
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kontrolu pc
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosim o kontrolu pc
Hned po bootovací obrazovce biosu poklepávat F8 a měla by se zobrazit nabídka šipkami vyberete ladění VGA
Nikdo není dobrý náhodně,ctnosti je třeba se učit.
SENECA
SENECA
Re: Prosim o kontrolu pc
Nenasiel som tam moznost ladenie VGA.
Re: Prosim o kontrolu pc
Takže nezbývá v nouzovém režimu zkusit pravým na ploše vlastnosti a zkusit spustit ovladač obrazovky
Nebo přes všechny programy a nastavit do výchozího nastavení
Měl by jste mít i zachranné cd s ovladači mate jej dal jste jej vytvořit ?
Pokud ano v nouzovém režimu dát opravit
Nebo přes všechny programy a nastavit do výchozího nastavení
Měl by jste mít i zachranné cd s ovladači mate jej dal jste jej vytvořit ?
Pokud ano v nouzovém režimu dát opravit
Nikdo není dobrý náhodně,ctnosti je třeba se učit.
SENECA
SENECA
Re: Prosim o kontrolu pc
Toto mi ukazuje event viewer
[img]Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 302
Task Category: Monitorovanie výkonu úsporného režimu
Level: Warning
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Tento ovládač spôsobil oneskorenie počas prechodu do úsporného režimu pri obsluhe zariadenia:
Názov súboru ovládača : \Driver\atapi
Priateľské meno ovládača : ATAPI IDE Miniport Driver
Verzia ovládača : 6.0.6002.18005 (lh_sp2rtm.090410-1830)
Celkový čas ovládača : 49 ms
Trvanie degradácie ovládača : 46 ms
Čas incidentu (UTC) : 10. 1. 2010 11:32:49
Názov zariadenia : IDE\DiskST9500325AS_____________________________0002SDM1\5&360e9ac&0&0.0.0
Priateľské meno zariadenia : Disk drive
Celkový čas zariadenia : 49 ms
Trvanie degradácie zariadenia : 0 ms
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>302</EventID>
<Version>1</Version>
<Level>3</Level>
<Task>4003</Task>
<Opcode>35</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1078</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="NameLength">14</Data>
<Data Name="Name">\Driver\atapi</Data>
<Data Name="FriendlyNameLength">26</Data>
<Data Name="FriendlyName">ATAPI IDE Miniport Driver</Data>
<Data Name="VersionLength">39</Data>
<Data Name="Version">6.0.6002.18005 (lh_sp2rtm.090410-1830)</Data>
<Data Name="TotalTime">49</Data>
<Data Name="DegradationTime">46</Data>
<Data Name="PathLength">38</Data>
<Data Name="Path">C:\Windows\system32\drivers\atapi.sys</Data>
<Data Name="ProductNameLength">37</Data>
<Data Name="ProductName">Microsoft® Windows® Operating System</Data>
<Data Name="CompanyNameLength">22</Data>
<Data Name="CompanyName">Microsoft Corporation</Data>
<Data Name="DeviceNameLength">75</Data>
<Data Name="DeviceName">IDE\DiskST9500325AS_____________________________0002SDM1\5&360e9ac&0&0.0.0</Data>
<Data Name="DeviceFriendlyNameLength">11</Data>
<Data Name="DeviceFriendlyName">Disk drive</Data>
<Data Name="DeviceTotalTime">49</Data>
<Data Name="DeviceDegradationTime">0</Data>
</EventData>
</Event>
Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 302
Task Category: Monitorovanie výkonu úsporného režimu
Level: Warning
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Tento ovládač spôsobil oneskorenie počas prechodu do úsporného režimu pri obsluhe zariadenia:
Názov súboru ovládača : \Driver\athr
Priateľské meno ovládača : Atheros Extensible Wireless LAN device driver
Verzia ovládača : 7.7.0.396 built by: WinDDK
Celkový čas ovládača : 451 ms
Trvanie degradácie ovládača : 153 ms
Čas incidentu (UTC) : 10. 1. 2010 11:32:49
Názov zariadenia : PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&3b226981&0&0030
Priateľské meno zariadenia : Atheros AR928X Wireless Network Adapter
Celkový čas zariadenia : 479 ms
Trvanie degradácie zariadenia : 156 ms
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>302</EventID>
<Version>1</Version>
<Level>3</Level>
<Task>4003</Task>
<Opcode>35</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1077</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="NameLength">13</Data>
<Data Name="Name">\Driver\athr</Data>
<Data Name="FriendlyNameLength">46</Data>
<Data Name="FriendlyName">Atheros Extensible Wireless LAN device driver</Data>
<Data Name="VersionLength">27</Data>
<Data Name="Version">7.7.0.396 built by: WinDDK</Data>
<Data Name="TotalTime">451</Data>
<Data Name="DegradationTime">153</Data>
<Data Name="PathLength">37</Data>
<Data Name="Path">C:\Windows\system32\DRIVERS\athr.sys</Data>
<Data Name="ProductNameLength">55</Data>
<Data Name="ProductName">Driver for Atheros CB42/CB43/MB42/MB43 Network Adapter</Data>
<Data Name="CompanyNameLength">29</Data>
<Data Name="CompanyName">Atheros Communications, Inc.</Data>
<Data Name="DeviceNameLength">63</Data>
<Data Name="DeviceName">PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&3b226981&0&0030</Data>
<Data Name="DeviceFriendlyNameLength">40</Data>
<Data Name="DeviceFriendlyName">Atheros AR928X Wireless Network Adapter</Data>
<Data Name="DeviceTotalTime">479</Data>
<Data Name="DeviceDegradationTime">156</Data>
</EventData>
</Event>
Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 300
Task Category: Monitorovanie výkonu úsporného režimu
Level: Error
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Systém Windows obnovil svoju činnosť po prechode z úsporného režimu:
Trvanie úsporného režimu : 32135 ms
Čas incidentu úsporného režimu (UTC) : 10. 1. 2010 11:32:49
Trvanie obnovenia činnosti : 22356 ms
Čas incidentu obnovenia činnosti (UTC) : 10. 1. 2010 11:37:46
Degradácia : false
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>300</EventID>
<Version>1</Version>
<Level>2</Level>
<Task>4003</Task>
<Opcode>36</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1076</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StandbyTsVersion">1</Data>
<Data Name="StandbyAppCount">22</Data>
<Data Name="StandbyServicesCount">19</Data>
<Data Name="StandbyDevicesCount">193</Data>
<Data Name="StandbyStartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="StandbyEndTime">2010-01-10T11:33:21.814Z</Data>
<Data Name="StandbySuspendTotal">32135</Data>
<Data Name="StandbySuspendTotalChange">0</Data>
<Data Name="StandbySuspendQueryApps">0</Data>
<Data Name="StandbySuspendQueryAppsChange">0</Data>
<Data Name="StandbySuspendQueryServices">0</Data>
<Data Name="StandbySuspendQueryServicesChange">0</Data>
<Data Name="StandbySuspendApps">36</Data>
<Data Name="StandbySuspendAppsChange">0</Data>
<Data Name="StandbySuspendServices">4</Data>
<Data Name="StandbySuspendServicesChange">0</Data>
<Data Name="StandbySuspendShowUI">1433</Data>
<Data Name="StandbySuspendShowUIChange">0</Data>
<Data Name="StandbySuspendSuperfetchPageIn">870</Data>
<Data Name="StandbySuspendSuperfetchPageInChange">0</Data>
<Data Name="StandbySuspendWinlogon">0</Data>
<Data Name="StandbySuspendWinlogonChange">0</Data>
<Data Name="StandbySuspendLockPageableSections">0</Data>
<Data Name="StandbySuspendLockPageableSectionsChange">0</Data>
<Data Name="StandbySuspendPreSleepCallbacks">1</Data>
<Data Name="StandbySuspendPreSleepCallbacksChange">0</Data>
<Data Name="StandbySuspendSwapInWorkerThreads">1</Data>
<Data Name="StandbySuspendSwapInWorkerThreadsChange">0</Data>
<Data Name="StandbySuspendQueryDevices">109</Data>
<Data Name="StandbySuspendQueryDevicesChange">0</Data>
<Data Name="StandbySuspendFlushVolumes">940</Data>
<Data Name="StandbySuspendFlushVolumesChange">0</Data>
<Data Name="StandbySuspendSuspendDevices">983</Data>
<Data Name="StandbySuspendSuspendDevicesChange">0</Data>
<Data Name="StandbySuspendHibernateWrite">27752</Data>
<Data Name="StandbySuspendHibernateWriteChange">0</Data>
<Data Name="ResumeStartTime">2010-01-10T11:37:46.338Z</Data>
<Data Name="ResumeEndTime">2010-01-10T11:38:08.694Z</Data>
<Data Name="StandbyResumeTotal">22356</Data>
<Data Name="StandbyResumeTotalChange">0</Data>
<Data Name="StandbyResumeHibernateRead">21667</Data>
<Data Name="StandbyResumeHibernateReadChange">0</Data>
<Data Name="StandbyResumeS3BiosInitTime">0</Data>
<Data Name="StandbyResumeS3BiosInitTimeChange">0</Data>
<Data Name="StandbyResumeResumeDevices">689</Data>
<Data Name="StandbyResumeResumeDevicesChange">0</Data>
<Data Name="StandbyRootCauseDegradationGradual">0</Data>
<Data Name="StandbyRootCauseImprovementGradual">0</Data>
<Data Name="StandbyRootCauseDegradationStep">0</Data>
<Data Name="StandbyRootCauseImprovementStep">0</Data>
<Data Name="StandbyIsDegradation">false</Data>
<Data Name="StandbyIsTroubleshooterLaunched">true</Data>
<Data Name="StandbyIsRootCauseIdentified">false</Data>
</EventData>
</Event>
[img]Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 302
Task Category: Monitorovanie výkonu úsporného režimu
Level: Warning
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Tento ovládač spôsobil oneskorenie počas prechodu do úsporného režimu pri obsluhe zariadenia:
Názov súboru ovládača : \Driver\atapi
Priateľské meno ovládača : ATAPI IDE Miniport Driver
Verzia ovládača : 6.0.6002.18005 (lh_sp2rtm.090410-1830)
Celkový čas ovládača : 49 ms
Trvanie degradácie ovládača : 46 ms
Čas incidentu (UTC) : 10. 1. 2010 11:32:49
Názov zariadenia : IDE\DiskST9500325AS_____________________________0002SDM1\5&360e9ac&0&0.0.0
Priateľské meno zariadenia : Disk drive
Celkový čas zariadenia : 49 ms
Trvanie degradácie zariadenia : 0 ms
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>302</EventID>
<Version>1</Version>
<Level>3</Level>
<Task>4003</Task>
<Opcode>35</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1078</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="NameLength">14</Data>
<Data Name="Name">\Driver\atapi</Data>
<Data Name="FriendlyNameLength">26</Data>
<Data Name="FriendlyName">ATAPI IDE Miniport Driver</Data>
<Data Name="VersionLength">39</Data>
<Data Name="Version">6.0.6002.18005 (lh_sp2rtm.090410-1830)</Data>
<Data Name="TotalTime">49</Data>
<Data Name="DegradationTime">46</Data>
<Data Name="PathLength">38</Data>
<Data Name="Path">C:\Windows\system32\drivers\atapi.sys</Data>
<Data Name="ProductNameLength">37</Data>
<Data Name="ProductName">Microsoft® Windows® Operating System</Data>
<Data Name="CompanyNameLength">22</Data>
<Data Name="CompanyName">Microsoft Corporation</Data>
<Data Name="DeviceNameLength">75</Data>
<Data Name="DeviceName">IDE\DiskST9500325AS_____________________________0002SDM1\5&360e9ac&0&0.0.0</Data>
<Data Name="DeviceFriendlyNameLength">11</Data>
<Data Name="DeviceFriendlyName">Disk drive</Data>
<Data Name="DeviceTotalTime">49</Data>
<Data Name="DeviceDegradationTime">0</Data>
</EventData>
</Event>
Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 302
Task Category: Monitorovanie výkonu úsporného režimu
Level: Warning
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Tento ovládač spôsobil oneskorenie počas prechodu do úsporného režimu pri obsluhe zariadenia:
Názov súboru ovládača : \Driver\athr
Priateľské meno ovládača : Atheros Extensible Wireless LAN device driver
Verzia ovládača : 7.7.0.396 built by: WinDDK
Celkový čas ovládača : 451 ms
Trvanie degradácie ovládača : 153 ms
Čas incidentu (UTC) : 10. 1. 2010 11:32:49
Názov zariadenia : PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&3b226981&0&0030
Priateľské meno zariadenia : Atheros AR928X Wireless Network Adapter
Celkový čas zariadenia : 479 ms
Trvanie degradácie zariadenia : 156 ms
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>302</EventID>
<Version>1</Version>
<Level>3</Level>
<Task>4003</Task>
<Opcode>35</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1077</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="NameLength">13</Data>
<Data Name="Name">\Driver\athr</Data>
<Data Name="FriendlyNameLength">46</Data>
<Data Name="FriendlyName">Atheros Extensible Wireless LAN device driver</Data>
<Data Name="VersionLength">27</Data>
<Data Name="Version">7.7.0.396 built by: WinDDK</Data>
<Data Name="TotalTime">451</Data>
<Data Name="DegradationTime">153</Data>
<Data Name="PathLength">37</Data>
<Data Name="Path">C:\Windows\system32\DRIVERS\athr.sys</Data>
<Data Name="ProductNameLength">55</Data>
<Data Name="ProductName">Driver for Atheros CB42/CB43/MB42/MB43 Network Adapter</Data>
<Data Name="CompanyNameLength">29</Data>
<Data Name="CompanyName">Atheros Communications, Inc.</Data>
<Data Name="DeviceNameLength">63</Data>
<Data Name="DeviceName">PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&3b226981&0&0030</Data>
<Data Name="DeviceFriendlyNameLength">40</Data>
<Data Name="DeviceFriendlyName">Atheros AR928X Wireless Network Adapter</Data>
<Data Name="DeviceTotalTime">479</Data>
<Data Name="DeviceDegradationTime">156</Data>
</EventData>
</Event>
Log Name: Microsoft-Windows-Diagnostics-Performance/Operational
Source: Microsoft-Windows-Diagnostics-Performance
Date: 10. 1. 2010 11:25:51
Event ID: 300
Task Category: Monitorovanie výkonu úsporného režimu
Level: Error
Keywords: Denník udalostí
User: LOCAL SERVICE
Computer: Dodo-PC
Description:
Systém Windows obnovil svoju činnosť po prechode z úsporného režimu:
Trvanie úsporného režimu : 32135 ms
Čas incidentu úsporného režimu (UTC) : 10. 1. 2010 11:32:49
Trvanie obnovenia činnosti : 22356 ms
Čas incidentu obnovenia činnosti (UTC) : 10. 1. 2010 11:37:46
Degradácia : false
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Diagnostics-Performance" Guid="{cfc18ec0-96b1-4eba-961b-622caee05b0a}" />
<EventID>300</EventID>
<Version>1</Version>
<Level>2</Level>
<Task>4003</Task>
<Opcode>36</Opcode>
<Keywords>0x8000000000010000</Keywords>
<TimeCreated SystemTime="2010-01-10T11:25:51.399Z" />
<EventRecordID>1076</EventRecordID>
<Correlation ActivityID="{00000000-9B8C-0001-96CE-6D78DB91CA01}" />
<Execution ProcessID="1932" ThreadID="3820" />
<Channel>Microsoft-Windows-Diagnostics-Performance/Operational</Channel>
<Computer>Dodo-PC</Computer>
<Security UserID="S-1-5-19" />
</System>
<EventData>
<Data Name="StandbyTsVersion">1</Data>
<Data Name="StandbyAppCount">22</Data>
<Data Name="StandbyServicesCount">19</Data>
<Data Name="StandbyDevicesCount">193</Data>
<Data Name="StandbyStartTime">2010-01-10T11:32:49.679Z</Data>
<Data Name="StandbyEndTime">2010-01-10T11:33:21.814Z</Data>
<Data Name="StandbySuspendTotal">32135</Data>
<Data Name="StandbySuspendTotalChange">0</Data>
<Data Name="StandbySuspendQueryApps">0</Data>
<Data Name="StandbySuspendQueryAppsChange">0</Data>
<Data Name="StandbySuspendQueryServices">0</Data>
<Data Name="StandbySuspendQueryServicesChange">0</Data>
<Data Name="StandbySuspendApps">36</Data>
<Data Name="StandbySuspendAppsChange">0</Data>
<Data Name="StandbySuspendServices">4</Data>
<Data Name="StandbySuspendServicesChange">0</Data>
<Data Name="StandbySuspendShowUI">1433</Data>
<Data Name="StandbySuspendShowUIChange">0</Data>
<Data Name="StandbySuspendSuperfetchPageIn">870</Data>
<Data Name="StandbySuspendSuperfetchPageInChange">0</Data>
<Data Name="StandbySuspendWinlogon">0</Data>
<Data Name="StandbySuspendWinlogonChange">0</Data>
<Data Name="StandbySuspendLockPageableSections">0</Data>
<Data Name="StandbySuspendLockPageableSectionsChange">0</Data>
<Data Name="StandbySuspendPreSleepCallbacks">1</Data>
<Data Name="StandbySuspendPreSleepCallbacksChange">0</Data>
<Data Name="StandbySuspendSwapInWorkerThreads">1</Data>
<Data Name="StandbySuspendSwapInWorkerThreadsChange">0</Data>
<Data Name="StandbySuspendQueryDevices">109</Data>
<Data Name="StandbySuspendQueryDevicesChange">0</Data>
<Data Name="StandbySuspendFlushVolumes">940</Data>
<Data Name="StandbySuspendFlushVolumesChange">0</Data>
<Data Name="StandbySuspendSuspendDevices">983</Data>
<Data Name="StandbySuspendSuspendDevicesChange">0</Data>
<Data Name="StandbySuspendHibernateWrite">27752</Data>
<Data Name="StandbySuspendHibernateWriteChange">0</Data>
<Data Name="ResumeStartTime">2010-01-10T11:37:46.338Z</Data>
<Data Name="ResumeEndTime">2010-01-10T11:38:08.694Z</Data>
<Data Name="StandbyResumeTotal">22356</Data>
<Data Name="StandbyResumeTotalChange">0</Data>
<Data Name="StandbyResumeHibernateRead">21667</Data>
<Data Name="StandbyResumeHibernateReadChange">0</Data>
<Data Name="StandbyResumeS3BiosInitTime">0</Data>
<Data Name="StandbyResumeS3BiosInitTimeChange">0</Data>
<Data Name="StandbyResumeResumeDevices">689</Data>
<Data Name="StandbyResumeResumeDevicesChange">0</Data>
<Data Name="StandbyRootCauseDegradationGradual">0</Data>
<Data Name="StandbyRootCauseImprovementGradual">0</Data>
<Data Name="StandbyRootCauseDegradationStep">0</Data>
<Data Name="StandbyRootCauseImprovementStep">0</Data>
<Data Name="StandbyIsDegradation">false</Data>
<Data Name="StandbyIsTroubleshooterLaunched">true</Data>
<Data Name="StandbyIsRootCauseIdentified">false</Data>
</EventData>
</Event>
Re: Prosim o kontrolu pc
Přeinstalujte ovladače k NTB pokud jej nemáte najdete je na stránkách výrobce NTB
Stahněte je a reinstalujte ovladače tak že stavající odinstalujete a nainstalujete nové
Stahněte je a reinstalujte ovladače tak že stavající odinstalujete a nainstalujete nové
Nikdo není dobrý náhodně,ctnosti je třeba se učit.
SENECA
SENECA
Re: Prosim o kontrolu pc
cd s ovladacmi mam,len ako to mam spravit?Dakujem.
Re: Prosim o kontrolu pc
Zkuste to v nouzovém režimu a v nabídce všechny programy
by měla být pod názvem výrobce utilita a v ní možnost zalohovat nebo opravit ovladače
by měla být pod názvem výrobce utilita a v ní možnost zalohovat nebo opravit ovladače
Nikdo není dobrý náhodně,ctnosti je třeba se učit.
SENECA
SENECA
Re: Prosim o kontrolu pc
Tak a mam zase problem.teraz sa notebook nevypina ale preblikne obrazovka,procesor vyleti na 100% a v tom momente stale preblikava obrazovka.potom na chvilu procesor znizi vykon a po niekolkych minutach zase preblikne obrazovka a procesor je znovu na 100%.takto sa to opakuje.Dakujem za pomoc.tu je log z RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by Dodo at 2010-01-22 08:50:42
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 3070 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:51:20, on 22. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ATK Hotkey\HControlUser.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Windows\System32\ASUSTPE.exe
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\Stahovanie\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\Dodo.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HControlUser] "C:\Program Files\ATK Hotkey\HcontrolUser.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ASUSTPE] C:\Windows\system32\ASUSTPE.exe
O4 - HKLM\..\Run: [ADSMTray] C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-18\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Program files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:\Program files\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
--
End of file - 10057 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Norton Internet Security - Run Full System Scan - Dodo.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll [2009-03-31 357744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll [2010-01-12 116088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-10 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Show Norton Toolbar - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll [2009-03-31 357744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-30 61440]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-24 81000]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-18 104936]
"P2Go_Menu"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-13 210216]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-10 149280]
"HControlUser"=C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-11 98304]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-07-16 6253088]
"Skytel"=C:\Windows\Skytel.exe [2008-07-16 1833504]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-06-24 159744]
"ASUSTPE"=C:\Windows\system32\ASUSTPE.exe [2007-10-11 106496]
"ADSMTray"=C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [2008-03-31 266240]
"ccApp"=C:\Program Files\Common Files\Symantec Shared\ccApp.exe [2008-10-17 51048]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"SpybotSD TeaTimer"=D:\Program files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
D:\Program files\Alcohol 120\axcmd.exe [2009-04-24 203928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2010-01-12 47672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-01-12 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector v2]
C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe [2007-08-02 95504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UniblueSpeedUpMyPC]
D:\Program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe -minimize []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [2008-07-29 752168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
C:\Windows\Installer\{DC905847-D537-427F-BF91-47CC7ACCDE58}\_DF3A81D17C478A2A6C60A5.exe [2010-01-12 12862]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2009-10-01 87552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"EnableLUA"=2
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0e4a2cfc-fb70-11de-bb32-002243c40e61}]
shell\AutoRun\command - F:\Autorun.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-22 08:50:42 ----D---- C:\rsit
2010-01-18 08:02:54 ----A---- C:\Windows\system32\jscript.dll
2010-01-17 10:32:44 ----A---- C:\Windows\system32\occache.dll
2010-01-17 10:32:44 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\iepeers.dll
2010-01-17 10:32:42 ----A---- C:\Windows\system32\ieui.dll
2010-01-17 10:32:42 ----A---- C:\Windows\system32\iesetup.dll
2010-01-17 10:32:41 ----A---- C:\Windows\system32\wininet.dll
2010-01-17 10:32:41 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-17 10:32:41 ----A---- C:\Windows\system32\iernonce.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\iertutil.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-17 10:32:39 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-17 10:32:39 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-17 10:32:38 ----A---- C:\Windows\system32\urlmon.dll
2010-01-17 10:32:36 ----A---- C:\Windows\system32\ieframe.dll
2010-01-17 10:32:35 ----A---- C:\Windows\system32\mshtml.dll
2010-01-17 10:31:07 ----A---- C:\Windows\system32\mshtmled.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\mshtmler.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\icardie.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\admparse.dll
2010-01-17 10:31:05 ----A---- C:\Windows\system32\msls31.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\imgutil.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\ieakeng.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\corpol.dll
2010-01-17 10:31:03 ----A---- C:\Windows\system32\dxtrans.dll
2010-01-17 10:31:03 ----A---- C:\Windows\system32\dxtmsft.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\licmgr10.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\inseng.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\ieaksie.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\webcheck.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\msrating.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\ieakui.dll
2010-01-17 10:31:00 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-01-17 10:31:00 ----A---- C:\Windows\system32\wextract.exe
2010-01-17 10:31:00 ----A---- C:\Windows\system32\mstime.dll
2010-01-17 10:30:59 ----A---- C:\Windows\system32\pngfilt.dll
2010-01-17 10:30:59 ----A---- C:\Windows\system32\advpack.dll
2010-01-17 10:30:58 ----A---- C:\Windows\system32\vbscript.dll
2010-01-17 10:30:58 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-17 10:30:57 ----A---- C:\Windows\system32\url.dll
2010-01-17 10:30:55 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\SetDepNx.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\mshta.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\iexpress.exe
2010-01-17 10:30:54 ----A---- C:\Windows\system32\PDMSetup.exe
2010-01-16 09:52:55 ----D---- C:\Windows\pss
2010-01-14 16:49:31 ----D---- C:\Users\Dodo\AppData\Roaming\Ulead Systems
2010-01-14 16:46:29 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-01-14 16:45:43 ----D---- C:\ProgramData\Ulead Systems
2010-01-14 16:43:05 ----D---- C:\Windows\Downloaded Installations
2010-01-14 12:21:29 ----D---- C:\Program Files\VistaCodecPack
2010-01-13 08:25:51 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 08:25:51 ----A---- C:\Windows\system32\fontsub.dll
2010-01-12 11:50:50 ----A---- C:\Windows\system32\acovcnt.exe
2010-01-12 11:35:37 ----D---- C:\Users\Dodo\AppData\Roaming\Symantec
2010-01-12 11:26:30 ----D---- C:\Program Files\Norton Internet Security
2010-01-12 11:18:50 ----D---- C:\Program Files\Symantec
2010-01-12 11:18:10 ----D---- C:\ProgramData\Symantec
2010-01-12 11:17:54 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-01-12 11:15:53 ----A---- C:\Windows\ASScrPro.exe
2010-01-12 11:15:50 ----A---- C:\Windows\ASUS Camera ScreenSaver.exe
2010-01-12 11:15:50 ----A---- C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-01-12 11:15:50 ----A---- C:\Windows\AsScrProlog.exe
2010-01-12 11:15:49 ----D---- C:\Windows\system32\Asus_Camera_ScreenSaver dir
2010-01-12 11:15:17 ----A---- C:\Windows\system32\TPESetting.dll
2010-01-12 11:15:17 ----A---- C:\Windows\system32\ASUSTPE.exe
2010-01-12 11:13:50 ----A---- C:\Windows\system32\ACEngSvr.exe
2010-01-12 11:13:23 ----D---- C:\Program Files\ATKGFNEX
2010-01-12 11:12:33 ----HD---- C:\ASUS.DAT
2010-01-12 11:07:21 ----D---- C:\ProgramData\ASUS
2010-01-12 11:06:30 ----D---- C:\Program Files\P4G
2010-01-12 11:06:29 ----D---- C:\ProgramData\P4G
2010-01-12 10:57:05 ----A---- C:\Windows\system32\BtwRSupport.dll
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-MX
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-AR
2010-01-12 10:56:45 ----D---- C:\Program Files\WIDCOMM
2010-01-12 10:55:00 ----D---- C:\Program Files\Wireless Console 2
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstvga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstuxga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstsxga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\DrvInst.exe
2010-01-12 10:52:01 ----D---- C:\Program Files\Multimedia Card Reader
2010-01-12 10:51:17 ----D---- C:\Program Files\Synaptics
2010-01-12 10:50:54 ----D---- C:\Program Files\Dolby
2010-01-12 10:50:01 ----D---- C:\Windows\system32\RTCOM
2010-01-12 10:49:37 ----A---- C:\Windows\system32\WdfCoInstaller01000.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynTPCo4.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynTPAPI.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynCtrl.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynCOM.dll
2010-01-12 10:48:37 ----A---- C:\Windows\system32\WavesLib.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSWOW.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSTSXT.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSTSHD.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSHP360.dll
2010-01-12 10:48:35 ----A---- C:\Windows\SkyTel.exe
2010-01-12 10:48:35 ----A---- C:\Windows\RtlUpd.exe
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkPgExt.dll
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkCoInst.dll
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkApoApi.dll
2010-01-12 10:48:33 ----A---- C:\Windows\system32\RtkAPO.dll
2010-01-12 10:48:31 ----A---- C:\Windows\RtHDVCpl.exe
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2010-01-12 10:48:29 ----A---- C:\Windows\system32\FMAPO.dll
2010-01-12 10:48:27 ----R---- C:\Windows\RtlExUpd.dll
2010-01-12 10:48:27 ----A---- C:\Windows\HideWin.exe
2010-01-12 10:47:48 ----D---- C:\Program Files\ASUS
2010-01-12 10:47:08 ----D---- C:\Program Files\ATK Hotkey
2010-01-12 10:45:56 ----A---- C:\Debug.txt
2010-01-10 15:42:22 ----D---- C:\Users\Dodo\AppData\Roaming\Corel
2010-01-10 15:33:15 ----A---- C:\Windows\system32\javaws.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\javaw.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\java.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\deploytk.dll
2010-01-10 15:32:45 ----D---- C:\Program Files\Java
2010-01-10 12:02:32 ----D---- C:\Windows\registration
2010-01-09 13:14:45 ----D---- C:\Users\Dodo\AppData\Roaming\Yamicsoft
2010-01-09 12:52:40 ----A---- C:\Windows\ODBCINST.INI
2010-01-09 12:29:27 ----D---- C:\Program Files\Yamicsoft
2010-01-08 14:11:57 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-01-08 14:11:31 ----D---- C:\Windows\system32\IOSUBSYS
2010-01-08 14:11:30 ----D---- C:\Program Files\Google
2010-01-08 12:53:13 ----N---- C:\Windows\Setup1.exe
2010-01-08 12:53:12 ----A---- C:\Windows\ST6UNST.EXE
2010-01-07 14:56:47 ----D---- C:\Program Files\Common Files\PocketSoft
2010-01-07 14:56:47 ----A---- C:\Windows\patchw32.dll
2009-12-28 17:17:13 ----D---- C:\ProgramData\LightScribe
2009-12-27 12:26:47 ----D---- C:\Users\Dodo\AppData\Roaming\ImgBurn
======List of files/folders modified in the last 1 months======
2010-01-22 08:51:09 ----D---- C:\Windows\Prefetch
2010-01-22 08:51:03 ----D---- C:\Program Files\trend micro
2010-01-22 08:51:00 ----D---- C:\Windows\temp
2010-01-22 08:39:31 ----D---- C:\Windows\System32
2010-01-22 08:39:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-22 08:39:30 ----D---- C:\Windows\inf
2010-01-21 19:50:58 ----D---- C:\Windows
2010-01-21 19:45:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-01-21 19:31:16 ----D---- C:\Windows\system32\Msdtc
2010-01-21 19:31:14 ----D---- C:\Windows\system32\wbem
2010-01-21 18:22:27 ----D---- C:\Windows\system32\config
2010-01-21 18:22:18 ----D---- C:\Windows\Tasks
2010-01-21 18:22:18 ----D---- C:\Windows\system32\spool
2010-01-21 18:22:18 ----D---- C:\Windows\system32\catroot2
2010-01-21 18:20:06 ----SHD---- C:\System Volume Information
2010-01-21 18:18:00 ----D---- C:\Users\Dodo\AppData\Roaming\Skype
2010-01-21 18:17:38 ----D---- C:\Users\Dodo\AppData\Roaming\skypePM
2010-01-21 18:10:43 ----SHD---- C:\Windows\Installer
2010-01-18 08:05:06 ----D---- C:\Windows\winsxs
2010-01-18 08:01:24 ----D---- C:\Windows\system32\catroot
2010-01-17 10:54:26 ----D---- C:\Windows\rescache
2010-01-17 10:48:18 ----D---- C:\Windows\system32\LogFiles
2010-01-17 10:35:28 ----D---- C:\Windows\system32\migration
2010-01-17 10:35:28 ----D---- C:\Program Files\Internet Explorer
2010-01-17 10:35:26 ----D---- C:\Windows\system32\sk-SK
2010-01-17 10:35:21 ----D---- C:\Windows\system32\en-US
2010-01-17 10:35:21 ----D---- C:\Windows\PolicyDefinitions
2010-01-16 09:34:34 ----D---- C:\ProgramData
2010-01-15 19:15:53 ----D---- C:\Windows\system32\drivers
2010-01-14 16:49:22 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-14 16:49:15 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-14 16:46:29 ----D---- C:\Program Files\Common Files
2010-01-14 16:46:28 ----RSD---- C:\Windows\Fonts
2010-01-14 12:21:29 ----RD---- C:\Program Files
2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-13 11:02:01 ----SD---- C:\Users\Dodo\AppData\Roaming\Microsoft
2010-01-13 09:33:55 ----D---- C:\Windows\Debug
2010-01-13 08:30:48 ----D---- C:\Program Files\Windows Mail
2010-01-12 12:17:16 ----D---- C:\Windows\system32\Tasks
2010-01-12 11:32:16 ----RSD---- C:\Windows\assembly
2010-01-12 10:57:05 ----SD---- C:\Windows\system32\Microsoft
2010-01-12 10:56:50 ----D---- C:\Windows\system32\zh-TW
2010-01-12 10:56:49 ----D---- C:\Windows\system32\zh-CN
2010-01-12 10:56:49 ----D---- C:\Windows\system32\sv-SE
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ru-RU
2010-01-12 10:56:49 ----D---- C:\Windows\system32\pt-BR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\pl-PL
2010-01-12 10:56:49 ----D---- C:\Windows\system32\nl-NL
2010-01-12 10:56:49 ----D---- C:\Windows\system32\nb-NO
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ko-KR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ja-JP
2010-01-12 10:56:49 ----D---- C:\Windows\system32\it-IT
2010-01-12 10:56:49 ----D---- C:\Windows\system32\fr-FR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\fi-FI
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-ES
2010-01-12 10:56:49 ----D---- C:\Windows\system32\de-DE
2010-01-12 10:56:49 ----D---- C:\Windows\system32\da-DK
2010-01-12 10:49:25 ----A---- C:\Windows\DIFxAPI.dll
2010-01-11 11:22:54 ----D---- C:\Windows\system32\WDI
2010-01-10 15:36:05 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-10 15:06:42 ----D---- C:\Users\Dodo\AppData\Roaming\BSplayer Pro
2010-01-10 15:06:36 ----D---- C:\Users\Dodo\AppData\Roaming\BSplayer
2010-01-10 11:59:50 ----D---- C:\Windows\system32\CodeIntegrity
2010-01-10 11:59:50 ----D---- C:\Program Files\Conduit
2010-01-10 11:59:50 ----D---- C:\Program Files\BS_Player
2010-01-09 13:01:24 ----D---- C:\Program Files\WinRAR
2010-01-09 13:01:24 ----D---- C:\Program Files\Mozilla Firefox
2010-01-05 00:17:46 ----A---- C:\Windows\system32\mrt.exe
2009-12-27 11:59:11 ----D---- C:\ProgramData\CyberLink
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-24 23120]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-24 48560]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2009-12-14 371248]
R1 IDSvix86;Symantec Intrusion Prevention Driver; \??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\ipsdefs\20100119.001\IDSvix86.sys [2009-12-30 286768]
R1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys [2009-03-17 447024]
R1 SRTSPX;SRTSPX; C:\Windows\System32\Drivers\SRTSPX.SYS [2008-01-31 43696]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2009-02-19 24112]
R1 SYMTDI;SYMTDI; C:\Windows\System32\Drivers\SYMTDI.SYS [2009-02-19 184496]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R2 CO_Mon;CO_Mon; \??\C:\Windows\system32\drivers\CO_Mon.sys [2007-08-08 36056]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-30 1184768]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-01 4179968]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-07-09 81960]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-12-14 102448]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-07-16 2156312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-11-11 47360]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-09-25 159232]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-08-11 1752704]
R3 SYMDNS;SYMDNS; C:\Windows\System32\Drivers\SYMDNS.SYS [2009-02-19 13616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2010-01-15 124464]
R3 SYMFW;SYMFW; C:\Windows\System32\Drivers\SYMFW.SYS [2009-02-19 96560]
R3 SYMNDISV;SYMNDISV; C:\Windows\System32\Drivers\SYMNDISV.SYS [2009-02-19 41008]
R3 SYMREDRV;SYMREDRV; C:\Windows\System32\Drivers\SYMREDRV.SYS [2009-02-19 22320]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
S3 azz9xcwd;azz9xcwd; C:\Windows\system32\drivers\azz9xcwd.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 catchme;catchme; \??\C:\Users\Dodo\AppData\Local\Temp\catchme.sys []
S3 COH_Mon;COH_Mon; \??\C:\Windows\system32\Drivers\COH_Mon.sys [2008-07-30 23888]
S3 CRFILTER;USB Mass Storage Filter; C:\Windows\system32\DRIVERS\CRFILTER.sys [2008-04-07 6656]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NAVENG;NAVENG; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20100121.023\NAVENG.SYS [2010-01-18 84912]
S3 NAVEX15;NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20100121.023\NAVEX15.SYS [2010-01-18 1323568]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 SRTSP;SRTSP; C:\Windows\System32\Drivers\SRTSP.SYS [2008-01-31 279088]
S3 SRTSPL;SRTSPL; C:\Windows\System32\Drivers\SRTSPL.SYS [2008-01-31 317616]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-02 94208]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-24 18752]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-01 720896]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-09 238968]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-24 138680]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-07-29 522792]
R2 ccEvtMgr;Symantec Event Manager; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 ccSetMgr;Symantec Settings Manager; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 LiveUpdate Notice;LiveUpdate Notice; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 ProtexisLicensing;ProtexisLicensing; C:\Windows\system32\PSIService.exe [2006-11-02 174656]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SBSDWSCService;SBSD Security Center Service; D:\Program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 StarWindServiceAE;StarWind AE Service; D:\Program files\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-24 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-24 352920]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 comHost;COM Host; C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe [2007-08-22 55640]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-09-05 3220856]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Symantec Core LC;Symantec Core LC; C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe [2010-01-12 1245064]
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by Dodo at 2010-01-22 08:50:42
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 177 GB (74%) free of 238 GB
Total RAM: 3070 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:51:20, on 22. 1. 2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ATK Hotkey\HControlUser.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Windows\System32\ASUSTPE.exe
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\Stahovanie\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\Dodo.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HControlUser] "C:\Program Files\ATK Hotkey\HcontrolUser.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ASUSTPE] C:\Windows\system32\ASUSTPE.exe
O4 - HKLM\..\Run: [ADSMTray] C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-18\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Program files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:\Program files\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
--
End of file - 10057 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Norton Internet Security - Run Full System Scan - Dodo.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll [2009-03-31 357744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll [2010-01-12 116088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-10 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Show Norton Toolbar - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll [2009-03-31 357744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-30 61440]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-24 81000]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-18 104936]
"P2Go_Menu"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-13 210216]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-10 149280]
"HControlUser"=C:\Program Files\ATK Hotkey\HcontrolUser.exe [2008-01-11 98304]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2008-07-15 7651328]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-07-16 6253088]
"Skytel"=C:\Windows\Skytel.exe [2008-07-16 1833504]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-06-24 159744]
"ASUSTPE"=C:\Windows\system32\ASUSTPE.exe [2007-10-11 106496]
"ADSMTray"=C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [2008-03-31 266240]
"ccApp"=C:\Program Files\Common Files\Symantec Shared\ccApp.exe [2008-10-17 51048]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"SpybotSD TeaTimer"=D:\Program files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
D:\Program files\Alcohol 120\axcmd.exe [2009-04-24 203928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\AsScrProlog.exe [2010-01-12 47672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2010-01-12 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector v2]
C:\Program Files\Common Files\Ulead Systems\AutoDetector\monitor.exe [2007-08-02 95504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UniblueSpeedUpMyPC]
D:\Program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe -minimize []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [2008-07-29 752168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
C:\Windows\Installer\{DC905847-D537-427F-BF91-47CC7ACCDE58}\_DF3A81D17C478A2A6C60A5.exe [2010-01-12 12862]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2009-10-01 87552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"EnableLUA"=2
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0e4a2cfc-fb70-11de-bb32-002243c40e61}]
shell\AutoRun\command - F:\Autorun.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-22 08:50:42 ----D---- C:\rsit
2010-01-18 08:02:54 ----A---- C:\Windows\system32\jscript.dll
2010-01-17 10:32:44 ----A---- C:\Windows\system32\occache.dll
2010-01-17 10:32:44 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-17 10:32:43 ----A---- C:\Windows\system32\iepeers.dll
2010-01-17 10:32:42 ----A---- C:\Windows\system32\ieui.dll
2010-01-17 10:32:42 ----A---- C:\Windows\system32\iesetup.dll
2010-01-17 10:32:41 ----A---- C:\Windows\system32\wininet.dll
2010-01-17 10:32:41 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-17 10:32:41 ----A---- C:\Windows\system32\iernonce.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\iertutil.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-17 10:32:40 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-17 10:32:39 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-17 10:32:39 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-17 10:32:38 ----A---- C:\Windows\system32\urlmon.dll
2010-01-17 10:32:36 ----A---- C:\Windows\system32\ieframe.dll
2010-01-17 10:32:35 ----A---- C:\Windows\system32\mshtml.dll
2010-01-17 10:31:07 ----A---- C:\Windows\system32\mshtmled.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\mshtmler.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\icardie.dll
2010-01-17 10:31:06 ----A---- C:\Windows\system32\admparse.dll
2010-01-17 10:31:05 ----A---- C:\Windows\system32\msls31.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\imgutil.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\ieakeng.dll
2010-01-17 10:31:04 ----A---- C:\Windows\system32\corpol.dll
2010-01-17 10:31:03 ----A---- C:\Windows\system32\dxtrans.dll
2010-01-17 10:31:03 ----A---- C:\Windows\system32\dxtmsft.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\licmgr10.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\inseng.dll
2010-01-17 10:31:02 ----A---- C:\Windows\system32\ieaksie.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\webcheck.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\msrating.dll
2010-01-17 10:31:01 ----A---- C:\Windows\system32\ieakui.dll
2010-01-17 10:31:00 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-01-17 10:31:00 ----A---- C:\Windows\system32\wextract.exe
2010-01-17 10:31:00 ----A---- C:\Windows\system32\mstime.dll
2010-01-17 10:30:59 ----A---- C:\Windows\system32\pngfilt.dll
2010-01-17 10:30:59 ----A---- C:\Windows\system32\advpack.dll
2010-01-17 10:30:58 ----A---- C:\Windows\system32\vbscript.dll
2010-01-17 10:30:58 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-17 10:30:57 ----A---- C:\Windows\system32\url.dll
2010-01-17 10:30:55 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\SetDepNx.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\mshta.exe
2010-01-17 10:30:55 ----A---- C:\Windows\system32\iexpress.exe
2010-01-17 10:30:54 ----A---- C:\Windows\system32\PDMSetup.exe
2010-01-16 09:52:55 ----D---- C:\Windows\pss
2010-01-14 16:49:31 ----D---- C:\Users\Dodo\AppData\Roaming\Ulead Systems
2010-01-14 16:46:29 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-01-14 16:45:43 ----D---- C:\ProgramData\Ulead Systems
2010-01-14 16:43:05 ----D---- C:\Windows\Downloaded Installations
2010-01-14 12:21:29 ----D---- C:\Program Files\VistaCodecPack
2010-01-13 08:25:51 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 08:25:51 ----A---- C:\Windows\system32\fontsub.dll
2010-01-12 11:50:50 ----A---- C:\Windows\system32\acovcnt.exe
2010-01-12 11:35:37 ----D---- C:\Users\Dodo\AppData\Roaming\Symantec
2010-01-12 11:26:30 ----D---- C:\Program Files\Norton Internet Security
2010-01-12 11:18:50 ----D---- C:\Program Files\Symantec
2010-01-12 11:18:10 ----D---- C:\ProgramData\Symantec
2010-01-12 11:17:54 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-01-12 11:15:53 ----A---- C:\Windows\ASScrPro.exe
2010-01-12 11:15:50 ----A---- C:\Windows\ASUS Camera ScreenSaver.exe
2010-01-12 11:15:50 ----A---- C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-01-12 11:15:50 ----A---- C:\Windows\AsScrProlog.exe
2010-01-12 11:15:49 ----D---- C:\Windows\system32\Asus_Camera_ScreenSaver dir
2010-01-12 11:15:17 ----A---- C:\Windows\system32\TPESetting.dll
2010-01-12 11:15:17 ----A---- C:\Windows\system32\ASUSTPE.exe
2010-01-12 11:13:50 ----A---- C:\Windows\system32\ACEngSvr.exe
2010-01-12 11:13:23 ----D---- C:\Program Files\ATKGFNEX
2010-01-12 11:12:33 ----HD---- C:\ASUS.DAT
2010-01-12 11:07:21 ----D---- C:\ProgramData\ASUS
2010-01-12 11:06:30 ----D---- C:\Program Files\P4G
2010-01-12 11:06:29 ----D---- C:\ProgramData\P4G
2010-01-12 10:57:05 ----A---- C:\Windows\system32\BtwRSupport.dll
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-MX
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-AR
2010-01-12 10:56:45 ----D---- C:\Program Files\WIDCOMM
2010-01-12 10:55:00 ----D---- C:\Program Files\Wireless Console 2
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstvga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstuxga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\Uninstsxga.bat
2010-01-12 10:53:18 ----A---- C:\Windows\DrvInst.exe
2010-01-12 10:52:01 ----D---- C:\Program Files\Multimedia Card Reader
2010-01-12 10:51:17 ----D---- C:\Program Files\Synaptics
2010-01-12 10:50:54 ----D---- C:\Program Files\Dolby
2010-01-12 10:50:01 ----D---- C:\Windows\system32\RTCOM
2010-01-12 10:49:37 ----A---- C:\Windows\system32\WdfCoInstaller01000.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynTPCo4.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynTPAPI.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynCtrl.dll
2010-01-12 10:49:37 ----A---- C:\Windows\system32\SynCOM.dll
2010-01-12 10:48:37 ----A---- C:\Windows\system32\WavesLib.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSWOW.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSTSXT.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSTSHD.dll
2010-01-12 10:48:36 ----A---- C:\Windows\system32\SRSHP360.dll
2010-01-12 10:48:35 ----A---- C:\Windows\SkyTel.exe
2010-01-12 10:48:35 ----A---- C:\Windows\RtlUpd.exe
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkPgExt.dll
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkCoInst.dll
2010-01-12 10:48:34 ----A---- C:\Windows\system32\RtkApoApi.dll
2010-01-12 10:48:33 ----A---- C:\Windows\system32\RtkAPO.dll
2010-01-12 10:48:31 ----A---- C:\Windows\RtHDVCpl.exe
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2010-01-12 10:48:30 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2010-01-12 10:48:29 ----A---- C:\Windows\system32\FMAPO.dll
2010-01-12 10:48:27 ----R---- C:\Windows\RtlExUpd.dll
2010-01-12 10:48:27 ----A---- C:\Windows\HideWin.exe
2010-01-12 10:47:48 ----D---- C:\Program Files\ASUS
2010-01-12 10:47:08 ----D---- C:\Program Files\ATK Hotkey
2010-01-12 10:45:56 ----A---- C:\Debug.txt
2010-01-10 15:42:22 ----D---- C:\Users\Dodo\AppData\Roaming\Corel
2010-01-10 15:33:15 ----A---- C:\Windows\system32\javaws.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\javaw.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\java.exe
2010-01-10 15:33:15 ----A---- C:\Windows\system32\deploytk.dll
2010-01-10 15:32:45 ----D---- C:\Program Files\Java
2010-01-10 12:02:32 ----D---- C:\Windows\registration
2010-01-09 13:14:45 ----D---- C:\Users\Dodo\AppData\Roaming\Yamicsoft
2010-01-09 12:52:40 ----A---- C:\Windows\ODBCINST.INI
2010-01-09 12:29:27 ----D---- C:\Program Files\Yamicsoft
2010-01-08 14:11:57 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-01-08 14:11:31 ----D---- C:\Windows\system32\IOSUBSYS
2010-01-08 14:11:30 ----D---- C:\Program Files\Google
2010-01-08 12:53:13 ----N---- C:\Windows\Setup1.exe
2010-01-08 12:53:12 ----A---- C:\Windows\ST6UNST.EXE
2010-01-07 14:56:47 ----D---- C:\Program Files\Common Files\PocketSoft
2010-01-07 14:56:47 ----A---- C:\Windows\patchw32.dll
2009-12-28 17:17:13 ----D---- C:\ProgramData\LightScribe
2009-12-27 12:26:47 ----D---- C:\Users\Dodo\AppData\Roaming\ImgBurn
======List of files/folders modified in the last 1 months======
2010-01-22 08:51:09 ----D---- C:\Windows\Prefetch
2010-01-22 08:51:03 ----D---- C:\Program Files\trend micro
2010-01-22 08:51:00 ----D---- C:\Windows\temp
2010-01-22 08:39:31 ----D---- C:\Windows\System32
2010-01-22 08:39:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-22 08:39:30 ----D---- C:\Windows\inf
2010-01-21 19:50:58 ----D---- C:\Windows
2010-01-21 19:45:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-01-21 19:31:16 ----D---- C:\Windows\system32\Msdtc
2010-01-21 19:31:14 ----D---- C:\Windows\system32\wbem
2010-01-21 18:22:27 ----D---- C:\Windows\system32\config
2010-01-21 18:22:18 ----D---- C:\Windows\Tasks
2010-01-21 18:22:18 ----D---- C:\Windows\system32\spool
2010-01-21 18:22:18 ----D---- C:\Windows\system32\catroot2
2010-01-21 18:20:06 ----SHD---- C:\System Volume Information
2010-01-21 18:18:00 ----D---- C:\Users\Dodo\AppData\Roaming\Skype
2010-01-21 18:17:38 ----D---- C:\Users\Dodo\AppData\Roaming\skypePM
2010-01-21 18:10:43 ----SHD---- C:\Windows\Installer
2010-01-18 08:05:06 ----D---- C:\Windows\winsxs
2010-01-18 08:01:24 ----D---- C:\Windows\system32\catroot
2010-01-17 10:54:26 ----D---- C:\Windows\rescache
2010-01-17 10:48:18 ----D---- C:\Windows\system32\LogFiles
2010-01-17 10:35:28 ----D---- C:\Windows\system32\migration
2010-01-17 10:35:28 ----D---- C:\Program Files\Internet Explorer
2010-01-17 10:35:26 ----D---- C:\Windows\system32\sk-SK
2010-01-17 10:35:21 ----D---- C:\Windows\system32\en-US
2010-01-17 10:35:21 ----D---- C:\Windows\PolicyDefinitions
2010-01-16 09:34:34 ----D---- C:\ProgramData
2010-01-15 19:15:53 ----D---- C:\Windows\system32\drivers
2010-01-14 16:49:22 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-14 16:49:15 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-14 16:46:29 ----D---- C:\Program Files\Common Files
2010-01-14 16:46:28 ----RSD---- C:\Windows\Fonts
2010-01-14 12:21:29 ----RD---- C:\Program Files
2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-13 11:02:01 ----SD---- C:\Users\Dodo\AppData\Roaming\Microsoft
2010-01-13 09:33:55 ----D---- C:\Windows\Debug
2010-01-13 08:30:48 ----D---- C:\Program Files\Windows Mail
2010-01-12 12:17:16 ----D---- C:\Windows\system32\Tasks
2010-01-12 11:32:16 ----RSD---- C:\Windows\assembly
2010-01-12 10:57:05 ----SD---- C:\Windows\system32\Microsoft
2010-01-12 10:56:50 ----D---- C:\Windows\system32\zh-TW
2010-01-12 10:56:49 ----D---- C:\Windows\system32\zh-CN
2010-01-12 10:56:49 ----D---- C:\Windows\system32\sv-SE
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ru-RU
2010-01-12 10:56:49 ----D---- C:\Windows\system32\pt-BR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\pl-PL
2010-01-12 10:56:49 ----D---- C:\Windows\system32\nl-NL
2010-01-12 10:56:49 ----D---- C:\Windows\system32\nb-NO
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ko-KR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\ja-JP
2010-01-12 10:56:49 ----D---- C:\Windows\system32\it-IT
2010-01-12 10:56:49 ----D---- C:\Windows\system32\fr-FR
2010-01-12 10:56:49 ----D---- C:\Windows\system32\fi-FI
2010-01-12 10:56:49 ----D---- C:\Windows\system32\es-ES
2010-01-12 10:56:49 ----D---- C:\Windows\system32\de-DE
2010-01-12 10:56:49 ----D---- C:\Windows\system32\da-DK
2010-01-12 10:49:25 ----A---- C:\Windows\DIFxAPI.dll
2010-01-11 11:22:54 ----D---- C:\Windows\system32\WDI
2010-01-10 15:36:05 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-10 15:06:42 ----D---- C:\Users\Dodo\AppData\Roaming\BSplayer Pro
2010-01-10 15:06:36 ----D---- C:\Users\Dodo\AppData\Roaming\BSplayer
2010-01-10 11:59:50 ----D---- C:\Windows\system32\CodeIntegrity
2010-01-10 11:59:50 ----D---- C:\Program Files\Conduit
2010-01-10 11:59:50 ----D---- C:\Program Files\BS_Player
2010-01-09 13:01:24 ----D---- C:\Program Files\WinRAR
2010-01-09 13:01:24 ----D---- C:\Program Files\Mozilla Firefox
2010-01-05 00:17:46 ----A---- C:\Windows\system32\mrt.exe
2009-12-27 11:59:11 ----D---- C:\ProgramData\CyberLink
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-24 23120]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-24 48560]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2009-12-14 371248]
R1 IDSvix86;Symantec Intrusion Prevention Driver; \??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\ipsdefs\20100119.001\IDSvix86.sys [2009-12-30 286768]
R1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys [2009-03-17 447024]
R1 SRTSPX;SRTSPX; C:\Windows\System32\Drivers\SRTSPX.SYS [2008-01-31 43696]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2009-02-19 24112]
R1 SYMTDI;SYMTDI; C:\Windows\System32\Drivers\SYMTDI.SYS [2009-02-19 184496]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R2 CO_Mon;CO_Mon; \??\C:\Windows\system32\drivers\CO_Mon.sys [2007-08-08 36056]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-30 1184768]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-01 4179968]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-07-09 81960]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-05-13 100392]
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-05-13 17320]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-12-14 102448]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-07-16 2156312]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-11-11 47360]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-09-25 159232]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-08-11 1752704]
R3 SYMDNS;SYMDNS; C:\Windows\System32\Drivers\SYMDNS.SYS [2009-02-19 13616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2010-01-15 124464]
R3 SYMFW;SYMFW; C:\Windows\System32\Drivers\SYMFW.SYS [2009-02-19 96560]
R3 SYMNDISV;SYMNDISV; C:\Windows\System32\Drivers\SYMNDISV.SYS [2009-02-19 41008]
R3 SYMREDRV;SYMREDRV; C:\Windows\System32\Drivers\SYMREDRV.SYS [2009-02-19 22320]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
S3 azz9xcwd;azz9xcwd; C:\Windows\system32\drivers\azz9xcwd.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 catchme;catchme; \??\C:\Users\Dodo\AppData\Local\Temp\catchme.sys []
S3 COH_Mon;COH_Mon; \??\C:\Windows\system32\Drivers\COH_Mon.sys [2008-07-30 23888]
S3 CRFILTER;USB Mass Storage Filter; C:\Windows\system32\DRIVERS\CRFILTER.sys [2008-04-07 6656]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NAVENG;NAVENG; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20100121.023\NAVENG.SYS [2010-01-18 84912]
S3 NAVEX15;NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20100121.023\NAVEX15.SYS [2010-01-18 1323568]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 SRTSP;SRTSP; C:\Windows\System32\Drivers\SRTSP.SYS [2008-01-31 279088]
S3 SRTSPL;SRTSPL; C:\Windows\System32\Drivers\SRTSPL.SYS [2008-01-31 317616]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-02 94208]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-24 18752]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-01 720896]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-09 238968]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-24 138680]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-07-29 522792]
R2 ccEvtMgr;Symantec Event Manager; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 ccSetMgr;Symantec Settings Manager; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 LiveUpdate Notice;LiveUpdate Notice; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-10-17 149352]
R2 ProtexisLicensing;ProtexisLicensing; C:\Windows\system32\PSIService.exe [2006-11-02 174656]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SBSDWSCService;SBSD Security Center Service; D:\Program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R2 StarWindServiceAE;StarWind AE Service; D:\Program files\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-24 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-24 352920]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 comHost;COM Host; C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe [2007-08-22 55640]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-09-05 3220856]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Symantec Core LC;Symantec Core LC; C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe [2010-01-12 1245064]
-----------------EOF-----------------
Re: Prosim o kontrolu pc
Hezké dopoledne
Od symantecu máte co?
Který proces nejvíc vytěžuje počítač?

Od symantecu máte co?
Který proces nejvíc vytěžuje počítač?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Prosim o kontrolu pc
Ked som pozrel na spravcu uloh a procesy tak najviac tam zatazoval procesor Tea Timer.exe 123476K a Firefox.exe 91 392K.od synamtecu mam spustene procesy CCSVCHST.EXE,SynTPEnh.exe,SynTPHelper.
Re: Prosim o kontrolu pc
Tea timer je od Spybota, zkuste ho vypnout.
A pak napište jak to vypadá.
Ale pro jistotu
Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, skopírujte celý jeho obsah sem
A pak napište jak to vypadá.
Ale pro jistotu


- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, skopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Prosim o kontrolu pc
Tu je ten log:
ComboFix 10-01-21.06 - Dodo . 01. 2010 9:56.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1051.18.3070.1674 [GMT 0:00]
Running from: d:\stahovanie\ComboFix.exe
AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *enabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
SP: Norton Internet Security *enabled* (Updated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A}
SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
.
((((((((((((((((((((((((( Files Created from 2009-12-22 to 2010-01-22 )))))))))))))))))))))))))))))))
.
2010-01-22 10:08 . 2010-01-22 10:12 -------- d-----w- c:\users\Dodo\AppData\Local\temp
2010-01-22 10:08 . 2010-01-22 10:08 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-01-22 10:08 . 2010-01-22 10:08 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-22 09:51 . 2010-01-22 09:51 -------- d-----w- C:\32788R22FWJFW
2010-01-22 08:50 . 2010-01-22 08:51 -------- d-----w- C:\rsit
2010-01-17 10:30 . 2009-03-08 11:33 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-01-17 10:30 . 2009-03-08 11:33 107520 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2010-01-17 10:30 . 2009-03-08 11:33 107008 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2010-01-17 10:30 . 2009-03-08 11:33 103936 ----a-w- c:\windows\system32\SetDepNx.exe
2010-01-17 10:30 . 2009-03-08 11:32 169472 ----a-w- c:\windows\system32\iexpress.exe
2010-01-17 10:30 . 2009-03-08 11:31 45568 ----a-w- c:\windows\system32\mshta.exe
2010-01-17 10:30 . 2009-03-08 11:33 109568 ----a-w- c:\windows\system32\PDMSetup.exe
2010-01-17 10:06 . 2010-01-17 10:06 -------- d-----w- c:\users\Dodo\AppData\Local\Apps
2010-01-14 16:49 . 2010-01-14 16:49 -------- d-----w- c:\users\Dodo\AppData\Roaming\Ulead Systems
2010-01-14 16:46 . 2010-01-14 16:48 -------- d-----w- c:\program files\Common Files\Ulead Systems
2010-01-14 16:45 . 2010-01-14 16:48 -------- d-----w- c:\programdata\Ulead Systems
2010-01-14 16:43 . 2010-01-14 16:43 -------- d-----w- c:\windows\Downloaded Installations
2010-01-14 12:21 . 2010-01-14 12:21 -------- d-----w- c:\program files\VistaCodecPack
2010-01-13 08:25 . 2009-10-19 13:38 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-01-13 08:25 . 2009-10-19 13:35 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-01-12 11:50 . 2010-01-22 10:11 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-01-12 11:35 . 2010-01-12 11:35 -------- d-----w- c:\users\Dodo\AppData\Roaming\Symantec
2010-01-12 11:33 . 2010-01-12 11:33 -------- d-----w- c:\users\Dodo\AppData\Local\ASUS
2010-01-12 11:26 . 2010-01-16 08:25 -------- d-----w- c:\program files\Norton Internet Security
2010-01-12 11:19 . 2010-01-15 19:19 124464 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2010-01-12 11:18 . 2010-01-15 19:19 -------- d-----w- c:\program files\Symantec
2010-01-12 11:18 . 2010-01-15 08:39 -------- d-----w- c:\programdata\Symantec
2010-01-12 11:17 . 2010-01-16 08:25 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-01-12 11:15 . 2010-01-12 11:15 33136 ----a-w- c:\windows\ASScrPro.exe
2010-01-12 11:15 . 2010-01-12 11:15 4814371 ----a-w- c:\windows\ASUS Camera ScreenSaver.exe
2010-01-12 11:15 . 2010-01-12 11:15 47672 ----a-w- c:\windows\AsScrProlog.exe
2010-01-12 11:15 . 2010-01-12 11:15 281144 ----a-w- c:\windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-01-12 11:15 . 2010-01-12 11:15 520192 ----a-w- c:\windows\system32\Asus_Camera_ScreenSaver.scr
2010-01-12 11:15 . 2010-01-12 11:15 -------- d-----w- c:\windows\system32\Asus_Camera_ScreenSaver dir
2010-01-12 11:15 . 2007-10-11 21:44 106496 ----a-w- c:\windows\system32\ASUSTPE.exe
2010-01-12 11:15 . 2007-10-11 21:43 32768 ----a-w- c:\windows\system32\TPESetting.dll
2010-01-12 11:14 . 2007-08-10 20:19 29752 ----a-w- c:\windows\system32\drivers\AsDsm.sys
2010-01-12 11:13 . 2005-07-06 15:43 155648 ----a-w- c:\windows\system32\ACEngSvr.exe
2010-01-12 11:13 . 2010-01-12 11:13 -------- d-----w- c:\program files\ATKGFNEX
2010-01-12 11:12 . 2010-01-12 12:14 -------- d-----w- C:\ASUS.DAT
2010-01-12 11:07 . 2010-01-12 11:33 -------- d-----w- c:\programdata\ASUS
2010-01-12 11:06 . 2010-01-12 11:06 -------- d-----w- c:\program files\P4G
2010-01-12 11:06 . 2010-01-21 18:22 -------- d-----w- c:\programdata\P4G
2010-01-12 10:59 . 2010-01-12 10:59 -------- d-----w- c:\users\Dodo\Bluetooth Software
2010-01-12 10:57 . 2008-05-13 13:02 17320 ----a-w- c:\windows\system32\drivers\btwrchid.sys
2010-01-12 10:57 . 2008-05-13 13:02 100392 ----a-w- c:\windows\system32\drivers\btwavdt.sys
2010-01-12 10:57 . 2008-01-29 02:46 29736 ----a-w- c:\windows\system32\drivers\btwl2cap.sys
2010-01-12 10:57 . 2008-07-09 09:16 81960 ----a-w- c:\windows\system32\drivers\btwaudio.sys
2010-01-12 10:57 . 2008-07-29 09:33 233472 ----a-w- c:\windows\system32\BtwRSupport.dll
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\windows\system32\es-MX
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\windows\system32\es-AR
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\program files\WIDCOMM
2010-01-12 10:55 . 2010-01-12 10:55 -------- d-----w- c:\program files\Wireless Console 2
2010-01-12 10:53 . 2008-08-26 02:02 1580 ----a-w- c:\windows\Uninstsxga.bat
2010-01-12 10:53 . 2008-08-11 02:14 1752704 ----a-w- c:\windows\system32\drivers\snp2uvc.sys
2010-01-12 10:53 . 2008-06-25 11:38 2052 ----a-w- c:\windows\Uninstvga.bat
2010-01-12 10:53 . 2008-06-25 11:00 1682 ----a-w- c:\windows\Uninstuxga.bat
2010-01-12 10:53 . 2008-05-12 03:20 28672 ----a-w- c:\windows\system32\drivers\sncduvc.sys
2010-01-12 10:53 . 2008-03-21 13:44 384 ----a-w- c:\windows\Uninstvga.reg
2010-01-12 10:53 . 2008-03-21 13:44 386 ----a-w- c:\windows\Uninstsxga.reg
2010-01-12 10:53 . 2008-03-21 13:38 386 ----a-w- c:\windows\Uninstuxga.reg
2010-01-12 10:53 . 2006-11-23 14:20 11776 ----a-w- c:\windows\DrvInst.exe
2010-01-12 10:52 . 2010-01-12 10:52 -------- d-----w- c:\program files\Multimedia Card Reader
2010-01-12 10:51 . 2010-01-12 10:51 -------- d-----w- c:\program files\Synaptics
2010-01-12 10:50 . 2010-01-12 10:50 -------- d-----w- c:\program files\Dolby
2010-01-12 10:50 . 2010-01-12 10:50 -------- d-----w- c:\windows\system32\RTCOM
2010-01-12 10:49 . 2007-12-06 10:12 196400 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-01-12 10:49 . 2007-12-06 10:12 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-01-12 10:49 . 2007-12-06 09:20 147456 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-01-12 10:49 . 2007-12-06 09:09 196608 ----a-w- c:\windows\system32\SynCtrl.dll
2010-01-12 10:49 . 2007-12-06 09:08 163840 ----a-w- c:\windows\system32\SynCOM.dll
2010-01-12 10:49 . 2006-03-09 01:58 1060424 ----a-w- c:\windows\system32\WdfCoInstaller01000.dll
2010-01-12 10:47 . 2010-01-12 11:14 -------- d-----w- c:\program files\ASUS
2010-01-12 10:47 . 2010-01-12 10:47 -------- d-----w- c:\program files\ATK Hotkey
2010-01-12 10:47 . 2008-06-03 06:41 15928 ----a-w- c:\windows\system32\drivers\kbfiltr.sys
2010-01-10 15:42 . 2010-01-10 15:43 -------- d-----w- c:\users\Dodo\AppData\Roaming\Corel
2010-01-10 15:37 . 2010-01-10 15:44 2828 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-01-10 15:37 . 2010-01-10 15:43 88 --sh--r- c:\windows\system32\21DAD42438.sys
2010-01-10 15:33 . 2010-01-10 15:32 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-10 15:32 . 2010-01-10 15:32 -------- d-----w- c:\program files\Java
2010-01-10 12:02 . 2010-01-22 10:11 -------- d-----w- c:\windows\system32\wbem\repository
2010-01-09 13:14 . 2010-01-10 11:59 -------- d-----w- c:\users\Dodo\AppData\Roaming\Yamicsoft
2010-01-09 12:29 . 2010-01-09 12:36 -------- d-----w- c:\program files\Yamicsoft
2010-01-08 14:11 . 2010-01-15 11:45 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-01-08 14:11 . 2010-01-08 14:11 -------- d-----w- c:\windows\system32\IOSUBSYS
2010-01-08 14:11 . 2010-01-08 14:11 -------- d-----w- c:\program files\Google
2010-01-08 12:53 . 2010-01-08 13:00 471040 ------w- c:\windows\Setup1.exe
2010-01-08 12:53 . 2010-01-08 13:00 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-01-07 14:56 . 2010-01-07 14:56 -------- d-----w- c:\program files\Common Files\PocketSoft
2010-01-07 14:56 . 2002-02-27 17:50 197120 ----a-w- c:\windows\patchw32.dll
2010-01-07 13:46 . 2010-01-07 13:46 0 ----a-w- c:\windows\PowerReg.dat
2009-12-28 23:44 . 2010-01-11 15:14 1356 ----a-w- c:\users\Dodo\AppData\Local\d3d9caps.dat
2009-12-28 17:17 . 2010-01-16 09:44 -------- d-----w- c:\programdata\LightScribe
2009-12-27 12:26 . 2009-12-27 12:36 -------- d-----w- c:\users\Dodo\AppData\Roaming\ImgBurn
2009-12-27 12:09 . 2009-12-27 12:09 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-22 10:09 . 2009-11-10 22:13 12 ----a-w- c:\windows\bthservsdp.dat
2010-01-22 09:17 . 2009-11-10 17:06 -------- d-----w- c:\users\Dodo\AppData\Roaming\Skype
2010-01-22 09:12 . 2009-11-10 17:14 -------- d-----w- c:\users\Dodo\AppData\Roaming\skypePM
2010-01-22 08:51 . 2009-12-11 18:43 -------- d-----w- c:\program files\trend micro
2010-01-21 19:45 . 2009-11-10 17:25 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-01-15 19:19 . 2010-01-12 11:19 806 ----a-w- c:\windows\system32\drivers\SYMEVENT.INF
2010-01-15 19:19 . 2010-01-12 11:19 10635 ----a-w- c:\windows\system32\drivers\SYMEVENT.CAT
2010-01-15 08:20 . 2009-11-10 14:37 113192 ----a-w- c:\users\Dodo\AppData\Local\GDIPFONTCACHEV1.DAT
2010-01-14 16:49 . 2009-11-10 15:42 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-14 11:12 . 2009-11-10 17:04 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-13 08:30 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-12 11:13 . 2010-01-12 11:13 0 ----a-w- c:\windows\system32\drivers\1043_ASUSTeK_F50SL.alu
2010-01-12 10:51 . 2010-01-12 10:51 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-12 10:49 . 2009-11-11 11:54 319456 ----a-w- c:\windows\DIFxAPI.dll
2010-01-12 10:48 . 2010-01-12 10:48 315392 ----a-w- c:\windows\HideWin.exe
2010-01-10 15:36 . 2009-11-14 16:26 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-10 15:06 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer Pro
2010-01-10 15:06 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer
2010-01-10 11:59 . 2009-11-10 17:41 -------- d-----w- c:\program files\Conduit
2010-01-10 11:59 . 2009-11-10 17:41 -------- d-----w- c:\program files\BS_Player
2009-12-27 11:59 . 2009-12-10 19:21 -------- d-----w- c:\programdata\CyberLink
2009-12-23 17:56 . 2010-01-01 10:20 52224 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\FFExternalAlert.dll
2009-12-23 17:56 . 2010-01-01 10:20 101376 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\RadioWMPCore.dll
2009-12-22 15:48 . 2009-12-22 15:48 -------- d-----w- c:\program files\Lavalys
2009-12-20 22:56 . 2009-11-10 17:40 -------- d-----w- c:\users\Dodo\AppData\Roaming\Ahead
2009-12-19 18:36 . 2009-12-19 18:36 144 ----a-w- c:\users\Dodo\smazani.reg
2009-12-16 14:42 . 2009-12-18 22:22 872960 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
2009-12-16 14:42 . 2009-12-18 22:22 43008 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
2009-12-16 14:42 . 2009-12-18 22:22 340480 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll
2009-12-16 14:41 . 2009-12-18 22:22 346624 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll
2009-12-12 10:07 . 2009-12-12 10:07 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-12-11 17:48 . 2009-12-11 17:48 -------- d-----w- c:\users\Dodo\AppData\Roaming\CyberLink
2009-12-10 19:22 . 2009-12-10 19:18 -------- d-----w- c:\program files\CyberLink
2009-12-10 19:20 . 2009-12-10 19:20 36864 ----a-w- c:\programdata\Temp\{40BF1E83-20EB-11D8-97C5-0009C5020658}\PostBuild.exe
2009-12-10 19:19 . 2009-12-10 19:19 -------- d-----w- c:\program files\Common Files\LightScribe
2009-12-10 19:17 . 2009-12-10 19:18 53319 ----a-w- c:\programdata\Temp\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}\PostBuild.exe
2009-12-03 10:45 . 2009-12-03 10:45 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-24 23:54 . 2009-11-10 14:44 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-24 23:49 . 2009-11-10 14:44 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2009-11-10 14:44 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2009-11-10 14:44 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-21 06:40 . 2010-01-17 10:32 916480 ----a-w- c:\windows\system32\wininet.dll
2009-11-21 06:34 . 2010-01-17 10:32 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-11-21 06:34 . 2010-01-17 10:32 109056 ----a-w- c:\windows\system32\iesysprep.dll
2009-11-21 04:59 . 2010-01-17 10:32 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-11-16 18:36 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-10 22:29 . 2009-11-10 22:29 0 ----a-w- c:\windows\ativpsrm.bin
2009-11-09 12:31 . 2009-12-09 08:39 24064 ----a-w- c:\windows\system32\nshhttp.dll
2009-11-09 12:30 . 2009-12-09 08:39 30720 ----a-w- c:\windows\system32\httpapi.dll
2009-11-09 10:36 . 2009-12-09 08:39 411648 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-29 09:17 . 2009-11-27 08:09 2048 ----a-w- c:\windows\system32\tzres.dll
2008-07-01 19:28 . 2008-07-01 19:28 61440 ----a-w- c:\program files\Common Files\CPInstallAction.dll
2008-05-22 09:35 . 2008-05-22 09:35 51962 ----a-w- c:\program files\Common Files\banner.jpg
2007-06-12 10:34 . 2007-06-12 10:34 35822 ----a-w- c:\program files\Common Files\ASPG_icon.ico
2008-06-30 13:44 . 2010-01-12 13:26 324976 ----a-w- c:\program files\mozilla firefox\components\coFFPlgn.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2009-07-02 10:18 2215960 ----a-w- c:\program files\BS_Player\tbBS_P.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 17:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"SpybotSD TeaTimer"="d:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-30 61440]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-18 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-10 149280]
"HControlUser"="c:\program files\ATK Hotkey\HcontrolUser.exe" [2008-01-11 98304]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-16 6253088]
"Skytel"="Skytel.exe" [2008-07-16 1833504]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2008-06-24 159744]
"ASUSTPE"="c:\windows\system32\ASUSTPE.exe" [2007-10-11 106496]
"ADSMTray"="c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe" [2008-03-31 266240]
"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2008-10-17 51048]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLUA"= 2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer4"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
backup=c:\windows\pss\Bluetooth.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk
backup=c:\windows\pss\FancyStart daemon.lnk.CommonStartup
backupExtension=.CommonStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
2009-04-24 03:21 203928 ----a-w- d:\program files\Alcohol 120\AxCmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2010-01-12 11:15 47672 ----a-w- c:\windows\AsScrProlog.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-01-12 11:15 33136 ----a-w- c:\windows\ASScrPro.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 10:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector v2]
2007-08-02 21:08 95504 ----a-w- c:\program files\Common Files\Ulead Systems\AutoDetector\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):1d,1e,b7,72,e3,65,ca,01
R0 lullaby;lullaby;c:\windows\System32\drivers\lullaby.sys [12. 1. 2010 10:48 15416]
R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [10. 11. 2009 14:44 114768]
R1 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\Symantec\DEFINI~1\SymcData\ipsdefs\20100119.001\IDSvix86.sys [21. 1. 2010 10:50 286768]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [10. 11. 2009 14:44 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [10. 11. 2009 14:44 53328]
R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\Common Files\Symantec Shared\CCSVCHST.EXE [6. 2. 2008 19:48 149352]
R2 SBSDWSCService;SBSD Security Center Service;d:\program files\Spybot - Search & Destroy\SDWinSec.exe [10. 11. 2009 17:25 1153368]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [12. 1. 2010 13:08 102448]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\System32\drivers\SiSGB6.sys [10. 11. 2009 22:54 48128]
R3 SYMNDISV;SYMNDISV;c:\windows\System32\drivers\symndisv.sys [19. 2. 2009 12:31 41008]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\System32\drivers\btwl2cap.sys [12. 1. 2010 10:57 29736]
S3 COH_Mon;COH_Mon;c:\windows\System32\drivers\COH_Mon.sys [12. 1. 2008 19:32 23888]
S3 CRFILTER;USB Mass Storage Filter;c:\windows\System32\drivers\CRFILTER.sys [7. 4. 2008 6:00 6656]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21. 1. 2008 2:23 21504]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - COMHOST
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 10:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
2010-01-12 c:\windows\Tasks\Norton Internet Security - Run Full System Scan - Dodo.job
- c:\program files\Norton Internet Security\Norton AntiVirus\Navw32.exe [2008-02-07 07:05]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - BS Player Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=
FF - component: c:\program files\Mozilla Firefox\components\coFFPlgn.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\FFExternalAlert.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nppl3260.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.
- - - - ORPHANS REMOVED - - - -
MSConfigStartUp-UniblueSpeedUpMyPC - d:\program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-22 10:11
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
C:\ADSM_PData_0150
scan completed successfully
hidden files: 1
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x84F921F8]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0x8ada7d24
\Driver\ACPI -> acpi.sys @ 0x805c0d68
\Driver\atapi -> 0x84f921f8
IoDeviceObjectType ->\Device\Harddisk0\DR0 ->Warning: possible MBR rootkit infection !
user & kernel MBR OK
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'Explorer.exe'(2208)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\windows\system32\WLANExt.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\system32\PSIService.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
d:\program files\Alcohol 120\StarWind\StarWindServiceAE.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\program files\Symantec\LiveUpdate\AluSchedulerSvc.exe
.
**************************************************************************
.
Completion time: 2010-01-22 10:20:52 - machine was rebooted
ComboFix-quarantined-files.txt 2010-01-22 10:20
Pre-Run: 185 343 221 760 bytes free
Post-Run: 185 074 671 616 bytes free
- - End Of File - - B29D3F6D691D84B1C6D15A0A90A05016
ComboFix 10-01-21.06 - Dodo . 01. 2010 9:56.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.421.1051.18.3070.1674 [GMT 0:00]
Running from: d:\stahovanie\ComboFix.exe
AV: Norton Internet Security *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Internet Security *enabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
SP: Norton Internet Security *enabled* (Updated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A}
SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
.
((((((((((((((((((((((((( Files Created from 2009-12-22 to 2010-01-22 )))))))))))))))))))))))))))))))
.
2010-01-22 10:08 . 2010-01-22 10:12 -------- d-----w- c:\users\Dodo\AppData\Local\temp
2010-01-22 10:08 . 2010-01-22 10:08 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-01-22 10:08 . 2010-01-22 10:08 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-22 09:51 . 2010-01-22 09:51 -------- d-----w- C:\32788R22FWJFW
2010-01-22 08:50 . 2010-01-22 08:51 -------- d-----w- C:\rsit
2010-01-17 10:30 . 2009-03-08 11:33 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-01-17 10:30 . 2009-03-08 11:33 107520 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2010-01-17 10:30 . 2009-03-08 11:33 107008 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2010-01-17 10:30 . 2009-03-08 11:33 103936 ----a-w- c:\windows\system32\SetDepNx.exe
2010-01-17 10:30 . 2009-03-08 11:32 169472 ----a-w- c:\windows\system32\iexpress.exe
2010-01-17 10:30 . 2009-03-08 11:31 45568 ----a-w- c:\windows\system32\mshta.exe
2010-01-17 10:30 . 2009-03-08 11:33 109568 ----a-w- c:\windows\system32\PDMSetup.exe
2010-01-17 10:06 . 2010-01-17 10:06 -------- d-----w- c:\users\Dodo\AppData\Local\Apps
2010-01-14 16:49 . 2010-01-14 16:49 -------- d-----w- c:\users\Dodo\AppData\Roaming\Ulead Systems
2010-01-14 16:46 . 2010-01-14 16:48 -------- d-----w- c:\program files\Common Files\Ulead Systems
2010-01-14 16:45 . 2010-01-14 16:48 -------- d-----w- c:\programdata\Ulead Systems
2010-01-14 16:43 . 2010-01-14 16:43 -------- d-----w- c:\windows\Downloaded Installations
2010-01-14 12:21 . 2010-01-14 12:21 -------- d-----w- c:\program files\VistaCodecPack
2010-01-13 08:25 . 2009-10-19 13:38 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-01-13 08:25 . 2009-10-19 13:35 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-01-12 11:50 . 2010-01-22 10:11 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-01-12 11:35 . 2010-01-12 11:35 -------- d-----w- c:\users\Dodo\AppData\Roaming\Symantec
2010-01-12 11:33 . 2010-01-12 11:33 -------- d-----w- c:\users\Dodo\AppData\Local\ASUS
2010-01-12 11:26 . 2010-01-16 08:25 -------- d-----w- c:\program files\Norton Internet Security
2010-01-12 11:19 . 2010-01-15 19:19 124464 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS
2010-01-12 11:18 . 2010-01-15 19:19 -------- d-----w- c:\program files\Symantec
2010-01-12 11:18 . 2010-01-15 08:39 -------- d-----w- c:\programdata\Symantec
2010-01-12 11:17 . 2010-01-16 08:25 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-01-12 11:15 . 2010-01-12 11:15 33136 ----a-w- c:\windows\ASScrPro.exe
2010-01-12 11:15 . 2010-01-12 11:15 4814371 ----a-w- c:\windows\ASUS Camera ScreenSaver.exe
2010-01-12 11:15 . 2010-01-12 11:15 47672 ----a-w- c:\windows\AsScrProlog.exe
2010-01-12 11:15 . 2010-01-12 11:15 281144 ----a-w- c:\windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-01-12 11:15 . 2010-01-12 11:15 520192 ----a-w- c:\windows\system32\Asus_Camera_ScreenSaver.scr
2010-01-12 11:15 . 2010-01-12 11:15 -------- d-----w- c:\windows\system32\Asus_Camera_ScreenSaver dir
2010-01-12 11:15 . 2007-10-11 21:44 106496 ----a-w- c:\windows\system32\ASUSTPE.exe
2010-01-12 11:15 . 2007-10-11 21:43 32768 ----a-w- c:\windows\system32\TPESetting.dll
2010-01-12 11:14 . 2007-08-10 20:19 29752 ----a-w- c:\windows\system32\drivers\AsDsm.sys
2010-01-12 11:13 . 2005-07-06 15:43 155648 ----a-w- c:\windows\system32\ACEngSvr.exe
2010-01-12 11:13 . 2010-01-12 11:13 -------- d-----w- c:\program files\ATKGFNEX
2010-01-12 11:12 . 2010-01-12 12:14 -------- d-----w- C:\ASUS.DAT
2010-01-12 11:07 . 2010-01-12 11:33 -------- d-----w- c:\programdata\ASUS
2010-01-12 11:06 . 2010-01-12 11:06 -------- d-----w- c:\program files\P4G
2010-01-12 11:06 . 2010-01-21 18:22 -------- d-----w- c:\programdata\P4G
2010-01-12 10:59 . 2010-01-12 10:59 -------- d-----w- c:\users\Dodo\Bluetooth Software
2010-01-12 10:57 . 2008-05-13 13:02 17320 ----a-w- c:\windows\system32\drivers\btwrchid.sys
2010-01-12 10:57 . 2008-05-13 13:02 100392 ----a-w- c:\windows\system32\drivers\btwavdt.sys
2010-01-12 10:57 . 2008-01-29 02:46 29736 ----a-w- c:\windows\system32\drivers\btwl2cap.sys
2010-01-12 10:57 . 2008-07-09 09:16 81960 ----a-w- c:\windows\system32\drivers\btwaudio.sys
2010-01-12 10:57 . 2008-07-29 09:33 233472 ----a-w- c:\windows\system32\BtwRSupport.dll
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\windows\system32\es-MX
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\windows\system32\es-AR
2010-01-12 10:56 . 2010-01-12 10:56 -------- d-----w- c:\program files\WIDCOMM
2010-01-12 10:55 . 2010-01-12 10:55 -------- d-----w- c:\program files\Wireless Console 2
2010-01-12 10:53 . 2008-08-26 02:02 1580 ----a-w- c:\windows\Uninstsxga.bat
2010-01-12 10:53 . 2008-08-11 02:14 1752704 ----a-w- c:\windows\system32\drivers\snp2uvc.sys
2010-01-12 10:53 . 2008-06-25 11:38 2052 ----a-w- c:\windows\Uninstvga.bat
2010-01-12 10:53 . 2008-06-25 11:00 1682 ----a-w- c:\windows\Uninstuxga.bat
2010-01-12 10:53 . 2008-05-12 03:20 28672 ----a-w- c:\windows\system32\drivers\sncduvc.sys
2010-01-12 10:53 . 2008-03-21 13:44 384 ----a-w- c:\windows\Uninstvga.reg
2010-01-12 10:53 . 2008-03-21 13:44 386 ----a-w- c:\windows\Uninstsxga.reg
2010-01-12 10:53 . 2008-03-21 13:38 386 ----a-w- c:\windows\Uninstuxga.reg
2010-01-12 10:53 . 2006-11-23 14:20 11776 ----a-w- c:\windows\DrvInst.exe
2010-01-12 10:52 . 2010-01-12 10:52 -------- d-----w- c:\program files\Multimedia Card Reader
2010-01-12 10:51 . 2010-01-12 10:51 -------- d-----w- c:\program files\Synaptics
2010-01-12 10:50 . 2010-01-12 10:50 -------- d-----w- c:\program files\Dolby
2010-01-12 10:50 . 2010-01-12 10:50 -------- d-----w- c:\windows\system32\RTCOM
2010-01-12 10:49 . 2007-12-06 10:12 196400 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-01-12 10:49 . 2007-12-06 10:12 110592 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-01-12 10:49 . 2007-12-06 09:20 147456 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-01-12 10:49 . 2007-12-06 09:09 196608 ----a-w- c:\windows\system32\SynCtrl.dll
2010-01-12 10:49 . 2007-12-06 09:08 163840 ----a-w- c:\windows\system32\SynCOM.dll
2010-01-12 10:49 . 2006-03-09 01:58 1060424 ----a-w- c:\windows\system32\WdfCoInstaller01000.dll
2010-01-12 10:47 . 2010-01-12 11:14 -------- d-----w- c:\program files\ASUS
2010-01-12 10:47 . 2010-01-12 10:47 -------- d-----w- c:\program files\ATK Hotkey
2010-01-12 10:47 . 2008-06-03 06:41 15928 ----a-w- c:\windows\system32\drivers\kbfiltr.sys
2010-01-10 15:42 . 2010-01-10 15:43 -------- d-----w- c:\users\Dodo\AppData\Roaming\Corel
2010-01-10 15:37 . 2010-01-10 15:44 2828 --sha-w- c:\windows\system32\KGyGaAvL.sys
2010-01-10 15:37 . 2010-01-10 15:43 88 --sh--r- c:\windows\system32\21DAD42438.sys
2010-01-10 15:33 . 2010-01-10 15:32 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-10 15:32 . 2010-01-10 15:32 -------- d-----w- c:\program files\Java
2010-01-10 12:02 . 2010-01-22 10:11 -------- d-----w- c:\windows\system32\wbem\repository
2010-01-09 13:14 . 2010-01-10 11:59 -------- d-----w- c:\users\Dodo\AppData\Roaming\Yamicsoft
2010-01-09 12:29 . 2010-01-09 12:36 -------- d-----w- c:\program files\Yamicsoft
2010-01-08 14:11 . 2010-01-15 11:45 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-01-08 14:11 . 2010-01-08 14:11 -------- d-----w- c:\windows\system32\IOSUBSYS
2010-01-08 14:11 . 2010-01-08 14:11 -------- d-----w- c:\program files\Google
2010-01-08 12:53 . 2010-01-08 13:00 471040 ------w- c:\windows\Setup1.exe
2010-01-08 12:53 . 2010-01-08 13:00 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-01-07 14:56 . 2010-01-07 14:56 -------- d-----w- c:\program files\Common Files\PocketSoft
2010-01-07 14:56 . 2002-02-27 17:50 197120 ----a-w- c:\windows\patchw32.dll
2010-01-07 13:46 . 2010-01-07 13:46 0 ----a-w- c:\windows\PowerReg.dat
2009-12-28 23:44 . 2010-01-11 15:14 1356 ----a-w- c:\users\Dodo\AppData\Local\d3d9caps.dat
2009-12-28 17:17 . 2010-01-16 09:44 -------- d-----w- c:\programdata\LightScribe
2009-12-27 12:26 . 2009-12-27 12:36 -------- d-----w- c:\users\Dodo\AppData\Roaming\ImgBurn
2009-12-27 12:09 . 2009-12-27 12:09 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-22 10:09 . 2009-11-10 22:13 12 ----a-w- c:\windows\bthservsdp.dat
2010-01-22 09:17 . 2009-11-10 17:06 -------- d-----w- c:\users\Dodo\AppData\Roaming\Skype
2010-01-22 09:12 . 2009-11-10 17:14 -------- d-----w- c:\users\Dodo\AppData\Roaming\skypePM
2010-01-22 08:51 . 2009-12-11 18:43 -------- d-----w- c:\program files\trend micro
2010-01-21 19:45 . 2009-11-10 17:25 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-01-15 19:19 . 2010-01-12 11:19 806 ----a-w- c:\windows\system32\drivers\SYMEVENT.INF
2010-01-15 19:19 . 2010-01-12 11:19 10635 ----a-w- c:\windows\system32\drivers\SYMEVENT.CAT
2010-01-15 08:20 . 2009-11-10 14:37 113192 ----a-w- c:\users\Dodo\AppData\Local\GDIPFONTCACHEV1.DAT
2010-01-14 16:49 . 2009-11-10 15:42 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-14 11:12 . 2009-11-10 17:04 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-13 08:30 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-12 11:13 . 2010-01-12 11:13 0 ----a-w- c:\windows\system32\drivers\1043_ASUSTeK_F50SL.alu
2010-01-12 10:51 . 2010-01-12 10:51 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-01-12 10:49 . 2009-11-11 11:54 319456 ----a-w- c:\windows\DIFxAPI.dll
2010-01-12 10:48 . 2010-01-12 10:48 315392 ----a-w- c:\windows\HideWin.exe
2010-01-10 15:36 . 2009-11-14 16:26 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-10 15:06 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer Pro
2010-01-10 15:06 . 2009-11-10 17:41 -------- d-----w- c:\users\Dodo\AppData\Roaming\BSplayer
2010-01-10 11:59 . 2009-11-10 17:41 -------- d-----w- c:\program files\Conduit
2010-01-10 11:59 . 2009-11-10 17:41 -------- d-----w- c:\program files\BS_Player
2009-12-27 11:59 . 2009-12-10 19:21 -------- d-----w- c:\programdata\CyberLink
2009-12-23 17:56 . 2010-01-01 10:20 52224 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\FFExternalAlert.dll
2009-12-23 17:56 . 2010-01-01 10:20 101376 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\RadioWMPCore.dll
2009-12-22 15:48 . 2009-12-22 15:48 -------- d-----w- c:\program files\Lavalys
2009-12-20 22:56 . 2009-11-10 17:40 -------- d-----w- c:\users\Dodo\AppData\Roaming\Ahead
2009-12-19 18:36 . 2009-12-19 18:36 144 ----a-w- c:\users\Dodo\smazani.reg
2009-12-16 14:42 . 2009-12-18 22:22 872960 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
2009-12-16 14:42 . 2009-12-18 22:22 43008 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
2009-12-16 14:42 . 2009-12-18 22:22 340480 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll
2009-12-16 14:41 . 2009-12-18 22:22 346624 ----a-w- c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll
2009-12-12 10:07 . 2009-12-12 10:07 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-12-11 17:48 . 2009-12-11 17:48 -------- d-----w- c:\users\Dodo\AppData\Roaming\CyberLink
2009-12-10 19:22 . 2009-12-10 19:18 -------- d-----w- c:\program files\CyberLink
2009-12-10 19:20 . 2009-12-10 19:20 36864 ----a-w- c:\programdata\Temp\{40BF1E83-20EB-11D8-97C5-0009C5020658}\PostBuild.exe
2009-12-10 19:19 . 2009-12-10 19:19 -------- d-----w- c:\program files\Common Files\LightScribe
2009-12-10 19:17 . 2009-12-10 19:18 53319 ----a-w- c:\programdata\Temp\{5DB1DF0C-AABC-4362-8A6D-CEFDFB036E41}\PostBuild.exe
2009-12-03 10:45 . 2009-12-03 10:45 -------- d-----w- c:\program files\Common Files\Adobe
2009-11-24 23:54 . 2009-11-10 14:44 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-11-24 23:49 . 2009-11-10 14:44 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-11-24 23:48 . 2009-11-10 14:44 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-11-24 23:47 . 2009-11-10 14:44 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-11-21 06:40 . 2010-01-17 10:32 916480 ----a-w- c:\windows\system32\wininet.dll
2009-11-21 06:34 . 2010-01-17 10:32 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-11-21 06:34 . 2010-01-17 10:32 109056 ----a-w- c:\windows\system32\iesysprep.dll
2009-11-21 04:59 . 2010-01-17 10:32 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-11-16 18:36 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 81920 ----a-w- c:\users\Dodo\AppData\Roaming\ezpinst.exe
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-11 15:54 . 2009-11-11 15:54 47360 ----a-w- c:\users\Dodo\AppData\Roaming\pcouffin.sys
2009-11-10 22:29 . 2009-11-10 22:29 0 ----a-w- c:\windows\ativpsrm.bin
2009-11-09 12:31 . 2009-12-09 08:39 24064 ----a-w- c:\windows\system32\nshhttp.dll
2009-11-09 12:30 . 2009-12-09 08:39 30720 ----a-w- c:\windows\system32\httpapi.dll
2009-11-09 10:36 . 2009-12-09 08:39 411648 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-29 09:17 . 2009-11-27 08:09 2048 ----a-w- c:\windows\system32\tzres.dll
2008-07-01 19:28 . 2008-07-01 19:28 61440 ----a-w- c:\program files\Common Files\CPInstallAction.dll
2008-05-22 09:35 . 2008-05-22 09:35 51962 ----a-w- c:\program files\Common Files\banner.jpg
2007-06-12 10:34 . 2007-06-12 10:34 35822 ----a-w- c:\program files\Common Files\ASPG_icon.ico
2008-06-30 13:44 . 2010-01-12 13:26 324976 ----a-w- c:\program files\mozilla firefox\components\coFFPlgn.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2009-07-02 10:18 2215960 ----a-w- c:\program files\BS_Player\tbBS_P.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\tbBS_P.dll" [2009-07-02 2215960]
[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 17:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"SpybotSD TeaTimer"="d:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 152872]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-30 61440]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 648072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-18 104936]
"P2Go_Menu"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-06-13 210216]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-10 149280]
"HControlUser"="c:\program files\ATK Hotkey\HcontrolUser.exe" [2008-01-11 98304]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-07-15 7651328]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-16 6253088]
"Skytel"="Skytel.exe" [2008-07-16 1833504]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2008-06-24 159744]
"ASUSTPE"="c:\windows\system32\ASUSTPE.exe" [2007-10-11 106496]
"ADSMTray"="c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe" [2008-03-31 266240]
"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2008-10-17 51048]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLUA"= 2 (0x2)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer4"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
backup=c:\windows\pss\Bluetooth.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk
backup=c:\windows\pss\FancyStart daemon.lnk.CommonStartup
backupExtension=.CommonStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
2009-04-24 03:21 203928 ----a-w- d:\program files\Alcohol 120\AxCmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2010-01-12 11:15 47672 ----a-w- c:\windows\AsScrProlog.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-01-12 11:15 33136 ----a-w- c:\windows\ASScrPro.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 10:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ulead AutoDetector v2]
2007-08-02 21:08 95504 ----a-w- c:\program files\Common Files\Ulead Systems\AutoDetector\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):1d,1e,b7,72,e3,65,ca,01
R0 lullaby;lullaby;c:\windows\System32\drivers\lullaby.sys [12. 1. 2010 10:48 15416]
R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [10. 11. 2009 14:44 114768]
R1 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\Symantec\DEFINI~1\SymcData\ipsdefs\20100119.001\IDSvix86.sys [21. 1. 2010 10:50 286768]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [10. 11. 2009 14:44 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [10. 11. 2009 14:44 53328]
R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\Common Files\Symantec Shared\CCSVCHST.EXE [6. 2. 2008 19:48 149352]
R2 SBSDWSCService;SBSD Security Center Service;d:\program files\Spybot - Search & Destroy\SDWinSec.exe [10. 11. 2009 17:25 1153368]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [12. 1. 2010 13:08 102448]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\System32\drivers\SiSGB6.sys [10. 11. 2009 22:54 48128]
R3 SYMNDISV;SYMNDISV;c:\windows\System32\drivers\symndisv.sys [19. 2. 2009 12:31 41008]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\System32\drivers\btwl2cap.sys [12. 1. 2010 10:57 29736]
S3 COH_Mon;COH_Mon;c:\windows\System32\drivers\COH_Mon.sys [12. 1. 2008 19:32 23888]
S3 CRFILTER;USB Mass Storage Filter;c:\windows\System32\drivers\CRFILTER.sys [7. 4. 2008 6:00 6656]
S3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21. 1. 2008 2:23 21504]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - COMHOST
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
WindowsMobile REG_MULTI_SZ wcescomm rapimgr
LocalServiceRestricted REG_MULTI_SZ WcesComm RapiMgr
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 10:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Contents of the 'Scheduled Tasks' folder
2010-01-12 c:\windows\Tasks\Norton Internet Security - Run Full System Scan - Dodo.job
- c:\program files\Norton Internet Security\Norton AntiVirus\Navw32.exe [2008-02-07 07:05]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - BS Player Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=2&q=
FF - component: c:\program files\Mozilla Firefox\components\coFFPlgn.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\FFExternalAlert.dll
FF - component: c:\users\Dodo\AppData\Roaming\Mozilla\Firefox\Profiles\pec2pk04.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\components\RadioWMPCore.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nppl3260.dll
FF - plugin: d:\program files\Magic Video Converter\codec\real\browser\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".sk");
.
- - - - ORPHANS REMOVED - - - -
MSConfigStartUp-UniblueSpeedUpMyPC - d:\program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-22 10:11
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
C:\ADSM_PData_0150
scan completed successfully
hidden files: 1
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x84F921F8]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0x8ada7d24
\Driver\ACPI -> acpi.sys @ 0x805c0d68
\Driver\atapi -> 0x84f921f8
IoDeviceObjectType ->\Device\Harddisk0\DR0 ->Warning: possible MBR rootkit infection !
user & kernel MBR OK
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'Explorer.exe'(2208)
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\windows\system32\WLANExt.exe
c:\program files\ATK Hotkey\ASLDRSrv.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\ATK Hotkey\Hcontrol.exe
c:\program files\ATK Hotkey\MsgTranAgt.exe
c:\program files\ASUS\ASUS CopyProtect\aspg.exe
c:\program files\Wireless Console 2\wcourier.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\Splendid\ACMON.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\System32\ACEngSvr.exe
c:\program files\ATK Hotkey\ATKOSD.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\program files\ATK Hotkey\KBFiltr.exe
c:\program files\ATK Hotkey\WDC.exe
c:\windows\system32\PSIService.exe
c:\program files\ASUS\NB Probe\SPM\spmgr.exe
d:\program files\Alcohol 120\StarWind\StarWindServiceAE.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\program files\Symantec\LiveUpdate\AluSchedulerSvc.exe
.
**************************************************************************
.
Completion time: 2010-01-22 10:20:52 - machine was rebooted
ComboFix-quarantined-files.txt 2010-01-22 10:20
Pre-Run: 185 343 221 760 bytes free
Post-Run: 185 074 671 616 bytes free
- - End Of File - - B29D3F6D691D84B1C6D15A0A90A05016
Re: Prosim o kontrolu pc
Vy máte dva antiviry? Avast a ještě Norton? Jeden odinstalujte.
A pak napište, jak to vypadá s počítačem
A pak napište, jak to vypadá s počítačem

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Prosim o kontrolu pc
Mam dva len neviem ako odinstalujem norton,ktory bol sucastou s programami ktore som dostal k notebooku.Dakujem
Re: Prosim o kontrolu pc
Ale norton máte jen jako trial verzi,ne? Nebo jste si ho zaplatil?
Zkuste tento odinstalátor
http://service1.symantec.com/SUPPORT/ts ... 3108162039
Zkuste tento odinstalátor
http://service1.symantec.com/SUPPORT/ts ... 3108162039
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.