
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Zdravím,
moje PC zlobí, najít příčinu jeho nemoci je nad mé možnosti. Projevy: zatuhávání libovolné aplikace v neodhadnutelných intervalech - někdy desetkrát denně, jindy dva dny klid. Stejně neodhadnutelně nereaguje na pokyn k vypnutí. Samovolně přenastavuje nastavení výchozích programů. Security Essentials nic nenašel, HJT nějké procesy snad související s AVG (nikdy jsem neměl), které ale nejdou fixnout.
Prosím o konzultaci. Přikládám log z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by HOMER at 2012-03-29 08:47:14
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 105 GB (11%) free of 954 GB
Total RAM: 3326 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:47:31, on 29.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Windows\System32\MSTMON_N.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\HOMER\Documents\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\HOMER.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={A94E546A-6 ... 2012-03-22 21:05:49&v=10.2.0.3&sap=hp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1300WStatusDisplay] C:\Windows\system32\MSTMON_N.EXE
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM obsah FLV videa - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 10 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.10.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: KDisk Update Service - Unknown owner - C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
--
End of file - 7358 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:blank"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6, {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.2, dtaScheduler@forboden.com:0.2.6, {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2, {35106bca-6c78-48c7-ac28-56df30b51d2a}:1.3.8, {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.2, refspoof@mozdev.org:0.9.5, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.6, mozilla_cc@internetdownloadmanager.com:6.9.8, {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.5, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {71328583-3CA7-4809-B4BA-570A85818FBB}:0.6.3, {316e23ab-47c6-4881-947a-4719f64566bd}:6.1.4, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16, {5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}:1.8.71"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =642886&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\10.2.0.3\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npFoxitReaderPlugin.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default\extensions\
engine@conduit.com
mozilla_cc@internetdownloadmanager.com
My-Translator@eugenche.com
refspoof@mozdev.org
{20a82645-c095-46ed-80e3-08825760534b}
{316e23ab-47c6-4881-947a-4719f64566bd}
{37E4D8EA-8BDA-4831-8EA1-89053939A250}
{71328583-3CA7-4809-B4BA-570A85818FBB}
{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-07-06 210352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2565520]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920]
"IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]
"KONICA MINOLTA PagePro 1300WStatusDisplay"=C:\Windows\system32\MSTMON_N.EXE [2004-11-25 151552]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bonus.SSR.FR10]
C:\Program Files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe [2011-04-13 941320]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Clock Widget (HTC Home)]
C:\Program Files\HTC Home\Clock.exe [2011-06-21 2035712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-09-29 929680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-09-29 20880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-09-29 3508112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero DriveSpeed]
C:\PROGRA~1\Ahead\Nero\DRIVES~1.EXE [2004-12-18 593920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-05 203776]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.yv12"=yv12vfw.dll
"msacm.siren"=sirenacm.dll
"vidc.XVID"=xvidvfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-03-29 08:47:15 ----D---- C:\Program Files\trend micro
2012-03-29 08:47:14 ----D---- C:\rsit
2012-03-29 08:17:45 ----SHD---- C:\Config.Msi
2012-03-25 23:00:52 ----A---- C:\Windows\system32\MUINST_N.EXE
2012-03-24 23:04:21 ----HD---- C:\ProgramData\CanonIJEGV
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonIJEPPEX2
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonEPP
2012-03-24 22:58:47 ----D---- C:\Users\HOMER\AppData\Roaming\Canon
2012-03-24 22:54:49 ----D---- C:\ProgramData\Canon IJ Network Tool
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARL.dll
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARI.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNHMCA.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARU.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARC.dll
2012-03-24 22:26:35 ----D---- C:\Program Files\Common Files\CANON
2012-03-24 22:26:26 ----D---- C:\ProgramData\CanonIJWSpt
2012-03-24 22:23:34 ----HD---- C:\ProgramData\CanonBJ
2012-03-24 22:23:21 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2012-03-24 22:22:59 ----A---- C:\Windows\system32\CNMLMAR.DLL
2012-03-24 22:22:47 ----A---- C:\Windows\system32\CNMIUAR.DLL
2012-03-24 22:22:37 ----HD---- C:\Program Files\CanonBJ
2012-03-24 22:22:27 ----D---- C:\Windows\system32\STRING
2012-03-24 22:22:27 ----A---- C:\Windows\system32\CNMNPUI.DLL
2012-03-24 22:19:00 ----D---- C:\Program Files\Canon
2012-03-23 14:04:53 ----D---- C:\Users\HOMER\AppData\Roaming\Mikrotik
2012-03-22 22:05:47 ----D---- C:\ProgramData\AVG Secure Search
2012-03-22 22:05:45 ----D---- C:\Program Files\Common Files\AVG Secure Search
2012-03-22 22:05:07 ----HD---- C:\ProgramData\Common Files
2012-03-14 10:57:15 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-03-14 10:57:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-13 22:02:51 ----A---- C:\Windows\system32\win32k.sys
2012-03-13 22:02:49 ----A---- C:\Windows\system32\DWrite.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-04 22:52:29 ----D---- C:\Windows\temp
2012-03-04 22:52:02 ----SHD---- C:\$RECYCLE.BIN
2012-03-04 22:39:45 ----A---- C:\Windows\zip.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWSC.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWREG.exe
2012-03-04 22:39:45 ----A---- C:\Windows\sed.exe
2012-03-04 22:39:45 ----A---- C:\Windows\PEV.exe
2012-03-04 22:39:45 ----A---- C:\Windows\NIRCMD.exe
2012-03-04 22:39:45 ----A---- C:\Windows\MBR.exe
2012-03-04 22:39:45 ----A---- C:\Windows\grep.exe
2012-03-04 22:39:41 ----D---- C:\Windows\ERDNT
2012-03-04 22:36:38 ----D---- C:\Qoobox
======List of files/folders modified in the last 1 month======
2012-03-29 08:47:27 ----D---- C:\Windows\Prefetch
2012-03-29 08:47:15 ----D---- C:\Program Files
2012-03-29 08:46:13 ----D---- C:\Windows\System32
2012-03-29 08:46:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-29 08:46:12 ----D---- C:\Windows\inf
2012-03-29 08:44:54 ----D---- C:\Windows\system32\config
2012-03-29 08:43:06 ----D---- C:\Users\HOMER\AppData\Roaming\Skype
2012-03-29 08:41:44 ----D---- C:\Windows
2012-03-29 08:22:02 ----SHD---- C:\Windows\Installer
2012-03-29 08:22:00 ----D---- C:\Program Files\QuickTime
2012-03-29 08:21:30 ----D---- C:\ProgramData
2012-03-29 08:21:13 ----SHD---- C:\System Volume Information
2012-03-29 08:17:25 ----D---- C:\Program Files\Common Files
2012-03-29 08:08:27 ----D---- C:\Program Files\Common Files\DAZ
2012-03-29 08:05:09 ----HD---- C:\Program Files\InstallJammer Registry
2012-03-29 08:04:56 ----D---- C:\Program Files\Foxit Software
2012-03-29 07:40:07 ----D---- C:\Program Files\Activision
2012-03-29 07:37:11 ----D---- C:\Program Files\MX-3 Supervisor
2012-03-29 07:36:03 ----D---- C:\Program Files\Windows Live
2012-03-29 07:35:44 ----D---- C:\Windows\system32\appmgmt
2012-03-29 07:35:30 ----D---- C:\Windows\system32\catroot2
2012-03-29 07:34:16 ----D---- C:\Windows\system32\Tasks
2012-03-29 00:40:38 ----D---- C:\Users\HOMER\AppData\Roaming\DMCache
2012-03-28 22:03:38 ----D---- C:\SŠ ŠKOLNÍ VĚCI
2012-03-28 21:56:46 ----D---- C:\Program Files\Mozilla Thunderbird
2012-03-28 21:07:12 ----D---- C:\Program Files\ABBYY FineReader 10
2012-03-28 11:17:26 ----D---- C:\Downloads
2012-03-27 14:58:49 ----D---- C:\Program Files\Electronic Arts
2012-03-27 14:58:41 ----RSD---- C:\Windows\assembly
2012-03-27 09:20:42 ----D---- C:\Program Files\JDownloader
2012-03-26 22:03:20 ----D---- C:\HUDBA
2012-03-26 11:58:56 ----A---- C:\Windows\win.ini
2012-03-26 08:20:19 ----D---- C:\school
2012-03-25 23:01:20 ----D---- C:\Windows\system32\DriverStore
2012-03-25 23:01:20 ----D---- C:\Windows\system32\catroot
2012-03-25 21:23:00 ----D---- C:\Windows\system32\drivers
2012-03-24 22:54:38 ----D---- C:\Windows\twain_32
2012-03-24 22:54:36 ----RSD---- C:\Windows\Media
2012-03-24 00:11:53 ----D---- C:\ProgramData\Skype Extras
2012-03-22 22:03:06 ----D---- C:\DATA
2012-03-22 13:00:31 ----D---- C:\FILMY
2012-03-18 18:00:25 ----D---- C:\Users\HOMER\AppData\Roaming\uTorrent
2012-03-18 18:00:25 ----D---- C:\Users\HOMER\AppData\Roaming\IDM
2012-03-18 18:00:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-03-18 18:00:19 ----D---- C:\Windows\debug
2012-03-18 17:45:09 ----D---- C:\Program Files\Mozilla Firefox
2012-03-15 22:08:07 ----D---- C:\e-knihy
2012-03-15 21:15:26 ----D---- C:\Windows\Microsoft.NET
2012-03-14 21:10:18 ----D---- C:\Windows\winsxs
2012-03-14 10:58:39 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 10:58:04 ----D---- C:\ProgramData\Microsoft Help
2012-03-12 18:55:20 ----SD---- C:\Users\HOMER\AppData\Roaming\Microsoft
2012-03-10 10:51:24 ----D---- C:\FOTO
2012-03-09 23:45:50 ----D---- C:\ProgramData\Adobe
2012-03-05 00:04:05 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-03-04 23:06:01 ----D---- C:\Windows\system32\drivers\etc
2012-03-04 22:49:20 ----A---- C:\Windows\system.ini
2012-03-04 22:45:30 ----D---- C:\Windows\AppPatch
2012-03-04 22:18:22 ----D---- C:\Program Files\MyAshampoo
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-05-05 218688]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2011-07-06 89376]
R2 MLPTDR_N;MLPTDR_N; \??\C:\Windows\system32\MLPTDR_N.sys [2003-07-17 18848]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 6096384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-08-04 214016]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-07-15 101904]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 PAC207;Webcam 1200; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-06-29 611584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2010-12-21 30312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\HOMER\AppData\Local\Temp\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 ikaots6.sys;ikaots6.sys; \??\C:\Windows\system32\drivers\ikaots6.sys []
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-12-21 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-12-21 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-12-21 123648]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-06-02 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-06-02 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2010-12-21 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2010-12-21 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2010-12-21 132424]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.10.0;ABBYY FineReader 10 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [2010-07-22 814344]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-08-04 176128]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 KDisk Update Service;KDisk Update Service; C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe [2010-10-21 1009688]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2010-07-21 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [2012-03-22 918880]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S2 KMService;KMService; C:\Windows\system32\srvany.exe [2011-05-05 8192]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-05-05 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
moje PC zlobí, najít příčinu jeho nemoci je nad mé možnosti. Projevy: zatuhávání libovolné aplikace v neodhadnutelných intervalech - někdy desetkrát denně, jindy dva dny klid. Stejně neodhadnutelně nereaguje na pokyn k vypnutí. Samovolně přenastavuje nastavení výchozích programů. Security Essentials nic nenašel, HJT nějké procesy snad související s AVG (nikdy jsem neměl), které ale nejdou fixnout.
Prosím o konzultaci. Přikládám log z RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by HOMER at 2012-03-29 08:47:14
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 105 GB (11%) free of 954 GB
Total RAM: 3326 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:47:31, on 29.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Windows\System32\MSTMON_N.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\HOMER\Documents\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\HOMER.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={A94E546A-6 ... 2012-03-22 21:05:49&v=10.2.0.3&sap=hp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1300WStatusDisplay] C:\Windows\system32\MSTMON_N.EXE
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM obsah FLV videa - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 10 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.10.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: KDisk Update Service - Unknown owner - C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
--
End of file - 7358 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:blank"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6, {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.2, dtaScheduler@forboden.com:0.2.6, {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2, {35106bca-6c78-48c7-ac28-56df30b51d2a}:1.3.8, {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.2, refspoof@mozdev.org:0.9.5, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.6, mozilla_cc@internetdownloadmanager.com:6.9.8, {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.5, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {71328583-3CA7-4809-B4BA-570A85818FBB}:0.6.3, {316e23ab-47c6-4881-947a-4719f64566bd}:6.1.4, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16, {5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}:1.8.71"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =642886&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\10.2.0.3\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npFoxitReaderPlugin.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default\extensions\
engine@conduit.com
mozilla_cc@internetdownloadmanager.com
My-Translator@eugenche.com
refspoof@mozdev.org
{20a82645-c095-46ed-80e3-08825760534b}
{316e23ab-47c6-4881-947a-4719f64566bd}
{37E4D8EA-8BDA-4831-8EA1-89053939A250}
{71328583-3CA7-4809-B4BA-570A85818FBB}
{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-07-06 210352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2565520]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920]
"IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]
"KONICA MINOLTA PagePro 1300WStatusDisplay"=C:\Windows\system32\MSTMON_N.EXE [2004-11-25 151552]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bonus.SSR.FR10]
C:\Program Files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe [2011-04-13 941320]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Clock Widget (HTC Home)]
C:\Program Files\HTC Home\Clock.exe [2011-06-21 2035712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-09-29 929680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-09-29 20880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-09-29 3508112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero DriveSpeed]
C:\PROGRA~1\Ahead\Nero\DRIVES~1.EXE [2004-12-18 593920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-05 203776]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.yv12"=yv12vfw.dll
"msacm.siren"=sirenacm.dll
"vidc.XVID"=xvidvfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-03-29 08:47:15 ----D---- C:\Program Files\trend micro
2012-03-29 08:47:14 ----D---- C:\rsit
2012-03-29 08:17:45 ----SHD---- C:\Config.Msi
2012-03-25 23:00:52 ----A---- C:\Windows\system32\MUINST_N.EXE
2012-03-24 23:04:21 ----HD---- C:\ProgramData\CanonIJEGV
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonIJEPPEX2
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonEPP
2012-03-24 22:58:47 ----D---- C:\Users\HOMER\AppData\Roaming\Canon
2012-03-24 22:54:49 ----D---- C:\ProgramData\Canon IJ Network Tool
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARL.dll
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARI.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNHMCA.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARU.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARC.dll
2012-03-24 22:26:35 ----D---- C:\Program Files\Common Files\CANON
2012-03-24 22:26:26 ----D---- C:\ProgramData\CanonIJWSpt
2012-03-24 22:23:34 ----HD---- C:\ProgramData\CanonBJ
2012-03-24 22:23:21 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2012-03-24 22:22:59 ----A---- C:\Windows\system32\CNMLMAR.DLL
2012-03-24 22:22:47 ----A---- C:\Windows\system32\CNMIUAR.DLL
2012-03-24 22:22:37 ----HD---- C:\Program Files\CanonBJ
2012-03-24 22:22:27 ----D---- C:\Windows\system32\STRING
2012-03-24 22:22:27 ----A---- C:\Windows\system32\CNMNPUI.DLL
2012-03-24 22:19:00 ----D---- C:\Program Files\Canon
2012-03-23 14:04:53 ----D---- C:\Users\HOMER\AppData\Roaming\Mikrotik
2012-03-22 22:05:47 ----D---- C:\ProgramData\AVG Secure Search
2012-03-22 22:05:45 ----D---- C:\Program Files\Common Files\AVG Secure Search
2012-03-22 22:05:07 ----HD---- C:\ProgramData\Common Files
2012-03-14 10:57:15 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-03-14 10:57:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-13 22:02:51 ----A---- C:\Windows\system32\win32k.sys
2012-03-13 22:02:49 ----A---- C:\Windows\system32\DWrite.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-04 22:52:29 ----D---- C:\Windows\temp
2012-03-04 22:52:02 ----SHD---- C:\$RECYCLE.BIN
2012-03-04 22:39:45 ----A---- C:\Windows\zip.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWSC.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWREG.exe
2012-03-04 22:39:45 ----A---- C:\Windows\sed.exe
2012-03-04 22:39:45 ----A---- C:\Windows\PEV.exe
2012-03-04 22:39:45 ----A---- C:\Windows\NIRCMD.exe
2012-03-04 22:39:45 ----A---- C:\Windows\MBR.exe
2012-03-04 22:39:45 ----A---- C:\Windows\grep.exe
2012-03-04 22:39:41 ----D---- C:\Windows\ERDNT
2012-03-04 22:36:38 ----D---- C:\Qoobox
======List of files/folders modified in the last 1 month======
2012-03-29 08:47:27 ----D---- C:\Windows\Prefetch
2012-03-29 08:47:15 ----D---- C:\Program Files
2012-03-29 08:46:13 ----D---- C:\Windows\System32
2012-03-29 08:46:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-29 08:46:12 ----D---- C:\Windows\inf
2012-03-29 08:44:54 ----D---- C:\Windows\system32\config
2012-03-29 08:43:06 ----D---- C:\Users\HOMER\AppData\Roaming\Skype
2012-03-29 08:41:44 ----D---- C:\Windows
2012-03-29 08:22:02 ----SHD---- C:\Windows\Installer
2012-03-29 08:22:00 ----D---- C:\Program Files\QuickTime
2012-03-29 08:21:30 ----D---- C:\ProgramData
2012-03-29 08:21:13 ----SHD---- C:\System Volume Information
2012-03-29 08:17:25 ----D---- C:\Program Files\Common Files
2012-03-29 08:08:27 ----D---- C:\Program Files\Common Files\DAZ
2012-03-29 08:05:09 ----HD---- C:\Program Files\InstallJammer Registry
2012-03-29 08:04:56 ----D---- C:\Program Files\Foxit Software
2012-03-29 07:40:07 ----D---- C:\Program Files\Activision
2012-03-29 07:37:11 ----D---- C:\Program Files\MX-3 Supervisor
2012-03-29 07:36:03 ----D---- C:\Program Files\Windows Live
2012-03-29 07:35:44 ----D---- C:\Windows\system32\appmgmt
2012-03-29 07:35:30 ----D---- C:\Windows\system32\catroot2
2012-03-29 07:34:16 ----D---- C:\Windows\system32\Tasks
2012-03-29 00:40:38 ----D---- C:\Users\HOMER\AppData\Roaming\DMCache
2012-03-28 22:03:38 ----D---- C:\SŠ ŠKOLNÍ VĚCI
2012-03-28 21:56:46 ----D---- C:\Program Files\Mozilla Thunderbird
2012-03-28 21:07:12 ----D---- C:\Program Files\ABBYY FineReader 10
2012-03-28 11:17:26 ----D---- C:\Downloads
2012-03-27 14:58:49 ----D---- C:\Program Files\Electronic Arts
2012-03-27 14:58:41 ----RSD---- C:\Windows\assembly
2012-03-27 09:20:42 ----D---- C:\Program Files\JDownloader
2012-03-26 22:03:20 ----D---- C:\HUDBA
2012-03-26 11:58:56 ----A---- C:\Windows\win.ini
2012-03-26 08:20:19 ----D---- C:\school
2012-03-25 23:01:20 ----D---- C:\Windows\system32\DriverStore
2012-03-25 23:01:20 ----D---- C:\Windows\system32\catroot
2012-03-25 21:23:00 ----D---- C:\Windows\system32\drivers
2012-03-24 22:54:38 ----D---- C:\Windows\twain_32
2012-03-24 22:54:36 ----RSD---- C:\Windows\Media
2012-03-24 00:11:53 ----D---- C:\ProgramData\Skype Extras
2012-03-22 22:03:06 ----D---- C:\DATA
2012-03-22 13:00:31 ----D---- C:\FILMY
2012-03-18 18:00:25 ----D---- C:\Users\HOMER\AppData\Roaming\uTorrent
2012-03-18 18:00:25 ----D---- C:\Users\HOMER\AppData\Roaming\IDM
2012-03-18 18:00:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-03-18 18:00:19 ----D---- C:\Windows\debug
2012-03-18 17:45:09 ----D---- C:\Program Files\Mozilla Firefox
2012-03-15 22:08:07 ----D---- C:\e-knihy
2012-03-15 21:15:26 ----D---- C:\Windows\Microsoft.NET
2012-03-14 21:10:18 ----D---- C:\Windows\winsxs
2012-03-14 10:58:39 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 10:58:04 ----D---- C:\ProgramData\Microsoft Help
2012-03-12 18:55:20 ----SD---- C:\Users\HOMER\AppData\Roaming\Microsoft
2012-03-10 10:51:24 ----D---- C:\FOTO
2012-03-09 23:45:50 ----D---- C:\ProgramData\Adobe
2012-03-05 00:04:05 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-03-04 23:06:01 ----D---- C:\Windows\system32\drivers\etc
2012-03-04 22:49:20 ----A---- C:\Windows\system.ini
2012-03-04 22:45:30 ----D---- C:\Windows\AppPatch
2012-03-04 22:18:22 ----D---- C:\Program Files\MyAshampoo
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-05-05 218688]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2011-07-06 89376]
R2 MLPTDR_N;MLPTDR_N; \??\C:\Windows\system32\MLPTDR_N.sys [2003-07-17 18848]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 6096384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-08-04 214016]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-07-15 101904]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 PAC207;Webcam 1200; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-06-29 611584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2010-12-21 30312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\HOMER\AppData\Local\Temp\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 ikaots6.sys;ikaots6.sys; \??\C:\Windows\system32\drivers\ikaots6.sys []
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-12-21 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-12-21 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-12-21 123648]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-06-02 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-06-02 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2010-12-21 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2010-12-21 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2010-12-21 132424]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.10.0;ABBYY FineReader 10 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [2010-07-22 814344]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-08-04 176128]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 KDisk Update Service;KDisk Update Service; C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe [2010-10-21 1009688]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2010-07-21 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [2012-03-22 918880]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S2 KMService;KMService; C:\Windows\system32\srvany.exe [2011-05-05 8192]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-05-05 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
ahoj,
cosi tam smrdi nelegalnym SW
cosi tam smrdi nelegalnym SW

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Kterým? Výbavu PC mi dělá známý, byl jsem ujištěn, že je vše OK. Pokud to tak není, rád bych to dal do pořádku a hlavně se zbavil problémů (a nevystavoval se jiným).
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
spust CKScanner http://forum.viry.cz/viewtopic.php?f=30 ... r#p1099888 vysledky vloz
+
over http://windows.microsoft.com/sk-SK/wind ... on?os=win7
+
over http://windows.microsoft.com/sk-SK/wind ... on?os=win7
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
CKScanner - Additional Security Risks - These are not necessarily bad
c:\data\adobe photoshop 9.0 cs2 cz\!crack\serial_activation_code.txt
c:\data\chicken.shoot.2\crack\kurka.exe
c:\data\chicken.shoot.2\crack\tnt.nfo
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\brd.nfo
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\file_id.diz
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\idman605.exe
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\register\patch.exe
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\fff.nfo
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\file_id.diz
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\keygen.exe
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen2\core.nfo
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen2\keygen.exe
c:\data\odkuldy\windows7\aktivatory\2.chew-wga-0.9-the_windows-7-patch-final.rar
c:\data\odkuldy\zoner.photo.studio.v13.0.1.1.professional\crack\program32\zps.exe
c:\data\odkuldy\zoner.photo.studio.v13.0.1.1.professional\crack\program64\zps.exe
c:\data\spore - galactic adventures\crack and serial and patch\spore galactic adventures patch ver.1.04.exe
c:\data\spore - galactic adventures\crack and serial and patch\spore galactic adventures serial number.txt
c:\data\spore - galactic adventures\crack and serial and patch\crack\sporebinep1\sporeapp.exe
c:\data\spore-reloaded\spore_crack\+links\usidownload revistas xxx.htm
c:\data\spore-reloaded\spore_crack\+links\usidownload revistas.htm
c:\data\spore-reloaded\spore_crack\+links\usidownload séries.htm
c:\data\spore-reloaded\spore_crack\crack\rld-spor.exe
c:\data\spore-reloaded\spore_crack\crack\sporeapp.exe
c:\data\the sheep\crack\sheep.exe
c:\downloads\internet-download-manager-idm-v6.07-build-5-â?ccrack.rar
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\cd-key\keygen.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\hatred.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\hp.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\xinput1_3.dll
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\hatred\keygen.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\idman607.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\globalerrors.log
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\idman.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\regkey windows 32-bit.reg
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\regkey windows 64-bit.reg
c:\filmy\scrat's continental crack up 1080p.mkv
c:\filmy\scrat´s continental crack-up.mp4
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\spline_firecracker.spl
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\spline_firecracker.spl
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tga
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.ini
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.mdl
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tga
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.h
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.ini
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.lwo
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.map
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.mdl
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.scr
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.tbn
c:\program files\electronic arts\harry potter a fénixův řád\crack czech.exe
c:\program files\gametop.com\shark attack\data\sound\bubble_crack.ogg
c:\program files\jdownloader\jd\plugins\hoster\crackedcom.class
c:\program files\torrent harvester\download\%5bwww.xnzb.net%5d%20inthecrack%20119%20prefucktualagreement%20hq%20%5b1920x1080%5d.wmv.torrent
c:\program files\torrent harvester\download\carolsland%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\christine%20conners%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\ebina%20models%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\fasterfox%20for%20firefox%203.0.1%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\georgia%20jones%28inthecrack.com%29.torrent
c:\program files\torrent harvester\download\inthecrack%20%23012%20jenny%20pussyexplosion.wmv.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20carli%20banks%20%5b211%5d%20-%202008.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lilly%20lux%20%5b207%5d%20-%202008.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lilly%20lux%20%5b253%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lola%20%5b254%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20renee%20perez%20%5b243%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20handy%20girl%20%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20happy%20easter%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20white%20mesh%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\katsumi%20-%20crack%20addict%203.avi.torrent
c:\program files\torrent harvester\download\katy18%20set%2016-20%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\lovely%20lizzy%20set%201-5%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\lovely%20lizzy%20set%2021-25%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\rachel%20from%20inthecrack.com%20-%20pussy%20spatterrachel%20from%20inthecrack.com%20-%20pussy%20spatter.torrent
c:\program files\torrent harvester\download\robin%20ricci%2015%20sets%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\engines\engine - cracks.am.xml
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker.txt
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_ca.ogg
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_el.ogg
c:\program files\tuxpaint\data\stamps\photo\food\utensils\nutcracker.txt
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecracksampler2_640x480_1376\inthecracksampler2_640x480_1376.log
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecrack_hd_sampler1920x1080_1375\log_1375.log
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecrack_hd_sampler2_1920x10_1373\log_1373.log
c:\users\homer\appdata\roaming\utorrent\angry.birds.seasons.v2.0.0.cracked.game-eres.torrent
c:\users\homer\appdata\roaming\utorrent\cracky pro harry potter 3,4.torrent
c:\users\homer\appdata\roaming\utorrent\scrat's continental crack up 1080p.torrent
c:\users\homer\documents\downloads\compressed\harry-potter-a-fénixův-řád-crack.rar
c:\users\homer\documents\downloads\compressed\harry-potter-ohnivý-pohár-crack.rar
c:\users\homer\documents\downloads\compressed\internet download manager v6.05.3 + crack.rar
c:\users\homer\documents\downloads\compressed\portable_abbyy_finereader_v10_0_102_95_keygen.zip
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy_finereader_10_pe.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\citaj ma hned jak ma uvidis!!!!.txt
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\awl.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\bonus.screenshotreader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\finereader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\leer - read.txt
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\productlicensing.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\users\homer\documents\downloads\compressed\any dvd converter professional v3.78 cz_key_\crack\dvdconvpro.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm1.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm2.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm3.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\users\homer\documents\downloads\programs\vso.software.convertxtodvd.4.v4.0.12.327-te\crack\convertxtodvd.exe
c:\users\homer\documents\downloads\programs\vso.software.convertxtodvd.4.v4.0.12.327-te\crack\vso_hwe.dll
c:\users\homer\downloads\avg pc tuneup 2011 10.0.0.23 + crack-[plná instalace].7z
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\angrybirdsseasons.exe
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\angrybirdsseasonsinstaller_2.0.0.exe
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\eres.nfo
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\read me.txt
c:\users\homer\downloads\cracky pro harry potter 3,4\crack pro harry potter 3\harrypotterandtheprisonerofazkabanv1.0fixedexeeng.rar
c:\users\homer\downloads\cracky pro harry potter 3,4\crack pro harry potter 4\harrypotter4\gof_f.exe
c:\users\homer\downloads\serious sam ii\patch-crack\sam2-patch-2_070-65824.exe
c:\users\homer\downloads\serious sam ii\patch-crack\sam2.exe
c:\users\homer\downloads\syndre android apk collection 04-11-2011\games\gameloft\gangstar_miami_vindication_hd_htc_desire_hd_android_cracked_twingo.apk
c:\users\homer\downloads\syndre android apk collection 04-11-2011\games\gameloft\letsgolf2crackfix.apk
scanner sequence 3.ZZ.11.PSLBJW
----- EOF -----
c:\data\adobe photoshop 9.0 cs2 cz\!crack\serial_activation_code.txt
c:\data\chicken.shoot.2\crack\kurka.exe
c:\data\chicken.shoot.2\crack\tnt.nfo
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\data\instalace na novÝ\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\brd.nfo
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\file_id.diz
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\idman605.exe
c:\data\odkuldy\internet.download.manager.v6.05.winall.incl.keygen.and.patch-brd\register\patch.exe
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\fff.nfo
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\file_id.diz
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen1\keygen.exe
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen2\core.nfo
c:\data\odkuldy\tuneup utilities 2010 v9_0_4600_3cz\keygen\keygen2\keygen.exe
c:\data\odkuldy\windows7\aktivatory\2.chew-wga-0.9-the_windows-7-patch-final.rar
c:\data\odkuldy\zoner.photo.studio.v13.0.1.1.professional\crack\program32\zps.exe
c:\data\odkuldy\zoner.photo.studio.v13.0.1.1.professional\crack\program64\zps.exe
c:\data\spore - galactic adventures\crack and serial and patch\spore galactic adventures patch ver.1.04.exe
c:\data\spore - galactic adventures\crack and serial and patch\spore galactic adventures serial number.txt
c:\data\spore - galactic adventures\crack and serial and patch\crack\sporebinep1\sporeapp.exe
c:\data\spore-reloaded\spore_crack\+links\usidownload revistas xxx.htm
c:\data\spore-reloaded\spore_crack\+links\usidownload revistas.htm
c:\data\spore-reloaded\spore_crack\+links\usidownload séries.htm
c:\data\spore-reloaded\spore_crack\crack\rld-spor.exe
c:\data\spore-reloaded\spore_crack\crack\sporeapp.exe
c:\data\the sheep\crack\sheep.exe
c:\downloads\internet-download-manager-idm-v6.07-build-5-â?ccrack.rar
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\cd-key\keygen.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\hatred.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\hp.exe
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\crack\xinput1_3.dll
c:\downloads\harry potter a fenixuv rad hra (pc) (cz)\hatred\keygen.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\idman607.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\globalerrors.log
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\idman.exe
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\regkey windows 32-bit.reg
c:\downloads\internet download manager idm v6.07 build 5 •crack\crack\regkey windows 64-bit.reg
c:\filmy\scrat's continental crack up 1080p.mkv
c:\filmy\scrat´s continental crack-up.mp4
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\spline_firecracker.spl
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\spline_firecracker.spl
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tga
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.ini
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.mdl
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tga
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.h
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.ini
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.lwo
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.map
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.mdl
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.scr
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.tbn
c:\program files\electronic arts\harry potter a fénixův řád\crack czech.exe
c:\program files\gametop.com\shark attack\data\sound\bubble_crack.ogg
c:\program files\jdownloader\jd\plugins\hoster\crackedcom.class
c:\program files\torrent harvester\download\%5bwww.xnzb.net%5d%20inthecrack%20119%20prefucktualagreement%20hq%20%5b1920x1080%5d.wmv.torrent
c:\program files\torrent harvester\download\carolsland%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\christine%20conners%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\ebina%20models%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\download\fasterfox%20for%20firefox%203.0.1%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\georgia%20jones%28inthecrack.com%29.torrent
c:\program files\torrent harvester\download\inthecrack%20%23012%20jenny%20pussyexplosion.wmv.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20carli%20banks%20%5b211%5d%20-%202008.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lilly%20lux%20%5b207%5d%20-%202008.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lilly%20lux%20%5b253%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20lola%20%5b254%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack%20-%20renee%20perez%20%5b243%5d%20-%202009.torrent
c:\program files\torrent harvester\download\inthecrack.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20handy%20girl%20%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20happy%20easter%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\kates%20playground%20-%20white%20mesh%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\katsumi%20-%20crack%20addict%203.avi.torrent
c:\program files\torrent harvester\download\katy18%20set%2016-20%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\lovely%20lizzy%20set%201-5%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\lovely%20lizzy%20set%2021-25%20%5bby%20inthecrack%5d.torrent
c:\program files\torrent harvester\download\rachel%20from%20inthecrack.com%20-%20pussy%20spatterrachel%20from%20inthecrack.com%20-%20pussy%20spatter.torrent
c:\program files\torrent harvester\download\robin%20ricci%2015%20sets%20-%20by%20inthecrack.torrent
c:\program files\torrent harvester\engines\engine - cracks.am.xml
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker.txt
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_ca.ogg
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_el.ogg
c:\program files\tuxpaint\data\stamps\photo\food\utensils\nutcracker.txt
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecracksampler2_640x480_1376\inthecracksampler2_640x480_1376.log
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecrack_hd_sampler1920x1080_1375\log_1375.log
c:\users\homer\appdata\roaming\idm\dwnldata\homer\inthecrack_hd_sampler2_1920x10_1373\log_1373.log
c:\users\homer\appdata\roaming\utorrent\angry.birds.seasons.v2.0.0.cracked.game-eres.torrent
c:\users\homer\appdata\roaming\utorrent\cracky pro harry potter 3,4.torrent
c:\users\homer\appdata\roaming\utorrent\scrat's continental crack up 1080p.torrent
c:\users\homer\documents\downloads\compressed\harry-potter-a-fénixův-řád-crack.rar
c:\users\homer\documents\downloads\compressed\harry-potter-ohnivý-pohár-crack.rar
c:\users\homer\documents\downloads\compressed\internet download manager v6.05.3 + crack.rar
c:\users\homer\documents\downloads\compressed\portable_abbyy_finereader_v10_0_102_95_keygen.zip
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy_finereader_10_pe.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\citaj ma hned jak ma uvidis!!!!.txt
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\awl.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\bonus.screenshotreader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\finereader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\leer - read.txt
c:\users\homer\documents\downloads\compressed\abbyy finereader pro v10.0.102.95 with crack\abbyy finereader pro v10.0.102.95 - crack\productlicensing.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\users\homer\documents\downloads\compressed\abbyy finereader professional 10.0.102.109 multilanguage\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\users\homer\documents\downloads\compressed\any dvd converter professional v3.78 cz_key_\crack\dvdconvpro.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\users\homer\documents\downloads\programs\internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\file_id.diz
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\idman519b3.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\linezer0.nfo
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm1.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm2.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lzllvjm3.zip
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\keygen.exe
c:\users\homer\documents\downloads\programs\tonec.inc.internet.download.manager.v5.19.build.3.incl.keygen.and.patch-lz0\lz0\patch.exe
c:\users\homer\documents\downloads\programs\vso.software.convertxtodvd.4.v4.0.12.327-te\crack\convertxtodvd.exe
c:\users\homer\documents\downloads\programs\vso.software.convertxtodvd.4.v4.0.12.327-te\crack\vso_hwe.dll
c:\users\homer\downloads\avg pc tuneup 2011 10.0.0.23 + crack-[plná instalace].7z
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\awl.dll
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\bonus.screenshotreader.exe
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\finereader.exe
c:\users\homer\downloads\abbyy finereader professional 10.0.102.109 multilanguage\crack\productlicensing.dll
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\angrybirdsseasons.exe
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\angrybirdsseasonsinstaller_2.0.0.exe
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\eres.nfo
c:\users\homer\downloads\angry.birds.seasons.v2.0.0.cracked.game-eres\read me.txt
c:\users\homer\downloads\cracky pro harry potter 3,4\crack pro harry potter 3\harrypotterandtheprisonerofazkabanv1.0fixedexeeng.rar
c:\users\homer\downloads\cracky pro harry potter 3,4\crack pro harry potter 4\harrypotter4\gof_f.exe
c:\users\homer\downloads\serious sam ii\patch-crack\sam2-patch-2_070-65824.exe
c:\users\homer\downloads\serious sam ii\patch-crack\sam2.exe
c:\users\homer\downloads\syndre android apk collection 04-11-2011\games\gameloft\gangstar_miami_vindication_hd_htc_desire_hd_android_cracked_twingo.apk
c:\users\homer\downloads\syndre android apk collection 04-11-2011\games\gameloft\letsgolf2crackfix.apk
scanner sequence 3.ZZ.11.PSLBJW
----- EOF -----
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
zdá se, že toho bude víc, já ho hryznu. Tohle jsem nečekal
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
nuz co dodat - vypada to ako SW bunka al-klady
ja by som sa skor divil keby si nemal problemy ,,,
odomna vsetko

ja by som sa skor divil keby si nemal problemy ,,,
odomna vsetko

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Zatím děkuji, zlikviduju co uvidím, projedu PC znovu, popř. se ozvu.
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Potvory z CKScanneru jsem vyházel, ty zbylé vypadají, že jsou to jen názvy. Antivir nehlásí nic, hijack jen zbytečné klíče, co nejdou smazat ani v něm, nicméně PC si dělá srandu dál - aktuálně odmítá tisknout v té tiskárně, kde tiskl vždy, výměna ovladačů nezabírá.
Přikládám nový log z CKscaneru, prosím o kontrolu, nezanevřel jsi na mne?
CKScanner - Additional Security Risks - These are not necessarily bad
c:\filmy\scrat's continental crack up 1080p.mkv
c:\filmy\scrat´s continental crack-up.mp4
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\spline_firecracker.spl
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\spline_firecracker.spl
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tga
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.ini
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.mdl
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tga
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.h
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.ini
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.lwo
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.map
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.mdl
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.scr
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.tbn
c:\program files\gametop.com\shark attack\data\sound\bubble_crack.ogg
c:\program files\jdownloader\jd\plugins\hoster\crackedcom.class
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker.txt
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_ca.ogg
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_el.ogg
c:\program files\tuxpaint\data\stamps\photo\food\utensils\nutcracker.txt
scanner sequence 3.ZZ.11.OSEMCX
----- EOF -----
A nový log z RSIT
Logfile of random's system information tool 1.09 (written by random/random)
Run by HOMER at 2012-03-29 16:29:33
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 127 GB (13%) free of 954 GB
Total RAM: 3326 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:29:42, on 29.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Windows\System32\MSTMON_N.EXE
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\HOMER\Documents\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\HOMER.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={A94E546A-6 ... 2012-03-22 21:05:49&v=10.2.0.3&sap=hp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1300WStatusDisplay] C:\Windows\system32\MSTMON_N.EXE
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM obsah FLV videa - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll (file missing)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 10 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.10.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: KDisk Update Service - Unknown owner - C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe (file missing)
--
End of file - 7459 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:blank"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6, {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.2, dtaScheduler@forboden.com:0.2.6, {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2, {35106bca-6c78-48c7-ac28-56df30b51d2a}:1.3.8, {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.2, refspoof@mozdev.org:0.9.5, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.6, mozilla_cc@internetdownloadmanager.com:6.9.8, {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.5, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {71328583-3CA7-4809-B4BA-570A85818FBB}:0.6.3, {316e23ab-47c6-4881-947a-4719f64566bd}:6.1.4, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16, {5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}:1.8.71"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =642886&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\10.2.0.3\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npFoxitReaderPlugin.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default\extensions\
engine@conduit.com
mozilla_cc@internetdownloadmanager.com
My-Translator@eugenche.com
refspoof@mozdev.org
{20a82645-c095-46ed-80e3-08825760534b}
{316e23ab-47c6-4881-947a-4719f64566bd}
{37E4D8EA-8BDA-4831-8EA1-89053939A250}
{71328583-3CA7-4809-B4BA-570A85818FBB}
{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-07-06 210352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2565520]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920]
"IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]
"KONICA MINOLTA PagePro 1300WStatusDisplay"=C:\Windows\system32\MSTMON_N.EXE [2004-11-25 151552]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bonus.SSR.FR10]
C:\Program Files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe [2011-04-13 941320]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Clock Widget (HTC Home)]
C:\Program Files\HTC Home\Clock.exe [2011-06-21 2035712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-09-29 929680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-09-29 20880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-09-29 3508112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero DriveSpeed]
C:\PROGRA~1\Ahead\Nero\DRIVES~1.EXE [2004-12-18 593920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-05 203776]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.yv12"=yv12vfw.dll
"msacm.siren"=sirenacm.dll
"vidc.XVID"=xvidvfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-03-29 14:42:41 ----D---- C:\Program Files\WhoLockMe
2012-03-29 08:47:15 ----D---- C:\Program Files\trend micro
2012-03-29 08:47:14 ----D---- C:\rsit
2012-03-29 08:17:45 ----SHD---- C:\Config.Msi
2012-03-25 23:00:52 ----A---- C:\Windows\system32\MUINST_N.EXE
2012-03-24 23:04:21 ----HD---- C:\ProgramData\CanonIJEGV
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonIJEPPEX2
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonEPP
2012-03-24 22:58:47 ----D---- C:\Users\HOMER\AppData\Roaming\Canon
2012-03-24 22:54:49 ----D---- C:\ProgramData\Canon IJ Network Tool
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARL.dll
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARI.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNHMCA.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARU.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARC.dll
2012-03-24 22:26:35 ----D---- C:\Program Files\Common Files\CANON
2012-03-24 22:26:26 ----D---- C:\ProgramData\CanonIJWSpt
2012-03-24 22:23:34 ----HD---- C:\ProgramData\CanonBJ
2012-03-24 22:23:21 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2012-03-24 22:22:59 ----A---- C:\Windows\system32\CNMLMAR.DLL
2012-03-24 22:22:47 ----A---- C:\Windows\system32\CNMIUAR.DLL
2012-03-24 22:22:37 ----HD---- C:\Program Files\CanonBJ
2012-03-24 22:22:27 ----D---- C:\Windows\system32\STRING
2012-03-24 22:22:27 ----A---- C:\Windows\system32\CNMNPUI.DLL
2012-03-24 22:19:00 ----D---- C:\Program Files\Canon
2012-03-23 14:04:53 ----D---- C:\Users\HOMER\AppData\Roaming\Mikrotik
2012-03-22 22:05:47 ----D---- C:\ProgramData\AVG Secure Search
2012-03-22 22:05:07 ----HD---- C:\ProgramData\Common Files
2012-03-14 10:57:15 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-03-14 10:57:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-13 22:02:51 ----A---- C:\Windows\system32\win32k.sys
2012-03-13 22:02:49 ----A---- C:\Windows\system32\DWrite.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-04 22:52:29 ----D---- C:\Windows\temp
2012-03-04 22:52:02 ----SHD---- C:\$RECYCLE.BIN
2012-03-04 22:39:45 ----A---- C:\Windows\zip.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWSC.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWREG.exe
2012-03-04 22:39:45 ----A---- C:\Windows\sed.exe
2012-03-04 22:39:45 ----A---- C:\Windows\PEV.exe
2012-03-04 22:39:45 ----A---- C:\Windows\NIRCMD.exe
2012-03-04 22:39:45 ----A---- C:\Windows\MBR.exe
2012-03-04 22:39:45 ----A---- C:\Windows\grep.exe
2012-03-04 22:39:41 ----D---- C:\Windows\ERDNT
2012-03-04 22:36:38 ----D---- C:\Qoobox
======List of files/folders modified in the last 1 month======
2012-03-29 16:29:44 ----D---- C:\Users\HOMER\AppData\Roaming\DMCache
2012-03-29 16:28:07 ----D---- C:\Windows\System32
2012-03-29 16:28:07 ----D---- C:\Windows\inf
2012-03-29 16:28:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-29 16:26:52 ----D---- C:\Windows\system32\config
2012-03-29 16:25:13 ----D---- C:\Windows\Prefetch
2012-03-29 16:25:07 ----D---- C:\Users\HOMER\AppData\Roaming\Skype
2012-03-29 16:23:35 ----D---- C:\Program Files\Common Files
2012-03-29 16:10:45 ----SHD---- C:\System Volume Information
2012-03-29 15:53:50 ----D---- C:\Downloads
2012-03-29 15:52:08 ----D---- C:\DATA
2012-03-29 15:24:56 ----D---- C:\Users\HOMER\AppData\Roaming\uTorrent
2012-03-29 15:14:51 ----D---- C:\Program Files\Electronic Arts
2012-03-29 15:12:57 ----D---- C:\Program Files
2012-03-29 14:53:53 ----D---- C:\Program Files\Unlocker
2012-03-29 14:18:42 ----D---- C:\Users\HOMER\AppData\Roaming\IDM
2012-03-29 08:41:44 ----D---- C:\Windows
2012-03-29 08:22:02 ----SHD---- C:\Windows\Installer
2012-03-29 08:22:00 ----D---- C:\Program Files\QuickTime
2012-03-29 08:21:30 ----D---- C:\ProgramData
2012-03-29 08:08:27 ----D---- C:\Program Files\Common Files\DAZ
2012-03-29 08:05:09 ----HD---- C:\Program Files\InstallJammer Registry
2012-03-29 08:04:56 ----D---- C:\Program Files\Foxit Software
2012-03-29 07:40:07 ----D---- C:\Program Files\Activision
2012-03-29 07:37:11 ----D---- C:\Program Files\MX-3 Supervisor
2012-03-29 07:36:03 ----D---- C:\Program Files\Windows Live
2012-03-29 07:35:44 ----D---- C:\Windows\system32\appmgmt
2012-03-29 07:35:30 ----D---- C:\Windows\system32\catroot2
2012-03-29 07:34:16 ----D---- C:\Windows\system32\Tasks
2012-03-28 22:03:38 ----D---- C:\SŠ ŠKOLNÍ VĚCI
2012-03-28 21:56:46 ----D---- C:\Program Files\Mozilla Thunderbird
2012-03-28 21:07:12 ----D---- C:\Program Files\ABBYY FineReader 10
2012-03-27 14:58:41 ----RSD---- C:\Windows\assembly
2012-03-27 09:20:42 ----D---- C:\Program Files\JDownloader
2012-03-26 22:03:20 ----D---- C:\HUDBA
2012-03-26 11:58:56 ----A---- C:\Windows\win.ini
2012-03-26 08:20:19 ----D---- C:\school
2012-03-25 23:01:20 ----D---- C:\Windows\system32\DriverStore
2012-03-25 23:01:20 ----D---- C:\Windows\system32\catroot
2012-03-25 21:23:00 ----D---- C:\Windows\system32\drivers
2012-03-24 22:54:38 ----D---- C:\Windows\twain_32
2012-03-24 22:54:36 ----RSD---- C:\Windows\Media
2012-03-24 00:11:53 ----D---- C:\ProgramData\Skype Extras
2012-03-22 13:00:31 ----D---- C:\FILMY
2012-03-18 18:00:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-03-18 18:00:19 ----D---- C:\Windows\debug
2012-03-18 17:45:09 ----D---- C:\Program Files\Mozilla Firefox
2012-03-15 22:08:07 ----D---- C:\e-knihy
2012-03-15 21:15:26 ----D---- C:\Windows\Microsoft.NET
2012-03-14 21:10:18 ----D---- C:\Windows\winsxs
2012-03-14 10:58:39 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 10:58:04 ----D---- C:\ProgramData\Microsoft Help
2012-03-12 18:55:20 ----SD---- C:\Users\HOMER\AppData\Roaming\Microsoft
2012-03-10 10:51:24 ----D---- C:\FOTO
2012-03-09 23:45:50 ----D---- C:\ProgramData\Adobe
2012-03-05 00:04:05 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-03-04 23:06:01 ----D---- C:\Windows\system32\drivers\etc
2012-03-04 22:49:20 ----A---- C:\Windows\system.ini
2012-03-04 22:45:30 ----D---- C:\Windows\AppPatch
2012-03-04 22:18:22 ----D---- C:\Program Files\MyAshampoo
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-05-05 218688]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2011-07-06 89376]
R2 MLPTDR_N;MLPTDR_N; \??\C:\Windows\system32\MLPTDR_N.sys [2003-07-17 18848]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 6096384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-08-04 214016]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-07-15 101904]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 PAC207;Webcam 1200; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-06-29 611584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2010-12-21 30312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\HOMER\AppData\Local\Temp\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 ikaots6.sys;ikaots6.sys; \??\C:\Windows\system32\drivers\ikaots6.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-12-21 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-12-21 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-12-21 123648]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-06-02 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-06-02 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2010-12-21 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2010-12-21 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2010-12-21 132424]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.10.0;ABBYY FineReader 10 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [2010-07-22 814344]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-08-04 176128]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 KDisk Update Service;KDisk Update Service; C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe [2010-10-21 1009688]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2010-07-21 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S2 KMService;KMService; C:\Windows\system32\srvany.exe [2011-05-05 8192]
S2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-05-05 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Přikládám nový log z CKscaneru, prosím o kontrolu, nezanevřel jsi na mne?
CKScanner - Additional Security Risks - These are not necessarily bad
c:\filmy\scrat's continental crack up 1080p.mkv
c:\filmy\scrat´s continental crack-up.mp4
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\hg_my_show_fireworks_game\spline_firecracker.spl
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_blue.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_green.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.anm
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\pfx_fire_cracker_red.dff
c:\program files\activision\barbie(tm) 12 tančících princezen\game exports\games\my show finale\spline_firecracker.spl
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecracker.tga
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.ini
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.mdl
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tex
c:\program files\croteam\serious sam\help\modeler\headman\firecrackerhead.tga
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.h
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.ini
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.lwo
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.map
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.mdl
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.scr
c:\program files\croteam\serious sam\help\modeler\headman\projectile\firecracker.tbn
c:\program files\gametop.com\shark attack\data\sound\bubble_crack.ogg
c:\program files\jdownloader\jd\plugins\hoster\crackedcom.class
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker.txt
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_ca.ogg
c:\program files\tuxpaint\data\stamps\household\dishes\utensils\nutcracker_desc_el.ogg
c:\program files\tuxpaint\data\stamps\photo\food\utensils\nutcracker.txt
scanner sequence 3.ZZ.11.OSEMCX
----- EOF -----
A nový log z RSIT
Logfile of random's system information tool 1.09 (written by random/random)
Run by HOMER at 2012-03-29 16:29:33
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 127 GB (13%) free of 954 GB
Total RAM: 3326 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:29:42, on 29.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Windows\System32\MSTMON_N.EXE
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Users\HOMER\Documents\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\HOMER.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={A94E546A-6 ... 2012-03-22 21:05:49&v=10.2.0.3&sap=hp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1300WStatusDisplay] C:\Windows\system32\MSTMON_N.EXE
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM obsah FLV videa - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll (file missing)
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 10 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.10.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: KDisk Update Service - Unknown owner - C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe (file missing)
--
End of file - 7459 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "about:blank"
prefs.js - "extensions.enabledItems" - "{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6, {DDC359D1-844A-42a7-9AA1-88A850A938A8}:2.0.2, dtaScheduler@forboden.com:0.2.6, {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2, {35106bca-6c78-48c7-ac28-56df30b51d2a}:1.3.8, {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.2, refspoof@mozdev.org:0.9.5, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.6, mozilla_cc@internetdownloadmanager.com:6.9.8, {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.8.5, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {71328583-3CA7-4809-B4BA-570A85818FBB}:0.6.3, {316e23ab-47c6-4881-947a-4719f64566bd}:6.1.4, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16, {5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}:1.8.71"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =642886&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\10.2.0.3\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=C:\Windows\system32\Wat\npWatWeb.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
nsIQTScriptablePlugin.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npFoxitReaderPlugin.dll
nppl3260.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
nprpjplug.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
Cetrumcz_igeared.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\HOMER\AppData\Roaming\Mozilla\Firefox\Profiles\51f74khl.default\extensions\
engine@conduit.com
mozilla_cc@internetdownloadmanager.com
My-Translator@eugenche.com
refspoof@mozdev.org
{20a82645-c095-46ed-80e3-08825760534b}
{316e23ab-47c6-4881-947a-4719f64566bd}
{37E4D8EA-8BDA-4831-8EA1-89053939A250}
{71328583-3CA7-4809-B4BA-570A85818FBB}
{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-07-06 210352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2011-03-14 2565520]
"CanonSolutionMenuEx"=C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [2011-08-04 1612920]
"IJNetworkScannerSelectorEX"=C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]
"KONICA MINOLTA PagePro 1300WStatusDisplay"=C:\Windows\system32\MSTMON_N.EXE [2004-11-25 151552]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bonus.SSR.FR10]
C:\Program Files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe [2011-04-13 941320]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Clock Widget (HTC Home)]
C:\Program Files\HTC Home\Clock.exe [2011-06-21 2035712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files\Internet Download Manager\IDMan.exe [2011-07-18 3405208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2011-09-29 929680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2011-09-29 20880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2011-09-29 3508112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero DriveSpeed]
C:\PROGRA~1\Ahead\Nero\DRIVES~1.EXE [2004-12-18 593920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^HOMER^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-05-05 203776]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=i420vfw.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"msacm.divxa32"=msaud32_divx.acm
"vidc.yv12"=yv12vfw.dll
"msacm.siren"=sirenacm.dll
"vidc.XVID"=xvidvfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-03-29 14:42:41 ----D---- C:\Program Files\WhoLockMe
2012-03-29 08:47:15 ----D---- C:\Program Files\trend micro
2012-03-29 08:47:14 ----D---- C:\rsit
2012-03-29 08:17:45 ----SHD---- C:\Config.Msi
2012-03-25 23:00:52 ----A---- C:\Windows\system32\MUINST_N.EXE
2012-03-24 23:04:21 ----HD---- C:\ProgramData\CanonIJEGV
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonIJEPPEX2
2012-03-24 22:58:48 ----HD---- C:\ProgramData\CanonEPP
2012-03-24 22:58:47 ----D---- C:\Users\HOMER\AppData\Roaming\Canon
2012-03-24 22:54:49 ----D---- C:\ProgramData\Canon IJ Network Tool
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARL.dll
2012-03-24 22:29:56 ----A---- C:\Windows\system32\CNC_ARI.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNHMCA.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARU.dll
2012-03-24 22:29:55 ----A---- C:\Windows\system32\CNC_ARC.dll
2012-03-24 22:26:35 ----D---- C:\Program Files\Common Files\CANON
2012-03-24 22:26:26 ----D---- C:\ProgramData\CanonIJWSpt
2012-03-24 22:23:34 ----HD---- C:\ProgramData\CanonBJ
2012-03-24 22:23:21 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2012-03-24 22:22:59 ----A---- C:\Windows\system32\CNMLMAR.DLL
2012-03-24 22:22:47 ----A---- C:\Windows\system32\CNMIUAR.DLL
2012-03-24 22:22:37 ----HD---- C:\Program Files\CanonBJ
2012-03-24 22:22:27 ----D---- C:\Windows\system32\STRING
2012-03-24 22:22:27 ----A---- C:\Windows\system32\CNMNPUI.DLL
2012-03-24 22:19:00 ----D---- C:\Program Files\Canon
2012-03-23 14:04:53 ----D---- C:\Users\HOMER\AppData\Roaming\Mikrotik
2012-03-22 22:05:47 ----D---- C:\ProgramData\AVG Secure Search
2012-03-22 22:05:07 ----HD---- C:\ProgramData\Common Files
2012-03-14 10:57:15 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-03-14 10:57:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-13 22:02:51 ----A---- C:\Windows\system32\win32k.sys
2012-03-13 22:02:49 ----A---- C:\Windows\system32\DWrite.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-13 19:59:45 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcorets.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-13 19:59:44 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-04 22:52:29 ----D---- C:\Windows\temp
2012-03-04 22:52:02 ----SHD---- C:\$RECYCLE.BIN
2012-03-04 22:39:45 ----A---- C:\Windows\zip.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWSC.exe
2012-03-04 22:39:45 ----A---- C:\Windows\SWREG.exe
2012-03-04 22:39:45 ----A---- C:\Windows\sed.exe
2012-03-04 22:39:45 ----A---- C:\Windows\PEV.exe
2012-03-04 22:39:45 ----A---- C:\Windows\NIRCMD.exe
2012-03-04 22:39:45 ----A---- C:\Windows\MBR.exe
2012-03-04 22:39:45 ----A---- C:\Windows\grep.exe
2012-03-04 22:39:41 ----D---- C:\Windows\ERDNT
2012-03-04 22:36:38 ----D---- C:\Qoobox
======List of files/folders modified in the last 1 month======
2012-03-29 16:29:44 ----D---- C:\Users\HOMER\AppData\Roaming\DMCache
2012-03-29 16:28:07 ----D---- C:\Windows\System32
2012-03-29 16:28:07 ----D---- C:\Windows\inf
2012-03-29 16:28:07 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-29 16:26:52 ----D---- C:\Windows\system32\config
2012-03-29 16:25:13 ----D---- C:\Windows\Prefetch
2012-03-29 16:25:07 ----D---- C:\Users\HOMER\AppData\Roaming\Skype
2012-03-29 16:23:35 ----D---- C:\Program Files\Common Files
2012-03-29 16:10:45 ----SHD---- C:\System Volume Information
2012-03-29 15:53:50 ----D---- C:\Downloads
2012-03-29 15:52:08 ----D---- C:\DATA
2012-03-29 15:24:56 ----D---- C:\Users\HOMER\AppData\Roaming\uTorrent
2012-03-29 15:14:51 ----D---- C:\Program Files\Electronic Arts
2012-03-29 15:12:57 ----D---- C:\Program Files
2012-03-29 14:53:53 ----D---- C:\Program Files\Unlocker
2012-03-29 14:18:42 ----D---- C:\Users\HOMER\AppData\Roaming\IDM
2012-03-29 08:41:44 ----D---- C:\Windows
2012-03-29 08:22:02 ----SHD---- C:\Windows\Installer
2012-03-29 08:22:00 ----D---- C:\Program Files\QuickTime
2012-03-29 08:21:30 ----D---- C:\ProgramData
2012-03-29 08:08:27 ----D---- C:\Program Files\Common Files\DAZ
2012-03-29 08:05:09 ----HD---- C:\Program Files\InstallJammer Registry
2012-03-29 08:04:56 ----D---- C:\Program Files\Foxit Software
2012-03-29 07:40:07 ----D---- C:\Program Files\Activision
2012-03-29 07:37:11 ----D---- C:\Program Files\MX-3 Supervisor
2012-03-29 07:36:03 ----D---- C:\Program Files\Windows Live
2012-03-29 07:35:44 ----D---- C:\Windows\system32\appmgmt
2012-03-29 07:35:30 ----D---- C:\Windows\system32\catroot2
2012-03-29 07:34:16 ----D---- C:\Windows\system32\Tasks
2012-03-28 22:03:38 ----D---- C:\SŠ ŠKOLNÍ VĚCI
2012-03-28 21:56:46 ----D---- C:\Program Files\Mozilla Thunderbird
2012-03-28 21:07:12 ----D---- C:\Program Files\ABBYY FineReader 10
2012-03-27 14:58:41 ----RSD---- C:\Windows\assembly
2012-03-27 09:20:42 ----D---- C:\Program Files\JDownloader
2012-03-26 22:03:20 ----D---- C:\HUDBA
2012-03-26 11:58:56 ----A---- C:\Windows\win.ini
2012-03-26 08:20:19 ----D---- C:\school
2012-03-25 23:01:20 ----D---- C:\Windows\system32\DriverStore
2012-03-25 23:01:20 ----D---- C:\Windows\system32\catroot
2012-03-25 21:23:00 ----D---- C:\Windows\system32\drivers
2012-03-24 22:54:38 ----D---- C:\Windows\twain_32
2012-03-24 22:54:36 ----RSD---- C:\Windows\Media
2012-03-24 00:11:53 ----D---- C:\ProgramData\Skype Extras
2012-03-22 13:00:31 ----D---- C:\FILMY
2012-03-18 18:00:25 ----D---- C:\ProgramData\Spybot - Search & Destroy
2012-03-18 18:00:19 ----D---- C:\Windows\debug
2012-03-18 17:45:09 ----D---- C:\Program Files\Mozilla Firefox
2012-03-15 22:08:07 ----D---- C:\e-knihy
2012-03-15 21:15:26 ----D---- C:\Windows\Microsoft.NET
2012-03-14 21:10:18 ----D---- C:\Windows\winsxs
2012-03-14 10:58:39 ----A---- C:\Windows\system32\MRT.exe
2012-03-14 10:58:04 ----D---- C:\ProgramData\Microsoft Help
2012-03-12 18:55:20 ----SD---- C:\Users\HOMER\AppData\Roaming\Microsoft
2012-03-10 10:51:24 ----D---- C:\FOTO
2012-03-09 23:45:50 ----D---- C:\ProgramData\Adobe
2012-03-05 00:04:05 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-03-04 23:06:01 ----D---- C:\Windows\system32\drivers\etc
2012-03-04 22:49:20 ----A---- C:\Windows\system.ini
2012-03-04 22:45:30 ----D---- C:\Windows\AppPatch
2012-03-04 22:18:22 ----D---- C:\Program Files\MyAshampoo
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-05-05 218688]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R2 IDMWFP;IDMWFP; C:\Windows\system32\DRIVERS\idmwfp.sys [2011-07-06 89376]
R2 MLPTDR_N;MLPTDR_N; \??\C:\Windows\system32\MLPTDR_N.sys [2003-07-17 18848]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-08-04 6096384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-08-04 214016]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-07-15 101904]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 PAC207;Webcam 1200; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-06-29 611584]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2010-12-21 30312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\HOMER\AppData\Local\Temp\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 ikaots6.sys;ikaots6.sys; \??\C:\Windows\system32\drivers\ikaots6.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-12-21 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-12-21 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-12-21 123648]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-06-02 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-06-02 114280]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2010-12-21 104648]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2010-12-21 14920]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2010-12-21 132424]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.10.0;ABBYY FineReader 10 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe [2010-07-22 814344]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-08-04 176128]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 KDisk Update Service;KDisk Update Service; C:\Program Files\kdisk.co.kr\Kdisk(normal)\KAutoUp.exe [2010-10-21 1009688]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2010-07-21 73728]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S2 KMService;KMService; C:\Windows\system32\srvany.exe [2011-05-05 8192]
S2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-05 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-05-05 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
som rad, ze problem riesis smerom k odstraneniu nelegalneho SW - zakladna otazka je vsak ako je na tom samotny OS
over w7 na linku MS, co som napisal vcera poobede

over w7 na linku MS, co som napisal vcera poobede
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Ověřeno, OS je originální.
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
doporucujem prescanovat PC s AVPTool
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Prověřeno, trvalo to. Přikládám log z AVPTool.
Status: Disinfected (events: 5)
30.3.2012 13:27:28 Disinfected Trojan program Rootkit.Boot.Sinowal.b \Device\Harddisk1\DR1 High
30.3.2012 19:20:28 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\5eb478ec-426a256c/m.class High
30.3.2012 19:20:29 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\6215ceb9-69db7aa9/m.class High
30.3.2012 19:20:28 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\5eb478ec-426a256c High
30.3.2012 19:20:29 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\6215ceb9-69db7aa9 High
Status: Disinfected (events: 5)
30.3.2012 13:27:28 Disinfected Trojan program Rootkit.Boot.Sinowal.b \Device\Harddisk1\DR1 High
30.3.2012 19:20:28 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\5eb478ec-426a256c/m.class High
30.3.2012 19:20:29 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\6215ceb9-69db7aa9/m.class High
30.3.2012 19:20:28 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\5eb478ec-426a256c High
30.3.2012 19:20:29 Disinfected Trojan program Exploit.Java.CVE-2011-3544.kx C:\Windows\System32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\57\6215ceb9-69db7aa9 High
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
po AV stranke to bude OK
myslim, ze MSOffice nebude legalny, doporucujem precistenie s CCleanerom a hotovo
myslim, ze MSOffice nebude legalny, doporucujem precistenie s CCleanerom a hotovo
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: PC zamrzá, popř. nejde vypnout, prosím o kontrolu logu
Díky, Office sice není legální, mám z něj jen Word a to trial po zk. době, takže půjde stejně pryč. Ještěr jednou děkuji za pomoc.