
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Kontrola logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Kontrola logu
Ahoj prosím o kontrolu logu.
Logfile of random's system information tool 1.10 (written by random/random)
Run by User at 2017-04-04 16:11:27
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 32 GB (52%) free of 61 GB
Total RAM: 1023 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:11:36, on 4.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ChiFuncExt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\trend micro\User.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 3973 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.205 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_205.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default\extensions\
2020Player_IKEA@2020Technologies.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08 77424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-04 16:11:27 ----D---- C:\rsit
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:39:02 ----D---- C:\KVRT_Data
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-29 12:01:51 ----D---- C:\AdwCleaner
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
2017-03-21 12:10:45 ----D---- C:\Program Files\ESET
2017-03-21 12:10:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2017-03-07 19:57:47 ----D---- C:\MagicPlusMini
======List of files/folders modified in the last 1 month======
2017-04-04 16:11:27 ----RD---- C:\Program Files
2017-04-04 16:10:27 ----D---- C:\WINDOWS
2017-04-04 16:10:06 ----D---- C:\WINDOWS\system32
2017-04-04 16:08:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:20 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-04 16:06:19 ----D---- C:\WINDOWS\system32\config
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----SHD---- C:\System Volume Information
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:54:58 ----A---- C:\WINDOWS\system.ini
2017-04-04 15:52:45 ----D---- C:\WINDOWS\system32\drivers
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:52:42 ----D---- C:\Program Files\Common Files
2017-04-04 15:40:12 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 15:11:07 ----RASH---- C:\boot.ini
2017-04-04 13:57:53 ----HD---- C:\WINDOWS\inf
2017-04-04 11:06:38 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:12:44 ----SHD---- C:\WINDOWS\Installer
2017-04-04 10:12:16 ----D---- C:\Config.Msi
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:52:14 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-04 09:51:20 ----D---- C:\WINDOWS\Prefetch
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:30:49 ----D---- C:\WINDOWS\WinSxS
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-04-03 10:42:15 ----D---- C:\UCTO2017
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-29 12:37:20 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-21 06:34:32 ----D---- C:\WINDOWS\system32\Macromed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2017-01-17 91104]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2017-01-17 113544]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2017-01-17 140984]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2017-01-17 60992]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2016-12-14 2241992]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26 270016]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by User at 2017-04-04 16:11:27
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 32 GB (52%) free of 61 GB
Total RAM: 1023 MB (39% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:11:36, on 4.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ChiFuncExt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\trend micro\User.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 3973 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.205 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_205.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default\extensions\
2020Player_IKEA@2020Technologies.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08 77424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-04 16:11:27 ----D---- C:\rsit
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:39:02 ----D---- C:\KVRT_Data
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-29 12:01:51 ----D---- C:\AdwCleaner
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
2017-03-21 12:10:45 ----D---- C:\Program Files\ESET
2017-03-21 12:10:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2017-03-07 19:57:47 ----D---- C:\MagicPlusMini
======List of files/folders modified in the last 1 month======
2017-04-04 16:11:27 ----RD---- C:\Program Files
2017-04-04 16:10:27 ----D---- C:\WINDOWS
2017-04-04 16:10:06 ----D---- C:\WINDOWS\system32
2017-04-04 16:08:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:20 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-04 16:06:19 ----D---- C:\WINDOWS\system32\config
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----SHD---- C:\System Volume Information
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:54:58 ----A---- C:\WINDOWS\system.ini
2017-04-04 15:52:45 ----D---- C:\WINDOWS\system32\drivers
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:52:42 ----D---- C:\Program Files\Common Files
2017-04-04 15:40:12 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 15:11:07 ----RASH---- C:\boot.ini
2017-04-04 13:57:53 ----HD---- C:\WINDOWS\inf
2017-04-04 11:06:38 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:12:44 ----SHD---- C:\WINDOWS\Installer
2017-04-04 10:12:16 ----D---- C:\Config.Msi
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:52:14 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-04 09:51:20 ----D---- C:\WINDOWS\Prefetch
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:30:49 ----D---- C:\WINDOWS\WinSxS
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-04-03 10:42:15 ----D---- C:\UCTO2017
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-29 12:37:20 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-21 06:34:32 ----D---- C:\WINDOWS\system32\Macromed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2017-01-17 91104]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2017-01-17 113544]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2017-01-17 140984]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2017-01-17 60992]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2016-12-14 2241992]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26 270016]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119495
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
# AdwCleaner v6.045 - Log vytvořen 05/04/2017 v 07:59:47
# Aktualizováno dne 28/03/2017 z Malwarebytes
# Databáze : 2017-03-28.2 [Místní]
# Operační systém : Microsoft Windows XP Service Pack 3 (X86)
# Uživatelské jméno : User - PC
# Spuštěno z : C:\Documents and Settings\User\Plocha\adwcleaner_6.045.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AppID\{9DC8FA51-B596-4F77-802C-5B295919C205}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D16C4AF54D}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-499898429D6C}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A352CFE8B9}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0CEA9C4F2}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F029ECECB}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9D5EFD2B9}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3E4761B77}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{ED721A76-8160-4DA0-A18E-7FD7C4574774}
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2748 Bajty] - [29/03/2017 12:12:54]
C:\AdwCleaner\AdwCleaner[C2].txt - [2630 Bajty] - [29/03/2017 12:59:27]
C:\AdwCleaner\AdwCleaner[C3].txt - [2776 Bajty] - [29/03/2017 13:23:33]
C:\AdwCleaner\AdwCleaner[C4].txt - [1862 Bajty] - [05/04/2017 07:59:47]
C:\AdwCleaner\AdwCleaner[S0].txt - [2962 Bajty] - [29/03/2017 12:10:39]
C:\AdwCleaner\AdwCleaner[S1].txt - [2856 Bajty] - [29/03/2017 12:38:16]
C:\AdwCleaner\AdwCleaner[S2].txt - [3002 Bajty] - [29/03/2017 13:23:12]
C:\AdwCleaner\AdwCleaner[S3].txt - [3148 Bajty] - [04/04/2017 09:44:21]
C:\AdwCleaner\AdwCleaner[S4].txt - [2633 Bajty] - [05/04/2017 07:59:29]
########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [2300 Bajty] ##########
# Aktualizováno dne 28/03/2017 z Malwarebytes
# Databáze : 2017-03-28.2 [Místní]
# Operační systém : Microsoft Windows XP Service Pack 3 (X86)
# Uživatelské jméno : User - PC
# Spuštěno z : C:\Documents and Settings\User\Plocha\adwcleaner_6.045.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AppID\{9DC8FA51-B596-4F77-802C-5B295919C205}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D16C4AF54D}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-499898429D6C}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A352CFE8B9}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0CEA9C4F2}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F029ECECB}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9D5EFD2B9}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3E4761B77}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{ED721A76-8160-4DA0-A18E-7FD7C4574774}
***** [ Prohlížeče ] *****
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [2748 Bajty] - [29/03/2017 12:12:54]
C:\AdwCleaner\AdwCleaner[C2].txt - [2630 Bajty] - [29/03/2017 12:59:27]
C:\AdwCleaner\AdwCleaner[C3].txt - [2776 Bajty] - [29/03/2017 13:23:33]
C:\AdwCleaner\AdwCleaner[C4].txt - [1862 Bajty] - [05/04/2017 07:59:47]
C:\AdwCleaner\AdwCleaner[S0].txt - [2962 Bajty] - [29/03/2017 12:10:39]
C:\AdwCleaner\AdwCleaner[S1].txt - [2856 Bajty] - [29/03/2017 12:38:16]
C:\AdwCleaner\AdwCleaner[S2].txt - [3002 Bajty] - [29/03/2017 13:23:12]
C:\AdwCleaner\AdwCleaner[S3].txt - [3148 Bajty] - [04/04/2017 09:44:21]
C:\AdwCleaner\AdwCleaner[S4].txt - [2633 Bajty] - [05/04/2017 07:59:29]
########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [2300 Bajty] ##########
Re: Kontrola logu
Zaznamenal jsem problém v IE8, nejdou žádné stránky z microsoft.com, takže ani windows update. Ve firefoxu microsoft.com funguje.
- Rudy
- Site Admin
- Příspěvky: 119495
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
OK. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Výměna antiviru na Kaspersky.
EDIT: Po aktualizacich funguji weby MS.
Logfile of random's system information tool 1.10 (written by random/random)
Run by MV at 2017-04-06 12:09:28
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 31 GB (52%) free of 61 GB
Total RAM: 1023 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:09:33, on 6.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.23922)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekidsui.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\ChiFuncExt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\Program Files\trend micro\MV.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {2E38825B-8815-42CF-9126-C58BC28D4591} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O3 - Toolbar: Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Kaspersky Anti-Virus 17.0.0 (AVP17.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Služba Kaspersky Secure Connection 1.0.0 (KSDE1.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Kaspersky Safe Kids Service 1.0.2 (SafeKids1.0.2) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 4870 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591}]
Kaspersky Protection - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{093F479D-712E-46CD-9E06-62E734A05F68} - Kaspersky Protection Toolbar - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-06 11:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB4012598$
2017-04-06 11:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3033889$
2017-04-06 11:51:26 ----HDC---- C:\WINDOWS\$NtUninstallKB3178034$
2017-04-06 11:17:40 ----HDC---- C:\WINDOWS\$NtUninstallKB3153704$
2017-04-06 11:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3203859$
2017-04-06 11:17:18 ----HDC---- C:\WINDOWS\$NtUninstallKB3196726$
2017-04-06 11:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB3191256$
2017-04-06 11:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3080446$
2017-04-06 11:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3161949$
2017-04-06 11:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB3067903_WM11$
2017-04-06 11:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3185911$
2017-04-06 11:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB3216916$
2017-04-06 10:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3140709$
2017-04-06 10:56:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3170455$
2017-04-06 10:56:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3065979$
2017-04-06 10:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3092601$
2017-04-06 10:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB3196348$
2017-04-06 10:50:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2961072$
2017-04-06 10:50:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3196718$
2017-04-06 10:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2998579$
2017-04-06 10:37:55 ----HDC---- C:\WINDOWS\$NtUninstallKB3033890_WM11$
2017-04-06 10:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2957509$
2017-04-06 10:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB3191203$
2017-04-06 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB3029944$
2017-04-06 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3183431$
2017-04-06 10:17:23 ----HDC---- C:\WINDOWS\$NtUninstallKB3109560$
2017-04-06 10:17:13 ----HDC---- C:\WINDOWS\$NtUninstallKB4011981$
2017-04-06 10:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB4012864$
2017-04-06 10:16:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3072630$
2017-04-06 10:16:15 ----HDC---- C:\WINDOWS\$NtUninstallKB3161561$
2017-04-06 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB3204724$
2017-04-06 10:15:58 ----HDC---- C:\WINDOWS\$NtUninstallKB4012497$
2017-04-06 10:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2957503$
2017-04-06 10:15:41 ----HDC---- C:\WINDOWS\$NtUninstallKB3149090$
2017-04-06 10:15:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2993254$
2017-04-06 10:15:20 ----HDC---- C:\WINDOWS\$NtUninstallKB3126593$
2017-04-06 09:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB3013126$
2017-04-06 09:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB3108381$
2017-04-06 09:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2926765$
2017-04-06 09:51:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3194371$
2017-04-06 09:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3121918$
2017-04-06 09:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3198510$
2017-04-06 09:39:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3020393-v2$
2017-04-06 09:39:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3126587$
2017-04-06 09:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3078601$
2017-04-06 09:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB3081320$
2017-04-06 09:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB4012583$
2017-04-06 09:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3087039$
2017-04-06 09:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB3198218$
2017-04-06 09:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB3139398$
2017-04-06 09:13:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3139914$
2017-04-06 09:13:16 ----HDC---- C:\WINDOWS\$NtUninstallKB3145739$
2017-04-06 09:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3076895$
2017-04-06 08:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB3021674$
2017-04-06 08:53:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2993651$
2017-04-06 08:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB3004361$
2017-04-06 08:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB3177186$
2017-04-06 08:50:30 ----HDC---- C:\WINDOWS\$NtUninstallKB3035132$
2017-04-06 08:50:23 ----A---- C:\WINDOWS\imsins.BAK
2017-04-06 08:50:21 ----HDC---- C:\WINDOWS\$NtUninstallKB4012584$
2017-04-06 08:15:16 ----D---- C:\rsit
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klifks.sys
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klfltks.sys
2017-04-05 15:16:04 ----D---- C:\Program Files\Kaspersky Lab
2017-04-05 15:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klif.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klhk.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klflt.sys
2017-04-05 11:43:15 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2017-04-05 11:10:29 ----D---- C:\AdwCleaner
2017-04-05 08:18:31 ----A---- C:\WINDOWS\ntbtlog.txt
2017-04-05 08:14:51 ----A---- C:\WINDOWS\OEWABLog.txt
2017-04-05 08:09:13 ----D---- C:\WINDOWS\pss
2017-04-05 07:53:16 ----A---- C:\WINDOWS\system32\muweb.dll
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
2017-03-07 19:57:47 ----D---- C:\MagicPlusMini
======List of files/folders modified in the last 1 month======
2017-04-06 11:59:25 ----D---- C:\WINDOWS\system32
2017-04-06 11:59:25 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-06 11:56:46 ----D---- C:\WINDOWS
2017-04-06 11:56:18 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-06 11:55:21 ----SHD---- C:\System Volume Information
2017-04-06 11:55:11 ----D---- C:\Documents and Settings
2017-04-06 11:55:06 ----D---- C:\WINDOWS\system32\drivers
2017-04-06 11:55:06 ----D---- C:\Config.Msi
2017-04-06 11:54:22 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-06 11:54:06 ----RSD---- C:\WINDOWS\assembly
2017-04-06 11:53:50 ----D---- C:\WINDOWS\Microsoft.NET
2017-04-06 11:51:47 ----HD---- C:\WINDOWS\inf
2017-04-06 11:51:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-06 11:51:26 ----D---- C:\WINDOWS\WinSxS
2017-04-06 11:51:15 ----SHD---- C:\WINDOWS\Installer
2017-04-06 10:56:33 ----D---- C:\Program Files\Outlook Express
2017-04-06 10:16:47 ----D---- C:\Program Files\Internet Explorer
2017-04-06 08:57:55 ----D---- C:\WINDOWS\system32\XPSViewer
2017-04-06 08:42:32 ----D---- C:\WINDOWS\Prefetch
2017-04-05 15:42:31 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-05 15:42:29 ----D---- C:\WINDOWS\system32\CatRoot
2017-04-05 15:17:27 ----D---- C:\WINDOWS\system32\config
2017-04-05 15:16:04 ----RD---- C:\Program Files
2017-04-05 08:44:41 ----D---- C:\Program Files\Common Files
2017-04-05 08:44:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2017-04-05 08:44:12 ----D---- C:\WINDOWS\system32\Macromed
2017-04-05 08:35:12 ----RASH---- C:\boot.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\win.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\system.ini
2017-04-04 16:22:14 ----D---- C:\UCTO2017
2017-04-04 16:21:44 ----AC---- C:\WINDOWS\wincmd.ini
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:20 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\url.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\occache.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\mstime.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\msrating.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\licmgr10.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jscript.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\hlink.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\corpol.dll
2017-03-08 16:22:58 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-07 17:46:57 ----A---- C:\WINDOWS\system32\ie4uinit.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 cm_km;AO Kaspersky Lab Cryptographic Module x86 (56 bit); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2016-06-10 170840]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2016-06-02 165296]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2016-06-07 57264]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2016-06-15 77656]
R1 klhk;Kaspersky Lab service driver; C:\WINDOWS\system32\DRIVERS\klhk.sys [2016-12-27 225048]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2017-03-14 795416]
R1 klifks;Kaspersky Lab KidSafe Driver; C:\WINDOWS\system32\DRIVERS\klifks.sys [2016-12-20 807648]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2016-05-31 41392]
R1 kltdf;kltdf; C:\WINDOWS\system32\DRIVERS\kltdf.sys [2016-05-17 82352]
R1 kltdfks;kltdfks; C:\WINDOWS\system32\DRIVERS\kltdfks.sys [2016-11-08 79256]
R1 kltdi;kltdi; C:\WINDOWS\system32\DRIVERS\kltdi.sys [2016-05-17 71088]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2017-04-05 165088]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2016-05-31 69000]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2017-03-14 158488]
R3 klfltks;Kaspersky Lab KidSafe Kernel DLL; C:\WINDOWS\system32\DRIVERS\klfltks.sys [2016-12-20 166112]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2016-05-23 50080]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2016-05-19 44976]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2015-06-07 37040]
R3 kltap;Kaspersky Security Data Escort Adapter; C:\WINDOWS\system32\DRIVERS\kltap.sys [2016-06-22 42336]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2016-01-29 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP17.0.0;Služba Kaspersky Anti-Virus 17.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe [2016-06-28 241544]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SafeKids1.0.2;Kaspersky Safe Kids Service 1.0.2; C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe [2017-01-27 96720]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 KSDE1.0.0;Služba Kaspersky Secure Connection 1.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [2016-06-28 241544]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2012-09-27 129632]
-----------------EOF-----------------
EDIT: Po aktualizacich funguji weby MS.
Logfile of random's system information tool 1.10 (written by random/random)
Run by MV at 2017-04-06 12:09:28
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 31 GB (52%) free of 61 GB
Total RAM: 1023 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:09:33, on 6.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.23922)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekidsui.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\ChiFuncExt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\Program Files\trend micro\MV.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {2E38825B-8815-42CF-9126-C58BC28D4591} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O3 - Toolbar: Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Kaspersky Anti-Virus 17.0.0 (AVP17.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Služba Kaspersky Secure Connection 1.0.0 (KSDE1.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Kaspersky Safe Kids Service 1.0.2 (SafeKids1.0.2) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 4870 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591}]
Kaspersky Protection - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{093F479D-712E-46CD-9E06-62E734A05F68} - Kaspersky Protection Toolbar - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-06 11:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB4012598$
2017-04-06 11:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3033889$
2017-04-06 11:51:26 ----HDC---- C:\WINDOWS\$NtUninstallKB3178034$
2017-04-06 11:17:40 ----HDC---- C:\WINDOWS\$NtUninstallKB3153704$
2017-04-06 11:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3203859$
2017-04-06 11:17:18 ----HDC---- C:\WINDOWS\$NtUninstallKB3196726$
2017-04-06 11:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB3191256$
2017-04-06 11:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3080446$
2017-04-06 11:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3161949$
2017-04-06 11:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB3067903_WM11$
2017-04-06 11:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3185911$
2017-04-06 11:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB3216916$
2017-04-06 10:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3140709$
2017-04-06 10:56:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3170455$
2017-04-06 10:56:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3065979$
2017-04-06 10:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3092601$
2017-04-06 10:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB3196348$
2017-04-06 10:50:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2961072$
2017-04-06 10:50:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3196718$
2017-04-06 10:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2998579$
2017-04-06 10:37:55 ----HDC---- C:\WINDOWS\$NtUninstallKB3033890_WM11$
2017-04-06 10:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2957509$
2017-04-06 10:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB3191203$
2017-04-06 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB3029944$
2017-04-06 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3183431$
2017-04-06 10:17:23 ----HDC---- C:\WINDOWS\$NtUninstallKB3109560$
2017-04-06 10:17:13 ----HDC---- C:\WINDOWS\$NtUninstallKB4011981$
2017-04-06 10:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB4012864$
2017-04-06 10:16:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3072630$
2017-04-06 10:16:15 ----HDC---- C:\WINDOWS\$NtUninstallKB3161561$
2017-04-06 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB3204724$
2017-04-06 10:15:58 ----HDC---- C:\WINDOWS\$NtUninstallKB4012497$
2017-04-06 10:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2957503$
2017-04-06 10:15:41 ----HDC---- C:\WINDOWS\$NtUninstallKB3149090$
2017-04-06 10:15:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2993254$
2017-04-06 10:15:20 ----HDC---- C:\WINDOWS\$NtUninstallKB3126593$
2017-04-06 09:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB3013126$
2017-04-06 09:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB3108381$
2017-04-06 09:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2926765$
2017-04-06 09:51:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3194371$
2017-04-06 09:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3121918$
2017-04-06 09:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3198510$
2017-04-06 09:39:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3020393-v2$
2017-04-06 09:39:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3126587$
2017-04-06 09:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3078601$
2017-04-06 09:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB3081320$
2017-04-06 09:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB4012583$
2017-04-06 09:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3087039$
2017-04-06 09:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB3198218$
2017-04-06 09:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB3139398$
2017-04-06 09:13:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3139914$
2017-04-06 09:13:16 ----HDC---- C:\WINDOWS\$NtUninstallKB3145739$
2017-04-06 09:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3076895$
2017-04-06 08:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB3021674$
2017-04-06 08:53:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2993651$
2017-04-06 08:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB3004361$
2017-04-06 08:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB3177186$
2017-04-06 08:50:30 ----HDC---- C:\WINDOWS\$NtUninstallKB3035132$
2017-04-06 08:50:23 ----A---- C:\WINDOWS\imsins.BAK
2017-04-06 08:50:21 ----HDC---- C:\WINDOWS\$NtUninstallKB4012584$
2017-04-06 08:15:16 ----D---- C:\rsit
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klifks.sys
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klfltks.sys
2017-04-05 15:16:04 ----D---- C:\Program Files\Kaspersky Lab
2017-04-05 15:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klif.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klhk.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klflt.sys
2017-04-05 11:43:15 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2017-04-05 11:10:29 ----D---- C:\AdwCleaner
2017-04-05 08:18:31 ----A---- C:\WINDOWS\ntbtlog.txt
2017-04-05 08:14:51 ----A---- C:\WINDOWS\OEWABLog.txt
2017-04-05 08:09:13 ----D---- C:\WINDOWS\pss
2017-04-05 07:53:16 ----A---- C:\WINDOWS\system32\muweb.dll
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
2017-03-07 19:57:47 ----D---- C:\MagicPlusMini
======List of files/folders modified in the last 1 month======
2017-04-06 11:59:25 ----D---- C:\WINDOWS\system32
2017-04-06 11:59:25 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-06 11:56:46 ----D---- C:\WINDOWS
2017-04-06 11:56:18 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-06 11:55:21 ----SHD---- C:\System Volume Information
2017-04-06 11:55:11 ----D---- C:\Documents and Settings
2017-04-06 11:55:06 ----D---- C:\WINDOWS\system32\drivers
2017-04-06 11:55:06 ----D---- C:\Config.Msi
2017-04-06 11:54:22 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-06 11:54:06 ----RSD---- C:\WINDOWS\assembly
2017-04-06 11:53:50 ----D---- C:\WINDOWS\Microsoft.NET
2017-04-06 11:51:47 ----HD---- C:\WINDOWS\inf
2017-04-06 11:51:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-06 11:51:26 ----D---- C:\WINDOWS\WinSxS
2017-04-06 11:51:15 ----SHD---- C:\WINDOWS\Installer
2017-04-06 10:56:33 ----D---- C:\Program Files\Outlook Express
2017-04-06 10:16:47 ----D---- C:\Program Files\Internet Explorer
2017-04-06 08:57:55 ----D---- C:\WINDOWS\system32\XPSViewer
2017-04-06 08:42:32 ----D---- C:\WINDOWS\Prefetch
2017-04-05 15:42:31 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-05 15:42:29 ----D---- C:\WINDOWS\system32\CatRoot
2017-04-05 15:17:27 ----D---- C:\WINDOWS\system32\config
2017-04-05 15:16:04 ----RD---- C:\Program Files
2017-04-05 08:44:41 ----D---- C:\Program Files\Common Files
2017-04-05 08:44:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2017-04-05 08:44:12 ----D---- C:\WINDOWS\system32\Macromed
2017-04-05 08:35:12 ----RASH---- C:\boot.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\win.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\system.ini
2017-04-04 16:22:14 ----D---- C:\UCTO2017
2017-04-04 16:21:44 ----AC---- C:\WINDOWS\wincmd.ini
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:20 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\url.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\occache.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\mstime.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\msrating.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\licmgr10.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jscript.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\hlink.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\corpol.dll
2017-03-08 16:22:58 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-07 17:46:57 ----A---- C:\WINDOWS\system32\ie4uinit.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 cm_km;AO Kaspersky Lab Cryptographic Module x86 (56 bit); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2016-06-10 170840]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2016-06-02 165296]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2016-06-07 57264]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2016-06-15 77656]
R1 klhk;Kaspersky Lab service driver; C:\WINDOWS\system32\DRIVERS\klhk.sys [2016-12-27 225048]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2017-03-14 795416]
R1 klifks;Kaspersky Lab KidSafe Driver; C:\WINDOWS\system32\DRIVERS\klifks.sys [2016-12-20 807648]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2016-05-31 41392]
R1 kltdf;kltdf; C:\WINDOWS\system32\DRIVERS\kltdf.sys [2016-05-17 82352]
R1 kltdfks;kltdfks; C:\WINDOWS\system32\DRIVERS\kltdfks.sys [2016-11-08 79256]
R1 kltdi;kltdi; C:\WINDOWS\system32\DRIVERS\kltdi.sys [2016-05-17 71088]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2017-04-05 165088]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2016-05-31 69000]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2017-03-14 158488]
R3 klfltks;Kaspersky Lab KidSafe Kernel DLL; C:\WINDOWS\system32\DRIVERS\klfltks.sys [2016-12-20 166112]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2016-05-23 50080]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2016-05-19 44976]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2015-06-07 37040]
R3 kltap;Kaspersky Security Data Escort Adapter; C:\WINDOWS\system32\DRIVERS\kltap.sys [2016-06-22 42336]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2016-01-29 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP17.0.0;Služba Kaspersky Anti-Virus 17.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe [2016-06-28 241544]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SafeKids1.0.2;Kaspersky Safe Kids Service 1.0.2; C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe [2017-01-27 96720]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 KSDE1.0.0;Služba Kaspersky Secure Connection 1.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [2016-06-28 241544]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2012-09-27 129632]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119495
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Kontrola logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by MV at 2017-04-07 08:04:10
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 33 GB (54%) free of 61 GB
Total RAM: 1023 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:04:26, on 7.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.23922)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekidsui.exe
C:\WINDOWS\ChiFuncExt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\Program Files\trend micro\MV.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {2E38825B-8815-42CF-9126-C58BC28D4591} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O3 - Toolbar: Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Kaspersky Anti-Virus 17.0.0 (AVP17.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Služba Kaspersky Secure Connection 1.0.0 (KSDE1.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Kaspersky Safe Kids Service 1.0.2 (SafeKids1.0.2) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 4956 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591}]
Kaspersky Protection - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{093F479D-712E-46CD-9E06-62E734A05F68} - Kaspersky Protection Toolbar - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-07 08:00:47 ----D---- C:\_OTM
2017-04-06 12:44:50 ----D---- C:\Program Files\Common Files\Adobe
2017-04-06 12:44:50 ----D---- C:\Program Files\Adobe
2017-04-06 11:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB4012598$
2017-04-06 11:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3033889$
2017-04-06 11:51:26 ----HDC---- C:\WINDOWS\$NtUninstallKB3178034$
2017-04-06 11:17:40 ----HDC---- C:\WINDOWS\$NtUninstallKB3153704$
2017-04-06 11:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3203859$
2017-04-06 11:17:18 ----HDC---- C:\WINDOWS\$NtUninstallKB3196726$
2017-04-06 11:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB3191256$
2017-04-06 11:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3080446$
2017-04-06 11:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3161949$
2017-04-06 11:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB3067903_WM11$
2017-04-06 11:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3185911$
2017-04-06 11:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB3216916$
2017-04-06 10:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3140709$
2017-04-06 10:56:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3170455$
2017-04-06 10:56:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3065979$
2017-04-06 10:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3092601$
2017-04-06 10:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB3196348$
2017-04-06 10:50:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2961072$
2017-04-06 10:50:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3196718$
2017-04-06 10:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2998579$
2017-04-06 10:37:55 ----HDC---- C:\WINDOWS\$NtUninstallKB3033890_WM11$
2017-04-06 10:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2957509$
2017-04-06 10:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB3191203$
2017-04-06 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB3029944$
2017-04-06 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3183431$
2017-04-06 10:17:23 ----HDC---- C:\WINDOWS\$NtUninstallKB3109560$
2017-04-06 10:17:13 ----HDC---- C:\WINDOWS\$NtUninstallKB4011981$
2017-04-06 10:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB4012864$
2017-04-06 10:16:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3072630$
2017-04-06 10:16:15 ----HDC---- C:\WINDOWS\$NtUninstallKB3161561$
2017-04-06 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB3204724$
2017-04-06 10:15:58 ----HDC---- C:\WINDOWS\$NtUninstallKB4012497$
2017-04-06 10:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2957503$
2017-04-06 10:15:41 ----HDC---- C:\WINDOWS\$NtUninstallKB3149090$
2017-04-06 10:15:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2993254$
2017-04-06 10:15:20 ----HDC---- C:\WINDOWS\$NtUninstallKB3126593$
2017-04-06 09:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB3013126$
2017-04-06 09:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB3108381$
2017-04-06 09:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2926765$
2017-04-06 09:51:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3194371$
2017-04-06 09:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3121918$
2017-04-06 09:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3198510$
2017-04-06 09:39:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3020393-v2$
2017-04-06 09:39:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3126587$
2017-04-06 09:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3078601$
2017-04-06 09:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB3081320$
2017-04-06 09:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB4012583$
2017-04-06 09:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3087039$
2017-04-06 09:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB3198218$
2017-04-06 09:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB3139398$
2017-04-06 09:13:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3139914$
2017-04-06 09:13:16 ----HDC---- C:\WINDOWS\$NtUninstallKB3145739$
2017-04-06 09:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3076895$
2017-04-06 08:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB3021674$
2017-04-06 08:53:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2993651$
2017-04-06 08:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB3004361$
2017-04-06 08:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB3177186$
2017-04-06 08:50:30 ----HDC---- C:\WINDOWS\$NtUninstallKB3035132$
2017-04-06 08:50:23 ----A---- C:\WINDOWS\imsins.BAK
2017-04-06 08:50:21 ----HDC---- C:\WINDOWS\$NtUninstallKB4012584$
2017-04-06 08:15:16 ----D---- C:\rsit
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klifks.sys
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klfltks.sys
2017-04-05 15:16:04 ----D---- C:\Program Files\Kaspersky Lab
2017-04-05 15:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klif.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klhk.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klflt.sys
2017-04-05 11:43:15 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2017-04-05 08:18:31 ----A---- C:\WINDOWS\ntbtlog.txt
2017-04-05 08:14:51 ----A---- C:\WINDOWS\OEWABLog.txt
2017-04-05 08:09:13 ----D---- C:\WINDOWS\pss
2017-04-05 07:53:16 ----A---- C:\WINDOWS\system32\muweb.dll
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
======List of files/folders modified in the last 1 month======
2017-04-07 08:02:52 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-07 08:02:45 ----SHD---- C:\System Volume Information
2017-04-07 08:02:33 ----D---- C:\Documents and Settings
2017-04-07 08:01:48 ----D---- C:\WINDOWS\system32\config
2017-04-07 08:01:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-07 08:00:59 ----D---- C:\WINDOWS\Prefetch
2017-04-06 15:49:17 ----RD---- C:\Program Files
2017-04-06 15:43:14 ----SHD---- C:\WINDOWS\Installer
2017-04-06 15:43:13 ----D---- C:\Config.Msi
2017-04-06 15:42:04 ----D---- C:\WINDOWS\system32
2017-04-06 15:40:40 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-06 15:39:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2017-04-06 12:48:01 ----SD---- C:\Documents and Settings\User\Data aplikací\Microsoft
2017-04-06 12:48:01 ----D---- C:\Documents and Settings\User\Data aplikací\Adobe
2017-04-06 12:44:50 ----D---- C:\Program Files\Common Files
2017-04-06 12:30:28 ----HD---- C:\WINDOWS\inf
2017-04-06 12:25:39 ----RSD---- C:\WINDOWS\assembly
2017-04-06 12:25:39 ----D---- C:\WINDOWS\Microsoft.NET
2017-04-06 11:59:25 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-06 11:56:46 ----D---- C:\WINDOWS
2017-04-06 11:55:06 ----D---- C:\WINDOWS\system32\drivers
2017-04-06 11:51:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-06 11:51:26 ----D---- C:\WINDOWS\WinSxS
2017-04-06 10:56:33 ----D---- C:\Program Files\Outlook Express
2017-04-06 10:16:47 ----D---- C:\Program Files\Internet Explorer
2017-04-06 10:16:41 ----D---- C:\WINDOWS\ie8updates
2017-04-06 08:57:55 ----D---- C:\WINDOWS\system32\XPSViewer
2017-04-05 15:42:31 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-05 15:42:29 ----D---- C:\WINDOWS\system32\CatRoot
2017-04-05 08:44:12 ----D---- C:\WINDOWS\system32\Macromed
2017-04-05 08:35:12 ----RASH---- C:\boot.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\win.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\system.ini
2017-04-04 16:22:14 ----D---- C:\UCTO2017
2017-04-04 16:21:44 ----AC---- C:\WINDOWS\wincmd.ini
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\url.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\occache.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\mstime.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\msrating.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\licmgr10.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jscript.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\hlink.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\corpol.dll
2017-03-08 16:22:58 ----A---- C:\WINDOWS\system32\ieframe.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 cm_km;AO Kaspersky Lab Cryptographic Module x86 (56 bit); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2016-06-10 170840]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2016-06-02 165296]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2016-06-07 57264]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2016-06-15 77656]
R1 klhk;Kaspersky Lab service driver; C:\WINDOWS\system32\DRIVERS\klhk.sys [2016-12-27 225048]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2017-03-14 795416]
R1 klifks;Kaspersky Lab KidSafe Driver; C:\WINDOWS\system32\DRIVERS\klifks.sys [2016-12-20 807648]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2016-05-31 41392]
R1 kltdf;kltdf; C:\WINDOWS\system32\DRIVERS\kltdf.sys [2016-05-17 82352]
R1 kltdfks;kltdfks; C:\WINDOWS\system32\DRIVERS\kltdfks.sys [2016-11-08 79256]
R1 kltdi;kltdi; C:\WINDOWS\system32\DRIVERS\kltdi.sys [2016-05-17 71088]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2017-04-05 165088]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2016-05-31 69000]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2017-03-14 158488]
R3 klfltks;Kaspersky Lab KidSafe Kernel DLL; C:\WINDOWS\system32\DRIVERS\klfltks.sys [2016-12-20 166112]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2016-05-23 50080]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2016-05-19 44976]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2015-06-07 37040]
R3 kltap;Kaspersky Security Data Escort Adapter; C:\WINDOWS\system32\DRIVERS\kltap.sys [2016-06-22 42336]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2016-01-29 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP17.0.0;Služba Kaspersky Anti-Virus 17.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe [2016-06-28 241544]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SafeKids1.0.2;Kaspersky Safe Kids Service 1.0.2; C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe [2017-01-27 96720]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 KSDE1.0.0;Služba Kaspersky Secure Connection 1.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [2016-06-28 241544]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2012-09-27 129632]
-----------------EOF-----------------
Run by MV at 2017-04-07 08:04:10
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 33 GB (54%) free of 61 GB
Total RAM: 1023 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:04:26, on 7.4.2017
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.23922)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
C:\WINDOWS\MHotkey.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekidsui.exe
C:\WINDOWS\ChiFuncExt.exe
C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe
C:\Documents and Settings\User\Plocha\RSIT.exe
C:\Program Files\trend micro\MV.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {2E38825B-8815-42CF-9126-C58BC28D4591} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O3 - Toolbar: Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Kaspersky Anti-Virus 17.0.0 (AVP17.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe
O23 - Service: HP SI Service (HPSIService) - HP - C:\WINDOWS\system32\HPSIsvc.exe
O23 - Service: Služba Kaspersky Secure Connection 1.0.0 (KSDE1.0.0) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Kaspersky Safe Kids Service 1.0.2 (SafeKids1.0.2) - AO Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 4956 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\tedmd7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com"=C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448]
"Description"=6.0.12.448
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2E38825B-8815-42CF-9126-C58BC28D4591}]
Kaspersky Protection - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{093F479D-712E-46CD-9E06-62E734A05F68} - Kaspersky Protection Toolbar - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll [2017-03-14 1028968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"LchDrvKey"=C:\WINDOWS\LchDrvKey.exe [2007-03-28 36864]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19 1022152]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\qengine]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoResolveTrack"=1
"NoResolveSearch"=1
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MIDI1"=SYNCOR11.DLL
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
======List of files/folders created in the last 1 month======
2017-04-07 08:00:47 ----D---- C:\_OTM
2017-04-06 12:44:50 ----D---- C:\Program Files\Common Files\Adobe
2017-04-06 12:44:50 ----D---- C:\Program Files\Adobe
2017-04-06 11:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB4012598$
2017-04-06 11:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3033889$
2017-04-06 11:51:26 ----HDC---- C:\WINDOWS\$NtUninstallKB3178034$
2017-04-06 11:17:40 ----HDC---- C:\WINDOWS\$NtUninstallKB3153704$
2017-04-06 11:17:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3203859$
2017-04-06 11:17:18 ----HDC---- C:\WINDOWS\$NtUninstallKB3196726$
2017-04-06 11:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB3191256$
2017-04-06 11:16:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3080446$
2017-04-06 11:16:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3161949$
2017-04-06 11:16:34 ----HDC---- C:\WINDOWS\$NtUninstallKB3067903_WM11$
2017-04-06 11:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3185911$
2017-04-06 11:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB3216916$
2017-04-06 10:56:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3140709$
2017-04-06 10:56:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3170455$
2017-04-06 10:56:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3065979$
2017-04-06 10:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3092601$
2017-04-06 10:50:52 ----HDC---- C:\WINDOWS\$NtUninstallKB3196348$
2017-04-06 10:50:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2961072$
2017-04-06 10:50:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3196718$
2017-04-06 10:50:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2998579$
2017-04-06 10:37:55 ----HDC---- C:\WINDOWS\$NtUninstallKB3033890_WM11$
2017-04-06 10:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2957509$
2017-04-06 10:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB3191203$
2017-04-06 10:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB3029944$
2017-04-06 10:17:32 ----HDC---- C:\WINDOWS\$NtUninstallKB3183431$
2017-04-06 10:17:23 ----HDC---- C:\WINDOWS\$NtUninstallKB3109560$
2017-04-06 10:17:13 ----HDC---- C:\WINDOWS\$NtUninstallKB4011981$
2017-04-06 10:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB4012864$
2017-04-06 10:16:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3072630$
2017-04-06 10:16:15 ----HDC---- C:\WINDOWS\$NtUninstallKB3161561$
2017-04-06 10:16:07 ----HDC---- C:\WINDOWS\$NtUninstallKB3204724$
2017-04-06 10:15:58 ----HDC---- C:\WINDOWS\$NtUninstallKB4012497$
2017-04-06 10:15:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2957503$
2017-04-06 10:15:41 ----HDC---- C:\WINDOWS\$NtUninstallKB3149090$
2017-04-06 10:15:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2993254$
2017-04-06 10:15:20 ----HDC---- C:\WINDOWS\$NtUninstallKB3126593$
2017-04-06 09:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB3013126$
2017-04-06 09:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB3108381$
2017-04-06 09:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2926765$
2017-04-06 09:51:56 ----HDC---- C:\WINDOWS\$NtUninstallKB3194371$
2017-04-06 09:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB3121918$
2017-04-06 09:51:35 ----HDC---- C:\WINDOWS\$NtUninstallKB3198510$
2017-04-06 09:39:31 ----HDC---- C:\WINDOWS\$NtUninstallKB3020393-v2$
2017-04-06 09:39:22 ----HDC---- C:\WINDOWS\$NtUninstallKB3126587$
2017-04-06 09:39:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3078601$
2017-04-06 09:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB3081320$
2017-04-06 09:38:48 ----HDC---- C:\WINDOWS\$NtUninstallKB4012583$
2017-04-06 09:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB3087039$
2017-04-06 09:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB3198218$
2017-04-06 09:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB3139398$
2017-04-06 09:13:25 ----HDC---- C:\WINDOWS\$NtUninstallKB3139914$
2017-04-06 09:13:16 ----HDC---- C:\WINDOWS\$NtUninstallKB3145739$
2017-04-06 09:13:03 ----HDC---- C:\WINDOWS\$NtUninstallKB3076895$
2017-04-06 08:54:05 ----HDC---- C:\WINDOWS\$NtUninstallKB3021674$
2017-04-06 08:53:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2993651$
2017-04-06 08:53:47 ----HDC---- C:\WINDOWS\$NtUninstallKB3004361$
2017-04-06 08:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB3177186$
2017-04-06 08:50:30 ----HDC---- C:\WINDOWS\$NtUninstallKB3035132$
2017-04-06 08:50:23 ----A---- C:\WINDOWS\imsins.BAK
2017-04-06 08:50:21 ----HDC---- C:\WINDOWS\$NtUninstallKB4012584$
2017-04-06 08:15:16 ----D---- C:\rsit
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klifks.sys
2017-04-05 15:42:22 ----A---- C:\WINDOWS\system32\drivers\klfltks.sys
2017-04-05 15:16:04 ----D---- C:\Program Files\Kaspersky Lab
2017-04-05 15:16:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klif.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klhk.sys
2017-04-05 15:15:51 ----A---- C:\WINDOWS\system32\drivers\klflt.sys
2017-04-05 11:43:15 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2017-04-05 08:18:31 ----A---- C:\WINDOWS\ntbtlog.txt
2017-04-05 08:14:51 ----A---- C:\WINDOWS\OEWABLog.txt
2017-04-05 08:09:13 ----D---- C:\WINDOWS\pss
2017-04-05 07:53:16 ----A---- C:\WINDOWS\system32\muweb.dll
2017-04-04 16:11:27 ----D---- C:\Program Files\trend micro
2017-04-04 16:10:06 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-04 16:05:24 ----SHD---- C:\RECYCLER
2017-04-04 15:56:41 ----D---- C:\WINDOWS\temp
2017-04-04 15:11:06 ----ASH---- C:\BOOT.BAK
2017-04-04 15:10:37 ----RASHD---- C:\cmdcons
2017-04-04 15:10:37 ----A---- C:\WINDOWS\UPGRADE.TXT
2017-04-04 15:10:34 ----D---- C:\WINDOWS\setup.pss
2017-04-04 14:50:14 ----D---- C:\WINDOWS\system32\%APPDATA%
2017-04-04 13:33:06 ----AD---- C:\Kaspersky Rescue Disk 10.0
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\vuins32.dll
2017-04-04 10:22:46 ----A---- C:\WINDOWS\system32\drivers\dlkfet5b.sys
2017-04-04 09:33:37 ----A---- C:\WINDOWS\entrust.ini
2017-04-04 09:33:25 ----A---- C:\WINDOWS\erase_SR.exe
2017-03-29 13:30:37 ----D---- C:\WINDOWS\erdnt
2017-03-29 12:44:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\HitmanPro
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengineOff.ini
2017-03-21 13:07:37 ----A---- C:\WINDOWS\system32\qengine.ini
2017-03-21 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\Qustodio
======List of files/folders modified in the last 1 month======
2017-04-07 08:02:52 ----D---- C:\WINDOWS\system32\CatRoot2
2017-04-07 08:02:45 ----SHD---- C:\System Volume Information
2017-04-07 08:02:33 ----D---- C:\Documents and Settings
2017-04-07 08:01:48 ----D---- C:\WINDOWS\system32\config
2017-04-07 08:01:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2017-04-07 08:00:59 ----D---- C:\WINDOWS\Prefetch
2017-04-06 15:49:17 ----RD---- C:\Program Files
2017-04-06 15:43:14 ----SHD---- C:\WINDOWS\Installer
2017-04-06 15:43:13 ----D---- C:\Config.Msi
2017-04-06 15:42:04 ----D---- C:\WINDOWS\system32
2017-04-06 15:40:40 ----D---- C:\Documents and Settings\User\Data aplikací\Media Player Classic
2017-04-06 15:39:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2017-04-06 12:48:01 ----SD---- C:\Documents and Settings\User\Data aplikací\Microsoft
2017-04-06 12:48:01 ----D---- C:\Documents and Settings\User\Data aplikací\Adobe
2017-04-06 12:44:50 ----D---- C:\Program Files\Common Files
2017-04-06 12:30:28 ----HD---- C:\WINDOWS\inf
2017-04-06 12:25:39 ----RSD---- C:\WINDOWS\assembly
2017-04-06 12:25:39 ----D---- C:\WINDOWS\Microsoft.NET
2017-04-06 11:59:25 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-06 11:56:46 ----D---- C:\WINDOWS
2017-04-06 11:55:06 ----D---- C:\WINDOWS\system32\drivers
2017-04-06 11:51:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2017-04-06 11:51:26 ----D---- C:\WINDOWS\WinSxS
2017-04-06 10:56:33 ----D---- C:\Program Files\Outlook Express
2017-04-06 10:16:47 ----D---- C:\Program Files\Internet Explorer
2017-04-06 10:16:41 ----D---- C:\WINDOWS\ie8updates
2017-04-06 08:57:55 ----D---- C:\WINDOWS\system32\XPSViewer
2017-04-05 15:42:31 ----D---- C:\WINDOWS\system32\ReinstallBackups
2017-04-05 15:42:29 ----D---- C:\WINDOWS\system32\CatRoot
2017-04-05 08:44:12 ----D---- C:\WINDOWS\system32\Macromed
2017-04-05 08:35:12 ----RASH---- C:\boot.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\win.ini
2017-04-05 08:35:06 ----A---- C:\WINDOWS\system.ini
2017-04-04 16:22:14 ----D---- C:\UCTO2017
2017-04-04 16:21:44 ----AC---- C:\WINDOWS\wincmd.ini
2017-04-04 16:07:59 ----SD---- C:\WINDOWS\Tasks
2017-04-04 16:06:20 ----D---- C:\Program Files\PDFCreator
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Minidump
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Logs
2017-04-04 16:06:19 ----D---- C:\WINDOWS\Debug
2017-04-04 16:04:11 ----D---- C:\WINDOWS\system32\Restore
2017-04-04 15:52:45 ----D---- C:\WINDOWS\AppPatch
2017-04-04 15:36:28 ----D---- C:\WINDOWS\system32\drivers\etc
2017-04-04 11:06:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-04-04 10:11:45 ----D---- C:\SWSetup
2017-04-04 10:10:30 ----D---- C:\Program Files\Broadcom
2017-04-04 09:53:58 ----SHD---- C:\WINDOWS\CSC
2017-04-04 09:41:33 ----HD---- C:\Program Files\InstallShield Installation Information
2017-04-04 09:32:53 ----D---- C:\Phenomedia AG
2017-04-04 09:26:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2017-04-04 09:26:33 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2017-04-04 09:26:11 ----RSD---- C:\WINDOWS\Fonts
2017-04-03 11:17:34 ----D---- C:\STEREO22
2017-04-03 10:45:23 ----D---- C:\STEREO21
2017-04-03 10:43:35 ----D---- C:\Stereo2010 v12
2017-03-30 21:44:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2017-03-30 19:20:12 ----D---- C:\Program Files\Mozilla Firefox
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\url.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\occache.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\mstime.dll
2017-03-09 02:23:00 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\msrating.dll
2017-03-09 02:22:59 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\licmgr10.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\jscript.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-09 02:22:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\hlink.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2017-03-09 02:22:57 ----A---- C:\WINDOWS\system32\corpol.dll
2017-03-08 16:22:58 ----A---- C:\WINDOWS\system32\ieframe.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 cm_km;AO Kaspersky Lab Cryptographic Module x86 (56 bit); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2016-06-10 170840]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2016-06-02 165296]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2016-06-07 57264]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2016-06-15 77656]
R1 klhk;Kaspersky Lab service driver; C:\WINDOWS\system32\DRIVERS\klhk.sys [2016-12-27 225048]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2017-03-14 795416]
R1 klifks;Kaspersky Lab KidSafe Driver; C:\WINDOWS\system32\DRIVERS\klifks.sys [2016-12-20 807648]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2016-05-31 41392]
R1 kltdf;kltdf; C:\WINDOWS\system32\DRIVERS\kltdf.sys [2016-05-17 82352]
R1 kltdfks;kltdfks; C:\WINDOWS\system32\DRIVERS\kltdfks.sys [2016-11-08 79256]
R1 kltdi;kltdi; C:\WINDOWS\system32\DRIVERS\kltdi.sys [2016-05-17 71088]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2017-04-05 165088]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
R2 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2016-05-31 69000]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2008-04-13 11868]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2007-07-12 43008]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2017-03-14 158488]
R3 klfltks;Kaspersky Lab KidSafe Kernel DLL; C:\WINDOWS\system32\DRIVERS\klfltks.sys [2016-12-20 166112]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2016-05-23 50080]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2016-05-19 44976]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2015-06-07 37040]
R3 kltap;Kaspersky Security Data Escort Adapter; C:\WINDOWS\system32\DRIVERS\kltap.sys [2016-06-22 42336]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-29 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2016-01-29 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 MBAMChameleon;MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys []
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
S3 Blfp;Broadcom Advanced Server Program Driver; C:\WINDOWS\system32\DRIVERS\baspxp32.sys [2008-06-06 98816]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2008-04-13 1041536]
S3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2008-04-13 220032]
S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2011-04-04 17408]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2008-04-13 685056]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP17.0.0;Služba Kaspersky Anti-Virus 17.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe [2016-06-28 241544]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2011-05-11 99896]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SafeKids1.0.2;Kaspersky Safe Kids Service 1.0.2; C:\Program Files\Kaspersky Lab\Kaspersky Safe Kids 1.0.2\safekids.exe [2017-01-27 96720]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 756392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 KSDE1.0.0;Služba Kaspersky Secure Connection 1.0.0; C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [2016-06-28 241544]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-30 172488]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-29 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2012-09-27 129632]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119495
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Log by již měl být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
- Rudy
- Site Admin
- Příspěvky: 119495
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu
Rádo se stalo! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.