
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
virus nejde odstranit antivirom
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: virus nejde odstranit antivirom
a ak mi to otvorit nepojde tak som spravil nieco zle a mam proces zopakovat?
Re: virus nejde odstranit antivirom
myslim ze mi nepojde ten tdsskiller otvorit... no ale skratka teraz som v tom na ploche pises ze mam na zaklade velikosti skontrolovat... a to ako a inak tie prikazy tam mam pisat bez medzier
Re: virus nejde odstranit antivirom
prepac lenze ja ked to tam aj skopirujem presne ako to tvoje tak mi to nejde
ja to nerobim naschval oddpust mi to ja uy mam nato pekne nervy
a tam na konci ked dam to posledne tak tam nemam stlacit enter len Y ten priecinok na C ten zalohambr.dat mi vytvorilo ale nejako ma nechce pustit dalej k tomu restore a k tomu Y


Re: virus nejde odstranit antivirom
hotovo paci sa
21:55:00.0218 2160 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
21:55:00.0625 2160 ============================================================
21:55:00.0625 2160 Current date / time: 2012/07/19 21:55:00.0625
21:55:00.0625 2160 SystemInfo:
21:55:00.0625 2160
21:55:00.0625 2160 OS Version: 5.1.2600 ServicePack: 3.0
21:55:00.0625 2160 Product type: Workstation
21:55:00.0625 2160 ComputerName: DOMACNOS-86456E
21:55:00.0625 2160 UserName: Monička
21:55:00.0625 2160 Windows directory: C:\WINDOWS
21:55:00.0625 2160 System windows directory: C:\WINDOWS
21:55:00.0625 2160 Processor architecture: Intel x86
21:55:00.0625 2160 Number of processors: 2
21:55:00.0625 2160 Page size: 0x1000
21:55:00.0625 2160 Boot type: Normal boot
21:55:00.0625 2160 ============================================================
21:55:01.0968 2160 Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
21:55:01.0968 2160 ============================================================
21:55:01.0968 2160 \Device\Harddisk0\DR0:
21:55:01.0968 2160 MBR partitions:
21:55:01.0968 2160 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x124F6BF3
21:55:01.0984 2160 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x124F6C71, BlocksNum 0x12F32B8F
21:55:01.0984 2160 ============================================================
21:55:02.0000 2160 D: <-> \Device\Harddisk0\DR0\Partition1
21:55:02.0046 2160 C: <-> \Device\Harddisk0\DR0\Partition0
21:55:02.0078 2160 ============================================================
21:55:02.0078 2160 Initialize success
21:55:02.0078 2160 ============================================================
21:56:18.0125 2984 ============================================================
21:56:18.0125 2984 Scan started
21:56:18.0125 2984 Mode: Manual; SigCheck; TDLFS;
21:56:18.0125 2984 ============================================================
21:56:18.0359 2984 Abiosdsk - ok
21:56:18.0359 2984 abp480n5 - ok
21:56:18.0390 2984 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
21:56:19.0562 2984 ACPI - ok
21:56:19.0578 2984 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
21:56:19.0687 2984 ACPIEC - ok
21:56:19.0750 2984 Adobe LM Service (c1eb9968ec89fba5f3a264e2e57923ab) C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
21:56:19.0765 2984 Adobe LM Service ( UnsignedFile.Multi.Generic ) - warning
21:56:19.0765 2984 Adobe LM Service - detected UnsignedFile.Multi.Generic (1)
21:56:19.0843 2984 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:56:19.0859 2984 AdobeFlashPlayerUpdateSvc - ok
21:56:19.0859 2984 adpu160m - ok
21:56:19.0890 2984 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
21:56:19.0984 2984 aec - ok
21:56:20.0015 2984 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
21:56:20.0078 2984 AFD - ok
21:56:20.0078 2984 Aha154x - ok
21:56:20.0078 2984 aic78u2 - ok
21:56:20.0078 2984 aic78xx - ok
21:56:20.0109 2984 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
21:56:20.0218 2984 Alerter - ok
21:56:20.0234 2984 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
21:56:20.0281 2984 ALG - ok
21:56:20.0281 2984 AliIde - ok
21:56:20.0281 2984 amsint - ok
21:56:20.0312 2984 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
21:56:20.0359 2984 AppMgmt - ok
21:56:20.0359 2984 asc - ok
21:56:20.0375 2984 asc3350p - ok
21:56:20.0375 2984 asc3550 - ok
21:56:20.0468 2984 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:56:20.0500 2984 aspnet_state - ok
21:56:20.0515 2984 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
21:56:20.0593 2984 AsyncMac - ok
21:56:20.0625 2984 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
21:56:20.0703 2984 atapi - ok
21:56:20.0703 2984 Atdisk - ok
21:56:20.0718 2984 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
21:56:20.0796 2984 Atmarpc - ok
21:56:20.0812 2984 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
21:56:20.0890 2984 AudioSrv - ok
21:56:20.0921 2984 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
21:56:21.0000 2984 audstub - ok
21:56:21.0015 2984 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
21:56:21.0093 2984 Beep - ok
21:56:21.0140 2984 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
21:56:21.0484 2984 BITS - ok
21:56:21.0546 2984 Bonjour Service (73686fe0b2e0469f89fd2075be724704) C:\Program Files\Bonjour\mDNSResponder.exe
21:56:21.0546 2984 Bonjour Service ( UnsignedFile.Multi.Generic ) - warning
21:56:21.0546 2984 Bonjour Service - detected UnsignedFile.Multi.Generic (1)
21:56:21.0578 2984 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
21:56:21.0640 2984 Browser - ok
21:56:21.0687 2984 Cardex (04e1c782cf14b7282ebc633b0fd3ed16) C:\WINDOWS\system32\drivers\TBPANEL.SYS
21:56:21.0843 2984 Cardex - ok
21:56:21.0953 2984 catchme - ok
21:56:21.0984 2984 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
21:56:22.0062 2984 cbidf2k - ok
21:56:22.0078 2984 cd20xrnt - ok
21:56:22.0078 2984 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
21:56:22.0156 2984 Cdaudio - ok
21:56:22.0187 2984 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
21:56:22.0281 2984 Cdfs - ok
21:56:22.0281 2984 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
21:56:22.0375 2984 Cdrom - ok
21:56:22.0375 2984 Changer - ok
21:56:22.0406 2984 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
21:56:22.0484 2984 CiSvc - ok
21:56:22.0500 2984 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
21:56:22.0578 2984 ClipSrv - ok
21:56:22.0656 2984 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:56:22.0703 2984 clr_optimization_v2.0.50727_32 - ok
21:56:22.0703 2984 CmdIde - ok
21:56:22.0703 2984 COMSysApp - ok
21:56:22.0703 2984 Cpqarray - ok
21:56:22.0734 2984 cpuz135 (26ce59f9fc8639fd7fed53ce3b785015) C:\WINDOWS\system32\drivers\cpuz135_x32.sys
21:56:22.0750 2984 cpuz135 - ok
21:56:22.0750 2984 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
21:56:22.0843 2984 CryptSvc - ok
21:56:22.0843 2984 dac2w2k - ok
21:56:22.0843 2984 dac960nt - ok
21:56:22.0906 2984 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
21:56:22.0984 2984 DcomLaunch - ok
21:56:23.0015 2984 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
21:56:23.0093 2984 Dhcp - ok
21:56:23.0109 2984 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
21:56:23.0187 2984 Disk - ok
21:56:23.0187 2984 dmadmin - ok
21:56:23.0250 2984 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
21:56:23.0343 2984 dmboot - ok
21:56:23.0375 2984 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
21:56:23.0453 2984 dmio - ok
21:56:23.0500 2984 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
21:56:23.0578 2984 dmload - ok
21:56:23.0609 2984 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
21:56:23.0687 2984 dmserver - ok
21:56:23.0703 2984 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
21:56:23.0781 2984 DMusic - ok
21:56:23.0812 2984 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
21:56:23.0875 2984 Dnscache - ok
21:56:23.0906 2984 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
21:56:24.0000 2984 Dot3svc - ok
21:56:24.0000 2984 dpti2o - ok
21:56:24.0031 2984 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
21:56:24.0109 2984 drmkaud - ok
21:56:24.0156 2984 eamon (9307bb1b5c3ed19517056e1f122d8c77) C:\WINDOWS\system32\DRIVERS\eamon.sys
21:56:24.0156 2984 eamon - ok
21:56:24.0203 2984 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
21:56:24.0281 2984 EapHost - ok
21:56:24.0312 2984 easdrv (df91159321c0991a2e2eb97c84dc4110) C:\WINDOWS\system32\DRIVERS\easdrv.sys
21:56:24.0312 2984 easdrv - ok
21:56:24.0406 2984 EhttpSrv (18773d7229a47612c063e39b8ea07ebb) C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
21:56:24.0421 2984 EhttpSrv - ok
21:56:24.0468 2984 ekrn (de0542189b2853e6118c42a9d6b7c2a7) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
21:56:24.0484 2984 ekrn - ok
21:56:24.0515 2984 epfwtdir (62787d051e9ce5dd6217c21468177aa0) C:\WINDOWS\system32\DRIVERS\epfwtdir.sys
21:56:24.0531 2984 epfwtdir - ok
21:56:24.0546 2984 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
21:56:24.0640 2984 ERSvc - ok
21:56:24.0671 2984 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
21:56:24.0718 2984 Eventlog - ok
21:56:24.0750 2984 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
21:56:24.0796 2984 EventSystem - ok
21:56:24.0812 2984 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
21:56:24.0890 2984 Fastfat - ok
21:56:24.0937 2984 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:25.0015 2984 FastUserSwitchingCompatibility - ok
21:56:25.0046 2984 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
21:56:25.0109 2984 Fdc - ok
21:56:25.0125 2984 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
21:56:25.0187 2984 Fips - ok
21:56:25.0265 2984 FirebirdGuardianDefaultInstance - ok
21:56:25.0265 2984 FirebirdServerDefaultInstance - ok
21:56:25.0328 2984 FLEXnet Licensing Service (227846995afeefa70d328bf5334a86a5) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
21:56:25.0375 2984 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - warning
21:56:25.0375 2984 FLEXnet Licensing Service - detected UnsignedFile.Multi.Generic (1)
21:56:25.0375 2984 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
21:56:25.0453 2984 Flpydisk - ok
21:56:25.0484 2984 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
21:56:25.0562 2984 FltMgr - ok
21:56:25.0640 2984 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
21:56:25.0640 2984 FontCache3.0.0.0 - ok
21:56:25.0687 2984 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
21:56:25.0765 2984 Fs_Rec - ok
21:56:25.0781 2984 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
21:56:25.0859 2984 Ftdisk - ok
21:56:25.0875 2984 gdrv (5c230948dd6652228f88ca7ae6cb276c) C:\WINDOWS\gdrv.sys
21:56:26.0890 2984 gdrv - ok
21:56:26.0921 2984 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
21:56:27.0000 2984 Gpc - ok
21:56:27.0078 2984 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
21:56:27.0078 2984 gupdate - ok
21:56:27.0093 2984 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
21:56:27.0109 2984 gupdatem - ok
21:56:27.0109 2984 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
21:56:27.0125 2984 hamachi - ok
21:56:27.0250 2984 Hamachi2Svc (f31d7f8a7699575dbb3b3a3ab4aa6216) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
21:56:27.0296 2984 Hamachi2Svc - ok
21:56:27.0421 2984 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
21:56:27.0500 2984 HDAudBus - ok
21:56:27.0562 2984 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
21:56:27.0640 2984 helpsvc - ok
21:56:27.0656 2984 HidServ - ok
21:56:27.0671 2984 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
21:56:27.0765 2984 HidUsb - ok
21:56:27.0796 2984 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
21:56:27.0875 2984 hkmsvc - ok
21:56:27.0875 2984 hpn - ok
21:56:27.0921 2984 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
21:56:27.0953 2984 HTTP - ok
21:56:27.0984 2984 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
21:56:28.0125 2984 HTTPFilter - ok
21:56:28.0125 2984 i2omgmt - ok
21:56:28.0125 2984 i2omp - ok
21:56:28.0140 2984 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
21:56:28.0218 2984 i8042prt - ok
21:56:28.0328 2984 ICQ Service (a4e43a7ab1202356bebeb6b798f15488) C:\Program Files\ICQ6Toolbar\ICQ Service.exe
21:56:28.0328 2984 ICQ Service - ok
21:56:28.0453 2984 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:56:28.0515 2984 idsvc - ok
21:56:28.0609 2984 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
21:56:28.0687 2984 Imapi - ok
21:56:28.0718 2984 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
21:56:28.0796 2984 ImapiService - ok
21:56:28.0812 2984 ini910u - ok
21:56:29.0046 2984 IntcAzAudAddService (08baf30f6de95814f58af9ce7bbc5614) C:\WINDOWS\system32\drivers\RtkHDAud.sys
21:56:29.0203 2984 IntcAzAudAddService - ok
21:56:29.0312 2984 IntelIde - ok
21:56:29.0328 2984 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
21:56:29.0406 2984 intelppm - ok
21:56:29.0421 2984 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
21:56:29.0515 2984 Ip6Fw - ok
21:56:29.0515 2984 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
21:56:29.0609 2984 IpFilterDriver - ok
21:56:29.0625 2984 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
21:56:29.0703 2984 IpInIp - ok
21:56:29.0718 2984 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
21:56:29.0812 2984 IpNat - ok
21:56:29.0828 2984 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
21:56:29.0906 2984 IPSec - ok
21:56:29.0921 2984 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
21:56:29.0953 2984 IRENUM - ok
21:56:29.0984 2984 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
21:56:30.0062 2984 isapnp - ok
21:56:30.0156 2984 JavaQuickStarterService (9aa67569d5257462e230767510b0c815) C:\Program Files\Java\jre6\bin\jqs.exe
21:56:30.0171 2984 JavaQuickStarterService - ok
21:56:30.0171 2984 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
21:56:30.0250 2984 Kbdclass - ok
21:56:30.0265 2984 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
21:56:30.0343 2984 kmixer - ok
21:56:30.0359 2984 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
21:56:30.0453 2984 KSecDD - ok
21:56:30.0484 2984 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
21:56:30.0515 2984 lanmanserver - ok
21:56:30.0531 2984 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
21:56:30.0687 2984 lanmanworkstation - ok
21:56:30.0687 2984 lbrtfdc - ok
21:56:30.0718 2984 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
21:56:30.0796 2984 LmHosts - ok
21:56:30.0828 2984 MarvinBus (a3e700d78eec390f1208098cdca5c6b6) C:\WINDOWS\system32\DRIVERS\MarvinBus.sys
21:56:30.0828 2984 MarvinBus ( UnsignedFile.Multi.Generic ) - warning
21:56:30.0828 2984 MarvinBus - detected UnsignedFile.Multi.Generic (1)
21:56:30.0843 2984 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
21:56:30.0921 2984 Messenger - ok
21:56:30.0984 2984 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
21:56:31.0000 2984 Microsoft Office Groove Audit Service - ok
21:56:31.0031 2984 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
21:56:31.0109 2984 mnmdd - ok
21:56:31.0125 2984 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
21:56:31.0218 2984 mnmsrvc - ok
21:56:31.0250 2984 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
21:56:31.0343 2984 Modem - ok
21:56:31.0359 2984 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
21:56:31.0437 2984 Mouclass - ok
21:56:31.0437 2984 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
21:56:31.0515 2984 MountMgr - ok
21:56:31.0531 2984 mraid35x - ok
21:56:31.0546 2984 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
21:56:31.0625 2984 MRxDAV - ok
21:56:31.0687 2984 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
21:56:31.0750 2984 MRxSmb - ok
21:56:31.0765 2984 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
21:56:31.0828 2984 MSDTC - ok
21:56:31.0843 2984 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
21:56:31.0921 2984 Msfs - ok
21:56:31.0921 2984 MSIServer - ok
21:56:31.0937 2984 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
21:56:32.0015 2984 MSKSSRV - ok
21:56:32.0031 2984 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
21:56:32.0109 2984 MSPCLOCK - ok
21:56:32.0125 2984 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
21:56:32.0203 2984 MSPQM - ok
21:56:32.0203 2984 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
21:56:32.0281 2984 mssmbios - ok
21:56:32.0281 2984 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
21:56:32.0328 2984 Mup - ok
21:56:32.0375 2984 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
21:56:32.0437 2984 napagent - ok
21:56:32.0468 2984 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
21:56:32.0546 2984 NDIS - ok
21:56:32.0578 2984 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
21:56:32.0609 2984 NdisTapi - ok
21:56:32.0625 2984 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
21:56:32.0703 2984 Ndisuio - ok
21:56:32.0718 2984 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
21:56:32.0796 2984 NdisWan - ok
21:56:32.0843 2984 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
21:56:32.0890 2984 NDProxy - ok
21:56:32.0906 2984 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
21:56:32.0984 2984 NetBIOS - ok
21:56:33.0000 2984 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
21:56:33.0078 2984 NetBT - ok
21:56:33.0109 2984 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
21:56:33.0187 2984 NetDDE - ok
21:56:33.0187 2984 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
21:56:33.0265 2984 NetDDEdsdm - ok
21:56:33.0281 2984 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:33.0359 2984 Netlogon - ok
21:56:33.0375 2984 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
21:56:33.0453 2984 Netman - ok
21:56:33.0546 2984 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:56:33.0546 2984 NetTcpPortSharing - ok
21:56:33.0609 2984 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
21:56:33.0625 2984 Nla - ok
21:56:33.0640 2984 nmwcd (b0a67de1a128389aea4d42c5a56215fd) C:\WINDOWS\system32\drivers\ccdcmb.sys
21:56:33.0828 2984 nmwcd - ok
21:56:33.0859 2984 nmwcdc (025c54f9f8c8bc1894ea38529c742c54) C:\WINDOWS\system32\drivers\ccdcmbo.sys
21:56:33.0921 2984 nmwcdc - ok
21:56:33.0937 2984 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
21:56:34.0015 2984 Npfs - ok
21:56:34.0062 2984 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
21:56:34.0171 2984 Ntfs - ok
21:56:34.0187 2984 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:34.0265 2984 NtLmSsp - ok
21:56:34.0312 2984 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
21:56:34.0406 2984 NtmsSvc - ok
21:56:34.0437 2984 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
21:56:34.0515 2984 Null - ok
21:56:34.0828 2984 nv (9233619977c4c5944925e685a1a5c3c4) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
21:56:35.0015 2984 nv - ok
21:56:35.0140 2984 NVSvc (548f1e3c80ce3a2b6f318f974d13ada8) C:\WINDOWS\system32\nvsvc32.exe
21:56:35.0171 2984 NVSvc - ok
21:56:35.0203 2984 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
21:56:35.0281 2984 NwlnkFlt - ok
21:56:35.0296 2984 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
21:56:35.0375 2984 NwlnkFwd - ok
21:56:35.0500 2984 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:56:35.0515 2984 odserv - ok
21:56:35.0546 2984 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:56:35.0562 2984 ose - ok
21:56:35.0593 2984 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
21:56:35.0671 2984 Parport - ok
21:56:35.0703 2984 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
21:56:35.0765 2984 PartMgr - ok
21:56:35.0796 2984 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
21:56:35.0890 2984 ParVdm - ok
21:56:35.0906 2984 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
21:56:35.0984 2984 PCI - ok
21:56:35.0984 2984 PCIDump - ok
21:56:36.0015 2984 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
21:56:36.0093 2984 PCIIde - ok
21:56:36.0109 2984 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
21:56:36.0187 2984 Pcmcia - ok
21:56:36.0203 2984 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\WINDOWS\system32\Drivers\pcouffin.sys
21:56:36.0218 2984 pcouffin ( UnsignedFile.Multi.Generic ) - warning
21:56:36.0218 2984 pcouffin - detected UnsignedFile.Multi.Generic (1)
21:56:36.0218 2984 PDCOMP - ok
21:56:36.0218 2984 PDFRAME - ok
21:56:36.0218 2984 PDRELI - ok
21:56:36.0218 2984 PDRFRAME - ok
21:56:36.0234 2984 perc2 - ok
21:56:36.0234 2984 perc2hib - ok
21:56:36.0265 2984 pfc (2c1eb94c24a6a1d3434481b0a5fa9c08) C:\WINDOWS\system32\drivers\pfc.sys
21:56:36.0265 2984 pfc ( UnsignedFile.Multi.Generic ) - warning
21:56:36.0265 2984 pfc - detected UnsignedFile.Multi.Generic (1)
21:56:36.0312 2984 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
21:56:36.0328 2984 PlugPlay - ok
21:56:36.0375 2984 PnkBstrA (1713d9de407313138118d501b0e3c05b) C:\WINDOWS\system32\PnkBstrA.exe
21:56:36.0375 2984 PnkBstrA - ok
21:56:36.0390 2984 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:36.0468 2984 PolicyAgent - ok
21:56:36.0484 2984 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
21:56:36.0562 2984 PptpMiniport - ok
21:56:36.0562 2984 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:36.0640 2984 ProtectedStorage - ok
21:56:36.0656 2984 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
21:56:36.0734 2984 PSched - ok
21:56:36.0750 2984 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
21:56:36.0843 2984 Ptilink - ok
21:56:36.0875 2984 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
21:56:36.0890 2984 PxHelp20 - ok
21:56:36.0890 2984 ql1080 - ok
21:56:36.0890 2984 Ql10wnt - ok
21:56:36.0906 2984 ql12160 - ok
21:56:36.0906 2984 ql1240 - ok
21:56:36.0906 2984 ql1280 - ok
21:56:36.0906 2984 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
21:56:36.0984 2984 RasAcd - ok
21:56:37.0015 2984 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
21:56:37.0078 2984 RasAuto - ok
21:56:37.0109 2984 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
21:56:37.0171 2984 Rasl2tp - ok
21:56:37.0234 2984 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
21:56:37.0312 2984 RasMan - ok
21:56:37.0328 2984 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
21:56:37.0390 2984 RasPppoe - ok
21:56:37.0406 2984 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
21:56:37.0468 2984 Raspti - ok
21:56:37.0500 2984 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
21:56:37.0562 2984 Rdbss - ok
21:56:37.0578 2984 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
21:56:37.0656 2984 RDPCDD - ok
21:56:37.0687 2984 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
21:56:37.0765 2984 rdpdr - ok
21:56:37.0796 2984 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
21:56:37.0843 2984 RDPWD - ok
21:56:37.0875 2984 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
21:56:37.0937 2984 RDSessMgr - ok
21:56:37.0953 2984 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
21:56:38.0031 2984 redbook - ok
21:56:38.0062 2984 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
21:56:38.0156 2984 RemoteAccess - ok
21:56:38.0187 2984 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
21:56:38.0265 2984 RemoteRegistry - ok
21:56:38.0281 2984 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
21:56:38.0359 2984 RpcLocator - ok
21:56:38.0484 2984 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\System32\rpcss.dll
21:56:38.0515 2984 RpcSs - ok
21:56:38.0562 2984 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
21:56:38.0640 2984 RSVP - ok
21:56:38.0671 2984 RTLE8023xp (89619ef503f949fae09252a8b883ee11) C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
21:56:38.0703 2984 RTLE8023xp - ok
21:56:38.0718 2984 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:38.0796 2984 SamSs - ok
21:56:38.0812 2984 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
21:56:38.0890 2984 SCardSvr - ok
21:56:38.0921 2984 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
21:56:39.0000 2984 Schedule - ok
21:56:39.0031 2984 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
21:56:39.0062 2984 Secdrv - ok
21:56:39.0078 2984 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
21:56:39.0156 2984 seclogon - ok
21:56:39.0171 2984 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
21:56:39.0250 2984 SENS - ok
21:56:39.0265 2984 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
21:56:39.0328 2984 serenum - ok
21:56:39.0343 2984 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
21:56:39.0421 2984 Serial - ok
21:56:39.0437 2984 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
21:56:39.0515 2984 Sfloppy - ok
21:56:39.0578 2984 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
21:56:39.0656 2984 SharedAccess - ok
21:56:39.0687 2984 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:39.0703 2984 ShellHWDetection - ok
21:56:39.0718 2984 Simbad - ok
21:56:39.0718 2984 Sparrow - ok
21:56:39.0734 2984 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
21:56:39.0812 2984 splitter - ok
21:56:39.0843 2984 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
21:56:39.0875 2984 Spooler - ok
21:56:39.0921 2984 sptd (a199171385be17973fd800fa91f8f78a) C:\WINDOWS\system32\Drivers\sptd.sys
21:56:39.0921 2984 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: a199171385be17973fd800fa91f8f78a
21:56:39.0921 2984 sptd ( LockedFile.Multi.Generic ) - warning
21:56:39.0921 2984 sptd - detected LockedFile.Multi.Generic (1)
21:56:39.0921 2984 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
21:56:39.0968 2984 sr - ok
21:56:39.0984 2984 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
21:56:40.0031 2984 srservice - ok
21:56:40.0062 2984 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
21:56:40.0125 2984 Srv - ok
21:56:40.0156 2984 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
21:56:40.0203 2984 SSDPSRV - ok
21:56:40.0250 2984 StarWindServiceAE (e5c796b621f6fba8616511063d7f0ffe) C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
21:56:40.0265 2984 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - warning
21:56:40.0265 2984 StarWindServiceAE - detected UnsignedFile.Multi.Generic (1)
21:56:40.0312 2984 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
21:56:40.0421 2984 stisvc - ok
21:56:40.0453 2984 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
21:56:40.0531 2984 swenum - ok
21:56:40.0546 2984 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
21:56:40.0625 2984 swmidi - ok
21:56:40.0625 2984 SwPrv - ok
21:56:40.0625 2984 symc810 - ok
21:56:40.0640 2984 symc8xx - ok
21:56:40.0640 2984 sym_hi - ok
21:56:40.0640 2984 sym_u3 - ok
21:56:40.0656 2984 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
21:56:40.0734 2984 sysaudio - ok
21:56:40.0750 2984 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
21:56:40.0828 2984 SysmonLog - ok
21:56:40.0843 2984 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
21:56:40.0921 2984 TapiSrv - ok
21:56:40.0968 2984 TBPanel (04e1c782cf14b7282ebc633b0fd3ed16) C:\WINDOWS\system32\drivers\TBPanel.sys
21:56:40.0968 2984 TBPanel - ok
21:56:41.0031 2984 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
21:56:41.0046 2984 Tcpip - ok
21:56:41.0062 2984 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
21:56:41.0156 2984 TDPIPE - ok
21:56:41.0171 2984 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
21:56:41.0250 2984 TDTCP - ok
21:56:41.0265 2984 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
21:56:41.0328 2984 TermDD - ok
21:56:41.0359 2984 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
21:56:41.0437 2984 TermService - ok
21:56:41.0468 2984 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:41.0484 2984 Themes - ok
21:56:41.0515 2984 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
21:56:41.0546 2984 TlntSvr - ok
21:56:41.0562 2984 TosIde - ok
21:56:41.0593 2984 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
21:56:41.0671 2984 TrkWks - ok
21:56:41.0703 2984 TrueSight (b3c9c35dc93563b8d19ad414edf2fc82) c:\windows\system32\drivers\TrueSight.sys
21:56:41.0703 2984 TrueSight ( UnsignedFile.Multi.Generic ) - warning
21:56:41.0703 2984 TrueSight - detected UnsignedFile.Multi.Generic (1)
21:56:41.0718 2984 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
21:56:41.0796 2984 Udfs - ok
21:56:41.0796 2984 ultra - ok
21:56:41.0828 2984 UMWdf (ab0a7ca90d9e3d6a193905dc1715ded0) C:\WINDOWS\system32\wdfmgr.exe
21:56:41.0859 2984 UMWdf - ok
21:56:41.0890 2984 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
21:56:41.0984 2984 Update - ok
21:56:42.0000 2984 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
21:56:42.0046 2984 upnphost - ok
21:56:42.0078 2984 upperdev (78b74af8727a28c128e164e9b53a5413) C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys
21:56:42.0140 2984 upperdev - ok
21:56:42.0156 2984 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
21:56:42.0250 2984 UPS - ok
21:56:42.0265 2984 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
21:56:42.0343 2984 usbccgp - ok
21:56:42.0359 2984 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
21:56:42.0437 2984 usbehci - ok
21:56:42.0453 2984 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
21:56:42.0531 2984 usbhub - ok
21:56:42.0546 2984 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
21:56:42.0625 2984 usbprint - ok
21:56:42.0625 2984 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
21:56:42.0703 2984 usbscan - ok
21:56:42.0718 2984 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys
21:56:42.0781 2984 usbser - ok
21:56:42.0796 2984 UsbserFilt (4f8fbc51a1c0a17310846b417a447f91) C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys
21:56:42.0828 2984 UsbserFilt - ok
21:56:42.0859 2984 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
21:56:42.0921 2984 usbstor - ok
21:56:42.0937 2984 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
21:56:43.0000 2984 usbuhci - ok
21:56:43.0000 2984 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
21:56:43.0078 2984 VgaSave - ok
21:56:43.0078 2984 ViaIde - ok
21:56:43.0093 2984 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
21:56:43.0187 2984 VolSnap - ok
21:56:43.0234 2984 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
21:56:43.0265 2984 VSS - ok
21:56:43.0296 2984 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
21:56:43.0375 2984 W32Time - ok
21:56:43.0375 2984 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
21:56:43.0437 2984 Wanarp - ok
21:56:43.0500 2984 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
21:56:43.0515 2984 Wdf01000 - ok
21:56:43.0515 2984 WDICA - ok
21:56:43.0546 2984 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
21:56:43.0625 2984 wdmaud - ok
21:56:43.0640 2984 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
21:56:43.0718 2984 WebClient - ok
21:56:43.0796 2984 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
21:56:43.0859 2984 winmgmt - ok
21:56:44.0000 2984 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:56:44.0046 2984 wlidsvc - ok
21:56:44.0156 2984 WmdmPmSN (140ef97b64f560fd78643cae2cdad838) C:\WINDOWS\system32\mspmsnsv.dll
21:56:44.0203 2984 WmdmPmSN - ok
21:56:44.0265 2984 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
21:56:44.0312 2984 Wmi - ok
21:56:44.0359 2984 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
21:56:44.0437 2984 WmiApSrv - ok
21:56:44.0468 2984 WpdUsb (1385e5aa9c9821790d33a9563b8d2dd0) C:\WINDOWS\system32\Drivers\wpdusb.sys
21:56:44.0484 2984 WpdUsb - ok
21:56:44.0515 2984 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
21:56:44.0578 2984 WS2IFSL - ok
21:56:44.0609 2984 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
21:56:44.0687 2984 wscsvc - ok
21:56:44.0718 2984 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
21:56:44.0796 2984 wuauserv - ok
21:56:44.0843 2984 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
21:56:44.0937 2984 WZCSVC - ok
21:56:44.0968 2984 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
21:56:45.0078 2984 xmlprov - ok
21:56:45.0093 2984 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
21:56:45.0468 2984 \Device\Harddisk0\DR0 - ok
21:56:45.0468 2984 Boot (0x1200) (86c3c0bba67c355b06e7aa3dfbc147a5) \Device\Harddisk0\DR0\Partition0
21:56:45.0468 2984 \Device\Harddisk0\DR0\Partition0 - ok
21:56:45.0468 2984 Boot (0x1200) (7378cbfa393e0e3d4aabe21af80f2964) \Device\Harddisk0\DR0\Partition1
21:56:45.0484 2984 \Device\Harddisk0\DR0\Partition1 - ok
21:56:45.0484 2984 ============================================================
21:56:45.0484 2984 Scan finished
21:56:45.0484 2984 ============================================================
21:56:45.0609 2976 Detected object count: 9
21:56:45.0609 2976 Actual detected object count: 9
21:57:27.0968 2976 Adobe LM Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 Adobe LM Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 Bonjour Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 Bonjour Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 MarvinBus ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 MarvinBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 pcouffin ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 pcouffin ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 pfc ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 pfc ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 sptd ( LockedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 TrueSight ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 TrueSight ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:55:00.0218 2160 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
21:55:00.0625 2160 ============================================================
21:55:00.0625 2160 Current date / time: 2012/07/19 21:55:00.0625
21:55:00.0625 2160 SystemInfo:
21:55:00.0625 2160
21:55:00.0625 2160 OS Version: 5.1.2600 ServicePack: 3.0
21:55:00.0625 2160 Product type: Workstation
21:55:00.0625 2160 ComputerName: DOMACNOS-86456E
21:55:00.0625 2160 UserName: Monička
21:55:00.0625 2160 Windows directory: C:\WINDOWS
21:55:00.0625 2160 System windows directory: C:\WINDOWS
21:55:00.0625 2160 Processor architecture: Intel x86
21:55:00.0625 2160 Number of processors: 2
21:55:00.0625 2160 Page size: 0x1000
21:55:00.0625 2160 Boot type: Normal boot
21:55:00.0625 2160 ============================================================
21:55:01.0968 2160 Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
21:55:01.0968 2160 ============================================================
21:55:01.0968 2160 \Device\Harddisk0\DR0:
21:55:01.0968 2160 MBR partitions:
21:55:01.0968 2160 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x124F6BF3
21:55:01.0984 2160 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x124F6C71, BlocksNum 0x12F32B8F
21:55:01.0984 2160 ============================================================
21:55:02.0000 2160 D: <-> \Device\Harddisk0\DR0\Partition1
21:55:02.0046 2160 C: <-> \Device\Harddisk0\DR0\Partition0
21:55:02.0078 2160 ============================================================
21:55:02.0078 2160 Initialize success
21:55:02.0078 2160 ============================================================
21:56:18.0125 2984 ============================================================
21:56:18.0125 2984 Scan started
21:56:18.0125 2984 Mode: Manual; SigCheck; TDLFS;
21:56:18.0125 2984 ============================================================
21:56:18.0359 2984 Abiosdsk - ok
21:56:18.0359 2984 abp480n5 - ok
21:56:18.0390 2984 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
21:56:19.0562 2984 ACPI - ok
21:56:19.0578 2984 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
21:56:19.0687 2984 ACPIEC - ok
21:56:19.0750 2984 Adobe LM Service (c1eb9968ec89fba5f3a264e2e57923ab) C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
21:56:19.0765 2984 Adobe LM Service ( UnsignedFile.Multi.Generic ) - warning
21:56:19.0765 2984 Adobe LM Service - detected UnsignedFile.Multi.Generic (1)
21:56:19.0843 2984 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:56:19.0859 2984 AdobeFlashPlayerUpdateSvc - ok
21:56:19.0859 2984 adpu160m - ok
21:56:19.0890 2984 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
21:56:19.0984 2984 aec - ok
21:56:20.0015 2984 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
21:56:20.0078 2984 AFD - ok
21:56:20.0078 2984 Aha154x - ok
21:56:20.0078 2984 aic78u2 - ok
21:56:20.0078 2984 aic78xx - ok
21:56:20.0109 2984 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
21:56:20.0218 2984 Alerter - ok
21:56:20.0234 2984 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
21:56:20.0281 2984 ALG - ok
21:56:20.0281 2984 AliIde - ok
21:56:20.0281 2984 amsint - ok
21:56:20.0312 2984 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
21:56:20.0359 2984 AppMgmt - ok
21:56:20.0359 2984 asc - ok
21:56:20.0375 2984 asc3350p - ok
21:56:20.0375 2984 asc3550 - ok
21:56:20.0468 2984 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:56:20.0500 2984 aspnet_state - ok
21:56:20.0515 2984 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
21:56:20.0593 2984 AsyncMac - ok
21:56:20.0625 2984 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
21:56:20.0703 2984 atapi - ok
21:56:20.0703 2984 Atdisk - ok
21:56:20.0718 2984 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
21:56:20.0796 2984 Atmarpc - ok
21:56:20.0812 2984 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
21:56:20.0890 2984 AudioSrv - ok
21:56:20.0921 2984 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
21:56:21.0000 2984 audstub - ok
21:56:21.0015 2984 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
21:56:21.0093 2984 Beep - ok
21:56:21.0140 2984 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
21:56:21.0484 2984 BITS - ok
21:56:21.0546 2984 Bonjour Service (73686fe0b2e0469f89fd2075be724704) C:\Program Files\Bonjour\mDNSResponder.exe
21:56:21.0546 2984 Bonjour Service ( UnsignedFile.Multi.Generic ) - warning
21:56:21.0546 2984 Bonjour Service - detected UnsignedFile.Multi.Generic (1)
21:56:21.0578 2984 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
21:56:21.0640 2984 Browser - ok
21:56:21.0687 2984 Cardex (04e1c782cf14b7282ebc633b0fd3ed16) C:\WINDOWS\system32\drivers\TBPANEL.SYS
21:56:21.0843 2984 Cardex - ok
21:56:21.0953 2984 catchme - ok
21:56:21.0984 2984 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
21:56:22.0062 2984 cbidf2k - ok
21:56:22.0078 2984 cd20xrnt - ok
21:56:22.0078 2984 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
21:56:22.0156 2984 Cdaudio - ok
21:56:22.0187 2984 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
21:56:22.0281 2984 Cdfs - ok
21:56:22.0281 2984 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
21:56:22.0375 2984 Cdrom - ok
21:56:22.0375 2984 Changer - ok
21:56:22.0406 2984 CiSvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
21:56:22.0484 2984 CiSvc - ok
21:56:22.0500 2984 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
21:56:22.0578 2984 ClipSrv - ok
21:56:22.0656 2984 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:56:22.0703 2984 clr_optimization_v2.0.50727_32 - ok
21:56:22.0703 2984 CmdIde - ok
21:56:22.0703 2984 COMSysApp - ok
21:56:22.0703 2984 Cpqarray - ok
21:56:22.0734 2984 cpuz135 (26ce59f9fc8639fd7fed53ce3b785015) C:\WINDOWS\system32\drivers\cpuz135_x32.sys
21:56:22.0750 2984 cpuz135 - ok
21:56:22.0750 2984 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
21:56:22.0843 2984 CryptSvc - ok
21:56:22.0843 2984 dac2w2k - ok
21:56:22.0843 2984 dac960nt - ok
21:56:22.0906 2984 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
21:56:22.0984 2984 DcomLaunch - ok
21:56:23.0015 2984 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
21:56:23.0093 2984 Dhcp - ok
21:56:23.0109 2984 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
21:56:23.0187 2984 Disk - ok
21:56:23.0187 2984 dmadmin - ok
21:56:23.0250 2984 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
21:56:23.0343 2984 dmboot - ok
21:56:23.0375 2984 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
21:56:23.0453 2984 dmio - ok
21:56:23.0500 2984 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
21:56:23.0578 2984 dmload - ok
21:56:23.0609 2984 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
21:56:23.0687 2984 dmserver - ok
21:56:23.0703 2984 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
21:56:23.0781 2984 DMusic - ok
21:56:23.0812 2984 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
21:56:23.0875 2984 Dnscache - ok
21:56:23.0906 2984 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
21:56:24.0000 2984 Dot3svc - ok
21:56:24.0000 2984 dpti2o - ok
21:56:24.0031 2984 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
21:56:24.0109 2984 drmkaud - ok
21:56:24.0156 2984 eamon (9307bb1b5c3ed19517056e1f122d8c77) C:\WINDOWS\system32\DRIVERS\eamon.sys
21:56:24.0156 2984 eamon - ok
21:56:24.0203 2984 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
21:56:24.0281 2984 EapHost - ok
21:56:24.0312 2984 easdrv (df91159321c0991a2e2eb97c84dc4110) C:\WINDOWS\system32\DRIVERS\easdrv.sys
21:56:24.0312 2984 easdrv - ok
21:56:24.0406 2984 EhttpSrv (18773d7229a47612c063e39b8ea07ebb) C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
21:56:24.0421 2984 EhttpSrv - ok
21:56:24.0468 2984 ekrn (de0542189b2853e6118c42a9d6b7c2a7) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
21:56:24.0484 2984 ekrn - ok
21:56:24.0515 2984 epfwtdir (62787d051e9ce5dd6217c21468177aa0) C:\WINDOWS\system32\DRIVERS\epfwtdir.sys
21:56:24.0531 2984 epfwtdir - ok
21:56:24.0546 2984 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
21:56:24.0640 2984 ERSvc - ok
21:56:24.0671 2984 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
21:56:24.0718 2984 Eventlog - ok
21:56:24.0750 2984 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\system32\es.dll
21:56:24.0796 2984 EventSystem - ok
21:56:24.0812 2984 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
21:56:24.0890 2984 Fastfat - ok
21:56:24.0937 2984 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:25.0015 2984 FastUserSwitchingCompatibility - ok
21:56:25.0046 2984 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
21:56:25.0109 2984 Fdc - ok
21:56:25.0125 2984 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
21:56:25.0187 2984 Fips - ok
21:56:25.0265 2984 FirebirdGuardianDefaultInstance - ok
21:56:25.0265 2984 FirebirdServerDefaultInstance - ok
21:56:25.0328 2984 FLEXnet Licensing Service (227846995afeefa70d328bf5334a86a5) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
21:56:25.0375 2984 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - warning
21:56:25.0375 2984 FLEXnet Licensing Service - detected UnsignedFile.Multi.Generic (1)
21:56:25.0375 2984 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
21:56:25.0453 2984 Flpydisk - ok
21:56:25.0484 2984 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
21:56:25.0562 2984 FltMgr - ok
21:56:25.0640 2984 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
21:56:25.0640 2984 FontCache3.0.0.0 - ok
21:56:25.0687 2984 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
21:56:25.0765 2984 Fs_Rec - ok
21:56:25.0781 2984 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
21:56:25.0859 2984 Ftdisk - ok
21:56:25.0875 2984 gdrv (5c230948dd6652228f88ca7ae6cb276c) C:\WINDOWS\gdrv.sys
21:56:26.0890 2984 gdrv - ok
21:56:26.0921 2984 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
21:56:27.0000 2984 Gpc - ok
21:56:27.0078 2984 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
21:56:27.0078 2984 gupdate - ok
21:56:27.0093 2984 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
21:56:27.0109 2984 gupdatem - ok
21:56:27.0109 2984 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
21:56:27.0125 2984 hamachi - ok
21:56:27.0250 2984 Hamachi2Svc (f31d7f8a7699575dbb3b3a3ab4aa6216) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
21:56:27.0296 2984 Hamachi2Svc - ok
21:56:27.0421 2984 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
21:56:27.0500 2984 HDAudBus - ok
21:56:27.0562 2984 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
21:56:27.0640 2984 helpsvc - ok
21:56:27.0656 2984 HidServ - ok
21:56:27.0671 2984 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
21:56:27.0765 2984 HidUsb - ok
21:56:27.0796 2984 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
21:56:27.0875 2984 hkmsvc - ok
21:56:27.0875 2984 hpn - ok
21:56:27.0921 2984 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
21:56:27.0953 2984 HTTP - ok
21:56:27.0984 2984 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
21:56:28.0125 2984 HTTPFilter - ok
21:56:28.0125 2984 i2omgmt - ok
21:56:28.0125 2984 i2omp - ok
21:56:28.0140 2984 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
21:56:28.0218 2984 i8042prt - ok
21:56:28.0328 2984 ICQ Service (a4e43a7ab1202356bebeb6b798f15488) C:\Program Files\ICQ6Toolbar\ICQ Service.exe
21:56:28.0328 2984 ICQ Service - ok
21:56:28.0453 2984 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:56:28.0515 2984 idsvc - ok
21:56:28.0609 2984 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
21:56:28.0687 2984 Imapi - ok
21:56:28.0718 2984 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
21:56:28.0796 2984 ImapiService - ok
21:56:28.0812 2984 ini910u - ok
21:56:29.0046 2984 IntcAzAudAddService (08baf30f6de95814f58af9ce7bbc5614) C:\WINDOWS\system32\drivers\RtkHDAud.sys
21:56:29.0203 2984 IntcAzAudAddService - ok
21:56:29.0312 2984 IntelIde - ok
21:56:29.0328 2984 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
21:56:29.0406 2984 intelppm - ok
21:56:29.0421 2984 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
21:56:29.0515 2984 Ip6Fw - ok
21:56:29.0515 2984 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
21:56:29.0609 2984 IpFilterDriver - ok
21:56:29.0625 2984 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
21:56:29.0703 2984 IpInIp - ok
21:56:29.0718 2984 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
21:56:29.0812 2984 IpNat - ok
21:56:29.0828 2984 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
21:56:29.0906 2984 IPSec - ok
21:56:29.0921 2984 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
21:56:29.0953 2984 IRENUM - ok
21:56:29.0984 2984 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
21:56:30.0062 2984 isapnp - ok
21:56:30.0156 2984 JavaQuickStarterService (9aa67569d5257462e230767510b0c815) C:\Program Files\Java\jre6\bin\jqs.exe
21:56:30.0171 2984 JavaQuickStarterService - ok
21:56:30.0171 2984 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
21:56:30.0250 2984 Kbdclass - ok
21:56:30.0265 2984 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
21:56:30.0343 2984 kmixer - ok
21:56:30.0359 2984 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
21:56:30.0453 2984 KSecDD - ok
21:56:30.0484 2984 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
21:56:30.0515 2984 lanmanserver - ok
21:56:30.0531 2984 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
21:56:30.0687 2984 lanmanworkstation - ok
21:56:30.0687 2984 lbrtfdc - ok
21:56:30.0718 2984 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
21:56:30.0796 2984 LmHosts - ok
21:56:30.0828 2984 MarvinBus (a3e700d78eec390f1208098cdca5c6b6) C:\WINDOWS\system32\DRIVERS\MarvinBus.sys
21:56:30.0828 2984 MarvinBus ( UnsignedFile.Multi.Generic ) - warning
21:56:30.0828 2984 MarvinBus - detected UnsignedFile.Multi.Generic (1)
21:56:30.0843 2984 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
21:56:30.0921 2984 Messenger - ok
21:56:30.0984 2984 Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe
21:56:31.0000 2984 Microsoft Office Groove Audit Service - ok
21:56:31.0031 2984 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
21:56:31.0109 2984 mnmdd - ok
21:56:31.0125 2984 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\system32\mnmsrvc.exe
21:56:31.0218 2984 mnmsrvc - ok
21:56:31.0250 2984 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
21:56:31.0343 2984 Modem - ok
21:56:31.0359 2984 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
21:56:31.0437 2984 Mouclass - ok
21:56:31.0437 2984 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
21:56:31.0515 2984 MountMgr - ok
21:56:31.0531 2984 mraid35x - ok
21:56:31.0546 2984 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
21:56:31.0625 2984 MRxDAV - ok
21:56:31.0687 2984 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
21:56:31.0750 2984 MRxSmb - ok
21:56:31.0765 2984 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\system32\msdtc.exe
21:56:31.0828 2984 MSDTC - ok
21:56:31.0843 2984 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
21:56:31.0921 2984 Msfs - ok
21:56:31.0921 2984 MSIServer - ok
21:56:31.0937 2984 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
21:56:32.0015 2984 MSKSSRV - ok
21:56:32.0031 2984 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
21:56:32.0109 2984 MSPCLOCK - ok
21:56:32.0125 2984 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
21:56:32.0203 2984 MSPQM - ok
21:56:32.0203 2984 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
21:56:32.0281 2984 mssmbios - ok
21:56:32.0281 2984 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
21:56:32.0328 2984 Mup - ok
21:56:32.0375 2984 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
21:56:32.0437 2984 napagent - ok
21:56:32.0468 2984 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
21:56:32.0546 2984 NDIS - ok
21:56:32.0578 2984 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
21:56:32.0609 2984 NdisTapi - ok
21:56:32.0625 2984 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
21:56:32.0703 2984 Ndisuio - ok
21:56:32.0718 2984 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
21:56:32.0796 2984 NdisWan - ok
21:56:32.0843 2984 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
21:56:32.0890 2984 NDProxy - ok
21:56:32.0906 2984 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
21:56:32.0984 2984 NetBIOS - ok
21:56:33.0000 2984 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
21:56:33.0078 2984 NetBT - ok
21:56:33.0109 2984 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
21:56:33.0187 2984 NetDDE - ok
21:56:33.0187 2984 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
21:56:33.0265 2984 NetDDEdsdm - ok
21:56:33.0281 2984 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:33.0359 2984 Netlogon - ok
21:56:33.0375 2984 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
21:56:33.0453 2984 Netman - ok
21:56:33.0546 2984 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:56:33.0546 2984 NetTcpPortSharing - ok
21:56:33.0609 2984 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
21:56:33.0625 2984 Nla - ok
21:56:33.0640 2984 nmwcd (b0a67de1a128389aea4d42c5a56215fd) C:\WINDOWS\system32\drivers\ccdcmb.sys
21:56:33.0828 2984 nmwcd - ok
21:56:33.0859 2984 nmwcdc (025c54f9f8c8bc1894ea38529c742c54) C:\WINDOWS\system32\drivers\ccdcmbo.sys
21:56:33.0921 2984 nmwcdc - ok
21:56:33.0937 2984 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
21:56:34.0015 2984 Npfs - ok
21:56:34.0062 2984 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
21:56:34.0171 2984 Ntfs - ok
21:56:34.0187 2984 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:34.0265 2984 NtLmSsp - ok
21:56:34.0312 2984 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
21:56:34.0406 2984 NtmsSvc - ok
21:56:34.0437 2984 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
21:56:34.0515 2984 Null - ok
21:56:34.0828 2984 nv (9233619977c4c5944925e685a1a5c3c4) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
21:56:35.0015 2984 nv - ok
21:56:35.0140 2984 NVSvc (548f1e3c80ce3a2b6f318f974d13ada8) C:\WINDOWS\system32\nvsvc32.exe
21:56:35.0171 2984 NVSvc - ok
21:56:35.0203 2984 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
21:56:35.0281 2984 NwlnkFlt - ok
21:56:35.0296 2984 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
21:56:35.0375 2984 NwlnkFwd - ok
21:56:35.0500 2984 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
21:56:35.0515 2984 odserv - ok
21:56:35.0546 2984 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:56:35.0562 2984 ose - ok
21:56:35.0593 2984 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
21:56:35.0671 2984 Parport - ok
21:56:35.0703 2984 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
21:56:35.0765 2984 PartMgr - ok
21:56:35.0796 2984 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
21:56:35.0890 2984 ParVdm - ok
21:56:35.0906 2984 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
21:56:35.0984 2984 PCI - ok
21:56:35.0984 2984 PCIDump - ok
21:56:36.0015 2984 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
21:56:36.0093 2984 PCIIde - ok
21:56:36.0109 2984 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
21:56:36.0187 2984 Pcmcia - ok
21:56:36.0203 2984 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\WINDOWS\system32\Drivers\pcouffin.sys
21:56:36.0218 2984 pcouffin ( UnsignedFile.Multi.Generic ) - warning
21:56:36.0218 2984 pcouffin - detected UnsignedFile.Multi.Generic (1)
21:56:36.0218 2984 PDCOMP - ok
21:56:36.0218 2984 PDFRAME - ok
21:56:36.0218 2984 PDRELI - ok
21:56:36.0218 2984 PDRFRAME - ok
21:56:36.0234 2984 perc2 - ok
21:56:36.0234 2984 perc2hib - ok
21:56:36.0265 2984 pfc (2c1eb94c24a6a1d3434481b0a5fa9c08) C:\WINDOWS\system32\drivers\pfc.sys
21:56:36.0265 2984 pfc ( UnsignedFile.Multi.Generic ) - warning
21:56:36.0265 2984 pfc - detected UnsignedFile.Multi.Generic (1)
21:56:36.0312 2984 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
21:56:36.0328 2984 PlugPlay - ok
21:56:36.0375 2984 PnkBstrA (1713d9de407313138118d501b0e3c05b) C:\WINDOWS\system32\PnkBstrA.exe
21:56:36.0375 2984 PnkBstrA - ok
21:56:36.0390 2984 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:36.0468 2984 PolicyAgent - ok
21:56:36.0484 2984 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
21:56:36.0562 2984 PptpMiniport - ok
21:56:36.0562 2984 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:36.0640 2984 ProtectedStorage - ok
21:56:36.0656 2984 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
21:56:36.0734 2984 PSched - ok
21:56:36.0750 2984 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
21:56:36.0843 2984 Ptilink - ok
21:56:36.0875 2984 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
21:56:36.0890 2984 PxHelp20 - ok
21:56:36.0890 2984 ql1080 - ok
21:56:36.0890 2984 Ql10wnt - ok
21:56:36.0906 2984 ql12160 - ok
21:56:36.0906 2984 ql1240 - ok
21:56:36.0906 2984 ql1280 - ok
21:56:36.0906 2984 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
21:56:36.0984 2984 RasAcd - ok
21:56:37.0015 2984 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
21:56:37.0078 2984 RasAuto - ok
21:56:37.0109 2984 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
21:56:37.0171 2984 Rasl2tp - ok
21:56:37.0234 2984 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
21:56:37.0312 2984 RasMan - ok
21:56:37.0328 2984 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
21:56:37.0390 2984 RasPppoe - ok
21:56:37.0406 2984 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
21:56:37.0468 2984 Raspti - ok
21:56:37.0500 2984 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
21:56:37.0562 2984 Rdbss - ok
21:56:37.0578 2984 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
21:56:37.0656 2984 RDPCDD - ok
21:56:37.0687 2984 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
21:56:37.0765 2984 rdpdr - ok
21:56:37.0796 2984 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
21:56:37.0843 2984 RDPWD - ok
21:56:37.0875 2984 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
21:56:37.0937 2984 RDSessMgr - ok
21:56:37.0953 2984 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
21:56:38.0031 2984 redbook - ok
21:56:38.0062 2984 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
21:56:38.0156 2984 RemoteAccess - ok
21:56:38.0187 2984 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
21:56:38.0265 2984 RemoteRegistry - ok
21:56:38.0281 2984 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\system32\locator.exe
21:56:38.0359 2984 RpcLocator - ok
21:56:38.0484 2984 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\System32\rpcss.dll
21:56:38.0515 2984 RpcSs - ok
21:56:38.0562 2984 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\system32\rsvp.exe
21:56:38.0640 2984 RSVP - ok
21:56:38.0671 2984 RTLE8023xp (89619ef503f949fae09252a8b883ee11) C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
21:56:38.0703 2984 RTLE8023xp - ok
21:56:38.0718 2984 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
21:56:38.0796 2984 SamSs - ok
21:56:38.0812 2984 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
21:56:38.0890 2984 SCardSvr - ok
21:56:38.0921 2984 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
21:56:39.0000 2984 Schedule - ok
21:56:39.0031 2984 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
21:56:39.0062 2984 Secdrv - ok
21:56:39.0078 2984 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
21:56:39.0156 2984 seclogon - ok
21:56:39.0171 2984 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
21:56:39.0250 2984 SENS - ok
21:56:39.0265 2984 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
21:56:39.0328 2984 serenum - ok
21:56:39.0343 2984 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
21:56:39.0421 2984 Serial - ok
21:56:39.0437 2984 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
21:56:39.0515 2984 Sfloppy - ok
21:56:39.0578 2984 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
21:56:39.0656 2984 SharedAccess - ok
21:56:39.0687 2984 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:39.0703 2984 ShellHWDetection - ok
21:56:39.0718 2984 Simbad - ok
21:56:39.0718 2984 Sparrow - ok
21:56:39.0734 2984 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
21:56:39.0812 2984 splitter - ok
21:56:39.0843 2984 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
21:56:39.0875 2984 Spooler - ok
21:56:39.0921 2984 sptd (a199171385be17973fd800fa91f8f78a) C:\WINDOWS\system32\Drivers\sptd.sys
21:56:39.0921 2984 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: a199171385be17973fd800fa91f8f78a
21:56:39.0921 2984 sptd ( LockedFile.Multi.Generic ) - warning
21:56:39.0921 2984 sptd - detected LockedFile.Multi.Generic (1)
21:56:39.0921 2984 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
21:56:39.0968 2984 sr - ok
21:56:39.0984 2984 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
21:56:40.0031 2984 srservice - ok
21:56:40.0062 2984 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
21:56:40.0125 2984 Srv - ok
21:56:40.0156 2984 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
21:56:40.0203 2984 SSDPSRV - ok
21:56:40.0250 2984 StarWindServiceAE (e5c796b621f6fba8616511063d7f0ffe) C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
21:56:40.0265 2984 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - warning
21:56:40.0265 2984 StarWindServiceAE - detected UnsignedFile.Multi.Generic (1)
21:56:40.0312 2984 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
21:56:40.0421 2984 stisvc - ok
21:56:40.0453 2984 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
21:56:40.0531 2984 swenum - ok
21:56:40.0546 2984 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
21:56:40.0625 2984 swmidi - ok
21:56:40.0625 2984 SwPrv - ok
21:56:40.0625 2984 symc810 - ok
21:56:40.0640 2984 symc8xx - ok
21:56:40.0640 2984 sym_hi - ok
21:56:40.0640 2984 sym_u3 - ok
21:56:40.0656 2984 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
21:56:40.0734 2984 sysaudio - ok
21:56:40.0750 2984 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
21:56:40.0828 2984 SysmonLog - ok
21:56:40.0843 2984 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
21:56:40.0921 2984 TapiSrv - ok
21:56:40.0968 2984 TBPanel (04e1c782cf14b7282ebc633b0fd3ed16) C:\WINDOWS\system32\drivers\TBPanel.sys
21:56:40.0968 2984 TBPanel - ok
21:56:41.0031 2984 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
21:56:41.0046 2984 Tcpip - ok
21:56:41.0062 2984 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
21:56:41.0156 2984 TDPIPE - ok
21:56:41.0171 2984 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
21:56:41.0250 2984 TDTCP - ok
21:56:41.0265 2984 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
21:56:41.0328 2984 TermDD - ok
21:56:41.0359 2984 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
21:56:41.0437 2984 TermService - ok
21:56:41.0468 2984 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
21:56:41.0484 2984 Themes - ok
21:56:41.0515 2984 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\system32\tlntsvr.exe
21:56:41.0546 2984 TlntSvr - ok
21:56:41.0562 2984 TosIde - ok
21:56:41.0593 2984 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
21:56:41.0671 2984 TrkWks - ok
21:56:41.0703 2984 TrueSight (b3c9c35dc93563b8d19ad414edf2fc82) c:\windows\system32\drivers\TrueSight.sys
21:56:41.0703 2984 TrueSight ( UnsignedFile.Multi.Generic ) - warning
21:56:41.0703 2984 TrueSight - detected UnsignedFile.Multi.Generic (1)
21:56:41.0718 2984 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
21:56:41.0796 2984 Udfs - ok
21:56:41.0796 2984 ultra - ok
21:56:41.0828 2984 UMWdf (ab0a7ca90d9e3d6a193905dc1715ded0) C:\WINDOWS\system32\wdfmgr.exe
21:56:41.0859 2984 UMWdf - ok
21:56:41.0890 2984 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
21:56:41.0984 2984 Update - ok
21:56:42.0000 2984 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
21:56:42.0046 2984 upnphost - ok
21:56:42.0078 2984 upperdev (78b74af8727a28c128e164e9b53a5413) C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys
21:56:42.0140 2984 upperdev - ok
21:56:42.0156 2984 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
21:56:42.0250 2984 UPS - ok
21:56:42.0265 2984 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
21:56:42.0343 2984 usbccgp - ok
21:56:42.0359 2984 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
21:56:42.0437 2984 usbehci - ok
21:56:42.0453 2984 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
21:56:42.0531 2984 usbhub - ok
21:56:42.0546 2984 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
21:56:42.0625 2984 usbprint - ok
21:56:42.0625 2984 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
21:56:42.0703 2984 usbscan - ok
21:56:42.0718 2984 usbser (1c888b000c2f9492f4b15b5b6b84873e) C:\WINDOWS\system32\drivers\usbser.sys
21:56:42.0781 2984 usbser - ok
21:56:42.0796 2984 UsbserFilt (4f8fbc51a1c0a17310846b417a447f91) C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys
21:56:42.0828 2984 UsbserFilt - ok
21:56:42.0859 2984 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
21:56:42.0921 2984 usbstor - ok
21:56:42.0937 2984 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
21:56:43.0000 2984 usbuhci - ok
21:56:43.0000 2984 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
21:56:43.0078 2984 VgaSave - ok
21:56:43.0078 2984 ViaIde - ok
21:56:43.0093 2984 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
21:56:43.0187 2984 VolSnap - ok
21:56:43.0234 2984 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
21:56:43.0265 2984 VSS - ok
21:56:43.0296 2984 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
21:56:43.0375 2984 W32Time - ok
21:56:43.0375 2984 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
21:56:43.0437 2984 Wanarp - ok
21:56:43.0500 2984 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
21:56:43.0515 2984 Wdf01000 - ok
21:56:43.0515 2984 WDICA - ok
21:56:43.0546 2984 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
21:56:43.0625 2984 wdmaud - ok
21:56:43.0640 2984 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
21:56:43.0718 2984 WebClient - ok
21:56:43.0796 2984 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
21:56:43.0859 2984 winmgmt - ok
21:56:44.0000 2984 wlidsvc (5144ae67d60ec653f97ddf3feed29e77) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:56:44.0046 2984 wlidsvc - ok
21:56:44.0156 2984 WmdmPmSN (140ef97b64f560fd78643cae2cdad838) C:\WINDOWS\system32\mspmsnsv.dll
21:56:44.0203 2984 WmdmPmSN - ok
21:56:44.0265 2984 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
21:56:44.0312 2984 Wmi - ok
21:56:44.0359 2984 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\system32\wbem\wmiapsrv.exe
21:56:44.0437 2984 WmiApSrv - ok
21:56:44.0468 2984 WpdUsb (1385e5aa9c9821790d33a9563b8d2dd0) C:\WINDOWS\system32\Drivers\wpdusb.sys
21:56:44.0484 2984 WpdUsb - ok
21:56:44.0515 2984 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
21:56:44.0578 2984 WS2IFSL - ok
21:56:44.0609 2984 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
21:56:44.0687 2984 wscsvc - ok
21:56:44.0718 2984 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
21:56:44.0796 2984 wuauserv - ok
21:56:44.0843 2984 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
21:56:44.0937 2984 WZCSVC - ok
21:56:44.0968 2984 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
21:56:45.0078 2984 xmlprov - ok
21:56:45.0093 2984 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
21:56:45.0468 2984 \Device\Harddisk0\DR0 - ok
21:56:45.0468 2984 Boot (0x1200) (86c3c0bba67c355b06e7aa3dfbc147a5) \Device\Harddisk0\DR0\Partition0
21:56:45.0468 2984 \Device\Harddisk0\DR0\Partition0 - ok
21:56:45.0468 2984 Boot (0x1200) (7378cbfa393e0e3d4aabe21af80f2964) \Device\Harddisk0\DR0\Partition1
21:56:45.0484 2984 \Device\Harddisk0\DR0\Partition1 - ok
21:56:45.0484 2984 ============================================================
21:56:45.0484 2984 Scan finished
21:56:45.0484 2984 ============================================================
21:56:45.0609 2976 Detected object count: 9
21:56:45.0609 2976 Actual detected object count: 9
21:57:27.0968 2976 Adobe LM Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 Adobe LM Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 Bonjour Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 Bonjour Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 MarvinBus ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 MarvinBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 pcouffin ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 pcouffin ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 pfc ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 pfc ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 sptd ( LockedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 StarWindServiceAE ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:57:27.0968 2976 TrueSight ( UnsignedFile.Multi.Generic ) - skipped by user
21:57:27.0968 2976 TrueSight ( UnsignedFile.Multi.Generic ) - User select action: Skip
Re: virus nejde odstranit antivirom
ked mam pravdu povedat vobec netusim
to je vsetko alebo treba este nieco spravit?

Re: virus nejde odstranit antivirom
paci sa log a ide sa na av
Logfile of random's system information tool 1.06 (written by random/random)
Run by Monička at 2012-07-19 22:14:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 15 GB (10%) free of 150 GB
Total RAM: 2046 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:14:25, on 19.7.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
C:\Documents and Settings\Monička\Desktop\RSIT.exe
C:\Documents and Settings\Monička\Desktop\Monička.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (User 'Default user')
O4 - .DEFAULT Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe (User 'Default user')
O4 - .DEFAULT Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (User 'Default user')
O4 - .DEFAULT Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Monička\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{9BCBD26A-941D-4AB9-918F-18F696BD8308}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - FirebirdSQL Project - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - FirebirdSQL Project - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
--
End of file - 11342 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf00e119-21a3-4fd1-b178-3b8537e75c92}]
IeMonitorBho Class - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll [2011-07-26 109568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-10 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-06-12 958712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-09-11 13574144]
"nwiz"=nwiz.exe /install []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-09-11 86016]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-02-13 16857600]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2008-07-01 1447168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"NBJ"=C:\Program Files\Ahead\Nero BackItUp\NBJ.exe [2005-09-16 1961984]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2010-08-20 33120]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-06-27 1996200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TBPanel]
C:\Program Files\Vtune\TBPanel.exe [2008-09-05 2154496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2008-08-04 36352]
C:\Documents and Settings\Monička\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
RocketDock.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
TransBar.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
Yahoo! Widgets.lnk - C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2001-10-26 3584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDrives"=0
"NoDriveTypeAutoRun"=323
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:*:Enabled:Assassin's Creed Dx9"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:*:Enabled:Assassin's Creed Dx10"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:*:Enabled:Assassin's Creed Update"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\SpacialAudio\SAMBC\SAMBC.exe"="C:\Program Files\SpacialAudio\SAMBC\SAMBC.exe:*:Enabled:SAMBC"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Ares\Ares.exe"="C:\Program Files\Ares\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe:*:Enabled:Assassin's Creed Brotherhood"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe:*:Enabled:Assassin's Creed Brotherhood Multiplayer"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe:*:Enabled:Assassin's Creed Brotherhood Update"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe:*:Enabled:Assassin's Creed Brotherhood Uplay"
"C:\Program Files\Google\Google Earth\client\googleearth.exe"="C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"D:\MY DOKUMENTS\Programs\SweetImSetup.exe"="D:\MY DOKUMENTS\Programs\SweetImSetup.exe:*:Enabled:SweetIM Installer"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\WINDOWS\system32\spool\drivers\w32x86\3\E_DUPA20.EXE"="C:\WINDOWS\system32\spool\drivers\w32x86\3\E_DUPA20.EXE:*:Enabled:EPSON Driver Update"
"C:\Program Files\Codemasters\F1 2011\F1_2011.exe"="C:\Program Files\Codemasters\F1 2011\F1_2011.exe:*:Enabled:F1 2011"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe"="C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe:*:Enabled:LogMeIn Hamachi"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRSP.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRSP.exe:*:Enabled:Assassin's Creed Revelations"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRMP.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRMP.exe:*:Enabled:Assassin's Creed Revelations Multiplayer"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe:*:Enabled:Assassin's Creed Revelations Update"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
======List of files/folders created in the last 1 months======
2012-07-19 21:55:00 ----A---- C:\TDSSKiller.2.7.46.0_19.07.2012_21.55.00_log.txt
2012-07-18 15:33:38 ----A---- C:\WINDOWS\imsins.BAK
2012-07-18 14:19:03 ----D---- C:\rsit
2012-07-18 13:16:33 ----D---- C:\Documents and Settings\All Users\Application Data\CPA_VA
2012-07-18 13:12:08 ----D---- C:\Program Files\COMODO
2012-07-18 13:12:08 ----A---- C:\WINDOWS\system32\gdiplus.dll
2012-07-18 12:56:55 ----SHD---- C:\RECYCLER
2012-07-18 12:13:19 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2012-07-18 11:58:00 ----A---- C:\ComboFix.txt
2012-07-18 11:57:56 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-07-18 11:00:36 ----D---- C:\ComboFix
2012-07-11 17:20:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-07-11 17:20:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2718523$
2012-07-11 17:19:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-07-11 17:18:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-07-11 17:16:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
======List of files/folders modified in the last 1 months======
2012-07-19 22:14:07 ----D---- C:\WINDOWS\temp
2012-07-19 22:11:05 ----D---- C:\Program Files\Mozilla Firefox
2012-07-19 21:56:18 ----D---- C:\WINDOWS\system32\CatRoot2
2012-07-19 21:55:01 ----D---- C:\WINDOWS\system32\drivers
2012-07-19 14:55:27 ----D---- C:\Documents and Settings\Monička\Application Data\dvdcss
2012-07-19 14:06:44 ----D---- C:\Documents and Settings\Monička\Application Data\ICQ
2012-07-18 17:26:00 ----D---- C:\Documents and Settings\Monička\Application Data\Winamp
2012-07-18 15:38:45 ----D---- C:\WINDOWS
2012-07-18 15:38:15 ----D---- C:\WINDOWS\system32
2012-07-18 15:37:28 ----HD---- C:\WINDOWS\inf
2012-07-18 15:37:24 ----DC---- C:\WINDOWS\system32\dllcache
2012-07-18 15:37:10 ----D---- C:\Config.Msi
2012-07-18 15:37:08 ----SHD---- C:\WINDOWS\Installer
2012-07-18 15:36:55 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2012-07-18 15:36:40 ----A---- C:\WINDOWS\win.ini
2012-07-18 15:36:38 ----D---- C:\Program Files\Common Files\System
2012-07-18 15:33:45 ----D---- C:\WINDOWS\Debug
2012-07-18 15:33:43 ----A---- C:\WINDOWS\system32\MRT.exe
2012-07-18 15:26:19 ----SHD---- C:\WINDOWS\Temporary Internet Files
2012-07-18 15:13:57 ----A---- C:\WINDOWS\NeroDigital.ini
2012-07-18 14:56:37 ----SD---- C:\WINDOWS\Tasks
2012-07-18 13:47:20 ----D---- C:\Program Files\DontAngry!
2012-07-18 13:12:08 ----D---- C:\Program Files
2012-07-18 12:57:56 ----D---- C:\WINDOWS\SoftwareDistribution
2012-07-18 12:18:07 ----D---- C:\Program Files\FlashFXP 4
2012-07-18 12:13:28 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-07-18 11:58:31 ----D---- C:\Qoobox
2012-07-18 11:43:23 ----A---- C:\WINDOWS\system.ini
2012-07-18 11:25:13 ----D---- C:\WINDOWS\AppPatch
2012-07-18 11:25:11 ----D---- C:\Program Files\Common Files
2012-07-18 11:07:36 ----D---- C:\Documents and Settings\Monička\Application Data\Skype
2012-07-18 11:07:33 ----D---- C:\WINDOWS\Minidump
2012-07-18 10:52:18 ----D---- C:\WINDOWS\system32\CatRoot
2012-07-18 10:47:22 ----D---- C:\WINDOWS\system32\config
2012-07-18 10:46:03 ----D---- C:\WINDOWS\system32\wbem
2012-07-18 10:45:57 ----D---- C:\WINDOWS\Registration
2012-07-18 10:39:37 ----D---- C:\Documents and Settings\Monička\Application Data\GetRightToGo
2012-07-18 10:37:34 ----D---- C:\Documents and Settings
2012-07-17 22:48:24 ----D---- C:\WINDOWS\Prefetch
2012-07-14 19:03:10 ----D---- C:\WINDOWS\Logs
2012-07-12 13:20:57 ----D---- C:\Program Files\RapidShareManager
2012-07-11 17:20:07 ----HD---- C:\WINDOWS\$hf_mig$
2012-06-28 06:33:19 ----D---- C:\Program Files\LogMeIn Hamachi
2012-06-26 06:08:26 ----D---- C:\WINDOWS\Help
2012-06-25 18:30:42 ----D---- C:\WINDOWS\WinSxS
2012-06-25 18:29:58 ----D---- C:\WINDOWS\system32\DirectX
2012-06-25 18:29:24 ----RSD---- C:\WINDOWS\assembly
2012-06-25 18:17:23 ----D---- C:\Program Files\Ubisoft
2012-06-25 18:17:21 ----HD---- C:\Program Files\InstallShield Installation Information
2012-06-25 11:11:33 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2012-06-25 11:04:08 ----D---- C:\Documents and Settings\Monička\Application Data\Ubisoft
2012-06-25 11:02:34 ----D---- C:\Documents and Settings\All Users\Application Data\Ubisoft
2012-06-25 06:56:15 ----A---- C:\WINDOWS\BlendSettings.ini
2012-06-24 22:55:05 ----D---- C:\WINDOWS\security
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 easdrv;easdrv; C:\WINDOWS\system32\DRIVERS\easdrv.sys [2008-07-01 53256]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2008-07-01 34312]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;EAMON; C:\WINDOWS\system32\DRIVERS\eamon.sys [2008-07-01 39944]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-02-14 4676096]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-09-11 6128352]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-03-13 47360]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-11-11 9856]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-01-03 105856]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 afp80a82;afp80a82; C:\WINDOWS\system32\drivers\afp80a82.sys []
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\DOCUME~1\MONIKA~1\LOCALS~1\Temp\catchme.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 TrueSight;TrueSight; \??\c:\windows\system32\drivers\TrueSight.sys []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 ekrn;Eset Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2008-07-01 468224]
R2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe [2007-10-16 81920]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 1385896]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2008-06-10 222456]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-10 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-11 163908]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-04-16 75136]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe [2007-10-16 2711552]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-13 135664]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-06-23 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-18 250056]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;Eset HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2008-07-01 19200]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-06-24 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-13 135664]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by Monička at 2012-07-19 22:14:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 15 GB (10%) free of 150 GB
Total RAM: 2046 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:14:25, on 19.7.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
C:\Documents and Settings\Monička\Desktop\RSIT.exe
C:\Documents and Settings\Monička\Desktop\Monička.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (User 'Default user')
O4 - .DEFAULT Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe (User 'Default user')
O4 - .DEFAULT Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (User 'Default user')
O4 - .DEFAULT Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\Monička\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{9BCBD26A-941D-4AB9-918F-18F696BD8308}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - FirebirdSQL Project - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - FirebirdSQL Project - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
--
End of file - 11342 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf00e119-21a3-4fd1-b178-3b8537e75c92}]
IeMonitorBho Class - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll [2011-07-26 109568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-10 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-06-12 958712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-09-11 13574144]
"nwiz"=nwiz.exe /install []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-09-11 86016]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-02-13 16857600]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2008-07-01 1447168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"NBJ"=C:\Program Files\Ahead\Nero BackItUp\NBJ.exe [2005-09-16 1961984]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2010-08-20 33120]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-06-27 1996200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TBPanel]
C:\Program Files\Vtune\TBPanel.exe [2008-09-05 2154496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2008-08-04 36352]
C:\Documents and Settings\Monička\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
RocketDock.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
TransBar.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
Yahoo! Widgets.lnk - C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2001-10-26 3584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDrives"=0
"NoDriveTypeAutoRun"=323
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:*:Enabled:Assassin's Creed Dx9"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:*:Enabled:Assassin's Creed Dx10"
"C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe"="C:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:*:Enabled:Assassin's Creed Update"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\SpacialAudio\SAMBC\SAMBC.exe"="C:\Program Files\SpacialAudio\SAMBC\SAMBC.exe:*:Enabled:SAMBC"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Ares\Ares.exe"="C:\Program Files\Ares\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe:*:Enabled:Assassin's Creed Brotherhood"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe:*:Enabled:Assassin's Creed Brotherhood Multiplayer"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe:*:Enabled:Assassin's Creed Brotherhood Update"
"D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe"="D:\Program Files\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe:*:Enabled:Assassin's Creed Brotherhood Uplay"
"C:\Program Files\Google\Google Earth\client\googleearth.exe"="C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"D:\MY DOKUMENTS\Programs\SweetImSetup.exe"="D:\MY DOKUMENTS\Programs\SweetImSetup.exe:*:Enabled:SweetIM Installer"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\WINDOWS\system32\spool\drivers\w32x86\3\E_DUPA20.EXE"="C:\WINDOWS\system32\spool\drivers\w32x86\3\E_DUPA20.EXE:*:Enabled:EPSON Driver Update"
"C:\Program Files\Codemasters\F1 2011\F1_2011.exe"="C:\Program Files\Codemasters\F1 2011\F1_2011.exe:*:Enabled:F1 2011"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe"="C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe:*:Enabled:LogMeIn Hamachi"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRSP.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRSP.exe:*:Enabled:Assassin's Creed Revelations"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRMP.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\ACRMP.exe:*:Enabled:Assassin's Creed Revelations Multiplayer"
"C:\Program Files\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe"="C:\Program Files\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe:*:Enabled:Assassin's Creed Revelations Update"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"
======List of files/folders created in the last 1 months======
2012-07-19 21:55:00 ----A---- C:\TDSSKiller.2.7.46.0_19.07.2012_21.55.00_log.txt
2012-07-18 15:33:38 ----A---- C:\WINDOWS\imsins.BAK
2012-07-18 14:19:03 ----D---- C:\rsit
2012-07-18 13:16:33 ----D---- C:\Documents and Settings\All Users\Application Data\CPA_VA
2012-07-18 13:12:08 ----D---- C:\Program Files\COMODO
2012-07-18 13:12:08 ----A---- C:\WINDOWS\system32\gdiplus.dll
2012-07-18 12:56:55 ----SHD---- C:\RECYCLER
2012-07-18 12:13:19 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2012-07-18 11:58:00 ----A---- C:\ComboFix.txt
2012-07-18 11:57:56 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-07-18 11:00:36 ----D---- C:\ComboFix
2012-07-11 17:20:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-07-11 17:20:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2718523$
2012-07-11 17:19:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-07-11 17:18:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-07-11 17:16:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
======List of files/folders modified in the last 1 months======
2012-07-19 22:14:07 ----D---- C:\WINDOWS\temp
2012-07-19 22:11:05 ----D---- C:\Program Files\Mozilla Firefox
2012-07-19 21:56:18 ----D---- C:\WINDOWS\system32\CatRoot2
2012-07-19 21:55:01 ----D---- C:\WINDOWS\system32\drivers
2012-07-19 14:55:27 ----D---- C:\Documents and Settings\Monička\Application Data\dvdcss
2012-07-19 14:06:44 ----D---- C:\Documents and Settings\Monička\Application Data\ICQ
2012-07-18 17:26:00 ----D---- C:\Documents and Settings\Monička\Application Data\Winamp
2012-07-18 15:38:45 ----D---- C:\WINDOWS
2012-07-18 15:38:15 ----D---- C:\WINDOWS\system32
2012-07-18 15:37:28 ----HD---- C:\WINDOWS\inf
2012-07-18 15:37:24 ----DC---- C:\WINDOWS\system32\dllcache
2012-07-18 15:37:10 ----D---- C:\Config.Msi
2012-07-18 15:37:08 ----SHD---- C:\WINDOWS\Installer
2012-07-18 15:36:55 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2012-07-18 15:36:40 ----A---- C:\WINDOWS\win.ini
2012-07-18 15:36:38 ----D---- C:\Program Files\Common Files\System
2012-07-18 15:33:45 ----D---- C:\WINDOWS\Debug
2012-07-18 15:33:43 ----A---- C:\WINDOWS\system32\MRT.exe
2012-07-18 15:26:19 ----SHD---- C:\WINDOWS\Temporary Internet Files
2012-07-18 15:13:57 ----A---- C:\WINDOWS\NeroDigital.ini
2012-07-18 14:56:37 ----SD---- C:\WINDOWS\Tasks
2012-07-18 13:47:20 ----D---- C:\Program Files\DontAngry!
2012-07-18 13:12:08 ----D---- C:\Program Files
2012-07-18 12:57:56 ----D---- C:\WINDOWS\SoftwareDistribution
2012-07-18 12:18:07 ----D---- C:\Program Files\FlashFXP 4
2012-07-18 12:13:28 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-07-18 11:58:31 ----D---- C:\Qoobox
2012-07-18 11:43:23 ----A---- C:\WINDOWS\system.ini
2012-07-18 11:25:13 ----D---- C:\WINDOWS\AppPatch
2012-07-18 11:25:11 ----D---- C:\Program Files\Common Files
2012-07-18 11:07:36 ----D---- C:\Documents and Settings\Monička\Application Data\Skype
2012-07-18 11:07:33 ----D---- C:\WINDOWS\Minidump
2012-07-18 10:52:18 ----D---- C:\WINDOWS\system32\CatRoot
2012-07-18 10:47:22 ----D---- C:\WINDOWS\system32\config
2012-07-18 10:46:03 ----D---- C:\WINDOWS\system32\wbem
2012-07-18 10:45:57 ----D---- C:\WINDOWS\Registration
2012-07-18 10:39:37 ----D---- C:\Documents and Settings\Monička\Application Data\GetRightToGo
2012-07-18 10:37:34 ----D---- C:\Documents and Settings
2012-07-17 22:48:24 ----D---- C:\WINDOWS\Prefetch
2012-07-14 19:03:10 ----D---- C:\WINDOWS\Logs
2012-07-12 13:20:57 ----D---- C:\Program Files\RapidShareManager
2012-07-11 17:20:07 ----HD---- C:\WINDOWS\$hf_mig$
2012-06-28 06:33:19 ----D---- C:\Program Files\LogMeIn Hamachi
2012-06-26 06:08:26 ----D---- C:\WINDOWS\Help
2012-06-25 18:30:42 ----D---- C:\WINDOWS\WinSxS
2012-06-25 18:29:58 ----D---- C:\WINDOWS\system32\DirectX
2012-06-25 18:29:24 ----RSD---- C:\WINDOWS\assembly
2012-06-25 18:17:23 ----D---- C:\Program Files\Ubisoft
2012-06-25 18:17:21 ----HD---- C:\Program Files\InstallShield Installation Information
2012-06-25 11:11:33 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2012-06-25 11:04:08 ----D---- C:\Documents and Settings\Monička\Application Data\Ubisoft
2012-06-25 11:02:34 ----D---- C:\Documents and Settings\All Users\Application Data\Ubisoft
2012-06-25 06:56:15 ----A---- C:\WINDOWS\BlendSettings.ini
2012-06-24 22:55:05 ----D---- C:\WINDOWS\security
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 easdrv;easdrv; C:\WINDOWS\system32\DRIVERS\easdrv.sys [2008-07-01 53256]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2008-07-01 34312]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;EAMON; C:\WINDOWS\system32\DRIVERS\eamon.sys [2008-07-01 39944]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-02-14 4676096]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-09-11 6128352]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-03-13 47360]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-11-11 9856]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-01-03 105856]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 afp80a82;afp80a82; C:\WINDOWS\system32\drivers\afp80a82.sys []
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\DOCUME~1\MONIKA~1\LOCALS~1\Temp\catchme.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 TrueSight;TrueSight; \??\c:\windows\system32\drivers\TrueSight.sys []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 ekrn;Eset Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2008-07-01 468224]
R2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe [2007-10-16 81920]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-06-27 1385896]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2008-06-10 222456]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-10 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-11 163908]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-04-16 75136]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe [2007-10-16 2711552]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-13 135664]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-06-23 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-18 250056]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;Eset HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2008-07-01 19200]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-06-24 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-06-13 135664]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Re: virus nejde odstranit antivirom
C bez virusu najprv mi ukazalo sice jeden v tom priecinku co som si vytvoril ten mbrscan to co som raroval to som vymazal dal som znova kontrolu a je to v pohode teraz sa mi este D kontroluje ale vyzera ze to je oki aj d je ciste velmi pekne zatial dakujem uvidime zajtra este vysledok dam vedet
Re: virus nejde odstranit antivirom
este predsa len otazka mozem zmazat na c aj ten subor zaloha a obnova? a aj tiez vsetky tie logi?
Re: virus nejde odstranit antivirom
fu to som moc rad ze sa to podarilo spravit a som ti moc vdacny ano mas pravdu nakonieco to bolo lahke a rychle dakujem ti velmi pekne 

Re: virus nejde odstranit antivirom
a mozem sa este len predsa spytat ? neviem preco ale ked som odstranil tie softy co si mi povedal s tym softom co si mi poslal s mozillou sa mi stalo toto nezobrazuje mi ani bannery na strankach a ani avatari jednotlive nevies co s tym moze byt? 
