DDS (Ver_09-12-01.01) - NTFSx86
Run by Ehm at 8:11:23,85 on ne 24.01.2010
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.1023.653 [GMT 1:00]
AV: avast! antivirus 4.8.1368 [VPS 100123-2] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
============== Running Processes ===============
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Documents and Settings\Ehm\Dokumenty\Stažené soubory\QIP Infium bz™Pack\inf.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Ehm\Local Settings\Temporary Internet Files\Content.IE5\YPHVU6U6\dds[1].pif
============== Pseudo HJT Report ===============
uURLSearchHooks: H - No File
mURLSearchHooks: H - No File
mURLSearchHooks: H - No File
mURLSearchHooks: H - No File
mURLSearchHooks: H - No File
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\ehm\nabdka~1\programy\posput~1\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
IE: {88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\icq7.0\ICQ.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://
www.nvidia.com/content/DriverDownload/s ... ab_nvd.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\ehm\dataap~1\mozilla\firefox\profiles\xd5szppi.default\
FF - component: c:\documents and settings\ehm\data aplikací\mozilla\firefox\profiles\xd5szppi.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}\components\FFExternalAlert.dll
FF - component: c:\documents and settings\ehm\data aplikací\mozilla\firefox\profiles\xd5szppi.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}\components\RadioWMPCore.dll
FF - plugin: c:\program files\webzen\webzengamestarter\NPGameWebStarter.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.default.XMLHttpRequest.channel", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.jit.chrome", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("security.checkloaduri", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("bidi.characterset", 1);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\channel-prefs.js - pref("app.update.channel", "release");
c:\program files\mozilla firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
============= SERVICES / DRIVERS ===============
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-11-24 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-11-24 20560]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast4\ashServ.exe [2009-11-24 138680]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast4\ashMaiSv.exe [2009-11-24 254040]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast4\ashWebSv.exe [2009-11-24 352920]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2004-8-18 69120]
=============== Created Last 30 ================
2010-01-23 09:36:30 0 d-----w- c:\docume~1\ehm\dataap~1\Malwarebytes
2010-01-23 09:36:24 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-23 09:36:23 0 d-----w- c:\docume~1\alluse~1\dataap~1\Malwarebytes
2010-01-23 09:36:22 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-23 09:36:22 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-23 09:29:31 0 d-----w- c:\program files\CCleaner
2010-01-23 07:30:26 0 d-sha-r- C:\cmdcons
2010-01-23 07:29:44 77312 ----a-w- c:\windows\MBR.exe
2010-01-23 00:58:28 0 d-----w- c:\program files\Trend Micro
2010-01-22 08:59:01 0 d-----w- c:\docume~1\alluse~1\dataap~1\ICQ
2010-01-22 08:57:17 0 d-----w- c:\program files\ICQ7.0
2010-01-21 06:09:19 0 d-----w- c:\program files\Spybot - Search & Destroy
2010-01-21 06:09:19 0 d-----w- c:\docume~1\alluse~1\dataap~1\Spybot - Search & Destroy
2010-01-19 09:06:12 17740 ----a-w- c:\documents and settings\ehm\.recently-used.xbel
2010-01-17 14:10:59 0 d-----w- c:\program files\Valve
2010-01-17 07:16:27 940794 ----a-w- c:\windows\system32\LoopyMusic.wav
2010-01-17 07:16:27 60416 ----a-w- c:\windows\ALCFDRTM.VER
2010-01-17 07:16:27 60416 ----a-w- c:\windows\ALCFDRTM.EXE
2010-01-17 07:16:27 146650 ----a-w- c:\windows\system32\BuzzingBee.wav
2010-01-17 07:16:24 0 d-----w- c:\windows\system32\Lang
2010-01-13 22:25:11 0 d-----w- c:\program files\common files\Adobe Systems Shared
2010-01-09 20:53:27 34064 ----a-w- c:\windows\system32\lhacm.acm
2010-01-09 20:53:06 0 d-----w- c:\program files\Teamspeak2_RC2
2010-01-08 13:29:35 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-01-08 13:25:00 0 d-----r- c:\program files\Skype
==================== Find3M ====================
2009-12-19 16:43:33 82372 ----a-w- c:\windows\system32\perfc005.dat
2009-12-19 16:43:33 437558 ----a-w- c:\windows\system32\perfh005.dat
2009-12-13 17:58:27 22328 ----a-w- c:\docume~1\ehm\dataap~1\PnkBstrK.sys
2009-12-04 15:28:09 22054 ----a-w- c:\windows\War3Unin.dat
2009-12-04 14:34:00 2829 ----a-w- c:\windows\War3Unin.pif
2009-12-04 14:34:00 126976 ----a-w- c:\windows\War3Unin.exe
2009-11-27 14:44:49 33824 ----a-w- c:\windows\system32\drivers\oreans32.sys
2009-11-24 14:27:12 53616 ----a-w- c:\windows\system32\CMStarter_Eng.dll
2009-11-24 14:27:10 53616 ----a-w- c:\windows\system32\CMStarter_Kor.dll
2009-11-24 14:27:08 364912 ----a-w- c:\windows\system32\CMStarterCore.exe
2009-11-24 11:29:47 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-11-21 08:46:32 86016 ----a-w- c:\windows\system32\frapsvid.dll
2009-10-29 07:43:54 916480 ------w- c:\windows\system32\wininet.dll
============= FINISH: 8:12:03,20 ===============