
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
PC od známého / preventivka
Moderátor: Moderátoři
Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
PC od známého / preventivka
Logfile of random's system information tool 1.09 (written by random/random)
Run by Roman & Eva at 2012-12-04 19:25:42
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 57 GB (72%) free of 80 GB
Total RAM: 1015 MB (60% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-06 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-06 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - C:\Program Files\FYTDL Toolbar\tbcore3.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{338B4DFE-2E2C-4338-9E41-E176D497299E} - FYTDL Toolbar - C:\Program Files\FYTDL Toolbar\tbcore3.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-01-11 577536]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-05-30 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2009-05-30 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
ObjectDockShellExt - {1984D045-52CF-49cd-DB77-08F378FEA4DB}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Vietcong\vietcong.exe"="C:\Vietcong\vietcong.exe:*:Disabled:vietcong"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\TopCD\Castle Strike\Castlestrike.exe"="C:\Program Files\TopCD\Castle Strike\Castlestrike.exe:*:Enabled:Castle Strike Engine"
"C:\Program Files\FlatOut\flatout.exe"="C:\Program Files\FlatOut\flatout.exe:*:Enabled:flatout"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe"="C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe:*:Enabled:Miro_Downloader"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"D:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="D:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Disabled:ET"
"C:\Program Files\Microsoft Games\Rise of Nations\rise.exe"="C:\Program Files\Microsoft Games\Rise of Nations\rise.exe:*:Enabled:Rise of Nations"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Winamp\winamp.exe"="D:\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.vorbis"=vorbis.acm
"VIDC.FPS1"=frapsvid.dll
======List of files/folders created in the last 1 month======
2012-12-04 19:25:42 ----D---- C:\rsit
2012-12-04 19:25:42 ----D---- C:\Program Files\trend micro
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusd.dll
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusb.dll
2012-12-04 18:38:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Skype
2012-12-04 18:04:13 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Malwarebytes
2012-12-04 17:36:45 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\uTorrent
2012-12-04 17:09:31 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-04 16:49:52 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-01 23:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-01 23:53:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-01 23:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-01 23:52:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-01 23:52:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-01 23:52:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-01 23:52:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-01 23:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-01 23:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-01 23:47:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-01 23:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-01 23:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-01 23:46:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-01 23:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-01 23:46:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-01 23:40:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-01 23:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-01 23:36:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-01 23:36:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-01 23:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-01 23:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-01 23:36:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-01 23:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-01 23:35:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-01 23:35:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-01 23:35:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-01 23:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-01 23:35:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-01 23:35:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-01 23:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-01 23:34:58 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-01 23:27:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-01 23:23:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-01 23:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-01 23:22:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-01 23:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-01 23:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-01 23:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-01 23:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-01 23:18:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-01 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-01 23:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-01 23:17:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-01 23:17:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-01 23:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-01 23:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-01 23:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-01 23:15:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-01 23:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2756822$
2012-12-01 23:15:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-01 23:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-01 23:14:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-01 23:14:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-01 23:13:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-01 23:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-01 23:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-12-01 23:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-01 23:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-01 23:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-01 23:05:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-12-01 23:05:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-01 23:04:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-01 23:04:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-01 23:04:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-01 23:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-01 23:04:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-01 23:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-01 23:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-01 23:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-01 23:03:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-01 22:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-01 22:51:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-01 22:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-01 22:51:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-01 22:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-01 22:51:00 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-01 22:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-01 22:50:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-01 22:50:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-01 22:50:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-01 22:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-01 22:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files\Skype
2012-12-01 22:50:03 ----RD---- C:\Program Files\Skype
2012-12-01 22:49:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-01 22:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2761226$
2012-12-01 22:45:57 ----D---- C:\WINDOWS\SxsCaPendDel
2012-12-01 22:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-01 22:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-01 22:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-01 22:41:53 ----D---- C:\WINDOWS\ie8updates
2012-12-01 22:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-01 22:41:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-01 22:41:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712_0$
2012-12-01 22:41:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-01 22:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-01 22:41:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-01 22:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-01 22:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-01 22:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-01 22:40:50 ----A---- C:\WINDOWS\imsins.BAK
2012-12-01 22:40:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-01 21:32:32 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-01 21:25:10 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-01 21:15:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-12-01 21:15:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-11-18 21:01:30 ----D---- C:\Zalohy
======List of files/folders modified in the last 1 month======
2012-12-04 19:25:42 ----RD---- C:\Program Files
2012-12-04 19:25:40 ----D---- C:\WINDOWS\Temp
2012-12-04 19:08:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-12-04 18:59:18 ----D---- C:\WINDOWS\system32
2012-12-04 18:58:30 ----SHD---- C:\WINDOWS\Installer
2012-12-04 18:58:30 ----SD---- C:\WINDOWS\Tasks
2012-12-04 18:49:51 ----D---- C:\WINDOWS\system32\CatRoot2
2012-12-04 18:47:29 ----D---- C:\Program Files\Google
2012-12-04 18:38:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2012-12-04 18:36:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-12-04 18:32:30 ----D---- C:\WINDOWS\system32\drivers
2012-12-04 17:53:07 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-04 17:53:07 ----D---- C:\Documents and Settings
2012-12-04 17:45:48 ----D---- C:\WINDOWS
2012-12-04 17:37:09 ----D---- C:\WINDOWS\Help
2012-12-04 17:37:09 ----D---- C:\Program Files\Microsoft ActiveSync
2012-12-04 17:34:03 ----HD---- C:\WINDOWS\inf
2012-12-04 17:25:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2012-12-02 20:54:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-12-02 20:52:31 ----D---- C:\WINDOWS\AppPatch
2012-12-01 23:54:20 ----RSD---- C:\WINDOWS\assembly
2012-12-01 23:54:03 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-01 23:53:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-12-01 23:53:33 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-01 23:52:35 ----D---- C:\WINDOWS\WinSxS
2012-12-01 23:47:55 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-01 23:22:16 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-01 23:15:33 ----D---- C:\Program Files\Internet Explorer
2012-12-01 23:13:16 ----D---- C:\Program Files\Windows Desktop Search
2012-12-01 22:59:09 ----RSD---- C:\WINDOWS\Fonts
2012-12-01 22:58:29 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-12-01 22:58:21 ----D---- C:\Program Files\Microsoft Works
2012-12-01 22:53:51 ----A---- C:\WINDOWS\win.ini
2012-12-01 22:53:50 ----D---- C:\Program Files\Common Files\System
2012-12-01 22:51:11 ----D---- C:\Program Files\Outlook Express
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files
2012-12-01 22:43:14 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-12-01 22:42:26 ----D---- C:\Program Files\Microsoft Silverlight
2012-12-01 21:05:12 ----D---- C:\WINDOWS\Prefetch
2012-11-20 18:51:26 ----SD---- C:\Documents and Settings\Roman & Eva\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 BIOS;BIOS; \??\C:\WINDOWS\system32\drivers\BIOS.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-10-09 232512]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 rspndr;Odpovídající zařízení zjišťování topologie linkové vrstvy; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-05-29 62848]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-01-27 3845824]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-29 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-29 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-29 21568]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-22 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-05-30 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-05-30 82944]
S4 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2008-09-29 133632]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-06 153376]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2009-05-30 439808]
-----------------EOF-----------------
Run by Roman & Eva at 2012-12-04 19:25:42
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 57 GB (72%) free of 80 GB
Total RAM: 1015 MB (60% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-06 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-06 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - C:\Program Files\FYTDL Toolbar\tbcore3.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{338B4DFE-2E2C-4338-9E41-E176D497299E} - FYTDL Toolbar - C:\Program Files\FYTDL Toolbar\tbcore3.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-01-11 577536]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-05-30 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2009-05-30 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
ObjectDockShellExt - {1984D045-52CF-49cd-DB77-08F378FEA4DB}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Vietcong\vietcong.exe"="C:\Vietcong\vietcong.exe:*:Disabled:vietcong"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\TopCD\Castle Strike\Castlestrike.exe"="C:\Program Files\TopCD\Castle Strike\Castlestrike.exe:*:Enabled:Castle Strike Engine"
"C:\Program Files\FlatOut\flatout.exe"="C:\Program Files\FlatOut\flatout.exe:*:Enabled:flatout"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe"="C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe:*:Enabled:Miro_Downloader"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"D:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="D:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Disabled:ET"
"C:\Program Files\Microsoft Games\Rise of Nations\rise.exe"="C:\Program Files\Microsoft Games\Rise of Nations\rise.exe:*:Enabled:Rise of Nations"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Winamp\winamp.exe"="D:\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.vorbis"=vorbis.acm
"VIDC.FPS1"=frapsvid.dll
======List of files/folders created in the last 1 month======
2012-12-04 19:25:42 ----D---- C:\rsit
2012-12-04 19:25:42 ----D---- C:\Program Files\trend micro
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusd.dll
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusb.dll
2012-12-04 18:38:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Skype
2012-12-04 18:04:13 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Malwarebytes
2012-12-04 17:36:45 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\uTorrent
2012-12-04 17:09:31 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-04 16:49:52 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-01 23:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-01 23:53:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-01 23:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-01 23:52:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-01 23:52:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-01 23:52:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-01 23:52:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-01 23:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-01 23:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-01 23:47:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-01 23:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-01 23:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-01 23:46:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-01 23:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-01 23:46:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-01 23:40:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-01 23:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-01 23:36:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-01 23:36:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-01 23:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-01 23:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-01 23:36:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-01 23:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-01 23:35:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-01 23:35:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-01 23:35:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-01 23:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-01 23:35:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-01 23:35:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-01 23:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-01 23:34:58 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-01 23:27:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-01 23:23:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-01 23:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-01 23:22:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-01 23:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-01 23:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-01 23:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-01 23:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-01 23:18:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-01 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-01 23:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-01 23:17:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-01 23:17:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-01 23:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-01 23:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-01 23:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-01 23:15:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-01 23:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2756822$
2012-12-01 23:15:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-01 23:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-01 23:14:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-01 23:14:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-01 23:13:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-01 23:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-01 23:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-12-01 23:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-01 23:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-01 23:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-01 23:05:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-12-01 23:05:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-01 23:04:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-01 23:04:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-01 23:04:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-01 23:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-01 23:04:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-01 23:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-01 23:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-01 23:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-01 23:03:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-01 22:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-01 22:51:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-01 22:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-01 22:51:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-01 22:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-01 22:51:00 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-01 22:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-01 22:50:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-01 22:50:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-01 22:50:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-01 22:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-01 22:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files\Skype
2012-12-01 22:50:03 ----RD---- C:\Program Files\Skype
2012-12-01 22:49:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-01 22:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2761226$
2012-12-01 22:45:57 ----D---- C:\WINDOWS\SxsCaPendDel
2012-12-01 22:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-01 22:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-01 22:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-01 22:41:53 ----D---- C:\WINDOWS\ie8updates
2012-12-01 22:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-01 22:41:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-01 22:41:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712_0$
2012-12-01 22:41:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-01 22:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-01 22:41:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-01 22:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-01 22:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-01 22:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-01 22:40:50 ----A---- C:\WINDOWS\imsins.BAK
2012-12-01 22:40:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-01 21:32:32 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-01 21:25:10 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-01 21:15:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-12-01 21:15:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2012-11-18 21:01:30 ----D---- C:\Zalohy
======List of files/folders modified in the last 1 month======
2012-12-04 19:25:42 ----RD---- C:\Program Files
2012-12-04 19:25:40 ----D---- C:\WINDOWS\Temp
2012-12-04 19:08:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-12-04 18:59:18 ----D---- C:\WINDOWS\system32
2012-12-04 18:58:30 ----SHD---- C:\WINDOWS\Installer
2012-12-04 18:58:30 ----SD---- C:\WINDOWS\Tasks
2012-12-04 18:49:51 ----D---- C:\WINDOWS\system32\CatRoot2
2012-12-04 18:47:29 ----D---- C:\Program Files\Google
2012-12-04 18:38:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2012-12-04 18:36:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-12-04 18:32:30 ----D---- C:\WINDOWS\system32\drivers
2012-12-04 17:53:07 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-04 17:53:07 ----D---- C:\Documents and Settings
2012-12-04 17:45:48 ----D---- C:\WINDOWS
2012-12-04 17:37:09 ----D---- C:\WINDOWS\Help
2012-12-04 17:37:09 ----D---- C:\Program Files\Microsoft ActiveSync
2012-12-04 17:34:03 ----HD---- C:\WINDOWS\inf
2012-12-04 17:25:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2012-12-02 20:54:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-12-02 20:52:31 ----D---- C:\WINDOWS\AppPatch
2012-12-01 23:54:20 ----RSD---- C:\WINDOWS\assembly
2012-12-01 23:54:03 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-01 23:53:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-12-01 23:53:33 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-01 23:52:35 ----D---- C:\WINDOWS\WinSxS
2012-12-01 23:47:55 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-01 23:22:16 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-01 23:15:33 ----D---- C:\Program Files\Internet Explorer
2012-12-01 23:13:16 ----D---- C:\Program Files\Windows Desktop Search
2012-12-01 22:59:09 ----RSD---- C:\WINDOWS\Fonts
2012-12-01 22:58:29 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-12-01 22:58:21 ----D---- C:\Program Files\Microsoft Works
2012-12-01 22:53:51 ----A---- C:\WINDOWS\win.ini
2012-12-01 22:53:50 ----D---- C:\Program Files\Common Files\System
2012-12-01 22:51:11 ----D---- C:\Program Files\Outlook Express
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files
2012-12-01 22:43:14 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-12-01 22:42:26 ----D---- C:\Program Files\Microsoft Silverlight
2012-12-01 21:05:12 ----D---- C:\WINDOWS\Prefetch
2012-11-20 18:51:26 ----SD---- C:\Documents and Settings\Roman & Eva\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R1 BIOS;BIOS; \??\C:\WINDOWS\system32\drivers\BIOS.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-10-09 232512]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 rspndr;Odpovídající zařízení zjišťování topologie linkové vrstvy; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-05-29 62848]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-01-27 3845824]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-29 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-29 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-29 21568]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-22 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-05-30 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-05-30 82944]
S4 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2008-09-29 133632]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-06 153376]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2009-05-30 439808]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119399
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: PC od známého / preventivka
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte na Search
Proběhne skenováni a pak se objeví log, který sem vložte.
Uložte na plochu
Ukončete všechny programy
Klikněte na Search
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: PC od známého / preventivka
# AdwCleaner v2.011 - Logfile created 12/04/2012 at 21:00:24
# Updated 02/12/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Roman & Eva - FAMILLY-1E87963
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Roman & Eva\Plocha\adwcleaner.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
Folder Found : C:\Documents and Settings\All Users\Data aplikací\InstallMate
Folder Found : C:\Documents and Settings\All Users\Data aplikací\Premium
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\PriceGong
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\Search Settings
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\Toolbar4
***** [Registry] *****
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKCU\Software\PriceGong
Key Found : HKCU\Software\Search Settings
Key Found : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Found : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Found : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Found : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Found : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Found : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar.1
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009.3
Key Found : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Found : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Found : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2790392
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Found : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Found : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A81A974F-8A22-43E6-9243-5198FF758DA1}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKLM\Software\Minibar
Key Found : HKU\S-1-5-21-861567501-57989841-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?st=1&barid={FE11D449-FF14-11E0-8A87-00E04CFB9292}
-\\ Opera v11.52.1100.0
File : C:\Documents and Settings\Roman & Eva\Data aplikací\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [8466 octets] - [04/12/2012 21:00:24]
########## EOF - C:\AdwCleaner[R1].txt - [8526 octets] ##########
doufám že už toho nebude hodně
# Updated 02/12/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Roman & Eva - FAMILLY-1E87963
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Roman & Eva\Plocha\adwcleaner.exe
# Option [Search]
***** [Services] *****
***** [Files / Folders] *****
Folder Found : C:\Documents and Settings\All Users\Data aplikací\InstallMate
Folder Found : C:\Documents and Settings\All Users\Data aplikací\Premium
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\PriceGong
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\Search Settings
Folder Found : C:\Documents and Settings\Roman & Eva\Data aplikací\Toolbar4
***** [Registry] *****
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKCU\Software\PriceGong
Key Found : HKCU\Software\Search Settings
Key Found : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Found : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Found : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Found : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Found : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Found : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Found : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar.1
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009
Key Found : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009.3
Key Found : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Found : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Found : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Found : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Found : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2790392
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Found : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Found : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A81A974F-8A22-43E6-9243-5198FF758DA1}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Found : HKLM\Software\Minibar
Key Found : HKU\S-1-5-21-861567501-57989841-1801674531-1005\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?st=1&barid={FE11D449-FF14-11E0-8A87-00E04CFB9292}
-\\ Opera v11.52.1100.0
File : C:\Documents and Settings\Roman & Eva\Data aplikací\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [8466 octets] - [04/12/2012 21:00:24]
########## EOF - C:\AdwCleaner[R1].txt - [8526 octets] ##########
doufám že už toho nebude hodně

- Rudy
- Site Admin
- Příspěvky: 119399
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: PC od známého / preventivka
Spusťte znovu ADWCleaner a klikněte na >Delete<. Vložte nový log.
Uvidíme, co tam zbude po mazání.
Uvidíme, co tam zbude po mazání.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: PC od známého / preventivka
# AdwCleaner v2.011 - Logfile created 12/04/2012 at 22:59:11
# Updated 02/12/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Roman & Eva - FAMILLY-1E87963
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Roman & Eva\Plocha\adwcleaner.exe
# Option [Delete]
u
***** [Files / Folders] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\InstallMate
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Premium
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\PriceGong
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\Search Settings
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\Toolbar4
***** [Registry] *****
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\PriceGong
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Deleted : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar.1
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009.3
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2790392
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Deleted : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Deleted : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A81A974F-8A22-43E6-9243-5198FF758DA1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKLM\Software\Minibar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?st=1&barid={FE11D449-FF14-11E0-8A87-00E04CFB9292} --> hxxp://www.google.com
-\\ Opera v11.52.1100.0
File : C:\Documents and Settings\Roman & Eva\Data aplikací\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [8595 octets] - [04/12/2012 21:00:24]
AdwCleaner[R2].txt - [8655 octets] - [04/12/2012 22:58:45]
AdwCleaner[S3].txt - [8661 octets] - [04/12/2012 22:59:11]
########## EOF - C:\AdwCleaner[S3].txt - [8721 octets] ##########
# Updated 02/12/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Roman & Eva - FAMILLY-1E87963
# Boot Mode : Normal
# Running from : C:\Documents and Settings\Roman & Eva\Plocha\adwcleaner.exe
# Option [Delete]
u
***** [Files / Folders] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\InstallMate
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\Premium
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\PriceGong
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\Search Settings
Folder Deleted : C:\Documents and Settings\Roman & Eva\Data aplikací\Toolbar4
***** [Registry] *****
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F3FEE66E-E034-436A-86E4-9690573BEE8A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\PriceGong
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Deleted : HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.IEToolbar.1
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009
Key Deleted : HKLM\SOFTWARE\Classes\SMTTB2009.SMTTB2009.3
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Deleted : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Deleted : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2790392
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.SMTTB2009.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Deleted : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Deleted : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A7BC02AF-1128-4A31-BCF8-1A3EE803D3B3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A81A974F-8A22-43E6-9243-5198FF758DA1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKLM\Software\Minibar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{338B4DFE-2E2C-4338-9E41-E176D497299E}]
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com/?st=1&barid={FE11D449-FF14-11E0-8A87-00E04CFB9292} --> hxxp://www.google.com
-\\ Opera v11.52.1100.0
File : C:\Documents and Settings\Roman & Eva\Data aplikací\Opera\Opera\operaprefs.ini
[OK] File is clean.
*************************
AdwCleaner[R1].txt - [8595 octets] - [04/12/2012 21:00:24]
AdwCleaner[R2].txt - [8655 octets] - [04/12/2012 22:58:45]
AdwCleaner[S3].txt - [8661 octets] - [04/12/2012 22:59:11]
########## EOF - C:\AdwCleaner[S3].txt - [8721 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119399
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: PC od známého / preventivka
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: PC od známého / preventivka
Logfile of random's system information tool 1.09 (written by random/random)
Run by Roman & Eva at 2012-12-06 02:02:47
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 59 GB (74%) free of 80 GB
Total RAM: 1015 MB (67% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\avast! Emergency Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-06 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-06 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-01-11 577536]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-05-30 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2009-05-30 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
ObjectDockShellExt - {1984D045-52CF-49cd-DB77-08F378FEA4DB}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Vietcong\vietcong.exe"="C:\Vietcong\vietcong.exe:*:Disabled:vietcong"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\TopCD\Castle Strike\Castlestrike.exe"="C:\Program Files\TopCD\Castle Strike\Castlestrike.exe:*:Enabled:Castle Strike Engine"
"C:\Program Files\FlatOut\flatout.exe"="C:\Program Files\FlatOut\flatout.exe:*:Enabled:flatout"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe"="C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe:*:Enabled:Miro_Downloader"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"D:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="D:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Disabled:ET"
"C:\Program Files\Microsoft Games\Rise of Nations\rise.exe"="C:\Program Files\Microsoft Games\Rise of Nations\rise.exe:*:Enabled:Rise of Nations"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Winamp\winamp.exe"="D:\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.vorbis"=vorbis.acm
"VIDC.FPS1"=frapsvid.dll
======List of files/folders created in the last 1 month======
2012-12-06 02:02:47 ----D---- C:\rsit
2012-12-06 02:02:47 ----D---- C:\Program Files\trend micro
2012-12-05 02:36:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Windows Search
2012-12-05 02:22:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-12-05 02:22:38 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2012-12-05 02:11:59 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Ashampoo
2012-12-04 22:59:11 ----A---- C:\AdwCleaner[S3].txt
2012-12-04 22:58:45 ----A---- C:\AdwCleaner[R2].txt
2012-12-04 21:00:24 ----A---- C:\AdwCleaner[R1].txt
2012-12-04 19:27:43 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2012-12-04 19:27:43 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2012-12-04 19:27:41 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2012-12-04 19:27:40 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2012-12-04 19:27:39 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2012-12-04 19:27:39 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2012-12-04 19:27:38 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2012-12-04 19:27:37 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2012-12-04 19:27:07 ----A---- C:\WINDOWS\avastSS.scr
2012-12-04 19:27:06 ----A---- C:\WINDOWS\system32\aswBoot.exe
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusd.dll
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusb.dll
2012-12-04 18:38:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Skype
2012-12-04 18:04:13 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Malwarebytes
2012-12-04 17:36:45 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\uTorrent
2012-12-04 17:09:31 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-04 16:49:52 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-01 23:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-01 23:53:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-01 23:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-01 23:52:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-01 23:52:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-01 23:52:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-01 23:52:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-01 23:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-01 23:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-01 23:47:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-01 23:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-01 23:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-01 23:46:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-01 23:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-01 23:46:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-01 23:40:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-01 23:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-01 23:36:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-01 23:36:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-01 23:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-01 23:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-01 23:36:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-01 23:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-01 23:35:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-01 23:35:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-01 23:35:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-01 23:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-01 23:35:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-01 23:35:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-01 23:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-01 23:34:58 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-01 23:27:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-01 23:23:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-01 23:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-01 23:22:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-01 23:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-01 23:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-01 23:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-01 23:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-01 23:18:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-01 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-01 23:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-01 23:17:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-01 23:17:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-01 23:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-01 23:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-01 23:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-01 23:15:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-01 23:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2756822$
2012-12-01 23:15:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-01 23:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-01 23:14:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-01 23:14:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-01 23:13:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-01 23:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-01 23:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-12-01 23:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-01 23:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-01 23:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-01 23:05:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-12-01 23:05:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-01 23:04:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-01 23:04:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-01 23:04:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-01 23:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-01 23:04:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-01 23:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-01 23:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-01 23:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-01 23:03:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-01 22:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-01 22:51:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-01 22:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-01 22:51:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-01 22:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-01 22:51:00 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-01 22:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-01 22:50:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-01 22:50:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-01 22:50:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-01 22:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-01 22:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files\Skype
2012-12-01 22:50:03 ----RD---- C:\Program Files\Skype
2012-12-01 22:49:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-01 22:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2761226$
2012-12-01 22:45:57 ----D---- C:\WINDOWS\SxsCaPendDel
2012-12-01 22:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-01 22:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-01 22:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-01 22:41:53 ----D---- C:\WINDOWS\ie8updates
2012-12-01 22:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-01 22:41:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-01 22:41:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712_0$
2012-12-01 22:41:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-01 22:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-01 22:41:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-01 22:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-01 22:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-01 22:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-01 22:40:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-01 21:32:32 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-01 21:25:10 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-01 21:15:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-12-01 21:15:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
======List of files/folders modified in the last 1 month======
2012-12-06 02:02:47 ----RD---- C:\Program Files
2012-12-06 02:01:37 ----D---- C:\WINDOWS\Temp
2012-12-05 15:11:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-12-05 14:06:09 ----D---- C:\WINDOWS\Prefetch
2012-12-05 12:14:56 ----SD---- C:\Documents and Settings\Roman & Eva\Data aplikací\Microsoft
2012-12-05 12:14:32 ----D---- C:\WINDOWS\system32\drivers
2012-12-05 11:15:25 ----D---- C:\WINDOWS\system32
2012-12-05 11:15:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-12-05 11:11:34 ----D---- C:\WINDOWS
2012-12-05 02:50:39 ----D---- C:\WINDOWS\system32\CatRoot2
2012-12-05 02:48:10 ----D---- C:\Program Files\Opera
2012-12-05 02:24:47 ----D---- C:\Program Files\CCleaner
2012-12-05 02:15:16 ----SHD---- C:\System Volume Information
2012-12-05 02:15:16 ----D---- C:\WINDOWS\system32\Restore
2012-12-05 02:10:14 ----RD---- C:\Program Files\AVAST Software
2012-12-05 01:40:48 ----SHD---- C:\WINDOWS\Installer
2012-12-05 00:14:20 ----RSD---- C:\WINDOWS\assembly
2012-12-05 00:14:20 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-04 23:25:40 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\DAEMON Tools Lite
2012-12-04 21:04:23 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-12-04 21:04:23 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-12-04 19:50:47 ----D---- C:\Documents and Settings
2012-12-04 19:27:39 ----SD---- C:\WINDOWS\Tasks
2012-12-04 19:27:30 ----D---- C:\WINDOWS\WinSxS
2012-12-04 19:26:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2012-12-04 18:47:29 ----D---- C:\Program Files\Google
2012-12-04 18:38:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2012-12-04 17:53:07 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-04 17:37:09 ----D---- C:\WINDOWS\Help
2012-12-04 17:37:09 ----D---- C:\Program Files\Microsoft ActiveSync
2012-12-04 17:34:03 ----HD---- C:\WINDOWS\inf
2012-12-02 20:54:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-12-02 20:52:31 ----D---- C:\WINDOWS\AppPatch
2012-12-01 23:54:03 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-01 23:53:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-12-01 23:47:55 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-01 23:22:16 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-01 23:15:33 ----D---- C:\Program Files\Internet Explorer
2012-12-01 23:13:16 ----D---- C:\Program Files\Windows Desktop Search
2012-12-01 22:59:09 ----RSD---- C:\WINDOWS\Fonts
2012-12-01 22:58:29 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-12-01 22:58:21 ----D---- C:\Program Files\Microsoft Works
2012-12-01 22:53:51 ----A---- C:\WINDOWS\win.ini
2012-12-01 22:53:50 ----D---- C:\Program Files\Common Files\System
2012-12-01 22:51:11 ----D---- C:\Program Files\Outlook Express
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files
2012-12-01 22:42:26 ----D---- C:\Program Files\Microsoft Silverlight
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-05-30 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2012-10-30 25256]
R1 AswRdr;aswRdr; C:\WINDOWS\system32\drivers\AswRdr.sys [2012-10-30 35928]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2012-10-30 738504]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2012-10-30 361032]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2012-10-30 54232]
R1 BIOS;BIOS; \??\C:\WINDOWS\system32\drivers\BIOS.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-10-09 232512]
R1 intelppm;Ĝadiè procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2012-10-30 21256]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2012-10-30 97608]
R2 rspndr;Odpovídající zaĝízení zjiování topologie linkové vrstvy; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-05-29 62848]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-01-27 3845824]
R3 HidUsb;Ovladaè tĝídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 mouhid;Ovladaè myi standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 USBSTOR;Ovladaè velkokapacitního pamìového zaĝízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladaè Microsoft univerzálního hostitelského ĝadièe USB od spoleènosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-29 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-29 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-29 21568]
S3 usbccgp;Obecnŭ nadĝazenŭ ovladaè Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-22 32384]
S3 usbprint;Tĝída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladaè skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-05-30 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-05-30 82944]
S4 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2008-09-29 133632]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-06 153376]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Sluba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Sluba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Sluba sdílení portù Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2009-05-30 439808]
-----------------EOF-----------------
Run by Roman & Eva at 2012-12-06 02:02:47
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 59 GB (74%) free of 80 GB
Total RAM: 1015 MB (67% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\avast! Emergency Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-06 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-06 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-10-30 1227736]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-01-11 577536]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-10-30 4297136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-05-30 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2009-05-30 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
ObjectDockShellExt - {1984D045-52CF-49cd-DB77-08F378FEA4DB}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Vietcong\vietcong.exe"="C:\Vietcong\vietcong.exe:*:Disabled:vietcong"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\TopCD\Castle Strike\Castlestrike.exe"="C:\Program Files\TopCD\Castle Strike\Castlestrike.exe:*:Enabled:Castle Strike Engine"
"C:\Program Files\FlatOut\flatout.exe"="C:\Program Files\FlatOut\flatout.exe:*:Enabled:flatout"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe"="C:\Program Files\Participatory Culture Foundation\Miro\Miro_Downloader.exe:*:Enabled:Miro_Downloader"
"C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"D:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="D:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Disabled:ET"
"C:\Program Files\Microsoft Games\Rise of Nations\rise.exe"="C:\Program Files\Microsoft Games\Rise of Nations\rise.exe:*:Enabled:Rise of Nations"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Winamp\winamp.exe"="D:\Winamp\winamp.exe:*:Enabled:Winamp"
"D:\Counter-Strike Source\hl2.exe"="D:\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe"="C:\Documents and Settings\Pepa\Plocha\Hry\Counter-Strike 1.6\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm
"msacm.vorbis"=vorbis.acm
"VIDC.FPS1"=frapsvid.dll
======List of files/folders created in the last 1 month======
2012-12-06 02:02:47 ----D---- C:\rsit
2012-12-06 02:02:47 ----D---- C:\Program Files\trend micro
2012-12-05 02:36:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Windows Search
2012-12-05 02:22:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2012-12-05 02:22:38 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2012-12-05 02:11:59 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Ashampoo
2012-12-04 22:59:11 ----A---- C:\AdwCleaner[S3].txt
2012-12-04 22:58:45 ----A---- C:\AdwCleaner[R2].txt
2012-12-04 21:00:24 ----A---- C:\AdwCleaner[R1].txt
2012-12-04 19:27:43 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2012-12-04 19:27:43 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2012-12-04 19:27:41 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2012-12-04 19:27:40 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2012-12-04 19:27:39 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2012-12-04 19:27:39 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2012-12-04 19:27:38 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2012-12-04 19:27:37 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2012-12-04 19:27:07 ----A---- C:\WINDOWS\avastSS.scr
2012-12-04 19:27:06 ----A---- C:\WINDOWS\system32\aswBoot.exe
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusd.dll
2012-12-04 18:59:17 ----A---- C:\WINDOWS\system32\ptpusb.dll
2012-12-04 18:38:28 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Skype
2012-12-04 18:04:13 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\Malwarebytes
2012-12-04 17:36:45 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\uTorrent
2012-12-04 17:09:31 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2012-12-04 16:49:52 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2012-12-01 23:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-12-01 23:53:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2712808$
2012-12-01 23:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-12-01 23:52:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-12-01 23:52:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2659262$
2012-12-01 23:52:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-12-01 23:52:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-12-01 23:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-12-01 23:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-12-01 23:47:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-12-01 23:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-12-01 23:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-12-01 23:46:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-12-01 23:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2691442$
2012-12-01 23:46:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-12-01 23:40:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-12-01 23:39:54 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-12-01 23:36:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-12-01 23:36:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-12-01 23:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-12-01 23:36:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-12-01 23:36:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2655992$
2012-12-01 23:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2724197$
2012-12-01 23:35:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-12-01 23:35:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-12-01 23:35:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-12-01 23:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-12-01 23:35:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-12-01 23:35:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2736233$
2012-12-01 23:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2686509$
2012-12-01 23:34:58 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-12-01 23:27:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-12-01 23:23:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-12-01 23:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-12-01 23:22:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-12-01 23:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-12-01 23:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-12-01 23:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-12-01 23:19:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-12-01 23:18:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-12-01 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-12-01 23:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-12-01 23:17:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-12-01 23:17:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-12-01 23:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-12-01 23:16:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-12-01 23:16:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-12-01 23:15:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2719985$
2012-12-01 23:15:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2756822$
2012-12-01 23:15:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-12-01 23:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-12-01 23:14:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-12-01 23:14:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-12-01 23:13:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-12-01 23:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-12-01 23:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-12-01 23:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-12-01 23:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-12-01 23:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-12-01 23:05:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-12-01 23:05:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-12-01 23:04:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-12-01 23:04:46 ----A---- C:\WINDOWS\system32\wmpns.dll
2012-12-01 23:04:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-12-01 23:04:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-12-01 23:04:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-12-01 23:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-12-01 23:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2749655$
2012-12-01 23:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-12-01 23:03:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-12-01 22:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-12-01 22:51:36 ----HDC---- C:\WINDOWS\$NtUninstallKB2698365$
2012-12-01 22:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-12-01 22:51:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2705219-v2$
2012-12-01 22:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-12-01 22:51:00 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-12-01 22:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2727528$
2012-12-01 22:50:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-12-01 22:50:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-12-01 22:50:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2723135-v2$
2012-12-01 22:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-12-01 22:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files\Skype
2012-12-01 22:50:03 ----RD---- C:\Program Files\Skype
2012-12-01 22:49:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2661254-v2$
2012-12-01 22:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2761226$
2012-12-01 22:45:57 ----D---- C:\WINDOWS\SxsCaPendDel
2012-12-01 22:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-12-01 22:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2676562$
2012-12-01 22:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-12-01 22:41:53 ----D---- C:\WINDOWS\ie8updates
2012-12-01 22:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-12-01 22:41:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-12-01 22:41:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712_0$
2012-12-01 22:41:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-12-01 22:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2661637$
2012-12-01 22:41:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-12-01 22:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-12-01 22:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-12-01 22:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-12-01 22:40:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2012-12-01 21:32:32 ----N---- C:\WINDOWS\system32\browserchoice.exe
2012-12-01 21:25:10 ----N---- C:\WINDOWS\system32\iacenc.dll
2012-12-01 21:15:15 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-12-01 21:15:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
======List of files/folders modified in the last 1 month======
2012-12-06 02:02:47 ----RD---- C:\Program Files
2012-12-06 02:01:37 ----D---- C:\WINDOWS\Temp
2012-12-05 15:11:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-12-05 14:06:09 ----D---- C:\WINDOWS\Prefetch
2012-12-05 12:14:56 ----SD---- C:\Documents and Settings\Roman & Eva\Data aplikací\Microsoft
2012-12-05 12:14:32 ----D---- C:\WINDOWS\system32\drivers
2012-12-05 11:15:25 ----D---- C:\WINDOWS\system32
2012-12-05 11:15:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-12-05 11:11:34 ----D---- C:\WINDOWS
2012-12-05 02:50:39 ----D---- C:\WINDOWS\system32\CatRoot2
2012-12-05 02:48:10 ----D---- C:\Program Files\Opera
2012-12-05 02:24:47 ----D---- C:\Program Files\CCleaner
2012-12-05 02:15:16 ----SHD---- C:\System Volume Information
2012-12-05 02:15:16 ----D---- C:\WINDOWS\system32\Restore
2012-12-05 02:10:14 ----RD---- C:\Program Files\AVAST Software
2012-12-05 01:40:48 ----SHD---- C:\WINDOWS\Installer
2012-12-05 00:14:20 ----RSD---- C:\WINDOWS\assembly
2012-12-05 00:14:20 ----D---- C:\WINDOWS\Microsoft.NET
2012-12-04 23:25:40 ----D---- C:\Documents and Settings\Roman & Eva\Data aplikací\DAEMON Tools Lite
2012-12-04 21:04:23 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-12-04 21:04:23 ----D---- C:\WINDOWS\system32\drivers\UMDF
2012-12-04 19:50:47 ----D---- C:\Documents and Settings
2012-12-04 19:27:39 ----SD---- C:\WINDOWS\Tasks
2012-12-04 19:27:30 ----D---- C:\WINDOWS\WinSxS
2012-12-04 19:26:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2012-12-04 18:47:29 ----D---- C:\Program Files\Google
2012-12-04 18:38:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2012-12-04 17:53:07 ----D---- C:\WINDOWS\system32\appmgmt
2012-12-04 17:37:09 ----D---- C:\WINDOWS\Help
2012-12-04 17:37:09 ----D---- C:\Program Files\Microsoft ActiveSync
2012-12-04 17:34:03 ----HD---- C:\WINDOWS\inf
2012-12-02 20:54:31 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-12-02 20:52:31 ----D---- C:\WINDOWS\AppPatch
2012-12-01 23:54:03 ----HD---- C:\WINDOWS\$hf_mig$
2012-12-01 23:53:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-12-01 23:47:55 ----D---- C:\WINDOWS\system32\XPSViewer
2012-12-01 23:22:16 ----D---- C:\WINDOWS\system32\CatRoot
2012-12-01 23:15:33 ----D---- C:\Program Files\Internet Explorer
2012-12-01 23:13:16 ----D---- C:\Program Files\Windows Desktop Search
2012-12-01 22:59:09 ----RSD---- C:\WINDOWS\Fonts
2012-12-01 22:58:29 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-12-01 22:58:21 ----D---- C:\Program Files\Microsoft Works
2012-12-01 22:53:51 ----A---- C:\WINDOWS\win.ini
2012-12-01 22:53:50 ----D---- C:\Program Files\Common Files\System
2012-12-01 22:51:11 ----D---- C:\Program Files\Outlook Express
2012-12-01 22:50:04 ----D---- C:\Program Files\Common Files
2012-12-01 22:42:26 ----D---- C:\Program Files\Microsoft Silverlight
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-05-30 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2012-10-30 25256]
R1 AswRdr;aswRdr; C:\WINDOWS\system32\drivers\AswRdr.sys [2012-10-30 35928]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2012-10-30 738504]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2012-10-30 361032]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2012-10-30 54232]
R1 BIOS;BIOS; \??\C:\WINDOWS\system32\drivers\BIOS.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-10-09 232512]
R1 intelppm;Ĝadiè procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2012-10-30 21256]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2012-10-30 97608]
R2 rspndr;Odpovídající zaĝízení zjiování topologie linkové vrstvy; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-05-29 62848]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-01-27 3845824]
R3 HidUsb;Ovladaè tĝídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 mouhid;Ovladaè myi standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 USBSTOR;Ovladaè velkokapacitního pamìového zaĝízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladaè Microsoft univerzálního hostitelského ĝadièe USB od spoleènosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-29 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-29 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-29 21568]
S3 usbccgp;Obecnŭ nadĝazenŭ ovladaè Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-22 32384]
S3 usbprint;Tĝída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladaè skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2009-05-30 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-05-30 82944]
S4 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2008-09-29 133632]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-10-30 44808]
R2 HPSLPSVC;HP Network Devices Support; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-11-06 153376]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Sluba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Sluba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Sluba sdílení portù Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2009-05-30 439808]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119399
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: PC od známého / preventivka
Log již vypadá čistý.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: PC od známého / preventivka
díky za odpověd 

- Rudy
- Site Admin
- Příspěvky: 119399
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: PC od známého / preventivka
Nemáte zač! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.