Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Log z RSIT nejde vytvorit, PC je pomale

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#16 Příspěvek od anger »

OTL logfile created on: 18.8.2009 11:49:37 - Run 1਍ഀ
OTL by OldTimer - Version 3.0.10.7 Folder = C:\Documents and Settings\kora\Plocha਍ഀ
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation਍ഀ
Internet Explorer (Version = 6.0.2900.2180)਍ഀ
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy਍ഀ
਍ഀ
1023,48 Mb Total Physical Memory | 364,16 Mb Available Physical Memory | 35,58% Memory free਍ഀ
2,40 Gb Paging File | 1,75 Gb Available in Paging File | 73,00% Paging File free਍ഀ
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]਍ഀ
਍ഀ
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files਍ഀ
Drive C: | 149,05 Gb Total Space | 57,22 Gb Free Space | 38,39% Space Free | Partition Type: NTFS਍ഀ
Drive D: | 647,83 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS਍ഀ
E: Drive not present or media not loaded਍ഀ
F: Drive not present or media not loaded਍ഀ
G: Drive not present or media not loaded਍ഀ
H: Drive not present or media not loaded਍ഀ
I: Drive not present or media not loaded਍ഀ
Drive K: | 3,72 Gb Total Space | 1,45 Gb Free Space | 38,87% Space Free | Partition Type: FAT32਍ഀ
਍ഀ
Computer Name: KORAABONA਍ഀ
Current User Name: kora਍ഀ
Logged in as Administrator.਍ഀ
਍ഀ
Current Boot Mode: Normal਍ഀ
Scan Mode: Current user਍ഀ
Company Name Whitelist: Off਍ഀ
Skip Microsoft Files: Off਍ഀ
File Age = 30 Days਍ഀ
Output = Standard਍ഀ
਍ഀ
========== Processes (SafeList) ==========਍ഀ
਍ഀ
PRC - [2007.10.29 14:27:04 | 00,587,096 | ---- | M] (Lavasoft AB) -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe਍ഀ
PRC - [2009.02.05 23:01:25 | 00,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe਍ഀ
PRC - [2009.02.05 23:08:40 | 00,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe਍ഀ
PRC - [2007.06.13 15:23:39 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE਍ഀ
PRC - [2006.05.04 13:14:24 | 00,069,632 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\DTVSchdl.exe਍ഀ
PRC - [2006.04.27 16:18:52 | 00,344,064 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\WFWIZ.exe਍ഀ
PRC - [2005.03.16 11:56:12 | 00,090,112 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe਍ഀ
PRC - [2004.12.23 18:27:50 | 00,081,920 | ---- | M] (Ulead Systems) -- C:\Program Files\Common Files\Ulead Systems\DVD\USISrv.exe਍ഀ
PRC - [2006.07.12 16:27:22 | 00,544,768 | ---- | M] () -- C:\Program Files\GigaByte\VGA Utility Manager\G-VGA.exe਍ഀ
PRC - [2009.02.05 23:08:45 | 00,081,000 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe਍ഀ
PRC - [2003.08.04 18:28:18 | 00,049,152 | ---- | M] (Hewlett-Packard) -- C:\tiskárna\HP Software Update\HPWuSchd.exe਍ഀ
PRC - [2005.12.10 16:57:19 | 00,133,016 | ---- | M] (DT Soft Ltd.) -- C:\Program Files\DAEMON Tools\daemon.exe਍ഀ
PRC - [2003.12.22 09:38:42 | 00,241,664 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\HP\hpcoretech\hpcmpmgr.exe਍ഀ
PRC - [2008.07.03 16:51:28 | 16,876,032 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE਍ഀ
PRC - [2009.07.12 14:28:40 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe਍ഀ
PRC - [2009.05.26 17:18:30 | 00,413,696 | ---- | M] (Apple Inc.) -- C:\Program Files\QuickTime\QTTask.exe਍ഀ
PRC - [2006.11.16 20:04:20 | 00,139,264 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe਍ഀ
PRC - [2005.06.15 18:47:10 | 01,208,320 | ---- | M] (IVT Corporation) -- C:\MSI\MSI2\BlueSoleil.exe਍ഀ
PRC - [2003.09.16 06:19:24 | 00,237,568 | ---- | M] (Hewlett-Packard Co.) -- C:\tiskárna\Digital Imaging\bin\hpqtra08.exe਍ഀ
PRC - [2006.11.16 19:58:32 | 00,884,736 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe਍ഀ
PRC - [2007.10.09 14:42:14 | 00,106,537 | ---- | M] () -- C:\Program Files\Magentic\bin\MgApp.exe਍ഀ
PRC - [2005.04.06 17:03:28 | 00,110,592 | ---- | M] () -- C:\MSI\MSI2\BTNtService.exe਍ഀ
PRC - [2009.07.12 14:28:40 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe਍ഀ
PRC - [2006.07.18 13:02:58 | 01,205,784 | ---- | M] (Sunbelt Software) -- C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe਍ഀ
PRC - [2003.06.20 00:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE਍ഀ
PRC - [2008.05.16 14:01:00 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe਍ഀ
PRC - [2006.07.18 13:02:56 | 01,955,352 | ---- | M] (Sunbelt Software) -- C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe਍ഀ
PRC - [2008.01.19 14:52:35 | 00,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe਍ഀ
PRC - [2005.01.31 10:45:20 | 00,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe਍ഀ
PRC - [2009.02.05 23:08:26 | 00,254,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe਍ഀ
PRC - [2009.02.05 23:06:04 | 00,352,920 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe਍ഀ
PRC - [2006.07.18 13:02:56 | 01,955,352 | ---- | M] (Sunbelt Software) -- C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe਍ഀ
PRC - [2009.03.01 12:59:42 | 00,172,792 | ---- | M] (ICQ, LLC.) -- C:\Kilerka\ICQ6.5\ICQ.exe਍ഀ
PRC - [2009.08.05 20:05:46 | 00,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe਍ഀ
PRC - [2004.08.18 14:00:00 | 00,093,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\IEXPLORE.EXE਍ഀ
PRC - [2009.08.18 11:49:16 | 00,514,048 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\kora\Plocha\OTL.exe਍ഀ
਍ഀ
========== Win32 Services (SafeList) ==========਍ഀ
਍ഀ
SRV - [2007.10.29 14:27:04 | 00,587,096 | ---- | M] (Lavasoft AB) -- C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe -- (aawservice [Auto | Running])਍ഀ
SRV - [2004.07.15 02:49:26 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped])਍ഀ
SRV - [2009.02.05 23:01:25 | 00,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv [Auto | Running])਍ഀ
SRV - [2009.02.05 23:08:40 | 00,138,680 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus [Auto | Running])਍ഀ
SRV - [2009.02.05 23:08:26 | 00,254,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner [On_Demand | Running])਍ഀ
SRV - [2009.02.05 23:06:04 | 00,352,920 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner [On_Demand | Running])਍ഀ
SRV - [2005.04.06 17:03:28 | 00,110,592 | ---- | M] () -- C:\MSI\MSI2\BTNtService.exe -- (BlueSoleil Hid Service [Auto | Running])਍ഀ
SRV - [2007.01.26 21:19:37 | 00,138,168 | ---- | M] (Google) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc [On_Demand | Stopped])਍ഀ
SRV - [2004.08.18 14:00:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running])਍ഀ
SRV - [2005.11.14 01:06:04 | 00,069,632 | ---- | M] (Macrovision Corporation) -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT [On_Demand | Stopped])਍ഀ
SRV - [2009.07.12 14:28:40 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running])਍ഀ
SRV - [2006.07.18 13:02:58 | 01,205,784 | ---- | M] (Sunbelt Software) -- C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe -- (KPF4 [Auto | Running])਍ഀ
SRV - [2003.06.20 00:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE -- (MDM [Auto | Running])਍ഀ
SRV - [2006.11.10 20:18:02 | 00,774,144 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService [On_Demand | Stopped])਍ഀ
SRV - [2008.05.16 14:01:00 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe -- (NVSvc [Auto | Running])਍ഀ
SRV - [2003.07.28 21:28:22 | 00,089,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])਍ഀ
SRV - [2004.02.26 12:56:42 | 00,065,795 | R--- | M] (HP) -- C:\WINDOWS\System32\HPZipm12.exe -- (Pml Driver HPZ12 [On_Demand | Stopped])਍ഀ
SRV - [2008.01.19 14:52:35 | 00,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe -- (PnkBstrA [Auto | Running])਍ഀ
SRV - [2005.01.31 10:45:20 | 00,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper [Auto | Running])਍ഀ
SRV - [2007.01.05 21:57:30 | 00,913,920 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\WMPNetwk.exe -- (WMPNetworkSvc [On_Demand | Stopped])਍ഀ
਍ഀ
========== Driver Services (SafeList) ==========਍ഀ
਍ഀ
DRV - [2009.02.05 23:05:11 | 00,026,944 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4 [System | Running])਍ഀ
DRV - [2009.02.05 23:07:12 | 00,020,560 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys -- (aswFsBlk [Auto | Running])਍ഀ
DRV - [2009.02.05 23:08:10 | 00,094,032 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2 [Auto | Running])਍ഀ
DRV - [2009.02.05 23:06:10 | 00,023,152 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr [On_Demand | Running])਍ഀ
DRV - [2009.02.05 23:07:23 | 00,114,768 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP [System | Running])਍ഀ
DRV - [2009.02.05 23:06:20 | 00,051,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi [System | Running])਍ഀ
DRV - [2004.12.06 17:55:20 | 00,126,720 | R--- | M] (Broadcom Corporation) -- C:\WINDOWS\System32\DRIVERS\b57xp32.sys -- (b57w2k [On_Demand | Stopped])਍ഀ
DRV - [2005.05.31 16:40:20 | 00,020,480 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\DRIVERS\blueletaudio.sys -- (BlueletAudio [On_Demand | Running])਍ഀ
DRV - [2005.04.30 15:48:58 | 00,010,804 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\DRIVERS\btnetdrv.sys -- (BT [On_Demand | Running])਍ഀ
DRV - [2005.05.31 10:42:28 | 00,023,000 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\Drivers\btcusb.sys -- (Btcsrusb [On_Demand | Stopped])਍ഀ
DRV - [2005.04.30 15:50:20 | 00,011,860 | ---- | M] () -- C:\WINDOWS\System32\DRIVERS\vbtenum.sys -- (BTHidEnum [On_Demand | Running])਍ഀ
DRV - [2005.04.30 15:50:10 | 00,028,271 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\Drivers\BTHidMgr.sys -- (BTHidMgr [Boot | Running])਍ഀ
DRV - [2004.12.16 17:32:54 | 00,013,304 | ---- | M] () -- C:\WINDOWS\System32\drivers\BTNetFilter.sys -- (BTNetFilter [On_Demand | Stopped])਍ഀ
DRV - [2008.01.18 23:40:20 | 00,223,128 | ---- | M] () -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi [On_Demand | Running])਍ഀ
DRV - [2007.09.07 14:55:04 | 00,027,672 | ---- | M] (EnTech Taiwan) -- C:\WINDOWS\System32\DRIVERS\ENTECH.sys -- (ENTECH [On_Demand | Stopped])਍ഀ
DRV - [2006.07.18 13:02:50 | 00,284,184 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\system32\drivers\fwdrv.sys -- (fwdrv [System | Running])਍ഀ
DRV - [2009.08.18 10:05:31 | 00,005,112 | ---- | M] () -- C:\WINDOWS\GPCIDrv.sys -- (GPCIDrv [On_Demand | Running])਍ഀ
DRV - [2004.05.02 10:47:08 | 00,023,040 | R--- | M] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv [On_Demand | Stopped])਍ഀ
DRV - [2009.08.18 10:05:12 | 00,019,039 | ---- | M] () -- C:\WINDOWS\System32\Drivers\GVTDrv.sys -- (GVTDrv [On_Demand | Running])਍ഀ
DRV - [2005.01.07 17:07:16 | 00,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\drivers\HdAudio.sys -- (HdAudAddService [On_Demand | Stopped])਍ഀ
DRV - [2005.01.07 17:07:18 | 00,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running])਍ഀ
DRV - [2004.02.26 12:56:40 | 00,051,056 | R--- | M] (HP) -- C:\WINDOWS\System32\DRIVERS\HPZid412.sys -- (HPZid412 [On_Demand | Stopped])਍ഀ
DRV - [2004.02.26 12:56:42 | 00,016,496 | R--- | M] (HP) -- C:\WINDOWS\System32\DRIVERS\HPZipr12.sys -- (HPZipr12 [On_Demand | Stopped])਍ഀ
DRV - [2004.02.26 12:56:42 | 00,021,488 | R--- | M] (HP) -- C:\WINDOWS\System32\DRIVERS\HPZius12.sys -- (HPZius12 [On_Demand | Stopped])਍ഀ
DRV - [2008.07.03 17:03:14 | 04,745,216 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running])਍ഀ
DRV - [2004.10.29 05:21:14 | 00,025,067 | R--- | M] (Integrated Technology Express, Inc.) -- C:\WINDOWS\system32\DRIVERS\iteraid.sys -- (iteraid [Boot | Running])਍ഀ
DRV - [2006.07.18 13:02:52 | 00,091,672 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\system32\drivers\khips.sys -- (khips [System | Running])਍ഀ
DRV - [2009.08.14 18:31:23 | 00,071,680 | ---- | M] () -- C:\WINDOWS\mbr.exe -- (mbr [On_Demand | Stopped])਍ഀ
DRV - [2004.08.03 23:10:14 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DRIVERS\MPE.sys -- (MPE [On_Demand | Stopped])਍ഀ
DRV - [2008.05.16 14:01:00 | 06,557,408 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running])਍ഀ
DRV - [2005.01.31 10:30:00 | 00,141,246 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nvcap.sys -- (nvcap [Auto | Running])਍ഀ
DRV - [2005.01.31 10:30:00 | 00,016,176 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\NVxbar.sys -- (NVXBAR [Auto | Running])਍ഀ
DRV - [2004.08.18 14:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])਍ഀ
DRV - [2004.08.18 14:00:00 | 00,005,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Drivers\RootMdm.sys -- (ROOTMODEM [On_Demand | Running])਍ഀ
DRV - [2008.06.16 15:08:42 | 00,109,184 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTL8023xp [On_Demand | Stopped])਍ഀ
DRV - [2008.06.16 15:08:42 | 00,109,184 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Running])਍ഀ
DRV - [2006.09.05 20:07:00 | 00,061,536 | R--- | M] (MCCI) -- C:\WINDOWS\System32\DRIVERS\se59bus.sys -- (se59bus [On_Demand | Stopped])਍ഀ
DRV - [2007.11.13 12:25:52 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [Auto | Running])਍ഀ
DRV - [2001.08.17 22:56:16 | 00,007,552 | ---- | M] (Sony Corporation) -- C:\WINDOWS\System32\DRIVERS\SONYPVU1.SYS -- (SONYPVU1 [On_Demand | Stopped])਍ഀ
DRV - [2007.12.21 20:12:46 | 00,643,072 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running])਍ഀ
DRV - [2004.12.23 18:27:56 | 00,027,392 | ---- | M] (Ulead Systems, Inc.) -- C:\WINDOWS\System32\Drivers\ULCDRHlp.sys -- (ULCDRHlp [On_Demand | Running])਍ഀ
DRV - [2004.07.07 03:33:02 | 00,292,896 | ---- | M] (Ulead Systems, Inc.) -- C:\WINDOWS\System32\Drivers\USIUDF.sys -- (USIUDF [System | Running])਍ഀ
DRV - [2004.10.19 14:37:38 | 00,061,312 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\DRIVERS\VComm.sys -- (VComm [On_Demand | Running])਍ഀ
DRV - [2005.03.25 18:18:48 | 00,082,148 | ---- | M] (IVT Corporation) -- C:\WINDOWS\System32\Drivers\VcommMgr.sys -- (VcommMgr [On_Demand | Running])਍ഀ
DRV - [2006.03.24 09:20:24 | 00,009,856 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\DRIVERS\wfcxacap.sys -- (wfcxacap [System | Running])਍ഀ
DRV - [2006.03.24 09:24:02 | 00,031,616 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\drivers\wfcxatun.sys -- (wfcxatun [Auto | Running])਍ഀ
DRV - [2006.03.24 09:23:20 | 00,021,248 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\drivers\wfcxdtun.sys -- (wfcxdtun [On_Demand | Running])਍ഀ
DRV - [2006.03.24 09:21:12 | 00,015,872 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\drivers\wfcxtcap.sys -- (wfcxtcap [On_Demand | Running])਍ഀ
DRV - [2006.03.24 09:25:00 | 00,167,296 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\drivers\wfcxvcap.sys -- (WFCXVCAP [Auto | Running])਍ഀ
DRV - [2006.03.24 09:22:14 | 00,010,368 | ---- | M] (Leadtek Research Inc.) -- C:\WINDOWS\System32\drivers\wfcxxbar.sys -- (wfcxxbar [On_Demand | Running])਍ഀ
DRV - [2005.01.06 16:55:38 | 00,009,446 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS -- (WFIOCTL [On_Demand | Running])਍ഀ
਍ഀ
========== Standard Registry (SafeList) ==========਍ഀ
਍ഀ
਍ഀ
========== Internet Explorer ==========਍ഀ
਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... =msnhome਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... iesearch਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... &ar=home਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/ ... cust.htm਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie਍ഀ
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie਍ഀ
਍ഀ
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm਍ഀ
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Prev Search Page = http://www.google.com਍ഀ
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com਍ഀ
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz਍ഀ
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie਍ഀ
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0਍ഀ
਍ഀ
========== FireFox ==========਍ഀ
਍ഀ
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"਍ഀ
FF - prefs.js..browser.search.defaulturl: "http://www.google.com/search?lr=&ie=UTF ... TF-8&q="਍ഀ
FF - prefs.js..browser.search.selectedEngine: "Google"਍ഀ
FF - prefs.js..browser.startup.homepage: "http://seznam.cz/"਍ഀ
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:3.1.20081127W਍ഀ
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.4਍ഀ
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14਍ഀ
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0਍ഀ
FF - prefs.js..extensions.enabledItems: splash@aldreneo.com:2.0.0.2਍ഀ
FF - prefs.js..extensions.enabledItems: {3713a489-0634-4472-8456-dc7abd7eba00}:1.2.1਍ഀ
FF - prefs.js..extensions.enabledItems: {7ef7f4d6-947d-11dc-8314-0800200c9a66}:3.0.1਍ഀ
FF - prefs.js..extensions.enabledItems: {241aae70-0022-11de-87af-0800200c9a66}:0.5਍ഀ
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.13਍ഀ
FF - prefs.js..extensions.enabledItems: pink-bee@loic.com:2.5.4਍ഀ
FF - prefs.js..extensions.enabledItems: {333b42b0-9c75-11db-b606-0800200c9a66}:2.090208਍ഀ
FF - prefs.js..extensions.enabledItems: {c1dffba0-628e-11d9-9669-0800200c9a66}:3.0.3਍ഀ
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_result ... afex&q="਍ഀ
਍ഀ
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009.07.12 14:28:41 | 00,000,000 | ---D | M]਍ഀ
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009.08.05 20:05:50 | 00,000,000 | ---D | M]਍ഀ
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009.08.05 20:05:50 | 00,000,000 | ---D | M]਍ഀ
਍ഀ
[2008.09.01 20:11:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Extensions਍ഀ
[2008.09.01 20:11:13 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}਍ഀ
[2009.08.18 08:30:39 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions਍ഀ
[2009.04.15 12:41:02 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{241aae70-0022-11de-87af-0800200c9a66}਍ഀ
[2009.01.07 21:11:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}਍ഀ
[2008.09.03 21:08:15 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{333b42b0-9c75-11db-b606-0800200c9a66}਍ഀ
[2008.12.19 12:38:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{3713a489-0634-4472-8456-dc7abd7eba00}਍ഀ
[2008.12.12 12:38:12 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{7ef7f4d6-947d-11dc-8314-0800200c9a66}਍ഀ
[2008.07.20 21:06:40 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}਍ഀ
[2009.01.06 21:57:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\{c1dffba0-628e-11d9-9669-0800200c9a66}਍ഀ
[2008.12.19 12:38:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\pink-bee@loic.com਍ഀ
[2008.09.03 21:12:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\kora\Data aplikací\mozilla\Firefox\Profiles\6pc7m01u.default\extensions\splash@aldreneo.com਍ഀ
[2009.08.15 20:06:24 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-1.xml਍ഀ
[2008.07.13 05:44:03 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-10.xml਍ഀ
[2008.07.16 13:21:03 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-11.xml਍ഀ
[2008.09.01 20:11:37 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-12.xml਍ഀ
[2008.09.30 14:24:52 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-13.xml਍ഀ
[2008.10.01 18:12:28 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-14.xml਍ഀ
[2008.11.15 17:15:53 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-15.xml਍ഀ
[2008.12.19 11:39:05 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-16.xml਍ഀ
[2009.02.05 00:00:09 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-17.xml਍ഀ
[2009.03.12 19:45:30 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-18.xml਍ഀ
[2009.03.29 10:55:58 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-19.xml਍ഀ
[2007.11.03 15:28:31 | 00,000,951 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-2.xml਍ഀ
[2009.03.29 17:21:35 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-20.xml਍ഀ
[2009.03.29 18:05:02 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-21.xml਍ഀ
[2009.04.23 15:55:48 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-22.xml਍ഀ
[2009.04.30 10:51:29 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-23.xml਍ഀ
[2009.06.15 14:12:26 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-24.xml਍ഀ
[2009.07.26 13:43:41 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-25.xml਍ഀ
[2009.08.05 20:06:19 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-26.xml਍ഀ
[2007.11.28 12:47:02 | 00,000,951 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-3.xml਍ഀ
[2007.12.01 20:45:20 | 00,000,951 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-4.xml਍ഀ
[2008.02.09 10:07:15 | 00,000,951 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-5.xml਍ഀ
[2008.03.11 23:32:18 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-6.xml਍ഀ
[2008.03.28 18:05:35 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-7.xml਍ഀ
[2008.04.18 16:20:15 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-8.xml਍ഀ
[2008.06.20 14:44:51 | 00,000,950 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin-9.xml਍ഀ
[2008.03.11 23:39:20 | 00,000,962 | ---- | M] () -- C:\Documents and Settings\kora\Data aplikací\Mozilla\FireFox\Profiles\6pc7m01u.default\searchplugins\icqplugin.xml਍ഀ
[2009.08.18 08:30:39 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions਍ഀ
[2006.12.26 14:59:24 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}਍ഀ
[2009.08.05 20:05:46 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}਍ഀ
[2009.07.12 14:28:58 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}਍ഀ
[2009.08.05 20:05:46 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll਍ഀ
[2009.08.05 20:05:46 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll਍ഀ
[2008.08.06 16:22:02 | 00,114,688 | ---- | M] (Adobe Systems, Inc.) -- C:\Program Files\mozilla firefox\plugins\np32dsw.dll਍ഀ
[2009.07.12 14:28:41 | 00,410,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeploytk.dll਍ഀ
[2009.08.05 20:05:47 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll਍ഀ
[2003.07.15 07:56:52 | 00,013,888 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll਍ഀ
[2009.08.03 14:08:52 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll਍ഀ
[2008.04.16 06:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml਍ഀ
[2008.03.31 21:06:24 | 00,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml਍ഀ
[2008.03.31 21:06:24 | 00,001,687 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\mall-cz.xml਍ഀ
[2008.01.27 11:57:20 | 00,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml਍ഀ
[2008.01.27 11:57:20 | 00,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml਍ഀ
[2008.03.31 21:06:24 | 00,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml਍ഀ
਍ഀ
O1 HOSTS File: (229815 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts਍ഀ
O1 - Hosts: 127.0.0.1 localhost਍ഀ
O1 - Hosts: 127.0.0.1 www.007guard.com਍ഀ
O1 - Hosts: 127.0.0.1 007guard.com਍ഀ
O1 - Hosts: 127.0.0.1 008i.com਍ഀ
O1 - Hosts: 127.0.0.1 www.008k.com਍ഀ
O1 - Hosts: 127.0.0.1 008k.com਍ഀ
O1 - Hosts: 127.0.0.1 www.00hq.com਍ഀ
O1 - Hosts: 127.0.0.1 00hq.com਍ഀ
O1 - Hosts: 127.0.0.1 010402.com਍ഀ
O1 - Hosts: 127.0.0.1 www.032439.com਍ഀ
O1 - Hosts: 127.0.0.1 032439.com਍ഀ
O1 - Hosts: 127.0.0.1 www.1001-search.info਍ഀ
O1 - Hosts: 127.0.0.1 1001-search.info਍ഀ
O1 - Hosts: 127.0.0.1 www.100888290cs.com਍ഀ
O1 - Hosts: 127.0.0.1 100888290cs.com਍ഀ
O1 - Hosts: 127.0.0.1 www.100sexlinks.com਍ഀ
O1 - Hosts: 127.0.0.1 100sexlinks.com਍ഀ
O1 - Hosts: 127.0.0.1 www.10sek.com਍ഀ
O1 - Hosts: 127.0.0.1 10sek.com਍ഀ
O1 - Hosts: 127.0.0.1 www.123topsearch.com਍ഀ
O1 - Hosts: 127.0.0.1 123topsearch.com਍ഀ
O1 - Hosts: 127.0.0.1 www.132.com਍ഀ
O1 - Hosts: 127.0.0.1 132.com਍ഀ
O1 - Hosts: 127.0.0.1 www.136136.net਍ഀ
O1 - Hosts: 127.0.0.1 136136.net਍ഀ
O1 - Hosts: 8059 more lines...਍ഀ
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)਍ഀ
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll (Google Inc.)਍ഀ
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)਍ഀ
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)਍ഀ
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll (Google Inc.)਍ഀ
O3 - HKCU\..\Toolbar\ShellBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll (Google Inc.)਍ഀ
O3 - HKCU\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll (Google Inc.)਍ഀ
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)਍ഀ
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)਍ഀ
O4 - HKLM..\Run: [DAEMON Tools] C:\Program Files\DAEMON Tools\daemon.exe (DT Soft Ltd.)਍ഀ
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WINDOWS\System32\HDAShCut.exe (Windows (R) Server 2003 DDK provider)਍ഀ
O4 - HKLM..\Run: [HP Component Manager] C:\Program Files\HP\hpcoretech\hpcmpmgr.exe (Hewlett-Packard Company)਍ഀ
O4 - HKLM..\Run: [HP Software Update] C:\tiskárna\HP Software Update\HPWuSchd.exe (Hewlett-Packard)਍ഀ
O4 - HKLM..\Run: [Mirabilis ICQ] C:\Kilerka\ICQ\ICQ6\ICQ.exe File not found਍ഀ
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)਍ഀ
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)਍ഀ
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)਍ഀ
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()਍ഀ
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)਍ഀ
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.)਍ഀ
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.)਍ഀ
O4 - HKLM..\Run: [Ulead AutoDetector v2] C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe (Ulead Systems, Inc.)਍ഀ
O4 - HKLM..\Run: [Ulead Quick-Drop] C:\Program Files\Ulead Systems\Ulead DVD MovieFactory 4.0 Suite\Ulead Quick-Drop 1.0\Quick-Drop.exe (Ulead Systems, Inc.)਍ഀ
O4 - HKLM..\Run: [USIUDF_Eject_Monitor] C:\Program Files\Common Files\Ulead Systems\DVD\USISrv.exe (Ulead Systems)਍ഀ
O4 - HKLM..\Run: [VGAUtil] C:\Program Files\GigaByte\VGA Utility Manager\G-VGA.exe ()਍ഀ
O4 - HKLM..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe (Leadtek Research Inc.)਍ഀ
O4 - HKLM..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe (Leadtek Research Inc.)਍ഀ
O4 - HKLM..\Run: [Zástupce stránky vlastností sběrnice High Definition Audio] C:\WINDOWS\System32\HDAShCut.exe (Windows (R) Server 2003 DDK provider)਍ഀ
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)਍ഀ
O4 - HKCU..\Run: [Magentic] C:\Program Files\Magentic\bin\Magentic.exe ()਍ഀ
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)਍ഀ
O4 - HKLM..\RunOnceEx: [Flag] Reg Error: Invalid data type. File not found਍ഀ
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)਍ഀ
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\BlueSoleil.lnk = C:\MSI\MSI2\BlueSoleil.exe (IVT Corporation)਍ഀ
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\HP Digital Imaging Monitor.lnk = C:\tiskárna\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = ਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = ਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1਍ഀ
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1਍ഀ
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145਍ഀ
O8 - Extra context menu item: &ICQ Toolbar Search - C:\Program Files\ICQToolbar\toolbaru.dll (IE Toolbar)਍ഀ
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)਍ഀ
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - Reg Error: Key error. File not found਍ഀ
O9 - Extra Button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)਍ഀ
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Kilerka\ICQ6.5\ICQ.exe (ICQ, LLC.)਍ഀ
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Kilerka\ICQ6.5\ICQ.exe (ICQ, LLC.)਍ഀ
O15 - HKLM\..Trusted Domains: 32 domain(s) and sub-domain(s) not assigned to a zone.਍ഀ
O15 - HKCU\..Trusted Domains: 31 domain(s) and sub-domain(s) not assigned to a zone.਍ഀ
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_14)਍ഀ
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_14)਍ഀ
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_14)਍ഀ
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/sh ... wflash.cab (Shockwave Flash Object)਍ഀ
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)਍ഀ
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\ipp - No CLSID value found਍ഀ
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\msdaipp - No CLSID value found਍ഀ
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)਍ഀ
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)਍ഀ
O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)਍ഀ
O18 - Protocol\Filter: - text/x-mrml - C:\Program Files\Common Files\A&W\MidRadio.ocx (YAMAHA CORPORATION)਍ഀ
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)਍ഀ
O24 - Desktop Components:0 () - http://www.uschovna.cz/images/save.gif਍ഀ
O24 - Desktop Components:1 (Aktuální domovská stránka) - About:Home਍ഀ
O31 - SafeBoot: AlternateShell - cmd.exe਍ഀ
O32 - HKLM CDRom: AutoRun - 1਍ഀ
O32 - AutoRun File - [2005.07.20 21:16:01 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]਍ഀ
O32 - AutoRun File - [2004.10.26 01:40:24 | 00,000,107 | R--- | M] () - D:\autorun.inf -- [ CDFS ]਍ഀ
O34 - HKLM BootExecute: (autocheck) - File not found਍ഀ
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)਍ഀ
O34 - HKLM BootExecute: (*) - File not found਍ഀ
O34 - HKLM BootExecute: (lsdelete) - C:\WINDOWS\System32\lsdelete.exe ()਍ഀ
਍ഀ
========== Files/Folders - Created Within 30 Days ==========਍ഀ
਍ഀ
[7 C:\WINDOWS\*.tmp files]਍ഀ
File not found -- C:\Documents and Settings\kora\Plocha\Shaun Baker - HeY Hi HeLLo ਍ഀ
[2009.08.18 11:49:08 | 00,514,048 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\kora\Plocha\OTL.exe਍ഀ
[2009.08.18 10:37:29 | 00,781,909 | ---- | C] () -- C:\Documents and Settings\kora\Plocha\RSIT.exe਍ഀ
[2009.08.14 18:31:22 | 00,071,680 | ---- | C] () -- C:\WINDOWS\mbr.exe਍ഀ
[2009.08.09 11:15:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\kora\Plocha\odvirovani਍ഀ
[2009.08.06 17:42:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\kora\Data aplikací\Apple Computer਍ഀ
[2009.08.03 14:46:02 | 00,000,000 | ---D | C] -- C:\WINDOWS\Sun਍ഀ
[2009.08.03 14:08:21 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Apple Computer਍ഀ
[2009.08.03 14:08:03 | 00,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job਍ഀ
[2009.08.03 14:08:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\kora\Local Settings\Data aplikací\Apple਍ഀ
[2009.08.03 14:07:57 | 00,000,000 | ---D | C] -- C:\Program Files\Apple Software Update਍ഀ
[2009.08.03 14:07:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Apple਍ഀ
[2009.08.03 14:06:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\kora\Local Settings\Data aplikací\Apple Computer਍ഀ
[2009.07.28 12:54:28 | 00,024,064 | ---- | C] () -- C:\Documents and Settings\kora\Dokumenty\Po.doc਍ഀ
[2009.07.07 17:20:59 | 00,005,112 | ---- | C] () -- C:\WINDOWS\GPCIDrv.sys਍ഀ
[2009.03.22 11:53:19 | 00,000,036 | ---- | C] () -- C:\WINDOWS\adobeupdate.ini਍ഀ
[2008.08.27 12:54:54 | 00,003,972 | ---- | C] () -- C:\WINDOWS\System32\drivers\PciBus.sys਍ഀ
[2008.03.25 14:50:13 | 00,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI਍ഀ
[2008.01.19 00:03:05 | 00,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys਍ഀ
[2007.12.21 20:23:57 | 00,223,128 | ---- | C] () -- C:\WINDOWS\System32\drivers\dtscsi.sys਍ഀ
[2007.12.21 20:12:46 | 00,643,072 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys਍ഀ
[2007.12.21 20:12:46 | 00,096,256 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd2749.sys਍ഀ
[2007.10.13 18:13:38 | 00,000,000 | ---- | C] () -- C:\WINDOWS\of3u2a.dll਍ഀ
[2007.09.24 18:08:41 | 00,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI਍ഀ
[2007.03.04 12:43:20 | 00,000,143 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini਍ഀ
[2007.02.24 22:25:56 | 00,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI਍ഀ
[2007.01.17 18:16:48 | 00,000,112 | ---- | C] () -- C:\WINDOWS\ActiveSkin.INI਍ഀ
[2007.01.13 22:10:24 | 00,002,553 | ---- | C] () -- C:\WINDOWS\CDEX.INI਍ഀ
[2006.12.31 15:18:36 | 00,000,855 | ---- | C] () -- C:\WINDOWS\Rtcw.INI਍ഀ
[2006.12.30 16:29:29 | 00,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll਍ഀ
[2006.11.26 17:51:13 | 00,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI਍ഀ
[2006.11.26 17:49:21 | 00,000,439 | ---- | C] () -- C:\WINDOWS\wincmd.ini਍ഀ
[2006.11.26 16:58:12 | 00,019,039 | ---- | C] () -- C:\WINDOWS\System32\drivers\GVTDrv.sys਍ഀ
[2006.11.26 16:50:06 | 00,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys਍ഀ
[2006.11.26 10:40:01 | 00,016,384 | ---- | C] () -- C:\WINDOWS\System32\WINKRNME.DLL਍ഀ
[2006.11.15 11:19:02 | 00,000,002 | ---- | C] () -- C:\WINDOWS\System32\Dvbpws.dll਍ഀ
[2006.10.09 18:13:09 | 00,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar_mpfc.dll਍ഀ
[2006.09.13 18:10:58 | 00,000,502 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI਍ഀ
[2006.09.13 17:50:44 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll਍ഀ
[2006.06.01 17:22:00 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll਍ഀ
[2006.06.01 17:22:00 | 01,486,848 | ---- | C] () -- C:\WINDOWS\System32\nview.dll਍ഀ
[2006.06.01 17:22:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll਍ഀ
[2006.06.01 17:22:00 | 00,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll਍ഀ
[2006.06.01 17:22:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll਍ഀ
[2006.06.01 17:22:00 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll਍ഀ
[2005.10.14 12:56:50 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll਍ഀ
[2005.10.14 12:56:50 | 00,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll਍ഀ
[2005.10.14 12:56:50 | 00,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll਍ഀ
[2005.10.14 12:56:50 | 00,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll਍ഀ
[2005.10.14 12:56:50 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll਍ഀ
[2005.10.14 12:56:50 | 00,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll਍ഀ
[2005.10.14 12:56:50 | 00,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll਍ഀ
[2005.10.14 12:56:50 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll਍ഀ
[2005.07.20 21:34:28 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini਍ഀ
[2005.04.30 15:50:20 | 00,011,860 | ---- | C] () -- C:\WINDOWS\System32\drivers\vbtenum.sys਍ഀ
[2004.12.16 17:32:54 | 00,013,304 | ---- | C] () -- C:\WINDOWS\System32\drivers\BTNetFilter.sys਍ഀ
[2004.08.18 14:00:00 | 00,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll਍ഀ
[2004.08.18 14:00:00 | 00,000,905 | ---- | C] () -- C:\WINDOWS\win.ini਍ഀ
[2004.08.18 14:00:00 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini਍ഀ
[2004.02.26 12:56:46 | 00,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll਍ഀ
[2003.04.09 16:38:04 | 00,005,664 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI਍ഀ
਍ഀ
========== Files - Modified Within 30 Days ==========਍ഀ
਍ഀ
[3 C:\WINDOWS\System32\*.tmp files]਍ഀ
[7 C:\WINDOWS\*.tmp files]਍ഀ
File not found -- C:\Documents and Settings\kora\Plocha\Shaun Baker - HeY Hi HeLLo ਍ഀ
[2009.08.18 11:49:16 | 00,514,048 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\kora\Plocha\OTL.exe਍ഀ
[2009.08.18 10:37:31 | 00,781,909 | ---- | M] () -- C:\Documents and Settings\kora\Plocha\RSIT.exe਍ഀ
[2009.08.18 10:05:31 | 00,005,112 | ---- | M] () -- C:\WINDOWS\GPCIDrv.sys਍ഀ
[2009.08.18 10:05:31 | 00,000,004 | ---- | M] () -- C:\WINDOWS\System32\GVGenl.ref਍ഀ
[2009.08.18 10:05:14 | 00,178,358 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml਍ഀ
[2009.08.18 10:05:12 | 00,019,039 | ---- | M] () -- C:\WINDOWS\System32\drivers\GVTDrv.sys਍ഀ
[2009.08.18 10:05:12 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT਍ഀ
[2009.08.18 10:05:12 | 00,000,004 | ---- | M] () -- C:\WINDOWS\System32\GVTunner.ref਍ഀ
[2009.08.18 10:05:03 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat਍ഀ
[2009.08.18 08:19:02 | 00,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl਍ഀ
[2009.08.14 18:31:23 | 00,071,680 | ---- | M] () -- C:\WINDOWS\mbr.exe਍ഀ
[2009.08.08 18:18:08 | 00,103,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe਍ഀ
[2009.08.07 11:16:00 | 00,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job਍ഀ
[2009.08.03 13:33:12 | 00,079,872 | ---- | M] () -- C:\Documents and Settings\kora\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini਍ഀ
[2009.08.03 13:33:12 | 00,000,143 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini਍ഀ
[2009.07.28 12:54:28 | 00,024,064 | ---- | M] () -- C:\Documents and Settings\kora\Dokumenty\Po.doc਍ഀ
< End of report >਍ഀ

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Log z RSIT nejde vytvorit, PC je pomale

#17 Příspěvek od motji »

:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#18 Příspěvek od anger »

DO patku jsem na jinem PC,odpovim tedy v patek.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Log z RSIT nejde vytvorit, PC je pomale

#19 Příspěvek od motji »

:)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#20 Příspěvek od anger »

tak tady je log:
Malwarebytes' Anti-Malware 1.40
Verze databáze: 2682
Windows 5.1.2600 Service Pack 2

23.8.2009 13:51:14
mbam-log-2009-08-23 (13-51-14).txt

Typ skenu: Úplný sken (C:\|)
Objektu skenováno: 208097
Uplynulý cas: 56 minute(s), 13 second(s)

Infikované procesy pameti: 0
Infikované pametové moduly: 0
Infikované klíce registru: 0
Infikované hodnoty registru: 0
Infikované položky dat registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy pameti:
(Žádné zákerné položky nebyly zjišteny)

Infikované pametové moduly:
(Žádné zákerné položky nebyly zjišteny)

Infikované klíce registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované hodnoty registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované položky dat registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované složky:
(Žádné zákerné položky nebyly zjišteny)

Infikované soubory:
(Žádné zákerné položky nebyly zjišteny)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Log z RSIT nejde vytvorit, PC je pomale

#21 Příspěvek od motji »

:arrow: Start - ovládací panely - možnosti složky - zobrazení - odkrýt skryté a systémové soubory

:arrow: Dejte soubor otestovat na http://www.virustotal.com

C:\MSI\MSI2\BlueSoleil.exe
C:\WINDOWS\System32\DRIVERS\se59bus.sys
C:\WINDOWS\System32\drivers\wfcxdtun.sys
D:\autorun.inf
C:\WINDOWS\of3u2a.dll
C:\WINDOWS\System32\unrar_mpfc.dll
C:\WINDOWS\System32\GVGenl.ref

Do okénka zkopírujte cestu k souboru , pokud napíše, že soubor byl už testován, dejte otestovat znovu.
Sem vložte link s výsledky.


:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
O4 - HKLM..\Run: [Mirabilis ICQ] C:\Kilerka\ICQ\ICQ6\ICQ.exe File not found
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [VGAUtil] C:\Program Files\GigaByte\VGA Utility Manager\G-VGA.exe ()
O4 - HKCU..\Run: [Magentic] C:\Program Files\Magentic\bin\Magentic.exe ()
O4 - HKLM..\RunOnceEx: [Flag] Reg Error: Invalid data type. File not found

:files
C:\WINDOWS\System32\Dvbpws.dll

:COMMANDS
[start explorer]
[Reboot]
-klikněte na tlačítko Run fix.
-Následně se pc restartuje.
- Log vložte zde :)

můžete
:arrow: Pročistit pc s CCleaner,viz můj podpis

:arrow: Omezit spouštění zbytečných programů po startu
Stáhněte z mého podpisu program StartUpLite
vypíše seznam zbytečně spouštěných programů po startu, vyberete které chcete zastavit,u nich zaškrtnete Disable a klikněte na Continue
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#22 Příspěvek od anger »

Ty prvni dva kroky my nejdou, u OTL se zadny log nevygeneruje a na virtuostal.com to vlozit nejde...chce to zadat cestu v PC

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Log z RSIT nejde vytvorit, PC je pomale

#23 Příspěvek od motji »

:arrow: U Otl máte v té samé složce log - on se pouze přepsal.
:arrow: Na virustotalu dáte procházet, a do spodního okénka nakopírujete přímo cestu k souboru a dáte odeslat, např C:\MSI\MSI2\BlueSoleil.exe
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#24 Příspěvek od anger »

Jojo u OTL jsem ten log nasla, ale prisel mi stejny jako ten prvni...ale ja to muzu asi tezko posuzovat ze:o)
Na tom PC budu az o vikendu, takze provedu a poslu...diky za postup....

zatim hezky vecer

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Log z RSIT nejde vytvorit, PC je pomale

#25 Příspěvek od motji »

Dobře, pak se ozvěte :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#26 Příspěvek od anger »

Tak tady jsou postupne vystupy z virustotalu:
Soubor BlueSoleil.exe přijatý 2009.09.26 07:13:55 (UTC)
Současný stav: Čekejte ... Ve frontě Čekání Testování Dokončeno NENALEZENO ZASTAVENO
Výsledek: 0/41 (0%)
Načítám informace ze serveru...
Váš soubor čeká ve frontě na pozici: 2.
Odhadovaný čas začátku mezi 50 a 71 sekundami.
Nezavírejte toto okno dokud nebude test dokončen.
Právě testující program byl je zastaven, probíhá čekání na program.
Za chvíli bude proveden další pokus o otestování souboru.
Pokud budete čekat déle než-li pět minut odešlete Váš soubor znovu.
Váš soubor je nyní testován pomocí VirusTotal,
výsledky budou zobrazeny po dokončení.
Formátované Formátované
Vytisknout výsledky Vytisknout výsledky
Váš soubor není platný, nebo neexistuje.
Služba je pozastavena v tuto chvíli, váš soubor čeká na otestování (pozice: ) po nespecifikovanou dobu.

Nyní čekejte na odezvu webu (automatické obnovení), nebo napište email do pole a klikněte na "vyžádat" a systém Vám zašle email s výsledky až bude test hotov.
Email:

Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.25 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2441 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.853 2009.09.24 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.51.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 1208320 bytes
MD5...: db47cc6d1d7ed08fed0844dd642bcb76
SHA1..: 5976bb16f1eda37ae5e822b2b20f512fafec3018
SHA256: eb2eb5ea4e17e5165ccde027d6100b59c16eae59f335ea8d70b43874e5f1ab15
ssdeep: 24576:cOCcB3MKsUy+JHudm5MwIuptwnKEB0WjIoJ/vxno5:RhB3MKby6MwTPwnp
BJj7J/vxno5
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0xb4fdf
timedatestamp.....: 0x42aff91d (Wed Jun 15 09:47:09 2005)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xda7b4 0xdb000 6.58 24eeb3e4de46db711e077d784aa45cdc
.rdata 0xdc000 0x21e19 0x22000 5.42 8cdbd06dc8263e892cc7a6f069bb34d2
.data 0xfe000 0x1e4cc 0x10000 4.98 106c107ac0c4eca17d7dd782b2256740
.rsrc 0x11d000 0x18900 0x19000 3.79 ded29b88aa7bd630773db510b6f2e07b

( 24 imports )
> btpcfg.dll: _SleepWaringMessageBox@@YAHH@Z, _DisplaySppConnInfo@@YAHPAEPAD0@Z, _LocalDvcFirstSetting@@YAHPAUBTP_Dvc_Gnr_Info@@@Z, _CancelPinCode@@YAXXZ, _LocalDvcSetting@@YAHPAUBTP_Dvc_Gnr_Info@@@Z, _SecurityConfig@@YAHPAE000@Z, _AllSrcConfig@@YAHPAEGPAD@Z, _ConfigurateAvSourcClient@@YAHPAE@Z, _GetPinCode@@YAHPAE0H0@Z, _ShowAuthorPromptDlg@@YAHPAEPADHH@Z, _GetSearchRule@@YAHPAUtagSEARCH_RULE@@@Z, _GetCustomInputDvcAddr@@YAHPAEPADH@Z, _GprsStcConfig@@YAHPAE@Z, _ConfigurateQuickConn@@YAHPAE000@Z, _ShowForceStopServiceMessageBox@@YAHPAEPAD@Z, _TransportConfig@@YAHPAD@Z, _GetDvcFromHistory@@YAHPAV_$CList@PAUBTPRemoteDeviceItem@@PAU1@@@PAPAUBTPRemoteDeviceItem@@PAHPAE@Z
> MSACM32.dll: acmStreamConvert, acmStreamPrepareHeader, acmStreamUnprepareHeader, acmStreamClose, acmStreamOpen, acmFormatEnumA, acmFormatTagEnumA, acmMetrics, acmStreamReset, acmStreamSize, acmDriverClose, acmDriverEnum, acmDriverDetailsA, acmDriverOpen
> WS2_32.dll: -, -, -, -, -, -, -, -, WSASocketW, -, -, -, -, -, -, -
> RPCRT4.dll: NdrFixedArrayMarshall, RpcStringBindingComposeA, RpcBindingFromStringBindingA, RpcStringFreeA, RpcServerUseProtseqEpA, RpcServerRegisterIf, RpcServerListen, RpcMgmtStopServerListening, RpcServerUnregisterIf, NdrClientInitializeNew, NdrConformantArrayMarshall, NdrSendReceive, NdrGetBuffer, NdrFreeBuffer, NdrFixedArrayUnmarshall, NdrServerInitializeNew, I_RpcGetCurrentCallHandle, NdrAllocate, RpcBindingFree, I_RpcGetBuffer, NdrConformantArrayUnmarshall, RpcRaiseException, NdrConformantArrayBufferSize, NdrConvert
> RASAPI32.dll: RasEnumEntriesA, RasGetErrorStringA, RasHangUpA, RasGetConnectStatusA, RasGetEntryPropertiesA, RasDialA, RasSetEntryPropertiesA, RasEnumConnectionsA
> iphlpapi.dll: GetIpNetTable, GetNetworkParams, DeleteIpNetEntry, GetAdaptersInfo, GetInterfaceInfo, IpReleaseAddress, IpRenewAddress
> SETUPAPI.dll: SetupDiEnumDeviceInterfaces, SetupDiOpenDevRegKey, SetupDiSetClassInstallParamsA, SetupDiGetClassDevsA, SetupDiCallClassInstaller, SetupDiGetDeviceInstallParamsA, SetupDiDestroyDeviceInfoList, SetupDiEnumDeviceInfo, SetupDiGetDeviceRegistryPropertyA, SetupDiGetDeviceInterfaceDetailA
> setup.dll: Is1stLapModemInstalled, WiseInstallLapNullMdm2K, GetMdmnameOnComIdx
> MFC42.DLL: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> MSVCRT.dll: _terminate@@YAXXZ, __dllonexit, wcscmp, wcsncpy, printf, _inp, _itoa, localtime, _findnext, _findfirst, _findclose, wcscpy, calloc, memchr, realloc, _chdir, _mktemp, __RTDynamicCast, isdigit, _purecall, remove, _strnicmp, fprintf, strrchr, mbstowcs, _mbsstr, _mbsupr, wcstombs, _mbsicmp, tmpfile, _mbsnbcpy, _mbslen, _mbsrchr, wcslen, _filelength, fwrite, _exit, _onexit, fread, fclose, _unlink, atol, _stricmp, strtok, _splitpath, strchr, _mbsnbicmp, atoi, cos, sin, pow, rand, sscanf, abs, _mbscmp, memmove, _ftol, difftime, vsprintf, strncmp, _mkdir, _strupr, strcmp, time, strncpy, sprintf, strstr, strcat, memcmp, malloc, free, memset, _except_handler3, memcpy, strlen, strcpy, __CxxFrameHandler, _acmdln, _XcptFilter, exit, __setusermatherr, __getmainargs, _initterm, __p__fmode, _adjust_fdiv, __p__commode, __set_app_type, __1type_info@@UAE@XZ, fopen, _controlfp, fseek, srand, _setmbcp, _strdup
> KERNEL32.dll: ReleaseSemaphore, GetWindowsDirectoryA, GetPrivateProfileIntA, ResetEvent, LeaveCriticalSection, DeleteCriticalSection, EnterCriticalSection, GetComputerNameA, WritePrivateProfileStringA, InitializeCriticalSection, GetPrivateProfileStringA, CreateThread, TerminateThread, WaitForSingleObject, WaitForMultipleObjects, GetVersionExA, Beep, CloseHandle, GetTickCount, GetCurrentProcess, SetPriorityClass, GetVersion, Sleep, SetEvent, CreateEventA, GetPrivateProfileStructA, FreeLibrary, CreateSemaphoreA, CreateMutexA, LoadLibraryA, WritePrivateProfileStructA, OutputDebugStringA, GetLocalTime, MultiByteToWideChar, lstrlenA, GetProcAddress, GetLastError, DefineDosDeviceA, QueryDosDeviceA, CreateProcessA, CreateFileA, FileTimeToLocalFileTime, DeviceIoControl, GlobalUnlock, GlobalAlloc, SystemTimeToFileTime, GlobalLock, GetFileAttributesA, GlobalSize, GetTimeFormatA, GetDateFormatA, lstrcpyA, GlobalFree, WideCharToMultiByte, FileTimeToSystemTime, GetModuleFileNameA, LocalUnlock, CreateDirectoryA, LocalLock, LocalAlloc, LocalFree, GetSystemDirectoryA, GetCurrentProcessId, lstrcmpA, SetCurrentDirectoryA, CopyFileA, GetModuleHandleA, OpenEventA, ReadFile, FindFirstFileA, GetTimeZoneInformation, GetFileSize, SetFileAttributesA, FindClose, RemoveDirectoryA, GetLogicalDriveStringsA, SetThreadPriority, FindNextFileA, ReleaseMutex, CreateSemaphoreW, GetACP, FlushFileBuffers, GetOverlappedResult, ExitThread, WriteFile, SetLastError, EscapeCommFunction, SetupComm, ClearCommError, SetCommTimeouts, SetCommState, PurgeComm, SetCommMask, WaitCommEvent, GetCommState, GlobalHandle, CreateEventW, GetCommModemStatus, DefineDosDeviceW, CreateFileW, GetFileAttributesW, GetCurrentDirectoryW, GetStartupInfoA, GetWindowsDirectoryW, GetCurrentDirectoryA
> USER32.dll: UpdateWindow, EnumWindows, GetClassNameA, GetDlgItemTextA, GetWindowModuleFileNameA, SetDlgItemTextA, SendMessageTimeoutA, wsprintfW, MessageBoxW, wsprintfA, GetWindowThreadProcessId, InvalidateRect, LoadMenuA, GetSubMenu, EnableMenuItem, GetWindowRect, CheckDlgButton, GetClientRect, GetSystemMenu, PostThreadMessageA, DispatchMessageA, FindWindowExA, GetDlgCtrlID, GetWindowLongA, GetKeyState, IsWindowVisible, IsWindowEnabled, SendMessageA, PostMessageA, MessageBoxA, KillTimer, SetTimer, EnableWindow, BeginPaint, DrawIcon, EndPaint, GetParent, TranslateMessage, LoadStringA, MessageBeep, GetClipboardFormatNameA, RegisterClipboardFormatA, EqualRect, SetRect, DestroyIcon, PeekMessageA, PostQuitMessage, IsWindow, UnregisterDeviceNotification, RegisterDeviceNotificationA, ScreenToClient, LoadBitmapA, TrackPopupMenu, TranslateAcceleratorA, IntersectRect, IsRectEmpty, CopyRect, LoadAcceleratorsA, RegisterWindowMessageA, SetWindowLongA, GetCursorPos, SetCursorPos, GrayStringA, DrawTextA, TabbedTextOutA, GetMenuItemCount, ReleaseDC, LoadCursorA, GetSystemMetrics, InflateRect, CheckMenuItem, DeleteMenu, GetMenu, AppendMenuA, CreatePopupMenu, InsertMenuA, LoadIconA, GetCursor, EndDialog, DialogBoxIndirectParamA, GetDialogBaseUnits, SystemParametersInfoA, WinHelpA, GetDesktopWindow, EnumChildWindows, GetDC, SetFocus, SetCursor, ClientToScreen, GetDoubleClickTime, DrawEdge, DrawStateA, FrameRect, FindWindowA, GetActiveWindow, GetCapture, SetCapture, WindowFromPoint, ReleaseCapture, GetIconInfo, LoadImageA, DestroyCursor, FillRect, GetWindow, OffsetRect, IsIconic, GetFocus, ShowWindow, SetForegroundWindow, GetDlgItem, GetWindowTextA, DrawFocusRect, PtInRect, RedrawWindow, GetSysColor, LoadCursorFromFileA
> GDI32.dll: PatBlt, GetObjectA, DeleteObject, StrokePath, CreateFontIndirectA, DeleteDC, SelectObject, CreateDCA, ExtTextOutA, TextOutA, RectVisible, GetTextMetricsA, CreateCompatibleDC, CreateCompatibleBitmap, Escape, BitBlt, GetTextExtentPoint32A, CreatePolygonRgn, CombineRgn, CreateBrushIndirect, PolyBezier, BeginPath, EndPath, PtVisible, CreateSolidBrush, SetPixel, Rectangle, CreatePen, GetStockObject, CreateRectRgn, GetCurrentObject, SetDIBitsToDevice, SetStretchBltMode
> WINSPOOL.DRV: GetPrinterA, EnumJobsA, -, ClosePrinter, -, OpenPrinterA, SetJobA, SetPrinterA
> ADVAPI32.dll: OpenServiceA, RegCloseKey, OpenSCManagerA, CreateServiceW, StartServiceW, OpenServiceW, OpenSCManagerW, RegQueryValueExW, RegEnumKeyW, RegOpenKeyExW, RegEnumKeyA, QueryServiceConfigA, ChangeServiceConfigA, QueryServiceStatus, StartServiceA, InitializeSecurityDescriptor, RegOpenKeyA, RegQueryInfoKeyA, RegEnumKeyExA, RegCreateKeyExA, ControlService, CloseServiceHandle, RegQueryValueExA, RegOpenKeyExA, RegSetValueExA, SetSecurityDescriptorDacl
> SHELL32.dll: ShellExecuteA, Shell_NotifyIconA, SHGetMalloc, SHGetFileInfoA, SHGetPathFromIDListA, SHGetSpecialFolderPathA, SHGetSpecialFolderLocation, ShellExecuteExA
> COMCTL32.dll: ImageList_Add, ImageList_AddMasked
> ole32.dll: CoCreateInstance, CoInitialize, CreateStreamOnHGlobal, OleInitialize, OleUninitialize, CoUninitialize, OleFlushClipboard, CoReleaseMarshalData, CoUnmarshalInterface, RegisterDragDrop, CoMarshalInterface, CoInitializeEx, ReleaseStgMedium, OleGetClipboard, OleSetClipboard, DoDragDrop
> OLEAUT32.dll: -, -, -, -, -
> WSOCK32.dll: -
> btwin.dll: _Hide@CXInfoTip@@QAEXXZ, _ShowBalloonText@CInfoTip@@QAEXIVCString@@HH@Z, _Show@CXInfoTip@@QAEXVCString@@PAVCPoint@@@Z, __1CXInfoTip@@UAE@XZ, _OnMouseMove@CDevButton@@IAEXIVCPoint@@@Z, __0CInfoTip@@QAE@XZ, __1CInfoTip@@UAE@XZ, _SetTextColor@CScrlList@@QAEXKK@Z, __1CScrlList@@UAE@XZ, _CreateBitmapMask@@YAPAUHBITMAP__@@PAU1@KKK@Z, _MyCreate@CInfoTip@@QAEHPAVCWnd@@@Z, _Create@CXInfoTip@@QAEHPAVCWnd@@@Z, _SetSelect@CDevButton@@QAEXH@Z, __0CXInfoTip@@QAE@XZ, _messageMap@CScrlList@@1UAFX_MSGMAP@@B, __0CScrlList@@QAE@XZ, _SetBkImage@CScrlList@@QAEHI@Z, _ShowIn@CDevButton@@QAEXH@Z, _SetRssiAppearance@CDevButton@@QAEXKK@Z, _SetState@CDevButton@@QAEXK@Z, _IsShowRssi@CDevButton@@QAEHXZ, __0CBackgroundUtil@@QAE@XZ, _SetWindowApparent@CXInfoTip@@QAEXKKKK@Z, _LoadBitmapA@CDevButton@@QAEHIHHKPAUHICON__@@@Z, _Create@CDevButton@@QAEHPBDKABUtagRECT@@PAVCWnd@@I@Z, _SetWindowTextFont@CDevButton@@QAEXHK@Z, __1CBackgroundUtil@@UAE@XZ, _GetWindowRect@CDevButton@@QBEHPAUtagRECT@@@Z, _SetWindowShape@CXInfoTip@@QAEXHH@Z, _GetMessageMap@CInfoTip@@MBEPBUAFX_MSGMAP@@XZ, _PreTranslateMessage@CInfoTip@@UAEHPAUtagMSG@@@Z, _GetMessageMap@CXInfoTip@@MBEPBUAFX_MSGMAP@@XZ, _RelayEvent@CXInfoTip@@QAEXPAUtagMSG@@@Z, _GetBckGndSize@CBackgroundUtil@@QAE_AVCSize@@XZ, _OnLButtonDown@CDevButton@@IAEXIVCPoint@@@Z, _OnLButtonUp@CDevButton@@IAEXIVCPoint@@@Z, _CenterBitmap@CBackgroundUtil@@IAEHPAVCDC@@VCRect@@@Z, _GetWindowSize@CDevButton@@QAE_BVCSize@@XZ, _MoveWindow@CDevButton@@QAEHHHHHH@Z, _SetWindowTextLenLimite@CDevButton@@QAEXH@Z, __0CDevButton@@QAE@XZ, __1CDevButton@@UAE@XZ, _AddTool@CXInfoTip@@QAEXPAVCWnd@@PBDPAUHICON__@@@Z, _OnLButtonDown@CKButton@@IAEXIVCPoint@@@Z, _LoadBitmapA@CKButton@@QAEHIHKPAUHICON__@@@Z, _IsAnotherInstanceRunning@CLimitSingleInstance@@QBE_NXZ, _Hide@CInfoTip@@QAEXXZ, __1CLimitSingleInstance@@UAE@XZ, __0CLimitSingleInstance@@QAE@XZ, _Create@CLimitSingleInstance@@QAEXPBD@Z, _SetRssiPos@CDevButton@@QAEXH@Z, _ShowWindow@CDevButton@@QAEHH@Z, _HitTest@CDevButton@@QAEHVCPoint@@@Z, _ShowOut@CDevButton@@QAEXH@Z, _ShowRssi@CDevButton@@QAEXH@Z, _SetWindowTextA@CDevButton@@QAEXPADH@Z, _OnMouseMove@CKButton@@IAEXIVCPoint@@@Z, _LoadBitmapA@CKButton@@QAEHIHHKPAUHICON__@@@Z, _messageMap@CKButton@@1UAFX_MSGMAP@@B, _SetBitmap@CBackgroundUtil@@QAEHPBD@Z, _OnTimer@CDevButton@@QAEHI@Z, _OnDraw@CDevButton@@QAEXPAVCDC@@@Z, _SetCircle@CDevButton@@SAXABVCPoint@@H@Z, __0CKButton@@QAE@XZ, __1CKButton@@UAE@XZ, _GetRuntimeClass@CKButton@@UBEPAUCRuntimeClass@@XZ, _DrawItem@CKButton@@MAEXPAUtagDRAWITEMSTRUCT@@@Z, _ChangeBitmap@CKButton@@UAEXH@Z, _GetState@CDevButton@@QAEKXZ, _SetPaired@CDevButton@@QAEXH@Z, _Invalidate@CDevButton@@QAEXH@Z, _DrawItem@CScrlList@@UAEXPAUtagDRAWITEMSTRUCT@@@Z, _OnLButtonUp@CKButton@@IAEXIVCPoint@@@Z
> versit.dll: deleteStr, vObjectUStringZValue, isAPropertyOf, nextVObject, cleanVObject, fakeCString, moreIteration, writeVObjectToFile, addProp, addPropValue, newVObject, deleteVObject, Parse_MIME, vObjectStringZValue, initPropIterator, nextVObjectInList, vObjectName
> WINMM.dll: waveOutWrite, waveOutUnprepareHeader, waveOutClose, waveOutPrepareHeader, waveOutReset, waveOutOpen, waveInGetDevCapsA, timeSetEvent, timeKillEvent, waveOutGetDevCapsA, waveOutGetNumDevs, waveInGetNumDevs, waveInMessage, waveOutMessage
> gdiplus.dll: GdiplusStartup, GdipCloneImage, GdipAlloc, GdipFree, GdipCreateFromHDC, GdipLoadImageFromFile, GdipDrawImageRectI, GdipDisposeImage, GdipDeleteGraphics, GdiplusShutdown

( 17 exports )
_BIPAPP_Start@@YAHPAE0@Z, _BIPAPP_Stop@@YAHPAE@Z, _BIPAPP_UIRegCbk@@YAXPAE0@Z, _CheckLicense@@YAIPAEPADPAK@Z, _FTPAPP_Done@@YAXXZ, _FTPAPP_Init@@YAHXZ, _FTPAPP_IsBusy@@YAEPAE@Z, _FTPAPP_Start@@YAHPAEPAUBTPRemoteDeviceItem@@@Z, _FTPAPP_Stop@@YAHPAE@Z, _FTPAPP_UIRegCbk@@YAXPAE0@Z, _LoadLicense@@YAHPBD@Z, _SYNCAPP_Start@@YAHPAEPAUBTPRemoteDeviceItem@@@Z, _SYNCAPP_Stop@@YAHPAE@Z, _SYNCAPP_SvrStart@@YAHPAE@Z, _SYNCAPP_SvrStop@@YAHPAE@Z, _SYNCAPP_UIRegCbk@@YAXPAE0@Z, _UnLoadLicense@@YAHXZ
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable MS Visual C++ (generic) (75.0%)
Win32 Executable Generic (16.9%)
Generic Win/DOS Executable (3.9%)
DOS Executable Generic (3.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:
publisher....: IVT Corporation
copyright....: Copyright (C) 2000-2004
product......: BlueSoleil
description..: Bluetooth Application
original name: BlueSol.exe
internal name: BlueSoleil
file version.: 1, 6, 2, 0
comments.....:
signers......: -
signing date.: -
verified.....: Unsigned

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#27 Příspěvek od anger »

Soubor se59bus.sys přijatý 2009.09.26 07:35:12 (UTC)
Současný stav: Čekejte ... Ve frontě Čekání Testování Dokončeno NENALEZENO ZASTAVENO
Výsledek: 0/41 (0%)
Načítám informace ze serveru...
Váš soubor čeká ve frontě na pozici: 1.
Odhadovaný čas začátku mezi 40 a 57 sekundami.
Nezavírejte toto okno dokud nebude test dokončen.
Právě testující program byl je zastaven, probíhá čekání na program.
Za chvíli bude proveden další pokus o otestování souboru.
Pokud budete čekat déle než-li pět minut odešlete Váš soubor znovu.
Váš soubor je nyní testován pomocí VirusTotal,
výsledky budou zobrazeny po dokončení.
Formátované Formátované
Vytisknout výsledky Vytisknout výsledky
Váš soubor není platný, nebo neexistuje.
Služba je pozastavena v tuto chvíli, váš soubor čeká na otestování (pozice: ) po nespecifikovanou dobu.

Nyní čekejte na odezvu webu (automatické obnovení), nebo napište email do pole a klikněte na "vyžádat" a systém Vám zašle email s výsledky až bude test hotov.
Email:

Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.25 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2441 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.853 2009.09.24 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.51.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 61536 bytes
MD5...: 7c38fc284136981ebe002252fa0900d3
SHA1..: 5dbbffb7fbd8704426f0e1e8e383fb2a6035b010
SHA256: 0856feb57da0990c141078cb8033dc357aa0c21962dd65727fe6613cb759f68a
ssdeep: 1536:Je4b+LQy9lhc///8HqPFG4B3CH473t0xofBm3ZXhWOaf+Dl:VbwQ/0qPFG4
FCH473t0x+w3BIOamp
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0xc50
timedatestamp.....: 0x44fdcad1 (Tue Sep 05 19:06:57 2006)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x2a0 0xc7d8 0xc7e0 6.34 25a6a70d20954644b19c72c788379de9
.data 0xca80 0x10 0x20 1.06 51fb8b9a1cbfe3eb01afed9e8d91f9dd
INIT 0xcaa0 0x780 0x780 5.24 b301192a69a0a16652a84e9cadf1ccad
.rsrc 0xd220 0x358 0x360 3.32 3b9dcd8db69951ef66cee434e4156d48
.reloc 0xd580 0x6aa 0x6c0 6.02 de2711af7dd60e0b5c79a0a16a8e5fbd

( 3 imports )
> NTOSKRNL.EXE: InterlockedIncrement, ObfDereferenceObject, IoInvalidateDeviceRelations, KeInitializeEvent, IoCreateDevice, IoDeleteDevice, InterlockedDecrement, KeReleaseMutex, RtlEqualUnicodeString, RtlInitUnicodeString, KeInitializeMutex, ExQueueWorkItem, IoAllocateDriverObjectExtension, KeSetEvent, KeWaitForSingleObject, IoGetDriverObjectExtension, IoGetDeviceProperty, KeInitializeSpinLock, IoAttachDeviceToDeviceStack, IofCallDriver, RtlAppendUnicodeToString, ZwClose, RtlQueryRegistryValues, IoDeleteSymbolicLink, ExFreePool, ObReferenceObjectByPointer, InterlockedCompareExchange, InterlockedExchange, IoReleaseCancelSpinLock, KeCancelTimer, IofCompleteRequest, MmUnlockPages, MmMapLockedPages, MmProbeAndLockPages, KeClearEvent, KeResetEvent, KefAcquireSpinLockAtDpcLevel, IoDetachDevice, IoFreeIrp, IoAllocateIrp, IoCreateUnprotectedSymbolicLink, memmove, ZwQueryValueKey, ExAllocatePoolWithTag, KeQuerySystemTime, RtlDeleteRegistryValue, ZwSetValueKey, KeSetTimer, KeInitializeDpc, KeInitializeTimer, IoInitializeIrp, KeReadStateTimer, IoCancelIrp, RtlUnwind
> HAL.DLL: KfAcquireSpinLock, KfReleaseSpinLock, KeGetCurrentIrql
> se59wh.sys: _MCCIWH_FindPoCallDriver@4, _MCCIWH_QuerySystemVersion@4, _MCCIWH_FindPoSetPowerState@4, _MCCIWH_FindPoRequestPowerIrp@4, _MCCIWH_FindPoStartNextPowerIrp@4, _MCCIWH_FindIoGetAttachedDeviceReference@4, _MCCIWH_FindIoOpenDeviceRegistryKey@4, _MCCIWH_FindIoSetDeviceInterfaceState@4, _MCCIWH_FindIoRegisterDeviceInterface@4

( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
sigcheck:
publisher....: MCCI
copyright....: Copyright (c) MCCI 1997-2005
product......: Sony Ericsson Device 089
description..: Sony Ericsson Device 089 Driver
original name: se59bus.sys
internal name: se59bus.sys
file version.: V4.34
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#28 Příspěvek od anger »

Soubor wfcxdtun.sys přijatý 2009.09.26 07:38:11 (UTC)
Současný stav: Čekejte ... Ve frontě Čekání Testování Dokončeno NENALEZENO ZASTAVENO
Výsledek: 0/41 (0%)
Načítám informace ze serveru...
Váš soubor čeká ve frontě na pozici: ___.
Odhadovaný čas začátku mezi ___ a ___ .
Nezavírejte toto okno dokud nebude test dokončen.
Právě testující program byl je zastaven, probíhá čekání na program.
Za chvíli bude proveden další pokus o otestování souboru.
Pokud budete čekat déle než-li pět minut odešlete Váš soubor znovu.
Váš soubor je nyní testován pomocí VirusTotal,
výsledky budou zobrazeny po dokončení.
Formátované Formátované
Vytisknout výsledky Vytisknout výsledky
Váš soubor není platný, nebo neexistuje.
Služba je pozastavena v tuto chvíli, váš soubor čeká na otestování (pozice: ) po nespecifikovanou dobu.

Nyní čekejte na odezvu webu (automatické obnovení), nebo napište email do pole a klikněte na "vyžádat" a systém Vám zašle email s výsledky až bude test hotov.
Email:

Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.25 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2441 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.853 2009.09.24 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.51.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 21248 bytes
MD5...: b5ead1b8f23daa2dd14ad9cc4c8e91ec
SHA1..: b0c784834764f4b1a8167697917d5ac502e4fa1c
SHA256: e7838f0b876d392f641e8faf667a330fecd0695c856835f8a847014f75673fb9
ssdeep: 384:VJ0W2DBKV27Bpv3V3mioHiXGox/FcdSXVeStrtOrkjRvTojUfpZ:VJY7B3oH
ilxaGwStrtOSOjop
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x244e
timedatestamp.....: 0x44234a07 (Fri Mar 24 01:23:19 2006)
machinetype.......: 0x14c (I386)

( 8 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x500 0x1120 0x1180 6.42 daf167724547b8d1b5ed3cb3bd89d18b
.rdata 0x1680 0x386 0x400 4.45 fa5ac310d8a6cf85a85f1b1e57ff9a1b
.data 0x1a80 0x1c 0x80 0.54 635087952a9af2e732b609d9cedd7402
PAGE 0x1b00 0x20c0 0x2100 6.40 258ad2d6fd15257474a670f46cc37a8b
PAGECONS 0x3c00 0x98c 0xa00 2.81 702d3bad28de3665841caafd1c5d078f
INIT 0x4600 0x4d2 0x500 4.95 dfddecd4548ef48c88ecf76532033f95
.rsrc 0x4b00 0x3c8 0x400 3.22 c65d3ab34300893aeb63baf3b824c3a9
.reloc 0x4f00 0x3ec 0x400 5.57 57ce23fa322fb483d2a3cc2584fe1237

( 3 imports )
> NTOSKRNL.EXE: RtlQueryRegistryValues, memmove, wcslen, KeDelayExecutionThread, ObfDereferenceObject, KeSetEvent, IoFreeIrp, KeWaitForSingleObject, IofCallDriver, KeInitializeEvent, IoAllocateIrp, RtlInitUnicodeString, IoGetDeviceInterfaces, IoBuildSynchronousFsdRequest, sprintf, RtlInitAnsiString, RtlAnsiStringToUnicodeString, IoOpenDeviceRegistryKey, ZwOpenKey, ZwQueryValueKey, PsCreateSystemThread, ObReferenceObjectByHandle, PsTerminateSystemThread, RtlFreeUnicodeString, ZwClose, DbgPrint, ExFreePool, IoGetDeviceObjectPointer, ExAllocatePoolWithTag
> ks.sys: KsAcquireDevice, KsReleaseDevice, KsAddItemToObjectBag, KsInitializeDriver, KsGetPinFromIrp, KsGetFilterFromIrp, KsGetDevice
> BdaSup.SYS: BdaFilterFactoryUpdateCacheData, BdaCommitChanges, BdaMethodCreateTopology, BdaGetChangeState, BdaCheckChanges, BdaStartChanges, BdaInitFilter, BdaValidateNodeProperty, BdaCreateFilterFactoryEx

( 0 exports )
RDS...: NSRL Reference Data Set
-
sigcheck:
publisher....: Leadtek Research Inc.
copyright....: Leadtek Research Inc. and Conexant Systems, Inc.
product......: wfcxdtun.sys
description..: WinFast BDA Tuner Driver
original name: wfcxdtun.sys
internal name: wfcxdtun.sys
file version.: 4.0.112.3219 built by: Leadtek
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
pdfid.: -
trid..: Win16/32 Executable Delphi generic (25.4%)
Clipper DOS Executable (24.8%)
Generic Win/DOS Executable (24.6%)
DOS Executable Generic (24.6%)
VXD Driver (0.3%)

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#29 Příspěvek od anger »

Soubor unrar_mpfc.dll přijatý 2009.09.26 07:51:28 (UTC)
Současný stav: Čekejte ... Ve frontě Čekání Testování Dokončeno NENALEZENO ZASTAVENO
Výsledek: 0/41 (0%)
Načítám informace ze serveru...
Váš soubor čeká ve frontě na pozici: 1.
Odhadovaný čas začátku mezi 40 a 57 sekundami.
Nezavírejte toto okno dokud nebude test dokončen.
Právě testující program byl je zastaven, probíhá čekání na program.
Za chvíli bude proveden další pokus o otestování souboru.
Pokud budete čekat déle než-li pět minut odešlete Váš soubor znovu.
Váš soubor je nyní testován pomocí VirusTotal,
výsledky budou zobrazeny po dokončení.
Formátované Formátované
Vytisknout výsledky Vytisknout výsledky
Váš soubor není platný, nebo neexistuje.
Služba je pozastavena v tuto chvíli, váš soubor čeká na otestování (pozice: ) po nespecifikovanou dobu.

Nyní čekejte na odezvu webu (automatické obnovení), nebo napište email do pole a klikněte na "vyžádat" a systém Vám zašle email s výsledky až bude test hotov.
Email:

Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.25 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2441 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.853 2009.09.24 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.51.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 153088 bytes
MD5...: 5a495e481bf7f5feafc8238dff493af5
SHA1..: d4ba78c8794328859506dc05eb9e6cb7619dad96
SHA256: d951f13927ddfcee6477838ef34ffc1bea4dc05e1f9ee70152a4ccf7d40f1750
ssdeep: 3072:FUAD6LCZpzwPKg4nKjcsNbNj1T+YCcTpyojUlP1UN7Vs2uyKwEWfSqOXMwU
wqB:OOjZpzIr4KjpbSYCc9yoolMEWfSqO7Uz
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1000
timedatestamp.....: 0x3e3d41ea (Sun Feb 02 16:06:02 2003)
machinetype.......: 0x14c (I386)

( 7 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x20000 0x1f200 6.55 34f2fab2130aa949d5a2a06032659fa5
.data 0x21000 0xa000 0x3e00 4.04 b4dec636b4fc5b6d6b7723ad8901e505
.tls 0x2b000 0x1000 0x200 0.00 bf619eac0cdf3f68d496ea9344137e8b
.idata 0x2c000 0x1000 0xa00 4.54 e0785cf4f48671e153e70b377ff47f7f
.edata 0x2d000 0x1000 0x200 4.12 7a2571d9fcdb31e8ddde5bd63ae3b403
.rsrc 0x2e000 0x1000 0x200 0.95 9591d537206c397d4e5e960545ec3ed2
.reloc 0x2f000 0x1000 0x1000 6.50 c7c22096ef6c07fb307ae2f58d111ef2

( 3 imports )
> ADVAPI32.DLL: AdjustTokenPrivileges, LookupPrivilegeValueA, OpenProcessToken, SetFileSecurityA, SetFileSecurityW
> KERNEL32.DLL: CloseHandle, CompareStringA, CompareStringW, CreateDirectoryA, CreateDirectoryW, CreateFileA, CreateFileW, DeleteFileA, DeleteFileW, DosDateTimeToFileTime, ExitProcess, FileTimeToDosDateTime, FileTimeToLocalFileTime, FindClose, FindFirstFileA, FindFirstFileW, FindNextFileA, FindNextFileW, FreeEnvironmentStringsA, FreeLibrary, GetACP, GetCPInfo, GetCurrentProcess, GetCurrentThreadId, GetEnvironmentStrings, GetFileAttributesA, GetFileAttributesW, GetFileType, GetFullPathNameA, GetLastError, GetLocalTime, GetModuleFileNameA, GetModuleHandleA, GetOEMCP, GetProcAddress, GetProcessHeap, GetStartupInfoA, GetStdHandle, GetStringTypeW, GetVersion, GetVersionExA, GlobalMemoryStatus, HeapAlloc, HeapFree, IsDBCSLeadByte, LCMapStringA, LoadLibraryA, LocalFileTimeToFileTime, MultiByteToWideChar, RaiseException, ReadFile, RtlUnwind, SetConsoleCtrlHandler, SetEndOfFile, SetFileAttributesA, SetFileAttributesW, SetFilePointer, SetFileTime, SetHandleCount, Sleep, UnhandledExceptionFilter, VirtualAlloc, VirtualFree, WideCharToMultiByte, WriteFile
> USER32.DLL: CharLowerA, CharLowerW, CharToOemA, CharToOemBuffA, CharUpperA, CharUpperW, EnumThreadWindows, MessageBoxA, OemToCharA, OemToCharBuffA, wsprintfA

( 12 exports )
RARCloseArchive, RARGetDllVersion, RAROpenArchive, RAROpenArchiveEx, RARProcessFile, RARReadHeader, RARReadHeaderEx, RARSetCallback, RARSetChangeVolProc, RARSetPassword, RARSetProcessDataProc, ___CPPdebugHook
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Dynamic Link Library - Borland C/C++ (86.9%)
DOS Executable Borland C++ (5.1%)
Win32 Executable Generic (3.3%)
Win32 Dynamic Link Library (generic) (2.9%)
Generic Win/DOS Executable (0.7%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
ThreatExpert info: <a href='http://www.threatexpert.com/report.aspx ... 8dff493af5' target='_blank'>http://www.threatexpert.com/report.aspx ... f493af5</a>

anger
Návštěvník
Návštěvník
Příspěvky: 80
Registrován: 18 kvě 2009 09:31

Re: Log z RSIT nejde vytvorit, PC je pomale

#30 Příspěvek od anger »

Teda nechapu, to co tady vkladam z virustotalu je uplne neco jineho, nez tam vidim.

Soubor GVGenl.ref přijatý 2009.09.26 07:56:51 (UTC)
Současný stav: Čekejte ... Ve frontě Čekání Testování Dokončeno NENALEZENO ZASTAVENO
Výsledek: 0/41 (0%)

Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.25 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2441 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.853 2009.09.24 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.51.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 4 bytes
MD5...: 4352d88a78aa39750bf70cd6f27bcaa5
SHA1..: 3c585604e87f855973731fea83e21fab9392d2fc
SHA256: 67abdd721024f0ff4e0b3f4c2fc13bc5bad42d0b7851d456d88d203d15aaa450
ssdeep: 3:M:M
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Unknown!
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned

Odpovědět