00 00 00 00 00 16 7F 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 10 3F 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 01 10 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3A A5
Re: Nouzový režim PC
Disk je ok. Dejte mi prosím aktuální log z combofixu
.

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Nouzový režim PC
ComboFix 12-03-10.01 - Jonáš 13.03.2012 14:49:51.3.2 - x86
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-13 do 2012-03-13 )))))))))))))))))))))))))))))))
.
.
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-12 14:47 . 2012-03-12 14:47 -------- d-----w- c:\program files\CrystalDiskInfo
2012-03-11 13:35 . 2011-10-18 14:57 58264 ----a-w- c:\windows\system32\TepeqAPO.dll
2012-03-11 13:35 . 2011-11-18 15:40 191080 ----a-w- c:\windows\system32\SFSS_APO.dll
2012-03-11 13:35 . 2011-09-02 13:21 214368 ----a-w- c:\windows\system32\SFNHK.dll
2012-03-11 13:35 . 2011-09-02 13:21 68960 ----a-w- c:\windows\system32\SFAPO.dll
2012-03-11 13:35 . 2011-09-02 13:21 74080 ----a-w- c:\windows\system32\SFCOM.dll
2012-03-11 13:34 . 2011-12-13 17:27 3921448 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys
2012-03-11 13:34 . 2011-12-13 15:58 1497704 ----a-w- c:\windows\system32\RTSndMgr.cpl
2012-03-11 13:34 . 2011-11-22 10:36 2359400 ----a-w- c:\windows\system32\RtkPgExt.dll
2012-03-11 13:34 . 2011-12-12 16:20 83560 ----a-w- c:\windows\system32\RtkCoInstII.dll
2012-03-11 13:34 . 2011-12-08 16:28 1378920 ----a-w- c:\windows\system32\RtkApoApi.dll
2012-03-11 13:34 . 2011-11-22 15:28 13416 ----a-w- c:\windows\system32\RtkCoLDR.dll
2012-03-11 13:34 . 2011-12-08 15:27 3319400 ----a-w- c:\windows\system32\RtkAPO.dll
2012-03-11 13:34 . 2011-12-13 15:25 200468 ----a-w- c:\windows\system32\drivers\RTAIODAT.DAT
2012-03-11 13:34 . 2011-12-09 15:42 2684416 ----a-w- c:\windows\system32\RCoRes.dat
2012-03-11 13:34 . 2010-11-29 13:36 587096 ----a-w- c:\windows\system32\MaxxAudioRealtek2.dll
2012-03-10 12:39 . 2012-03-10 12:40 -------- d-----w- C:\TEMP
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-11 13:39 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-11 13:36 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-03-10 11:42 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-11 13:35 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-12-13 11487848]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-13 15:01
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-13 15:04:11
ComboFix-quarantined-files.txt 2012-03-13 14:04
ComboFix2.txt 2012-03-13 13:22
ComboFix3.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 410 381 824
Po spuštění: Volných bajtů: 45 388 144 640
.
- - End Of File - - 406063A4AE6AAE9C7232AB328B9DF7E4
Spuštěný z: c:\users\JonßÜ\Desktop\ComboFix.exe
* Vytvořen nový Bod Obnovení
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-13 do 2012-03-13 )))))))))))))))))))))))))))))))
.
.
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Jonáš\AppData\Local\temp
2012-03-13 14:01 . 2012-03-13 14:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-12 14:47 . 2012-03-12 14:47 -------- d-----w- c:\program files\CrystalDiskInfo
2012-03-11 13:35 . 2011-10-18 14:57 58264 ----a-w- c:\windows\system32\TepeqAPO.dll
2012-03-11 13:35 . 2011-11-18 15:40 191080 ----a-w- c:\windows\system32\SFSS_APO.dll
2012-03-11 13:35 . 2011-09-02 13:21 214368 ----a-w- c:\windows\system32\SFNHK.dll
2012-03-11 13:35 . 2011-09-02 13:21 68960 ----a-w- c:\windows\system32\SFAPO.dll
2012-03-11 13:35 . 2011-09-02 13:21 74080 ----a-w- c:\windows\system32\SFCOM.dll
2012-03-11 13:34 . 2011-12-13 17:27 3921448 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys
2012-03-11 13:34 . 2011-12-13 15:58 1497704 ----a-w- c:\windows\system32\RTSndMgr.cpl
2012-03-11 13:34 . 2011-11-22 10:36 2359400 ----a-w- c:\windows\system32\RtkPgExt.dll
2012-03-11 13:34 . 2011-12-12 16:20 83560 ----a-w- c:\windows\system32\RtkCoInstII.dll
2012-03-11 13:34 . 2011-12-08 16:28 1378920 ----a-w- c:\windows\system32\RtkApoApi.dll
2012-03-11 13:34 . 2011-11-22 15:28 13416 ----a-w- c:\windows\system32\RtkCoLDR.dll
2012-03-11 13:34 . 2011-12-08 15:27 3319400 ----a-w- c:\windows\system32\RtkAPO.dll
2012-03-11 13:34 . 2011-12-13 15:25 200468 ----a-w- c:\windows\system32\drivers\RTAIODAT.DAT
2012-03-11 13:34 . 2011-12-09 15:42 2684416 ----a-w- c:\windows\system32\RCoRes.dat
2012-03-11 13:34 . 2010-11-29 13:36 587096 ----a-w- c:\windows\system32\MaxxAudioRealtek2.dll
2012-03-10 12:39 . 2012-03-10 12:40 -------- d-----w- C:\TEMP
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Malwarebytes
2012-03-08 13:04 . 2012-03-08 13:04 -------- d-----w- c:\programdata\Malwarebytes
2012-03-08 13:04 . 2012-03-08 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-03-07 07:39 . 2012-03-09 13:01 -------- d-----w- c:\program files\trend micro
2012-03-07 07:39 . 2012-03-07 07:40 -------- d-----w- C:\rsit
2012-03-06 21:47 . 2012-03-06 21:47 -------- d-----w- c:\program files\ESET
2012-03-06 21:30 . 2012-03-11 13:39 -------- d-----w- c:\windows\system32\RTCOM
2012-03-06 21:21 . 2012-03-06 21:21 237 ----a-w- C:\user.js
2012-03-06 21:21 . 2012-03-06 21:21 -------- d-----w- c:\program files\BabylonToolbar
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Local\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\programdata\Babylon
2012-03-06 21:20 . 2012-03-06 21:20 -------- d-----w- c:\users\Jonáš\AppData\Roaming\Babylon
2012-03-05 21:01 . 2012-03-11 13:36 -------- d--h--w- c:\program files\Temp
2012-03-05 17:28 . 2012-03-05 17:28 -------- d-----w- c:\programdata\Nexon
2012-03-05 16:22 . 2012-03-05 19:26 -------- d-----w- c:\program files\BandiMPEG1
2012-03-05 16:11 . 2012-03-06 18:58 -------- d-----w- C:\Nexon
2012-03-02 07:07 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{DE4B8568-0CF6-4163-96AE-9B1AC36AFA13}\mpengine.dll
2012-03-01 07:42 . 2012-03-01 07:42 -------- d-----w- c:\program files\LogMeIn Hamachi
2012-02-29 21:03 . 2012-03-04 10:36 -------- d-----w- c:\program files\MatroskaProp
2012-02-29 21:02 . 2012-03-04 12:46 -------- d-----w- c:\program files\Matroska Pack
2012-02-27 07:16 . 2012-02-27 07:18 -------- d-----w- c:\program files\Google
2012-02-21 14:34 . 2006-10-22 14:06 208896 ----a-w- c:\windows\system32\NVUNINST.EXE
2012-02-21 14:33 . 2012-02-21 14:33 -------- d-----w- C:\NVIDIA
2012-02-21 14:15 . 2012-03-10 11:42 -------- d-----w- c:\users\Joná?
2012-02-21 14:04 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-02-21 14:04 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-02-21 14:04 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-02-21 14:04 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-02-21 14:04 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-02-21 14:04 . 2012-02-21 14:04 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-02-21 14:04 . 2012-02-21 14:04 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-02-16 16:46 . 2012-02-16 16:46 -------- d-----w- c:\programdata\Badoo
2012-02-15 06:22 . 2012-01-12 19:52 2044416 ----a-w- c:\windows\system32\win32k.sys
2012-02-15 06:22 . 2011-12-14 16:17 680448 ----a-w- c:\windows\system32\msvcrt.dll
2012-02-15 06:22 . 2011-12-20 10:56 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-11 13:35 . 2010-10-13 07:55 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-03-07 00:15 . 2010-10-14 13:49 41184 ----a-w- c:\windows\avastSS.scr
2012-03-07 00:15 . 2010-10-14 13:49 201352 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-07 00:03 . 2011-04-25 07:45 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-07 00:03 . 2010-10-14 13:50 337880 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-07 00:02 . 2010-10-14 13:50 35672 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-03-07 00:01 . 2010-10-14 13:50 53848 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-07 00:01 . 2010-10-14 13:50 57688 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-07 00:01 . 2010-10-14 13:50 20696 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-29 06:00 . 2011-06-14 13:14 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-26 20:44 . 2011-10-24 16:54 138264 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-02-26 20:43 . 2011-10-24 17:02 234768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-02-26 20:43 . 2011-10-24 16:53 234768 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:21 . 2011-10-24 16:54 138056 ----a-w- c:\users\Jonáš\AppData\Roaming\PnkBstrK.sys
2012-02-26 13:20 . 2011-10-24 16:53 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-01-29 04:10 . 2010-10-13 10:57 237072 ------w- c:\windows\system32\MpSigStub.exe
2010-12-12 18:25 . 2010-12-12 18:24 746343330 ---ha-w- c:\program files\S4League.exe.part
2012-02-17 21:12 . 2011-05-08 09:44 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-07 00:15 123536 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2007-01-19 864768]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 147456]
"Akamai NetSession Interface"="c:\users\Jonáš\AppData\Local\Akamai\netsession_win.exe" [2012-02-02 3329824]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Badoo Desktop"="c:\programdata\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe" [2011-10-05 1051760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-02-26 138008]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-02-26 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-02-26 133912]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-03-06 488984]
"LogitechQuickCamRibbon"="c:\program files\Labtec\WebCam10\WebCam10.exe" [2007-03-06 1060376]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-12-23 500208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"QuickTime Task"="c:\program files\QuickTime Alternative\QTTask.exe" [2010-11-29 421888]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-12-13 11487848]
.
c:\users\Jonáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2011-1-2 256000]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Remote Control.lnk - c:\program files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe [2010-10-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S3 3xHybrid;3xHybrid service;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-18 670592]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
2012-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-02-27 07:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonáš\AppData\Roaming\Mozilla\Firefox\Profiles\rtf53o6i.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?AF=109993&babsrc=adbartrp&mntrId=601403380000000000000019dbafbaf1&q=
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109993
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.hardId - 601403380000000000000019dbafbaf1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15405
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:20
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-03-13 15:01
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Akamai]
"ServiceDll"="c:\program files\common files\akamai/netsession_win_7de0ed9.dll"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
Celkový čas: 2012-03-13 15:04:11
ComboFix-quarantined-files.txt 2012-03-13 14:04
ComboFix2.txt 2012-03-13 13:22
ComboFix3.txt 2012-03-10 11:42
.
Před spuštěním: Volných bajtů: 45 410 381 824
Po spuštění: Volných bajtů: 45 388 144 640
.
- - End Of File - - 406063A4AE6AAE9C7232AB328B9DF7E4