GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-30 18:07:06
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\TOMBAB~1\LOCALS~1\Temp\pwqoipoc.sys
---- System - GMER 1.0.15 ----
SSDT 81B848A0 ZwAssignProcessToJobObject
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwCreateKey [0xF86E587E]
SSDT 81B83CB0 ZwOpenProcess
SSDT 81B840D0 ZwOpenThread
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwSetValueKey [0xF86E5BFE]
SSDT 81B846D0 ZwSuspendProcess
SSDT 81B844F0 ZwSuspendThread
SSDT 81B83EE0 ZwTerminateProcess
SSDT 81B84310 ZwTerminateThread
---- Kernel code sections - GMER 1.0.15 ----
? mykfuedc.sys Systém nemůže nalézt uvedený soubor. !
init C:\WINDOWS\system32\drivers\ALCXSENS.SYS entry point in "init" section [0xF8139510]
? C:\DOCUME~1\TOMBAB~1\LOCALS~1\Temp\mbr.sys Systém nemůže nalézt uvedený soubor. !
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\ESET\ESET Smart Security\ekrn.exe[984] kernel32.dll!SetUnhandledExceptionFilter 7C810386 4 Bytes [C2, 04, 00, 00]
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\Tcpip \Device\Ip epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
---- Threads - GMER 1.0.15 ----
Thread System [4:572] 81B82930
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000ea132f540
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\000ea132f540 (not active ControlSet)
---- EOF - GMER 1.0.15 ----
zde je RSIT
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-01-30 18:07:06
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\TOMBAB~1\LOCALS~1\Temp\pwqoipoc.sys
---- System - GMER 1.0.15 ----
SSDT 81B848A0 ZwAssignProcessToJobObject
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwCreateKey [0xF86E587E]
SSDT 81B83CB0 ZwOpenProcess
SSDT 81B840D0 ZwOpenThread
SSDT Lbd.sys (Boot Driver/Lavasoft AB) ZwSetValueKey [0xF86E5BFE]
SSDT 81B846D0 ZwSuspendProcess
SSDT 81B844F0 ZwSuspendThread
SSDT 81B83EE0 ZwTerminateProcess
SSDT 81B84310 ZwTerminateThread
---- Kernel code sections - GMER 1.0.15 ----
? mykfuedc.sys Systém nemůže nalézt uvedený soubor. !
init C:\WINDOWS\system32\drivers\ALCXSENS.SYS entry point in "init" section [0xF8139510]
? C:\DOCUME~1\TOMBAB~1\LOCALS~1\Temp\mbr.sys Systém nemůže nalézt uvedený soubor. !
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\ESET\ESET Smart Security\ekrn.exe[984] kernel32.dll!SetUnhandledExceptionFilter 7C810386 4 Bytes [C2, 04, 00, 00]
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\Tcpip \Device\Ip epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\Tcpip \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
---- Threads - GMER 1.0.15 ----
Thread System [4:572] 81B82930
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000ea132f540
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\000ea132f540 (not active ControlSet)
---- EOF - GMER 1.0.15 ----

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
win32/olmarik v operační paměti
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: win32/olmarik v operační paměti
omlouvám se že jsem logy nedal dříve ale byl jsem pryč... OTL jsem spouštěl z plochy a na ploše se neobjevil extras.txt a otl.txt se sem nevleze
- Přílohy
-
- OTL.rar
- (15.56 KiB) Staženo 61 x
Re: win32/olmarik v operační paměti
vyjeli mi dva logy: Logfile of random's system information tool 1.06 (written by random/random)
Run by Tomba Bomba at 2010-02-02 09:57:07
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 63 GB (26%) free of 238 GB
Total RAM: 511 MB (36% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:57:13, on 2.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
D:\Program files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Tomba Bomba\Plocha\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Tomba Bomba.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Port pro program Symantec Fax Starter Edition.lnk = C:\Program Files\Microsoft Office\Office\1029\OLFSNT40.EXE
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{43DD2B70-20A8-4241-8491-2400CEA19607}: NameServer = 193.179.148.42,193.85.1.12
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
--
End of file - 5959 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-12 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-01-08 65536]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-04-21 335872]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"PCSuiteTrayApplication"=C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE [2006-06-15 229376]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-12 149280]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
Port pro program Symantec Fax Starter Edition.lnk - C:\Program Files\Microsoft Office\Office\1029\OLFSNT40.EXE
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-04-22 86016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{65edf05a-0cd6-11df-a8ff-000fea44ab46}]
shell\AutoRun\command - G:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2010-02-02 09:57:07 ----D---- C:\rsit
2010-02-01 16:49:27 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Apple Computer
2010-02-01 12:07:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-01 12:07:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-01 12:06:54 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-01 00:56:08 ----D---- C:\WINDOWS\Prefetch
2010-02-01 00:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-01 00:51:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-01 00:50:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-01 00:50:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-01 00:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-01 00:50:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-01 00:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-01 00:50:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-01 00:50:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-01 00:49:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-01 00:49:41 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-01 00:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-01 00:49:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-01 00:49:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-01 00:48:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-01 00:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-01 00:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-01 00:48:10 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-01 00:47:57 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-01 00:47:46 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-01 00:47:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-01 00:47:28 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-01 00:47:18 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-01 00:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-01 00:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-01 00:46:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-01 00:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-01 00:46:23 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-01 00:46:16 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-01 00:46:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-01 00:45:57 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-01 00:45:49 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-01 00:45:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-01 00:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-01 00:45:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-01 00:45:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-01 00:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-01 00:44:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-02-01 00:44:39 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-01 00:44:31 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-01 00:44:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-01 00:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-01 00:43:58 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-01 00:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-01 00:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-01 00:43:31 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-01 00:43:25 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-01 00:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-01 00:36:29 ----D---- C:\WINDOWS\system32\cs
2010-02-01 00:36:29 ----D---- C:\WINDOWS\l2schemas
2010-02-01 00:36:28 ----D---- C:\WINDOWS\system32\bits
2010-02-01 00:23:48 ----D---- C:\WINDOWS\network diagnostic
2010-02-01 00:15:57 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-31 14:31:06 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-31 14:30:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961118_0$
2010-01-31 14:29:53 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-30 20:01:49 ----D---- C:\b9a198107e4404c604aa
2010-01-30 19:42:35 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-01-30 19:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-01-30 19:42:19 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-01-30 19:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-01-30 19:42:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-01-30 19:41:48 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-01-30 19:41:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-01-30 19:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-30 19:41:13 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-30 19:41:00 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-30 19:40:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-01-30 19:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-30 19:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-01-30 19:38:49 ----D---- C:\WINDOWS\ie8updates
2010-01-30 19:37:54 ----D---- C:\WINDOWS\WBEM
2010-01-30 19:36:40 ----HDC---- C:\WINDOWS\ie8
2010-01-30 19:36:40 ----D---- C:\WINDOWS\system32\cs-CZ
2010-01-30 19:32:51 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-01-30 19:32:40 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-01-30 19:32:32 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2010-01-30 19:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-01-30 19:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-01-30 19:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-01-30 19:31:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-01-30 19:31:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-01-30 19:30:56 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-01-30 19:30:50 ----D---- C:\Program Files\MSXML 6.0
2010-01-30 19:30:42 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-30 19:30:33 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2010-01-30 19:30:26 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2010-01-30 19:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-30 19:30:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-01-30 19:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-01-30 19:29:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-30 19:29:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-01-30 19:29:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-01-30 19:29:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-01-30 19:29:06 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-01-30 19:27:02 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-30 19:26:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-01-30 19:26:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-01-30 19:26:24 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2010-01-30 19:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2010-01-30 19:26:02 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-01-30 19:25:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-01-30 19:25:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-30 19:25:23 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-01-30 19:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-01-30 19:24:30 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-30 19:24:13 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-01-30 19:24:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-30 19:23:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-01-30 19:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2010-01-30 19:23:04 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-30 19:23:00 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-30 19:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-01-30 19:22:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-01-30 19:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-30 19:22:21 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-01-30 19:22:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-01-30 19:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-01-30 19:22:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-01-30 19:21:56 ----D---- C:\Program Files\MSXML 4.0
2010-01-30 19:21:32 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-01-30 19:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-01-30 19:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-01-30 19:21:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-01-30 19:20:43 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-01-30 18:44:50 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-01-30 18:36:17 ----D---- C:\WINDOWS\system32\PreInstall
2010-01-30 18:36:15 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-01-30 18:35:39 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-01-30 18:31:37 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-01-30 13:59:38 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Malwarebytes
2010-01-30 13:59:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-01-30 13:59:29 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-30 13:07:34 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Sun
2010-01-30 10:07:09 ----D---- C:\Program Files\Trend Micro
2010-01-30 09:57:16 ----D---- C:\WINDOWS\CSC
2010-01-30 09:15:26 ----A---- C:\WINDOWS\ntbtlog.txt
2010-01-30 01:04:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-01-29 14:08:30 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\U3
2010-01-29 14:01:16 ----D---- C:\Program Files\ESET
2010-01-29 13:19:20 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Printer Info Cache
2010-01-29 13:19:19 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Image Zone Express
2010-01-29 13:09:59 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\HP
2010-01-29 12:10:44 ----D---- C:\Program Files\RapidDown
2010-01-29 10:20:04 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Macromedia
2010-01-29 10:20:04 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Adobe
2010-01-29 10:12:41 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\PC Suite
2010-01-25 20:58:17 ----D---- C:\Program Files\ICQ6Toolbar
2010-01-25 20:58:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-01-25 20:57:19 ----D---- C:\Program Files\ICQ6.5
2010-01-25 12:21:35 ----D---- C:\Program Files\LogMeIn Hamachi
2010-01-24 12:47:54 ----D---- C:\WINDOWS\Minidump
2010-01-21 20:35:18 ----SHD---- C:\WINDOWS\ftpcache
2010-01-19 22:17:44 ----D---- C:\Program Files\Hamachi
2010-01-17 21:20:00 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-01-17 21:19:59 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2010-01-17 21:19:26 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-01-17 21:19:02 ----D---- C:\WINDOWS\system32\LogFiles
2010-01-17 21:18:55 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-01-15 21:42:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony
2010-01-15 21:42:07 ----D---- C:\Program Files\Sony
2010-01-15 14:49:51 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-01-12 23:10:34 ----D---- C:\WINDOWS\Sun
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\java.exe
2010-01-12 23:09:19 ----D---- C:\Program Files\Java
2010-01-12 23:06:38 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-12 22:40:49 ----A---- C:\WINDOWS\ModemLog_Nokia N70 USB Modem.txt
2010-01-12 22:39:43 ----D---- C:\Program Files\DIFX
2010-01-12 22:39:11 ----D---- C:\Program Files\Common Files\Nokia
2010-01-12 22:38:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2010-01-12 22:38:50 ----D---- C:\Program Files\Common Files\PCSuite
2010-01-12 22:38:43 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-01-12 22:38:43 ----A---- C:\WINDOWS\system32\nmwcdlog.dll
2010-01-12 22:38:43 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2010-01-12 22:38:37 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2010-01-12 22:38:36 ----D---- C:\Program Files\Nokia
2010-01-12 22:38:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\Downloaded Installations
2010-01-07 22:18:40 ----D---- C:\Program Files\Valve
2010-01-06 22:43:19 ----D---- C:\Program Files\MSBuild
2010-01-06 22:39:54 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-06 22:39:53 ----D---- C:\WINDOWS\system32\en-us
2010-01-06 22:39:22 ----D---- C:\Program Files\Reference Assemblies
2010-01-06 22:38:59 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-01-06 22:36:31 ----D---- C:\Program Files\The KMPlayer
2010-01-06 22:35:59 ----RSD---- C:\WINDOWS\assembly
2010-01-06 22:34:58 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-06 22:34:24 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-01-06 22:34:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-01-06 22:32:47 ----D---- C:\Program Files\Sony Setup
2010-01-06 22:27:32 ----D---- C:\Program Files\QuickTime
2010-01-06 22:27:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-01-06 22:26:54 ----D---- C:\Program Files\Common Files\Apple
2010-01-06 22:26:43 ----D---- C:\Program Files\Apple Software Update
2010-01-06 22:26:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-01-06 22:25:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-01-06 22:22:21 ----D---- C:\Program Files\Webteh
2010-01-06 20:40:52 ----D---- C:\Program Files\Common Files\Skype
2010-01-06 20:40:49 ----RD---- C:\Program Files\Skype
2010-01-06 20:39:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-01-04 19:45:21 ----A---- C:\WINDOWS\system32\irmon.dll
2010-01-04 19:45:20 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-01-04 19:45:20 ----A---- C:\WINDOWS\system32\irftp.exe
2010-01-04 19:30:08 ----RA---- C:\WINDOWS\system32\NmUninst.exe
2010-01-04 19:11:15 ----RA---- C:\WINDOWS\system32\ZSHP1020.EXE
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZTAG.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZSPOOL.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZLhp1020.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZIMF.DLL
2010-01-04 18:48:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\WEBREG
2010-01-04 18:45:11 ----D---- C:\Program Files\Common Files\HP
2010-01-04 18:43:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Product Assistant
2010-01-04 18:43:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2010-01-04 18:43:27 ----RA---- C:\WINDOWS\system32\hp3800co.dll
2010-01-04 18:42:58 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-01-04 18:42:54 ----D---- C:\Program Files\Hewlett-Packard
2010-01-04 18:42:25 ----HD---- C:\Config.Msi
2010-01-04 18:42:14 ----D---- C:\Program Files\HP
2010-01-04 11:53:19 ----D---- C:\Program Files\Mozilla Thunderbird
2010-01-04 11:52:13 ----D---- C:\WINDOWS\system32\appmgmt
2010-01-03 19:16:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-01-03 19:16:25 ----D---- C:\Program Files\Common Files\Adobe
2010-01-03 19:16:25 ----D---- C:\Program Files\Adobe
2010-01-03 17:32:28 ----A---- C:\WINDOWS\ODBC.INI
2010-01-03 17:32:27 ----A---- C:\WINDOWS\mdm.ini
2010-01-03 17:32:17 ----A---- C:\WINDOWS\NSREX.INI
2010-01-03 17:31:25 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Thunderbird
2010-01-03 17:30:31 ----D---- C:\Program Files\Microsoft Visual Studio
2010-01-03 17:30:27 ----D---- C:\Program Files\Common Files\Designer
2010-01-03 17:29:48 ----D---- C:\WINDOWS\system32\Viewers
2010-01-03 17:28:09 ----D---- C:\WINDOWS\ShellNew
2010-01-03 17:27:23 ----D---- C:\Program Files\Snapshot Viewer
2010-01-03 17:25:21 ----D---- C:\WINDOWS\Twain32
2010-01-03 17:25:21 ----D---- C:\Program Files\Microsoft Office
2010-01-03 17:25:21 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Microsoft Web Folders
2010-01-03 17:18:09 ----D---- C:\Program Files\PapíííClock
2010-01-03 17:16:37 ----A---- C:\WINDOWS\system32\qttask.exe
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-01-03 17:14:34 ----D---- C:\WINDOWS\system32\QuickTime
2010-01-03 17:14:34 ----A---- C:\WINDOWS\system32\MSVCR71.dll
2010-01-03 17:14:32 ----A---- C:\WINDOWS\mmtvmj.ini
2010-01-03 17:14:32 ----A---- C:\WINDOWS\m3jp2k.ini
2010-01-03 17:14:31 ----A---- C:\WINDOWS\m3jpeg.ini
2010-01-03 17:14:28 ----A---- C:\WINDOWS\system32\mplvpx.dll
2010-01-03 17:14:28 ----A---- C:\WINDOWS\system32\mplvm6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplvw7.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplva6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplaw7.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplapx.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplam6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplaa6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\cpuinf32.dll
2010-01-03 17:14:26 ----A---- C:\WINDOWS\system32\unrar.dll
2010-01-03 17:14:24 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-01-03 17:13:45 ----D---- C:\Program Files\ACE Mega CoDecS Pack
2010-01-03 16:48:13 ----SHD---- C:\RECYCLER
2010-01-03 16:39:54 ----AD---- C:\Program Files\Krtecek
2010-01-03 16:35:37 ----D---- C:\Program Files\WinRAR
2010-01-03 15:04:22 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\DAEMON Tools
2010-01-03 13:57:07 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Mozilla
2010-01-03 13:41:11 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\ESET
2010-01-03 13:39:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
======List of files/folders modified in the last 1 months======
2010-02-02 09:56:54 ----D---- C:\WINDOWS\Temp
2010-02-02 09:48:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-01 23:14:05 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-01 17:10:34 ----SHD---- C:\System Volume Information
2010-02-01 17:10:34 ----D---- C:\WINDOWS\system32\Restore
2010-02-01 16:49:41 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-01 12:16:44 ----D---- C:\WINDOWS
2010-02-01 12:07:36 ----HD---- C:\WINDOWS\inf
2010-02-01 12:07:33 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-01 12:07:32 ----D---- C:\WINDOWS\system32
2010-02-01 12:07:26 ----A---- C:\WINDOWS\imsins.BAK
2010-02-01 12:07:13 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-01 12:07:00 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-01 00:58:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-01 00:56:12 ----A---- C:\WINDOWS\setuplog.txt
2010-02-01 00:55:41 ----D---- C:\WINDOWS\system32\Setup
2010-02-01 00:55:41 ----D---- C:\WINDOWS\AppPatch
2010-02-01 00:55:40 ----D---- C:\WINDOWS\system32\wbem
2010-02-01 00:55:39 ----RSD---- C:\WINDOWS\Fonts
2010-02-01 00:55:35 ----D---- C:\WINDOWS\system32\drivers
2010-02-01 00:54:52 ----D---- C:\WINDOWS\security
2010-02-01 00:49:44 ----D---- C:\Program Files\Outlook Express
2010-02-01 00:43:26 ----D---- C:\Program Files\Messenger
2010-02-01 00:37:32 ----D---- C:\WINDOWS\WinSxS
2010-02-01 00:37:19 ----D---- C:\Program Files\Windows Media Player
2010-02-01 00:37:16 ----D---- C:\WINDOWS\Help
2010-02-01 00:37:03 ----D---- C:\WINDOWS\ehome
2010-02-01 00:36:59 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-01 00:36:58 ----D---- C:\WINDOWS\ime
2010-02-01 00:36:32 ----D---- C:\WINDOWS\system32\usmt
2010-02-01 00:36:30 ----D---- C:\Program Files\Internet Explorer
2010-02-01 00:36:29 ----SHD---- C:\WINDOWS\Installer
2010-02-01 00:36:28 ----D---- C:\WINDOWS\PeerNet
2010-02-01 00:36:28 ----D---- C:\Program Files\Movie Maker
2010-02-01 00:28:32 ----D---- C:\WINDOWS\system32\npp
2010-02-01 00:28:31 ----D---- C:\WINDOWS\msagent
2010-02-01 00:28:29 ----D---- C:\WINDOWS\srchasst
2010-02-01 00:28:28 ----D---- C:\Program Files\NetMeeting
2010-02-01 00:28:25 ----D---- C:\WINDOWS\system32\Com
2010-02-01 00:28:11 ----D---- C:\Program Files\Windows NT
2010-02-01 00:28:04 ----D---- C:\Program Files\Common Files\System
2010-02-01 00:27:05 ----D---- C:\WINDOWS\system32\oobe
2010-02-01 00:27:02 ----D---- C:\WINDOWS\system
2010-02-01 00:19:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-01-31 12:48:22 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-30 19:48:27 ----D---- C:\totalcmd
2010-01-30 19:47:32 ----SD---- C:\WINDOWS\Tasks
2010-01-30 19:37:43 ----D---- C:\WINDOWS\Media
2010-01-30 19:37:25 ----D---- C:\C_
2010-01-30 19:35:22 ----SD---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Microsoft
2010-01-30 19:30:50 ----RD---- C:\Program Files
2010-01-30 18:51:17 ----D---- C:\WINDOWS\Debug
2010-01-30 18:32:16 ----D---- C:\WINDOWS\SoftwareDistribution
2010-01-30 14:47:37 ----D---- C:\WINDOWS\mui
2010-01-26 17:25:21 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-25 20:58:13 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-12 22:39:11 ----D---- C:\Program Files\Common Files
2010-01-06 22:35:18 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-01-06 22:35:12 ----D---- C:\WINDOWS\system32\mui
2010-01-06 22:34:58 ----D---- C:\WINDOWS\pchealth
2010-01-04 18:43:31 ----D---- C:\WINDOWS\twain_32
2010-01-03 19:49:27 ----D---- C:\Documents and Settings
2010-01-03 17:32:11 ----A---- C:\WINDOWS\vbaddin.ini
2010-01-03 17:31:50 ----A---- C:\WINDOWS\win.ini
2010-01-03 17:25:00 ----D---- C:\WINDOWS\msapps
2010-01-03 17:25:00 ----D---- C:\Program Files\microsoft frontpage
2010-01-03 17:16:40 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-11-16 135048]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2003-12-11 391424]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-01-09 601100]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-04-22 729088]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-06-19 33096]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-09-23 26176]
R3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 RTL8023;Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlnic51.sys [2003-12-31 69504]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 BthEnum;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 kardelia;Rootkit Unhooker Driver; C:\WINDOWS\system32\drivers\kardelia.sys []
S3 Nokia USB Generic;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2006-05-29 8704]
S3 Nokia USB Modem;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2006-05-29 13312]
S3 Nokia USB Phone Parent;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2006-05-29 127488]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-04-22 397312]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-12 153376]
R3 ServiceLayer;ServiceLayer; C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe [2006-06-05 174080]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-04-21 516096]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
druhy
info.txt logfile of random's system information tool 1.06 2010-02-02 09:57:17
======Uninstall list======
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ACE Mega CoDecS Pack-->"C:\Program Files\ACE Mega CoDecS Pack\unins000.exe"
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.2 - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-A92000000001}
Aktualizace systému Windows Internet Explorer 8 (KB978506)-->"C:\WINDOWS\ie8updates\KB978506-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB978207)-->"C:\WINDOWS\$NtUninstallKB978207$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Apple Application Support-->MsiExec.exe /I{0C34B801-6AEC-4667-B053-03A67E2D0415}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ATI Control Panel-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
BSPlayer-->"C:\Program Files\Webteh\BSplayer\uninstall.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x9
Enable S3 for USB Device-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Gigabyte\Enable S3 for USB Device\Uninst.isu"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Imaging Device Functions 9.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP OCR Software 9.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
HP Scanjet G2710 9.0-->C:\Program Files\HP\Digital Imaging\{F4158BB4-98FA-4ad5-A0FE-3913A0714A44}\setup\hpzscr01.exe -datfile hpgscr30.dat
HP Solution Center 9.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}
ICQ Toolbar-->C:\Program Files\ICQ6Toolbar\ICQUnToolbar.exe
ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216017FF}
LogMeIn Hamachi-->C:\WINDOWS\system32\\msiexec.exe /i {067EC517-9731-43FD-B4D5-296EE0027BBB} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{067EC517-9731-43FD-B4D5-296EE0027BBB}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office 2000 Premium-->MsiExec.exe /I{00000405-78E1-11D2-B60F-006097C998E7}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Mozilla Firefox (3.5.7)-->D:\Program files\Mozilla Firefox\uninstall\helper.exe
Mozilla Thunderbird (3.0.1)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
NetMos Multi-IO Controller-->NmUninst.exe
Nokia Connectivity Cable Driver-->MsiExec.exe /X{6882DD11-33B8-4DEA-8305-7E765BF74BD3}
Nokia PC Connectivity Solution-->MsiExec.exe /I{0D80391C-0A72-43BB-9BC2-143F63CC111D}
Nokia PC Suite-->MsiExec.exe /I{531317A5-586A-4E36-87C1-CA823447B375}
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
PapíííClock 1.2-->"C:\Program Files\PapíííClock\unins000.exe"
QuickTime-->MsiExec.exe /I{A429C2AE-EBF1-4F81-A221-1C115CAADDAD}
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
REALTEK Gigabit and Fast Ethernet NIC Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{94FB906A-CF42-4128-A509-D353026A607E}\setup.exe" -l0x5 REMOVE
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Softarová utilita ATI - Odinstalovat-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
Sony Vegas Pro 8.0-->MsiExec.exe /X{B7E2A724-2774-4AC2-9F0A-B58C7319B6E6}
The KMPlayer (remove only)-->"C:\Program Files\The KMPlayer\uninstall.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Vegas Pro 9.0-->MsiExec.exe /X{DC785DB7-D389-48C3-B146-96FE99BF4E2B}
VIA Integrated Setup Wizard-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{9497EBAA-87AD-41E6-8ED6-E1E52995A76C}
Windows Driver Package - Nokia Modem (06/12/2006 6.81.0.21)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_62A340731F8930057B44B8864F236850B0D49D65\nokbtmdm.inf
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
======Security center information======
AV: ESET Smart Security 4.0
FW: ESET personal firewall
======System event log======
Computer Name: JI-9071C58F5DF0
Event Code: 7036
Message: Stav služby Sledování umístění v síti (NLA) byl změněn na: Spuštěno
Record Number: 3253
Source Name: Service Control Manager
Time Written: 20100126121808.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Sledování umístění v síti (NLA) úspěšně odeslán.
Record Number: 3252
Source Name: Service Control Manager
Time Written: 20100126121808.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: JI-9071C58F5DF0
Event Code: 2
Message: Nelze získat ukazatel objektu zařízení pro objekt portu.
Record Number: 3251
Source Name: ParVdm
Time Written: 20100126121757.000000+060
Event Type: Chyba
User:
Computer Name: JI-9071C58F5DF0
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3250
Source Name: EventLog
Time Written: 20100126121744.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.
Record Number: 3249
Source Name: EventLog
Time Written: 20100126121744.000000+060
Event Type: Informace
User:
=====Application event log=====
Computer Name: JI-9071C58F5DF0
Event Code: 1800
Message: Služba Centrum zabezpečení systému Windows byla spuštěna.
Record Number: 914
Source Name: SecurityCenter
Time Written: 20100124173958.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 105
Message: The service was started.
Record Number: 913
Source Name: ATI Smart
Time Written: 20100124173947.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 0
Message:
Record Number: 912
Source Name: ServiceLayer
Time Written: 20100124130219.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 101
Message: wuauclt (1680) Databázový stroj byl zastaven.
Record Number: 911
Source Name: ESENT
Time Written: 20100124125401.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 103
Message: wuaueng.dll (1680) SUS20ClientDataStore: Databázový stroj zastavil instanci (0).
Record Number: 910
Source Name: ESENT
Time Written: 20100124125401.000000+060
Event Type: Informace
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 12 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=0c00
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\QuickTime\QTSystem\QTJava.zip
"QTJAVA"=C:\Program Files\QuickTime\QTSystem\QTJava.zip
-----------------EOF-----------------
Run by Tomba Bomba at 2010-02-02 09:57:07
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 63 GB (26%) free of 238 GB
Total RAM: 511 MB (36% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:57:13, on 2.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
D:\Program files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Tomba Bomba\Plocha\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Tomba Bomba.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Port pro program Symantec Fax Starter Edition.lnk = C:\Program Files\Microsoft Office\Office\1029\OLFSNT40.EXE
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{43DD2B70-20A8-4241-8491-2400CEA19607}: NameServer = 193.179.148.42,193.85.1.12
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
--
End of file - 5959 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-12 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-01-08 65536]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-04-21 335872]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"PCSuiteTrayApplication"=C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE [2006-06-15 229376]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-12 149280]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
Port pro program Symantec Fax Starter Edition.lnk - C:\Program Files\Microsoft Office\Office\1029\OLFSNT40.EXE
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-04-22 86016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{65edf05a-0cd6-11df-a8ff-000fea44ab46}]
shell\AutoRun\command - G:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2010-02-02 09:57:07 ----D---- C:\rsit
2010-02-01 16:49:27 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Apple Computer
2010-02-01 12:07:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-01 12:07:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-01 12:06:54 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-01 00:56:08 ----D---- C:\WINDOWS\Prefetch
2010-02-01 00:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-01 00:51:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-01 00:50:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-01 00:50:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-01 00:50:38 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-01 00:50:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-01 00:50:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-01 00:50:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-01 00:50:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-01 00:49:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-01 00:49:41 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-01 00:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-01 00:49:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-01 00:49:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-01 00:48:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-01 00:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-01 00:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-01 00:48:10 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-01 00:47:57 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-01 00:47:46 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-01 00:47:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-01 00:47:28 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-01 00:47:18 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-01 00:47:06 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-01 00:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-01 00:46:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-01 00:46:31 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-01 00:46:23 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-01 00:46:16 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-01 00:46:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-01 00:45:57 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-01 00:45:49 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-01 00:45:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-01 00:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-01 00:45:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-01 00:45:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-01 00:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-01 00:44:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-02-01 00:44:39 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-01 00:44:31 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-01 00:44:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-01 00:44:10 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-01 00:43:58 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-01 00:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-01 00:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-01 00:43:31 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-01 00:43:25 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-01 00:43:15 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-01 00:36:29 ----D---- C:\WINDOWS\system32\cs
2010-02-01 00:36:29 ----D---- C:\WINDOWS\l2schemas
2010-02-01 00:36:28 ----D---- C:\WINDOWS\system32\bits
2010-02-01 00:23:48 ----D---- C:\WINDOWS\network diagnostic
2010-02-01 00:15:57 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-31 14:31:06 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-31 14:30:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961118_0$
2010-01-31 14:29:53 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-30 20:01:49 ----D---- C:\b9a198107e4404c604aa
2010-01-30 19:42:35 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-01-30 19:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-01-30 19:42:19 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-01-30 19:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-01-30 19:42:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-01-30 19:41:48 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-01-30 19:41:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-01-30 19:41:20 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-30 19:41:13 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-30 19:41:00 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-30 19:40:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-01-30 19:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-30 19:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-01-30 19:38:49 ----D---- C:\WINDOWS\ie8updates
2010-01-30 19:37:54 ----D---- C:\WINDOWS\WBEM
2010-01-30 19:36:40 ----HDC---- C:\WINDOWS\ie8
2010-01-30 19:36:40 ----D---- C:\WINDOWS\system32\cs-CZ
2010-01-30 19:32:51 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-01-30 19:32:40 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-01-30 19:32:32 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2010-01-30 19:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-01-30 19:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-01-30 19:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-01-30 19:31:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-01-30 19:31:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-01-30 19:30:56 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-01-30 19:30:50 ----D---- C:\Program Files\MSXML 6.0
2010-01-30 19:30:42 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-30 19:30:33 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2010-01-30 19:30:26 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2010-01-30 19:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-30 19:30:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-01-30 19:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-01-30 19:29:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-30 19:29:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-01-30 19:29:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-01-30 19:29:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-01-30 19:29:06 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-01-30 19:27:02 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-30 19:26:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-01-30 19:26:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-01-30 19:26:24 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2010-01-30 19:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2010-01-30 19:26:02 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-01-30 19:25:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-01-30 19:25:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-30 19:25:23 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-01-30 19:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-01-30 19:24:30 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-30 19:24:13 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-01-30 19:24:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-30 19:23:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-01-30 19:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2010-01-30 19:23:04 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-30 19:23:00 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-30 19:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-01-30 19:22:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-01-30 19:22:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-30 19:22:21 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-01-30 19:22:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-01-30 19:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-01-30 19:22:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-01-30 19:21:56 ----D---- C:\Program Files\MSXML 4.0
2010-01-30 19:21:32 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-01-30 19:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-01-30 19:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-01-30 19:21:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-01-30 19:20:43 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-01-30 18:44:50 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-01-30 18:36:17 ----D---- C:\WINDOWS\system32\PreInstall
2010-01-30 18:36:15 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-01-30 18:35:39 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-01-30 18:31:37 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-01-30 13:59:38 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Malwarebytes
2010-01-30 13:59:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-01-30 13:59:29 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-30 13:07:34 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Sun
2010-01-30 10:07:09 ----D---- C:\Program Files\Trend Micro
2010-01-30 09:57:16 ----D---- C:\WINDOWS\CSC
2010-01-30 09:15:26 ----A---- C:\WINDOWS\ntbtlog.txt
2010-01-30 01:04:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-01-29 14:08:30 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\U3
2010-01-29 14:01:16 ----D---- C:\Program Files\ESET
2010-01-29 13:19:20 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Printer Info Cache
2010-01-29 13:19:19 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Image Zone Express
2010-01-29 13:09:59 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\HP
2010-01-29 12:10:44 ----D---- C:\Program Files\RapidDown
2010-01-29 10:20:04 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Macromedia
2010-01-29 10:20:04 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Adobe
2010-01-29 10:12:41 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\PC Suite
2010-01-25 20:58:17 ----D---- C:\Program Files\ICQ6Toolbar
2010-01-25 20:58:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-01-25 20:57:19 ----D---- C:\Program Files\ICQ6.5
2010-01-25 12:21:35 ----D---- C:\Program Files\LogMeIn Hamachi
2010-01-24 12:47:54 ----D---- C:\WINDOWS\Minidump
2010-01-21 20:35:18 ----SHD---- C:\WINDOWS\ftpcache
2010-01-19 22:17:44 ----D---- C:\Program Files\Hamachi
2010-01-17 21:20:00 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-01-17 21:19:59 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2010-01-17 21:19:26 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-01-17 21:19:02 ----D---- C:\WINDOWS\system32\LogFiles
2010-01-17 21:18:55 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-01-15 21:42:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sony
2010-01-15 21:42:07 ----D---- C:\Program Files\Sony
2010-01-15 14:49:51 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-01-12 23:10:34 ----D---- C:\WINDOWS\Sun
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-12 23:09:41 ----A---- C:\WINDOWS\system32\java.exe
2010-01-12 23:09:19 ----D---- C:\Program Files\Java
2010-01-12 23:06:38 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-12 22:40:49 ----A---- C:\WINDOWS\ModemLog_Nokia N70 USB Modem.txt
2010-01-12 22:39:43 ----D---- C:\Program Files\DIFX
2010-01-12 22:39:11 ----D---- C:\Program Files\Common Files\Nokia
2010-01-12 22:38:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Suite
2010-01-12 22:38:50 ----D---- C:\Program Files\Common Files\PCSuite
2010-01-12 22:38:43 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-01-12 22:38:43 ----A---- C:\WINDOWS\system32\nmwcdlog.dll
2010-01-12 22:38:43 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2010-01-12 22:38:37 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2010-01-12 22:38:36 ----D---- C:\Program Files\Nokia
2010-01-12 22:38:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\Downloaded Installations
2010-01-07 22:18:40 ----D---- C:\Program Files\Valve
2010-01-06 22:43:19 ----D---- C:\Program Files\MSBuild
2010-01-06 22:39:54 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-06 22:39:53 ----D---- C:\WINDOWS\system32\en-us
2010-01-06 22:39:22 ----D---- C:\Program Files\Reference Assemblies
2010-01-06 22:38:59 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-01-06 22:36:31 ----D---- C:\Program Files\The KMPlayer
2010-01-06 22:35:59 ----RSD---- C:\WINDOWS\assembly
2010-01-06 22:34:58 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-06 22:34:24 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-01-06 22:34:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-01-06 22:32:47 ----D---- C:\Program Files\Sony Setup
2010-01-06 22:27:32 ----D---- C:\Program Files\QuickTime
2010-01-06 22:27:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-01-06 22:26:54 ----D---- C:\Program Files\Common Files\Apple
2010-01-06 22:26:43 ----D---- C:\Program Files\Apple Software Update
2010-01-06 22:26:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-01-06 22:25:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-01-06 22:22:21 ----D---- C:\Program Files\Webteh
2010-01-06 20:40:52 ----D---- C:\Program Files\Common Files\Skype
2010-01-06 20:40:49 ----RD---- C:\Program Files\Skype
2010-01-06 20:39:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-01-04 19:45:21 ----A---- C:\WINDOWS\system32\irmon.dll
2010-01-04 19:45:20 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-01-04 19:45:20 ----A---- C:\WINDOWS\system32\irftp.exe
2010-01-04 19:30:08 ----RA---- C:\WINDOWS\system32\NmUninst.exe
2010-01-04 19:11:15 ----RA---- C:\WINDOWS\system32\ZSHP1020.EXE
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZTAG.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZSPOOL.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZLhp1020.DLL
2010-01-04 19:11:14 ----RA---- C:\WINDOWS\system32\ZIMF.DLL
2010-01-04 18:48:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\WEBREG
2010-01-04 18:45:11 ----D---- C:\Program Files\Common Files\HP
2010-01-04 18:43:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Product Assistant
2010-01-04 18:43:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2010-01-04 18:43:27 ----RA---- C:\WINDOWS\system32\hp3800co.dll
2010-01-04 18:42:58 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-01-04 18:42:54 ----D---- C:\Program Files\Hewlett-Packard
2010-01-04 18:42:25 ----HD---- C:\Config.Msi
2010-01-04 18:42:14 ----D---- C:\Program Files\HP
2010-01-04 11:53:19 ----D---- C:\Program Files\Mozilla Thunderbird
2010-01-04 11:52:13 ----D---- C:\WINDOWS\system32\appmgmt
2010-01-03 19:16:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-01-03 19:16:25 ----D---- C:\Program Files\Common Files\Adobe
2010-01-03 19:16:25 ----D---- C:\Program Files\Adobe
2010-01-03 17:32:28 ----A---- C:\WINDOWS\ODBC.INI
2010-01-03 17:32:27 ----A---- C:\WINDOWS\mdm.ini
2010-01-03 17:32:17 ----A---- C:\WINDOWS\NSREX.INI
2010-01-03 17:31:25 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Thunderbird
2010-01-03 17:30:31 ----D---- C:\Program Files\Microsoft Visual Studio
2010-01-03 17:30:27 ----D---- C:\Program Files\Common Files\Designer
2010-01-03 17:29:48 ----D---- C:\WINDOWS\system32\Viewers
2010-01-03 17:28:09 ----D---- C:\WINDOWS\ShellNew
2010-01-03 17:27:23 ----D---- C:\Program Files\Snapshot Viewer
2010-01-03 17:25:21 ----D---- C:\WINDOWS\Twain32
2010-01-03 17:25:21 ----D---- C:\Program Files\Microsoft Office
2010-01-03 17:25:21 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Microsoft Web Folders
2010-01-03 17:18:09 ----D---- C:\Program Files\PapíííClock
2010-01-03 17:16:37 ----A---- C:\WINDOWS\system32\qttask.exe
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-01-03 17:14:39 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-01-03 17:14:34 ----D---- C:\WINDOWS\system32\QuickTime
2010-01-03 17:14:34 ----A---- C:\WINDOWS\system32\MSVCR71.dll
2010-01-03 17:14:32 ----A---- C:\WINDOWS\mmtvmj.ini
2010-01-03 17:14:32 ----A---- C:\WINDOWS\m3jp2k.ini
2010-01-03 17:14:31 ----A---- C:\WINDOWS\m3jpeg.ini
2010-01-03 17:14:28 ----A---- C:\WINDOWS\system32\mplvpx.dll
2010-01-03 17:14:28 ----A---- C:\WINDOWS\system32\mplvm6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplvw7.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplva6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplaw7.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplapx.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplam6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\mplaa6.dll
2010-01-03 17:14:27 ----A---- C:\WINDOWS\system32\cpuinf32.dll
2010-01-03 17:14:26 ----A---- C:\WINDOWS\system32\unrar.dll
2010-01-03 17:14:24 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-01-03 17:13:45 ----D---- C:\Program Files\ACE Mega CoDecS Pack
2010-01-03 16:48:13 ----SHD---- C:\RECYCLER
2010-01-03 16:39:54 ----AD---- C:\Program Files\Krtecek
2010-01-03 16:35:37 ----D---- C:\Program Files\WinRAR
2010-01-03 15:04:22 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\DAEMON Tools
2010-01-03 13:57:07 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Mozilla
2010-01-03 13:41:11 ----D---- C:\Documents and Settings\Tomba Bomba\Data aplikací\ESET
2010-01-03 13:39:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
======List of files/folders modified in the last 1 months======
2010-02-02 09:56:54 ----D---- C:\WINDOWS\Temp
2010-02-02 09:48:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-01 23:14:05 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-01 17:10:34 ----SHD---- C:\System Volume Information
2010-02-01 17:10:34 ----D---- C:\WINDOWS\system32\Restore
2010-02-01 16:49:41 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-01 12:16:44 ----D---- C:\WINDOWS
2010-02-01 12:07:36 ----HD---- C:\WINDOWS\inf
2010-02-01 12:07:33 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-01 12:07:32 ----D---- C:\WINDOWS\system32
2010-02-01 12:07:26 ----A---- C:\WINDOWS\imsins.BAK
2010-02-01 12:07:13 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-01 12:07:00 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-01 00:58:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-01 00:56:12 ----A---- C:\WINDOWS\setuplog.txt
2010-02-01 00:55:41 ----D---- C:\WINDOWS\system32\Setup
2010-02-01 00:55:41 ----D---- C:\WINDOWS\AppPatch
2010-02-01 00:55:40 ----D---- C:\WINDOWS\system32\wbem
2010-02-01 00:55:39 ----RSD---- C:\WINDOWS\Fonts
2010-02-01 00:55:35 ----D---- C:\WINDOWS\system32\drivers
2010-02-01 00:54:52 ----D---- C:\WINDOWS\security
2010-02-01 00:49:44 ----D---- C:\Program Files\Outlook Express
2010-02-01 00:43:26 ----D---- C:\Program Files\Messenger
2010-02-01 00:37:32 ----D---- C:\WINDOWS\WinSxS
2010-02-01 00:37:19 ----D---- C:\Program Files\Windows Media Player
2010-02-01 00:37:16 ----D---- C:\WINDOWS\Help
2010-02-01 00:37:03 ----D---- C:\WINDOWS\ehome
2010-02-01 00:36:59 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-01 00:36:58 ----D---- C:\WINDOWS\ime
2010-02-01 00:36:32 ----D---- C:\WINDOWS\system32\usmt
2010-02-01 00:36:30 ----D---- C:\Program Files\Internet Explorer
2010-02-01 00:36:29 ----SHD---- C:\WINDOWS\Installer
2010-02-01 00:36:28 ----D---- C:\WINDOWS\PeerNet
2010-02-01 00:36:28 ----D---- C:\Program Files\Movie Maker
2010-02-01 00:28:32 ----D---- C:\WINDOWS\system32\npp
2010-02-01 00:28:31 ----D---- C:\WINDOWS\msagent
2010-02-01 00:28:29 ----D---- C:\WINDOWS\srchasst
2010-02-01 00:28:28 ----D---- C:\Program Files\NetMeeting
2010-02-01 00:28:25 ----D---- C:\WINDOWS\system32\Com
2010-02-01 00:28:11 ----D---- C:\Program Files\Windows NT
2010-02-01 00:28:04 ----D---- C:\Program Files\Common Files\System
2010-02-01 00:27:05 ----D---- C:\WINDOWS\system32\oobe
2010-02-01 00:27:02 ----D---- C:\WINDOWS\system
2010-02-01 00:19:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-01-31 12:48:22 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-30 19:48:27 ----D---- C:\totalcmd
2010-01-30 19:47:32 ----SD---- C:\WINDOWS\Tasks
2010-01-30 19:37:43 ----D---- C:\WINDOWS\Media
2010-01-30 19:37:25 ----D---- C:\C_
2010-01-30 19:35:22 ----SD---- C:\Documents and Settings\Tomba Bomba\Data aplikací\Microsoft
2010-01-30 19:30:50 ----RD---- C:\Program Files
2010-01-30 18:51:17 ----D---- C:\WINDOWS\Debug
2010-01-30 18:32:16 ----D---- C:\WINDOWS\SoftwareDistribution
2010-01-30 14:47:37 ----D---- C:\WINDOWS\mui
2010-01-26 17:25:21 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-25 20:58:13 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-12 22:39:11 ----D---- C:\Program Files\Common Files
2010-01-06 22:35:18 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-01-06 22:35:12 ----D---- C:\WINDOWS\system32\mui
2010-01-06 22:34:58 ----D---- C:\WINDOWS\pchealth
2010-01-04 18:43:31 ----D---- C:\WINDOWS\twain_32
2010-01-03 19:49:27 ----D---- C:\Documents and Settings
2010-01-03 17:32:11 ----A---- C:\WINDOWS\vbaddin.ini
2010-01-03 17:31:50 ----A---- C:\WINDOWS\win.ini
2010-01-03 17:25:00 ----D---- C:\WINDOWS\msapps
2010-01-03 17:25:00 ----D---- C:\Program Files\microsoft frontpage
2010-01-03 17:16:40 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-11-16 135048]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2003-12-11 391424]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-01-09 601100]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-04-22 729088]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-06-19 33096]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-09-23 26176]
R3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 RTL8023;Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlnic51.sys [2003-12-31 69504]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 BthEnum;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 kardelia;Rootkit Unhooker Driver; C:\WINDOWS\system32\drivers\kardelia.sys []
S3 Nokia USB Generic;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2006-05-29 8704]
S3 Nokia USB Modem;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2006-05-29 13312]
S3 Nokia USB Phone Parent;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2006-05-29 127488]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-04-22 397312]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-12 153376]
R3 ServiceLayer;ServiceLayer; C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe [2006-06-05 174080]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-04-21 516096]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
druhy
info.txt logfile of random's system information tool 1.06 2010-02-02 09:57:17
======Uninstall list======
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ACE Mega CoDecS Pack-->"C:\Program Files\ACE Mega CoDecS Pack\unins000.exe"
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.2 - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-A92000000001}
Aktualizace systému Windows Internet Explorer 8 (KB978506)-->"C:\WINDOWS\ie8updates\KB978506-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB978207)-->"C:\WINDOWS\$NtUninstallKB978207$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Apple Application Support-->MsiExec.exe /I{0C34B801-6AEC-4667-B053-03A67E2D0415}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ATI Control Panel-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
BSPlayer-->"C:\Program Files\Webteh\BSplayer\uninstall.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x9
Enable S3 for USB Device-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Gigabyte\Enable S3 for USB Device\Uninst.isu"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Imaging Device Functions 9.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP OCR Software 9.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
HP Scanjet G2710 9.0-->C:\Program Files\HP\Digital Imaging\{F4158BB4-98FA-4ad5-A0FE-3913A0714A44}\setup\hpzscr01.exe -datfile hpgscr30.dat
HP Solution Center 9.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}
ICQ Toolbar-->C:\Program Files\ICQ6Toolbar\ICQUnToolbar.exe
ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216017FF}
LogMeIn Hamachi-->C:\WINDOWS\system32\\msiexec.exe /i {067EC517-9731-43FD-B4D5-296EE0027BBB} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{067EC517-9731-43FD-B4D5-296EE0027BBB}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office 2000 Premium-->MsiExec.exe /I{00000405-78E1-11D2-B60F-006097C998E7}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Mozilla Firefox (3.5.7)-->D:\Program files\Mozilla Firefox\uninstall\helper.exe
Mozilla Thunderbird (3.0.1)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
NetMos Multi-IO Controller-->NmUninst.exe
Nokia Connectivity Cable Driver-->MsiExec.exe /X{6882DD11-33B8-4DEA-8305-7E765BF74BD3}
Nokia PC Connectivity Solution-->MsiExec.exe /I{0D80391C-0A72-43BB-9BC2-143F63CC111D}
Nokia PC Suite-->MsiExec.exe /I{531317A5-586A-4E36-87C1-CA823447B375}
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
PapíííClock 1.2-->"C:\Program Files\PapíííClock\unins000.exe"
QuickTime-->MsiExec.exe /I{A429C2AE-EBF1-4F81-A221-1C115CAADDAD}
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
REALTEK Gigabit and Fast Ethernet NIC Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{94FB906A-CF42-4128-A509-D353026A607E}\setup.exe" -l0x5 REMOVE
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Softarová utilita ATI - Odinstalovat-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
Sony Vegas Pro 8.0-->MsiExec.exe /X{B7E2A724-2774-4AC2-9F0A-B58C7319B6E6}
The KMPlayer (remove only)-->"C:\Program Files\The KMPlayer\uninstall.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Vegas Pro 9.0-->MsiExec.exe /X{DC785DB7-D389-48C3-B146-96FE99BF4E2B}
VIA Integrated Setup Wizard-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{9497EBAA-87AD-41E6-8ED6-E1E52995A76C}
Windows Driver Package - Nokia Modem (06/12/2006 6.81.0.21)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_62A340731F8930057B44B8864F236850B0D49D65\nokbtmdm.inf
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
======Security center information======
AV: ESET Smart Security 4.0
FW: ESET personal firewall
======System event log======
Computer Name: JI-9071C58F5DF0
Event Code: 7036
Message: Stav služby Sledování umístění v síti (NLA) byl změněn na: Spuštěno
Record Number: 3253
Source Name: Service Control Manager
Time Written: 20100126121808.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Sledování umístění v síti (NLA) úspěšně odeslán.
Record Number: 3252
Source Name: Service Control Manager
Time Written: 20100126121808.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: JI-9071C58F5DF0
Event Code: 2
Message: Nelze získat ukazatel objektu zařízení pro objekt portu.
Record Number: 3251
Source Name: ParVdm
Time Written: 20100126121757.000000+060
Event Type: Chyba
User:
Computer Name: JI-9071C58F5DF0
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3250
Source Name: EventLog
Time Written: 20100126121744.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.
Record Number: 3249
Source Name: EventLog
Time Written: 20100126121744.000000+060
Event Type: Informace
User:
=====Application event log=====
Computer Name: JI-9071C58F5DF0
Event Code: 1800
Message: Služba Centrum zabezpečení systému Windows byla spuštěna.
Record Number: 914
Source Name: SecurityCenter
Time Written: 20100124173958.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 105
Message: The service was started.
Record Number: 913
Source Name: ATI Smart
Time Written: 20100124173947.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 0
Message:
Record Number: 912
Source Name: ServiceLayer
Time Written: 20100124130219.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 101
Message: wuauclt (1680) Databázový stroj byl zastaven.
Record Number: 911
Source Name: ESENT
Time Written: 20100124125401.000000+060
Event Type: Informace
User:
Computer Name: JI-9071C58F5DF0
Event Code: 103
Message: wuaueng.dll (1680) SUS20ClientDataStore: Databázový stroj zastavil instanci (0).
Record Number: 910
Source Name: ESENT
Time Written: 20100124125401.000000+060
Event Type: Informace
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 12 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=0c00
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\QuickTime\QTSystem\QTJava.zip
"QTJAVA"=C:\Program Files\QuickTime\QTSystem\QTJava.zip
-----------------EOF-----------------
Re: win32/olmarik v operační paměti
Dobrý den, prosím o pomoc, NOD32 Antivir 4 mi hlási: win32/olmarik v operační paměti. Nespecifikuje, jaký Olmarik. Ad-Aware ho také nacházel, spybot si ho nevšimne.
Zkoušel jsem ho zlikvidovat sám, možná jsem udělal nějaký bordel.
log z RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jarda at 2010-02-08 20:38:12
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 117 GB (47%) free of 249 GB
Total RAM: 3582 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:38:38, on 8.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\System32\wpcumi.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\Program Files\FlashGet\flashget.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Users\Jarda\AppData\Roaming\Maxthon2\Maxthon.exe
C:\totalcmd\TOTALCMD.EXE
C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE
J:\_antivir\RSIT.exe
C:\Program Files\trend micro\Jarda.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll (file missing)
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll (file missing)
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Flashget] C:\Program Files\FlashGet\flashget.exe /min
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\pdfforge Toolbar\SearchSettings.exe
O4 - HKLM\..\Run: [BVRPLiveUpdate] C:\Program Files\Avanquest update\Engine\Setup.exe -s /PATCH,/SRCUPDATEC:\PROGRA~2\SONYER~1\SONYER~1\LIVEUP~1\LISTOF~1.DAT
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [RGSC] D:\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PMCLoader] C:\Program Files\Pinnacle\TVCenter Pro\PMCLoader.exe -checktasks
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net ... plugin.cab
O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocx
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - http://www.fileplanet.com/fpdlmgr/cabs/ ... 10.115.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.4.1.cab
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/stati ... 0.21.0.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: BGMYRQ - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\BGMYRQ.exe
O23 - Service: Dragon Age: Prameny - aktualizace obsahu (DAUpdaterSvc) - BioWare - D:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FKEKD - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\FKEKD.exe
O23 - Service: Google Update Service (GoogleUpdateBeta) - Google Inc - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Update\GoogleUpdateBeta.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: JLJORTUI - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\JLJORTUI.exe
O23 - Service: JSIOH - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\JSIOH.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PEVSystemStart - Unknown owner - C:\ComboFix\PEV.cfxxe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Karta Smart Card SCardSvrDAUpdaterSvc (SCardSvrDAUpdaterSvc) - Unknown owner - C:\Windows\system32\acluig.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Centrum zabezpečení wscsvcBITS (wscsvcBITS) - Unknown owner - C:\Windows\system32\adtschemah.exe
--
End of file - 14093 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Daily 1).job
C:\Windows\tasks\Ad-Aware Update (Daily 2).job
C:\Windows\tasks\Ad-Aware Update (Daily 3).job
C:\Windows\tasks\Ad-Aware Update (Daily 4).job
C:\Windows\tasks\Ad-Aware Update (Weekly).job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-08-26 279944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
FGCatchUrl - C:\Program Files\FlashGet\jccatch.dll [2007-08-06 94308]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-19 263280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-19 764912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
C:\Program Files\pdfforge Toolbar\SearchSettings.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F156768E-81EF-470C-9057-481BA8380DBA}]
FlashGet GetFlash Class - C:\Program Files\FlashGet\getflash.dll [2007-05-18 163840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B922D405-6D13-4A2B-AE89-08A030DA4402} - pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-08-26 279944]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-19 263280]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"WPCUMI"=C:\Windows\system32\WpcUmi.exe [2006-11-02 176128]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-07-06 4669440]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2007-09-20 1836328]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdc.exe [2007-01-24 563080]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2008-02-28 63048]
"Flashget"=C:\Program Files\FlashGet\flashget.exe [2007-09-25 2007088]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"UpdatePDRShortCut"=C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [2008-01-04 222504]
"SearchSettings"=C:\Program Files\pdfforge Toolbar\SearchSettings.exe [2009-01-30 992256]
"BVRPLiveUpdate"=C:\Program Files\Avanquest update\Engine\Setup.exe -s /PATCH,/SRCUPDATEC:\PROGRA~2\SONYER~1\SONYER~1\LIVEUP~1\LISTOF~1.DAT []
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-11-16 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe [2007-10-23 202024]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2006-09-10 218032]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-10 86960]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-10 218032]
"TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\HOMERunner.exe []
"Steam"=C:\Program Files\Steam\Steam.exe [2009-10-24 1217808]
"RGSC"=D:\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-04-13 2387968]
"PMCLoader"=C:\Program Files\Pinnacle\TVCenter Pro\PMCLoader.exe -checktasks []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2009-04-24 203928]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-11 39408]
"igndlm.exe"=C:\Program Files\Download Manager\DLM.exe [2009-10-27 1103216]
C:\Users\Jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=0
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-02-06 03:19:20 ----A---- C:\Windows\system32\winhttp.dll
2010-02-06 01:43:28 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-02-06 01:43:28 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-02-06 01:18:03 ----D---- C:\SysProt
2010-02-06 01:04:56 ----SD---- C:\ComboFix
2010-02-06 01:04:37 ----A---- C:\Windows\SWXCACLS.exe
2010-02-06 01:01:42 ----A---- C:\Windows\ntbtlog.txt
2010-02-06 00:56:37 ----SHD---- C:\$RECYCLE.BIN
2010-02-06 00:40:17 ----D---- C:\Windows\temp
2010-02-06 00:34:57 ----A---- C:\logcmbfix.txt
2010-02-06 00:33:27 ----A---- C:\Windows\zip.exe
2010-02-06 00:33:27 ----A---- C:\Windows\SWSC.exe
2010-02-06 00:33:27 ----A---- C:\Windows\SWREG.exe
2010-02-06 00:33:27 ----A---- C:\Windows\sed.exe
2010-02-06 00:33:27 ----A---- C:\Windows\PEV.exe
2010-02-06 00:33:27 ----A---- C:\Windows\NIRCMD.exe
2010-02-06 00:33:27 ----A---- C:\Windows\MBR.exe
2010-02-06 00:33:27 ----A---- C:\Windows\grep.exe
2010-02-06 00:33:20 ----D---- C:\Qoobox
2010-02-06 00:27:02 ----D---- C:\rsit
2010-02-06 00:27:02 ----D---- C:\Program Files\trend micro
2010-02-06 00:21:33 ----D---- C:\Program Files\CCleaner
2010-02-05 21:09:01 ----A---- C:\Windows\system32\kerberos.dll
2010-02-05 21:09:00 ----A---- C:\Windows\system32\schannel.dll
2010-01-31 21:49:12 ----A---- C:\Windows\GPInstall.exe
2010-01-27 20:41:24 ----D---- C:\ProgramData\PassMark
2010-01-27 20:41:20 ----D---- C:\Program Files\MonitorTest
2010-01-27 20:39:16 ----D---- C:\Program Files\Mihov Blank Screen
2010-01-21 21:12:08 ----A---- C:\Windows\system32\mshtml.dll
2010-01-21 21:12:07 ----A---- C:\Windows\system32\ieframe.dll
2010-01-21 21:12:06 ----A---- C:\Windows\system32\iertutil.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\wininet.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\urlmon.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\occache.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-21 21:12:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-21 21:12:03 ----A---- C:\Windows\system32\ieui.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\iepeers.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-21 21:12:02 ----A---- C:\Windows\system32\iesetup.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\iernonce.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-12 23:54:00 ----A---- C:\Windows\system32\t2embed.dll
2010-01-12 23:53:59 ----A---- C:\Windows\system32\fontsub.dll
2010-01-11 18:18:36 ----D---- C:\Users\Jarda\AppData\Roaming\HypoKalk
2010-01-11 18:00:52 ----D---- C:\Program Files\Komerční Banka
2010-01-10 13:57:45 ----HDC---- C:\ProgramData\{C2AE2ED8-999F-4EF7-AFD4-6772152D0F81}
======List of files/folders modified in the last 1 months======
2010-02-08 20:38:27 ----D---- C:\Windows\Prefetch
2010-02-08 20:30:10 ----D---- C:\Windows\System32
2010-02-08 20:28:32 ----D---- C:\Users\Jarda\AppData\Roaming\Skype
2010-02-08 20:28:01 ----D---- C:\Windows\Tasks
2010-02-08 20:18:55 ----SHD---- C:\System Volume Information
2010-02-08 20:18:38 ----D---- C:\Users\Jarda\AppData\Roaming\MxBoost
2010-02-08 20:14:56 ----D---- C:\ProgramData\NVIDIA
2010-02-08 20:14:54 ----D---- C:\Program Files\Steam
2010-02-08 20:10:00 ----D---- C:\Windows\system32\Tasks
2010-02-08 20:08:14 ----D---- C:\Users\Jarda\AppData\Roaming\skypePM
2010-02-08 20:08:13 ----D---- C:\Program Files\LogMeIn
2010-02-06 18:41:31 ----D---- C:\Windows\rescache
2010-02-06 14:12:55 ----D---- C:\Windows\winsxs
2010-02-06 14:12:47 ----D---- C:\Windows\system32\cs-CZ
2010-02-06 12:35:23 ----D---- C:\install
2010-02-06 12:24:35 ----D---- C:\Downloads
2010-02-06 03:19:04 ----D---- C:\Windows\system32\catroot2
2010-02-06 03:19:04 ----D---- C:\Windows\system32\catroot
2010-02-06 01:43:28 ----RD---- C:\Program Files
2010-02-06 01:43:28 ----D---- C:\ProgramData
2010-02-06 01:18:55 ----A---- C:\Windows\NeroDigital.ini
2010-02-06 01:06:46 ----D---- C:\Windows\system32\drivers
2010-02-06 01:01:42 ----D---- C:\Windows
2010-02-06 00:45:06 ----A---- C:\Windows\system.ini
2010-02-06 00:40:49 ----D---- C:\Windows\system32\config
2010-02-06 00:40:49 ----D---- C:\Boot
2010-02-06 00:40:29 ----D---- C:\Windows\ERDNT
2010-02-06 00:39:58 ----D---- C:\Program Files\pdfforge Toolbar
2010-02-06 00:37:32 ----D---- C:\Windows\AppPatch
2010-02-06 00:37:31 ----D---- C:\Program Files\Common Files
2010-02-06 00:23:44 ----D---- C:\Windows\Minidump
2010-02-06 00:23:44 ----D---- C:\Windows\Debug
2010-02-05 23:06:33 ----SHD---- C:\Windows\Installer
2010-02-05 20:24:11 ----D---- C:\NVIDIA
2010-02-05 19:55:54 ----D---- C:\ipaq 614c
2010-02-05 19:51:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-05 19:51:10 ----D---- C:\Windows\inf
2010-02-05 19:11:42 ----D---- C:\Program Files\Mozilla Firefox
2010-02-01 19:39:06 ----D---- C:\Windows\system32\LogFiles
2010-02-01 00:56:07 ----D---- C:\Program Files\Common Files\Steam
2010-01-31 21:49:17 ----D---- C:\Program Files\ModelH
2010-01-29 08:30:39 ----AD---- C:\ProgramData\TEMP
2010-01-27 23:31:32 ----D---- C:\Program Files\Internet Explorer
2010-01-26 23:53:07 ----D---- C:\rapid
2010-01-26 21:30:48 ----D---- C:\Program Files\JDownloader
2010-01-25 19:38:48 ----D---- C:\ProgramData\2DBoy
2010-01-22 18:47:49 ----D---- C:\Windows\system32\migration
2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-13 03:03:59 ----D---- C:\ProgramData\Microsoft Help
2010-01-13 03:02:58 ----D---- C:\Program Files\Windows Mail
2010-01-10 13:59:19 ----RSD---- C:\Windows\assembly
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\Windows\system32\DRIVERS\ATITool.sys [2007-08-08 28968]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-10-15 281760]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-12-18 95896]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-10-15 25888]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys [2008-02-28 12856]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2008-10-17 47640]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-04-23 26176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-07-18 1841312]
R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2008-02-28 10144]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-11-21 11515752]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-10-23 47360]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2009-03-17 140288]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S1 EIO;EIO Driver; C:\Windows\system32\DRIVERS\EIO.sys []
S1 HWiNFO32;HWiNFO32 Kernel Driver; \??\C:\Users\Jarda\AppData\Local\Temp\HWiNFO32.SYS []
S3 3xHybrid;Pinnacle PCTV 100i-110i-300i-310i-MCE; C:\Windows\system32\DRIVERS\3xHybrid.sys [2006-11-22 1121536]
S3 AteksoftAudio;WebCamera Plus Audio; C:\Windows\system32\drivers\ateksoftaudio.sys [2007-12-25 11776]
S3 catchme;catchme; \??\C:\Users\Jarda\AppData\Local\Temp\catchme.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.sys [2008-04-22 27672]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2007-06-27 53184]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2007-06-27 71488]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2009-03-23 15600]
S3 GKUPRO2D;GKUPRO2D; C:\Windows\System32\Drivers\GKUPRO2D.sys [2005-02-18 71168]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MarkFun_NT;MarkFun_NT; \??\C:\Program Files\markfun.w32 [2007-08-21 17912]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys []
S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2007-04-03 1131136]
S3 RivaTuner32;RivaTuner32; \??\C:\Program Files\RivaTuner v2.08\RivaTuner32.sys [2008-03-10 9088]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2008-11-04 86696]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2008-11-04 15016]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2008-11-04 114472]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2008-11-04 108200]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2008-11-04 26024]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2008-11-04 104616]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2008-11-04 109736]
S3 Ser2pl;Prolific2 Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2005-11-04 48640]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 USBCCID;Čtecí zařízení čipových karet USB; C:\Windows\system32\DRIVERS\usbccid.sys [2006-11-02 30208]
S3 winusb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\winusb.sys [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-12-20 722416]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2008-10-27 759072]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-11-16 735960]
R2 GoogleUpdateBeta;Google Update Service; C:\Windows\system32\config\system [2010-02-08 23068672]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-02-04 1181328]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-04-13 73728]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2008-02-28 63040]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 853288]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2007-10-12 71096]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-11-20 122984]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2008-10-06 241734]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2009-11-20 240232]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-10-23 382248]
S2 PEVSystemStart;PEVSystemStart; C:\ComboFix\PEV.cfxxe [2009-12-09 261632]
S2 SCardSvrDAUpdaterSvc;Karta Smart Card SCardSvrDAUpdaterSvc; C:\Windows\system32\acluig.exe srv []
S2 wscsvcBITS;Centrum zabezpečení wscsvcBITS; C:\Windows\system32\adtschemah.exe [2008-01-19 62976]
S3 BGMYRQ;BGMYRQ; C:\Users\Jarda\AppData\Local\Temp\BGMYRQ.exe [2010-02-06 535424]
S3 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu; D:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-11-16 20680]
S3 FKEKD;FKEKD; C:\Users\Jarda\AppData\Local\Temp\FKEKD.exe [2010-02-06 445312]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-11-11 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 JLJORTUI;JLJORTUI; C:\Users\Jarda\AppData\Local\Temp\JLJORTUI.exe [2010-02-06 482176]
S3 JSIOH;JSIOH; C:\Users\Jarda\AppData\Local\Temp\JSIOH.exe [2010-02-06 445312]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-01-26 326792]
-----------------EOF-----------------
Zkoušel jsem ho zlikvidovat sám, možná jsem udělal nějaký bordel.
log z RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jarda at 2010-02-08 20:38:12
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 117 GB (47%) free of 249 GB
Total RAM: 3582 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:38:38, on 8.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\System32\wpcumi.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\Program Files\FlashGet\flashget.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Users\Jarda\AppData\Roaming\Maxthon2\Maxthon.exe
C:\totalcmd\TOTALCMD.EXE
C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE
J:\_antivir\RSIT.exe
C:\Program Files\trend micro\Jarda.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll (file missing)
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll (file missing)
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [Flashget] C:\Program Files\FlashGet\flashget.exe /min
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\pdfforge Toolbar\SearchSettings.exe
O4 - HKLM\..\Run: [BVRPLiveUpdate] C:\Program Files\Avanquest update\Engine\Setup.exe -s /PATCH,/SRCUPDATEC:\PROGRA~2\SONYER~1\SONYER~1\LIVEUP~1\LISTOF~1.DAT
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [RGSC] D:\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PMCLoader] C:\Program Files\Pinnacle\TVCenter Pro\PMCLoader.exe -checktasks
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\Download Manager\DLM.exe /windowsstart /startifwork
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net ... plugin.cab
O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocx
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - http://www.fileplanet.com/fpdlmgr/cabs/ ... 10.115.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.4.1.cab
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/stati ... 0.21.0.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: BGMYRQ - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\BGMYRQ.exe
O23 - Service: Dragon Age: Prameny - aktualizace obsahu (DAUpdaterSvc) - BioWare - D:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FKEKD - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\FKEKD.exe
O23 - Service: Google Update Service (GoogleUpdateBeta) - Google Inc - C:\Windows\system32\config\systemprofile\AppData\Local\Google\Update\GoogleUpdateBeta.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: JLJORTUI - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\JLJORTUI.exe
O23 - Service: JSIOH - Sysinternals - www.sysinternals.com - C:\Users\Jarda\AppData\Local\Temp\JSIOH.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PEVSystemStart - Unknown owner - C:\ComboFix\PEV.cfxxe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Karta Smart Card SCardSvrDAUpdaterSvc (SCardSvrDAUpdaterSvc) - Unknown owner - C:\Windows\system32\acluig.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Centrum zabezpečení wscsvcBITS (wscsvcBITS) - Unknown owner - C:\Windows\system32\adtschemah.exe
--
End of file - 14093 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Daily 1).job
C:\Windows\tasks\Ad-Aware Update (Daily 2).job
C:\Windows\tasks\Ad-Aware Update (Daily 3).job
C:\Windows\tasks\Ad-Aware Update (Daily 4).job
C:\Windows\tasks\Ad-Aware Update (Weekly).job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-08-26 279944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
FGCatchUrl - C:\Program Files\FlashGet\jccatch.dll [2007-08-06 94308]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-19 263280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-19 764912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
C:\Program Files\pdfforge Toolbar\SearchSettings.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F156768E-81EF-470C-9057-481BA8380DBA}]
FlashGet GetFlash Class - C:\Program Files\FlashGet\getflash.dll [2007-05-18 163840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B922D405-6D13-4A2B-AE89-08A030DA4402} - pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-08-26 279944]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-19 263280]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"WPCUMI"=C:\Windows\system32\WpcUmi.exe [2006-11-02 176128]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-07-06 4669440]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2007-09-20 1836328]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdc.exe [2007-01-24 563080]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2008-02-28 63048]
"Flashget"=C:\Program Files\FlashGet\flashget.exe [2007-09-25 2007088]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"UpdatePDRShortCut"=C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [2008-01-04 222504]
"SearchSettings"=C:\Program Files\pdfforge Toolbar\SearchSettings.exe [2009-01-30 992256]
"BVRPLiveUpdate"=C:\Program Files\Avanquest update\Engine\Setup.exe -s /PATCH,/SRCUPDATEC:\PROGRA~2\SONYER~1\SONYER~1\LIVEUP~1\LISTOF~1.DAT []
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-11-16 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe [2007-10-23 202024]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2006-09-10 218032]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-10 86960]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-10 218032]
"TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\HOMERunner.exe []
"Steam"=C:\Program Files\Steam\Steam.exe [2009-10-24 1217808]
"RGSC"=D:\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-04-13 2387968]
"PMCLoader"=C:\Program Files\Pinnacle\TVCenter Pro\PMCLoader.exe -checktasks []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2009-04-24 203928]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-11 39408]
"igndlm.exe"=C:\Program Files\Download Manager\DLM.exe [2009-10-27 1103216]
C:\Users\Jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=0
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-02-06 03:19:20 ----A---- C:\Windows\system32\winhttp.dll
2010-02-06 01:43:28 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-02-06 01:43:28 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-02-06 01:18:03 ----D---- C:\SysProt
2010-02-06 01:04:56 ----SD---- C:\ComboFix
2010-02-06 01:04:37 ----A---- C:\Windows\SWXCACLS.exe
2010-02-06 01:01:42 ----A---- C:\Windows\ntbtlog.txt
2010-02-06 00:56:37 ----SHD---- C:\$RECYCLE.BIN
2010-02-06 00:40:17 ----D---- C:\Windows\temp
2010-02-06 00:34:57 ----A---- C:\logcmbfix.txt
2010-02-06 00:33:27 ----A---- C:\Windows\zip.exe
2010-02-06 00:33:27 ----A---- C:\Windows\SWSC.exe
2010-02-06 00:33:27 ----A---- C:\Windows\SWREG.exe
2010-02-06 00:33:27 ----A---- C:\Windows\sed.exe
2010-02-06 00:33:27 ----A---- C:\Windows\PEV.exe
2010-02-06 00:33:27 ----A---- C:\Windows\NIRCMD.exe
2010-02-06 00:33:27 ----A---- C:\Windows\MBR.exe
2010-02-06 00:33:27 ----A---- C:\Windows\grep.exe
2010-02-06 00:33:20 ----D---- C:\Qoobox
2010-02-06 00:27:02 ----D---- C:\rsit
2010-02-06 00:27:02 ----D---- C:\Program Files\trend micro
2010-02-06 00:21:33 ----D---- C:\Program Files\CCleaner
2010-02-05 21:09:01 ----A---- C:\Windows\system32\kerberos.dll
2010-02-05 21:09:00 ----A---- C:\Windows\system32\schannel.dll
2010-01-31 21:49:12 ----A---- C:\Windows\GPInstall.exe
2010-01-27 20:41:24 ----D---- C:\ProgramData\PassMark
2010-01-27 20:41:20 ----D---- C:\Program Files\MonitorTest
2010-01-27 20:39:16 ----D---- C:\Program Files\Mihov Blank Screen
2010-01-21 21:12:08 ----A---- C:\Windows\system32\mshtml.dll
2010-01-21 21:12:07 ----A---- C:\Windows\system32\ieframe.dll
2010-01-21 21:12:06 ----A---- C:\Windows\system32\iertutil.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\wininet.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\urlmon.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\occache.dll
2010-01-21 21:12:05 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-21 21:12:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-21 21:12:03 ----A---- C:\Windows\system32\ieui.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-21 21:12:03 ----A---- C:\Windows\system32\iepeers.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-21 21:12:02 ----A---- C:\Windows\system32\iesetup.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\iernonce.dll
2010-01-21 21:12:02 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-12 23:54:00 ----A---- C:\Windows\system32\t2embed.dll
2010-01-12 23:53:59 ----A---- C:\Windows\system32\fontsub.dll
2010-01-11 18:18:36 ----D---- C:\Users\Jarda\AppData\Roaming\HypoKalk
2010-01-11 18:00:52 ----D---- C:\Program Files\Komerční Banka
2010-01-10 13:57:45 ----HDC---- C:\ProgramData\{C2AE2ED8-999F-4EF7-AFD4-6772152D0F81}
======List of files/folders modified in the last 1 months======
2010-02-08 20:38:27 ----D---- C:\Windows\Prefetch
2010-02-08 20:30:10 ----D---- C:\Windows\System32
2010-02-08 20:28:32 ----D---- C:\Users\Jarda\AppData\Roaming\Skype
2010-02-08 20:28:01 ----D---- C:\Windows\Tasks
2010-02-08 20:18:55 ----SHD---- C:\System Volume Information
2010-02-08 20:18:38 ----D---- C:\Users\Jarda\AppData\Roaming\MxBoost
2010-02-08 20:14:56 ----D---- C:\ProgramData\NVIDIA
2010-02-08 20:14:54 ----D---- C:\Program Files\Steam
2010-02-08 20:10:00 ----D---- C:\Windows\system32\Tasks
2010-02-08 20:08:14 ----D---- C:\Users\Jarda\AppData\Roaming\skypePM
2010-02-08 20:08:13 ----D---- C:\Program Files\LogMeIn
2010-02-06 18:41:31 ----D---- C:\Windows\rescache
2010-02-06 14:12:55 ----D---- C:\Windows\winsxs
2010-02-06 14:12:47 ----D---- C:\Windows\system32\cs-CZ
2010-02-06 12:35:23 ----D---- C:\install
2010-02-06 12:24:35 ----D---- C:\Downloads
2010-02-06 03:19:04 ----D---- C:\Windows\system32\catroot2
2010-02-06 03:19:04 ----D---- C:\Windows\system32\catroot
2010-02-06 01:43:28 ----RD---- C:\Program Files
2010-02-06 01:43:28 ----D---- C:\ProgramData
2010-02-06 01:18:55 ----A---- C:\Windows\NeroDigital.ini
2010-02-06 01:06:46 ----D---- C:\Windows\system32\drivers
2010-02-06 01:01:42 ----D---- C:\Windows
2010-02-06 00:45:06 ----A---- C:\Windows\system.ini
2010-02-06 00:40:49 ----D---- C:\Windows\system32\config
2010-02-06 00:40:49 ----D---- C:\Boot
2010-02-06 00:40:29 ----D---- C:\Windows\ERDNT
2010-02-06 00:39:58 ----D---- C:\Program Files\pdfforge Toolbar
2010-02-06 00:37:32 ----D---- C:\Windows\AppPatch
2010-02-06 00:37:31 ----D---- C:\Program Files\Common Files
2010-02-06 00:23:44 ----D---- C:\Windows\Minidump
2010-02-06 00:23:44 ----D---- C:\Windows\Debug
2010-02-05 23:06:33 ----SHD---- C:\Windows\Installer
2010-02-05 20:24:11 ----D---- C:\NVIDIA
2010-02-05 19:55:54 ----D---- C:\ipaq 614c
2010-02-05 19:51:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-05 19:51:10 ----D---- C:\Windows\inf
2010-02-05 19:11:42 ----D---- C:\Program Files\Mozilla Firefox
2010-02-01 19:39:06 ----D---- C:\Windows\system32\LogFiles
2010-02-01 00:56:07 ----D---- C:\Program Files\Common Files\Steam
2010-01-31 21:49:17 ----D---- C:\Program Files\ModelH
2010-01-29 08:30:39 ----AD---- C:\ProgramData\TEMP
2010-01-27 23:31:32 ----D---- C:\Program Files\Internet Explorer
2010-01-26 23:53:07 ----D---- C:\rapid
2010-01-26 21:30:48 ----D---- C:\Program Files\JDownloader
2010-01-25 19:38:48 ----D---- C:\ProgramData\2DBoy
2010-01-22 18:47:49 ----D---- C:\Windows\system32\migration
2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-13 03:03:59 ----D---- C:\ProgramData\Microsoft Help
2010-01-13 03:02:58 ----D---- C:\Program Files\Windows Mail
2010-01-10 13:59:19 ----RSD---- C:\Windows\assembly
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\Windows\system32\DRIVERS\ATITool.sys [2007-08-08 28968]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-10-15 281760]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-12-18 95896]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-10-15 25888]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys [2008-02-28 12856]
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2008-10-17 47640]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-04-23 26176]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-07-18 1841312]
R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2008-02-28 10144]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-11-21 11515752]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-10-23 47360]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2009-03-17 140288]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S1 EIO;EIO Driver; C:\Windows\system32\DRIVERS\EIO.sys []
S1 HWiNFO32;HWiNFO32 Kernel Driver; \??\C:\Users\Jarda\AppData\Local\Temp\HWiNFO32.SYS []
S3 3xHybrid;Pinnacle PCTV 100i-110i-300i-310i-MCE; C:\Windows\system32\DRIVERS\3xHybrid.sys [2006-11-22 1121536]
S3 AteksoftAudio;WebCamera Plus Audio; C:\Windows\system32\drivers\ateksoftaudio.sys [2007-12-25 11776]
S3 catchme;catchme; \??\C:\Users\Jarda\AppData\Local\Temp\catchme.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.sys [2008-04-22 27672]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2007-06-27 53184]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2007-06-27 71488]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2009-03-23 15600]
S3 GKUPRO2D;GKUPRO2D; C:\Windows\System32\Drivers\GKUPRO2D.sys [2005-02-18 71168]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MarkFun_NT;MarkFun_NT; \??\C:\Program Files\markfun.w32 [2007-08-21 17912]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys []
S3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2007-04-03 1131136]
S3 RivaTuner32;RivaTuner32; \??\C:\Program Files\RivaTuner v2.08\RivaTuner32.sys [2008-03-10 9088]
S3 s1018bus;Sony Ericsson Device 1018 driver (WDM); C:\Windows\system32\DRIVERS\s1018bus.sys [2008-11-04 86696]
S3 s1018mdfl;Sony Ericsson Device 1018 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s1018mdfl.sys [2008-11-04 15016]
S3 s1018mdm;Sony Ericsson Device 1018 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s1018mdm.sys [2008-11-04 114472]
S3 s1018mgmt;Sony Ericsson Device 1018 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s1018mgmt.sys [2008-11-04 108200]
S3 s1018nd5;Sony Ericsson Device 1018 USB Ethernet Emulation (NDIS); C:\Windows\system32\DRIVERS\s1018nd5.sys [2008-11-04 26024]
S3 s1018obex;Sony Ericsson Device 1018 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s1018obex.sys [2008-11-04 104616]
S3 s1018unic;Sony Ericsson Device 1018 USB Ethernet Emulation (WDM); C:\Windows\system32\DRIVERS\s1018unic.sys [2008-11-04 109736]
S3 Ser2pl;Prolific2 Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2005-11-04 48640]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 USBCCID;Čtecí zařízení čipových karet USB; C:\Windows\system32\DRIVERS\usbccid.sys [2006-11-02 30208]
S3 winusb;Ovladač WinUsb; C:\Windows\system32\DRIVERS\winusb.sys [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-12-20 722416]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 PE Licensing Service; C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe [2008-10-27 759072]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-11-16 735960]
R2 GoogleUpdateBeta;Google Update Service; C:\Windows\system32\config\system [2010-02-08 23068672]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-02-04 1181328]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-04-13 73728]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2008-02-28 63040]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-09-20 853288]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2007-10-12 71096]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-11-20 122984]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2008-10-06 241734]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2009-11-20 240232]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-10-23 382248]
S2 PEVSystemStart;PEVSystemStart; C:\ComboFix\PEV.cfxxe [2009-12-09 261632]
S2 SCardSvrDAUpdaterSvc;Karta Smart Card SCardSvrDAUpdaterSvc; C:\Windows\system32\acluig.exe srv []
S2 wscsvcBITS;Centrum zabezpečení wscsvcBITS; C:\Windows\system32\adtschemah.exe [2008-01-19 62976]
S3 BGMYRQ;BGMYRQ; C:\Users\Jarda\AppData\Local\Temp\BGMYRQ.exe [2010-02-06 535424]
S3 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu; D:\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-11-16 20680]
S3 FKEKD;FKEKD; C:\Users\Jarda\AppData\Local\Temp\FKEKD.exe [2010-02-06 445312]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-11-11 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 JLJORTUI;JLJORTUI; C:\Users\Jarda\AppData\Local\Temp\JLJORTUI.exe [2010-02-06 482176]
S3 JSIOH;JSIOH; C:\Users\Jarda\AppData\Local\Temp\JSIOH.exe [2010-02-06 445312]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-01-26 326792]
-----------------EOF-----------------