
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nejde spustit správce úloh jedná se o vir?
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Nejde spustit správce úloh jedná se o vir?
Ahoj , mám problém , sestra si vybírala meily a nejspíš stáhla i nějakou přílohu. Nemůžu spustit správce úloh a ukazuje se mi antivir Security Essential 2010 i když jsem ho nestahoval , slyšel jsem že to je trojan či co. Jak se ho mám nadobro zbavit ? Ten správce mi píše že ho správce tohoto systému zakázal i když jsem s tím nic nedělal, mám nainstalovaný Microsoft security essentials a Spywere terminator. Microsoft mi napsal že nalezl toto: Trojan:Win32/Alureon.CT , Backdoor: Win32/Trenk!rts , TrojanDownloader:Win32/Renos.KR a Trojan:Win32/Meredrop Spywere Terminator mi našel take nějaké 3 problémi co s tím ? tady je logfile z Spyweru.
Logfile of Spyware Terminator v2.3.0.494 (db:1.000.000.000)
Scan Time: 19.2.2010 13:12:07 length: 5925 s
Platform: VISTA (6.1.0.7600)
User: Admin
Boot Mode: Normal
Scan type: Full_Virus__Spyware_Scan
Scanned Objects: 153051 (Critical:3)
Filter: No System items, No Safe items, No Invalid items
Running Processes
MsMpEng.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
ijplmsvc.exe : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
LSSrvc.exe [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
NBService.exe [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
ULCDRSvr.exe [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
Yw1.exe : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
msa.exe : C:\Windows\msa.exe
DTVSchdl.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
WFWIZ.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
BJMYPRT.EXE [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
jusched.exe [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
vsnpstd3.exe : C:\Windows\vsnpstd3.exe
LaunchApplication.exe [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
msseces.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
uTorrent.exe [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
sidebar.exe [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
DTLite.exe [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
rundll32.exe [Microsoft Corporation] : C:\Windows\system32\rundll32.exe
ServiceLayer.exe [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
wmpnetwk.exe [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
Internet Settings
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
BHO
02 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - [Sun Microsystems, Inc.] : C:\Program Files\Java\jre6\bin\jp2ssv.dll
Toolbars
03 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - : C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Google Update : [Google Inc.] : C:\Users\Pepa\AppData\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, uTorrent : [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sidebar : [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LosAlamos : : C:\Windows\system32\sshnas21.dll
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TOY5KNQ8OC : : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFastDTV : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFast Schedule : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonSolutionMenu : [CANON INC.] : C:\Program Files\CANON\SOLUTIONMENU\CNSLMAIN.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonMyPrinter : [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched : [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AdobeCS4ServiceManager : [Adobe Systems Incorporated] : C:\Program Files\Common Files\ADOBE\CS4SERVICEMANAGER\CS4SERVICEMANAGER.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, snpstd3 : : C:\Windows\vsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tsnpstd3 : : C:\Windows\tsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, PCSuiteTrayApplication : [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSE : [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
Shell Extensions
MF ADTS Property Handler - {80009818-f38f-4af1-87b5-eadab9433e58} - [Microsoft Corporation] : C:\Windows\system32\mf.dll
TCUP: Shell Extention - {544F5441-4C43-4D44-5550-5348454C4C00} - : C:\Program Files\TC UP\PLUGINS\Library\TCUPShellExt.dll
NeroCoverEdLiveIcons Class - {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} - [Nero AG] : C:\Program Files\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll
Nokia Phone Browser - {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
Protocol Handler
MHTML Asynchronous Pluggable Protocol Handler - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - [Microsoft Corporation] : C:\Windows\system32\inetcomm.dll
Services
23 - [Arcsoft, Inc.] : C:\Windows\system32\drivers\Afc.sys
23 - [Advanced Micro Devices] : C:\Windows\system32\DRIVERS\amdxata.sys
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\bowser.sys
23 - [Microsoft Corporation] : C:\Windows\system32\Drivers\dfsc.sys
23 - [Microsoft Corporation] : C:\Windows\system32\drivers\discache.sys
23 - [ASUSTeK Computer Inc.] : C:\Windows\system32\drivers\EIO.sys
23 - : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
23 - [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mrxsmb10.sys
23 - [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mssmbios.sys
23 - [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvm62x32.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvlddmkm.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvstor.sys
23 - [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
23 - : C:\Windows\system32\Drivers\sptd.sys
23 - [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
23 - [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS
23 - [Leadtek Research Inc.] : C:\Windows\system32\drivers\wfeaglxt.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
23 - [Crawler.com] : C:\Windows\system32\drivers\sp_rsdrv2.sys
System Policies
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoActiveDesktopChanges : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop, NoChangingWallPaper : :
Threat Files
<Server-FTP.SFH.d> : C:\Program Files\TC UP\PLUGINS\Tools\HFS\hfs.exe
<AdTool.MyWebSearch.bm> : C:\Users\Pepa\AppData\Local\Temp\NERO1004803\unit_app_75\Toolbar.exe
Advanced Files Report
%PROGRAMFILES%\Microsoft Security Essentials\MsMpEng.exe [Microsoft Corporation] [Microsoft Malware Protection] MD5=FBE736AF381983A1D4ADBBF1FACF6976 SIZE=17904
%SYSDIR%\CNMLM9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=7227043C783F12F9FB1F312BFF791660 SIZE=230912
%SYSDIR%\spool\PRTPROCS\W32X86\CNMPD9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=053A5647034E7F7447EC2584D5CEED34 SIZE=27136
%PROGRAMFILES%\Canon\IJPLM\ijplmsvc.exe [IJPLMSVC] MD5=755519F49906B73C1FE9CBBF75E347EA SIZE=103808
%COMMONFILES%\LightScribe\LSSrvc.exe [Hewlett-Packard Company] [LightScribe] MD5=108333981C841EB0FF198AA5DFCF3D3B SIZE=73728
%COMMONFILES%\LightScribe\LSSProxy.dll [Hewlett-Packard Company] [LightScribe] MD5=D73B5BEFC8BB6E877A7E6437E2613FFA SIZE=110592
%COMMONFILES%\LightScribe\LSLog.dll [Hewlett-Packard Company] [LightScribe] MD5=61DACB0FBB1F7237FFEF769C23C903AF SIZE=33792
%COMMONFILES%\Nero\Nero BackItUp 4\NBService.exe [Nero AG] [Nero BackItUp] MD5=B90E093E7A7250906F1054418B5339C0 SIZE=935208
%COMMONFILES%\Nero\Nero BackItUp 4\NB.dll [Nero AG] [Nero BackItUp] MD5=D167CA427516B8C416B746117F69B870 SIZE=1160488
%COMMONFILES%\Nero\Nero BackItUp 4\LBFC.dll [Nero AG] [Nero BackItUp] MD5=5F5360825D2B829121E78E84D4CB8785 SIZE=451880
%COMMONFILES%\Nero\Nero BackItUp 4\NBBurn.dll [Nero AG] [Nero BackItUp] MD5=81DA72712DF46480E6248AEB35E15FCC SIZE=275752
%COMMONFILES%\Nero\Nero BackItUp 4\NeroAPIGlueLayerUnicode.dll [Nero AG] [NeroAPIGlueLayerUnicode] MD5=8E2D68A36FCB58A8DA57DE3E064F39CC SIZE=181544
%COMMONFILES%\Ulead Systems\DVD\ULCDRSvr.exe [Ulead Systems, Inc.] [Ulead Systems ULCDRSvr] MD5=332D341D92B933600D41953B08360DFB SIZE=49152
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PhoneBrowser.dll [Nokia] [Phone Browser] MD5=83B84455615CA7E25A4E15C3890E2D58 SIZE=563200
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSCM.dll [Nokia] [PC Suite Common Modules] MD5=0E51263EA765F9AB45AA8F04CADB22B9 SIZE=659456
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_cze.nlr [Nokia] [Nokia Phone Browser] MD5=40F8D9ED9B9B18E93EB247DEEF74E6F8 SIZE=28160
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr [Nokia] [Nokia Phone Browser] MD5=B058E4E76A4524DC13FC44B7829FEE5F SIZE=543744
%PROGRAMFILES%\ArcSoft\Software Suite\PhotoImpression 5\share\pihook.dll MD5=9064D871EF0125B58CC58AFC767F1E47 SIZE=53248
%COMMONFILES%\Adobe\Adobe Drive CS4\BIB.dll [Adobe Systems Incorporated] [BIB 2008/06/03-17:36:12] MD5=87AF77718E3BFB5A7766F575609C057A SIZE=276992
%COMMONFILES%\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL [Adobe Systems, Incorporated] [Adobe VersionCue] MD5=A12F7C8E171E67E3D71358BF3AF10163 SIZE=1414496
%WINDIR%\msa.exe MD5=09E37D3474E616F9D257B7B933DF14E0 SIZE=161792
%PROGRAMFILES%\Canon\MyPrinter\BJMyRes.dll [CANON INC.] [Canon My Printer] MD5=A5327EBE026244837F56DAD114C227A4 SIZE=90112
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSSupportSetup.DLL [Nokia] [Nokia Connectivity Library] MD5=F7C6D906CE4CF1EBE64DCE92DA54A7A9 SIZE=77824
%PROGRAMFILES%\PC Connectivity Solution\ConnAPI.DLL [Nokia.] [PC Connectivity Solution] MD5=6EDB0B1E5CE652CB7261CD1B96CB25FD SIZE=429056
%PROGRAMFILES%\PC Connectivity Solution\ConfServer.dll [Nokia] [PC Connectivity Solution] MD5=20CC8683720C80E4412AAA0F16DD0082 SIZE=188416
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\LaunchApplication_cze.NLR [Nokia] MD5=A4E0157639D6295A8B62B39105EFCC27 SIZE=13312
%USERPROFILE%\Local\Microsoft\Windows Sidebar\Gadgets\Stahování z netu.gadget\netlib.dll [Jonathan Abbott] [NIC Information .NET Wrapper] MD5=942889718D170DA972E710F9BC1D7BE5 SIZE=20480
%SYSDIR%\nvd3dum.dll [NVIDIA Corporation] [NVIDIA Windows Vista WDDM driver] MD5=DD6D6D7C8E644904D897FCED6B09BD02 SIZE=7592960
%PROGRAMFILES%\DAEMON Tools Lite\DTCommonRes.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=D8F8768B624847472AF413DF94972986 SIZE=1344048
%PROGRAMFILES%\DAEMON Tools Lite\DTLiteUI.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=F72C338065ABBDF20403E76E32FB304B SIZE=397872
%PROGRAMFILES%\DAEMON Tools Lite\Engine.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=4EB846BBBE51C67D066C5F9FA997CD58 SIZE=2318896
%PROGRAMFILES%\DAEMON Tools Lite\imgengine.dll [DT Soft Ltd.] [DAEMON Tools Image Engine] MD5=21500EE9073A483752BD3162F39E34DB SIZE=282056
%SYSDIR%\rundll32.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=51138BEEA3E2C21EC44D0932C71762A8 SIZE=44544
%PROGRAMFILES%\PC Connectivity Solution\ServiceLayer.exe [Nokia.] [PC Connectivity Solution] MD5=019AB047B932AD277A4DA2673E5CC19C SIZE=300544
%PROGRAMFILES%\PC Connectivity Solution\NclTools.dll [Nokia] [PC Connectivity Solution] MD5=A8AC6EBC90EEF4D3AF15D9B98F23A8EF SIZE=135168
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLIrDAMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=01EE6FDC94168D5F06EFC758470C3F7B SIZE=127488
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLRSMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=02B1B5469314AD2A14E1F9635B677F30 SIZE=156672
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLUSBMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=C1DDF1C948242F935B283BC8ED1DDB45 SIZE=167424
%PROGRAMFILES%\PC Connectivity Solution\Transports\NclMSBTMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=56E1439FEB2BEDB986F9045C140F9ADE SIZE=166400
%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=77FBD400984CF72BA0FC4B3489D65F74 SIZE=1121280
%COMMONFILES%\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll [Adobe Systems Incorporated] [Adobe Drive CS4] MD5=185D50DA1832A734DC9826037E82BE40 SIZE=79240
%PROGRAMFILES%\WinClamAVShield\ClamAVServer.dll [Crawler, LLC] [CLAMAVServer] MD5=06BB9EDA9B7D93BF078FC135977A82AF SIZE=135168
%PROGRAMFILES%\WinClamAVShield\libclamav.dll [ClamWin Antivirus] MD5=97290402B38494EF36A575335BBCC954 SIZE=973312
%PROGRAMFILES%\WinClamAVShield\libclamunrar_iface.dll [ClamWin Antivirus] MD5=ACAFC7FD7C8D0BBEB69999487BEB58FD SIZE=45056
%PROGRAMFILES%\WinClamAVShield\libclamunrar.dll [ClamWin Antivirus] MD5=4CD796A1EBF08D73A1571E78F3891163 SIZE=62464
%USERPROFILE%\Local\Google\Chrome\Application\chrome.exe [Google Inc.] [Google Chrome] MD5=A11B4EA812B993F18420A0FB54FF8605 SIZE=527344
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\chrome.dll [Google Inc.] [Google Chrome] MD5=D4F7EA9854D884B4292EC02B88244347 SIZE=14492144
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\icudt42.dll [IBM Corporation and others] [International Components for Unicode] MD5=79CBDE440E195A8ABEC2B053E0DB3AD7 SIZE=10947056
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\gears.dll [Google Inc.] [Google Gears 0.5.33.0] MD5=05B854551B611D688966F9E643EA5568 SIZE=3184112
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\rlz.dll MD5=FC627890FF28F6CA119C0EDF7FA7E64C SIZE=109040
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avcodec-52.dll MD5=BE8A290B996C1BFECB4A053FC50496B4 SIZE=1112560
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avutil-50.dll MD5=9839634F601D649A2C2F9B91E32F43F4 SIZE=61424
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avformat-52.dll MD5=5049828E3A9192EE7152A8E8D7686288 SIZE=135152
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe Systems, Inc.] [Shockwave Flash] MD5=F8EFDCFC440A420D6C1ECD245AB20207 SIZE=3884312
%PROGRAMFILES%\Securityessentials2010\SE2010.exe
%PROGRAMFILES%\softonicen\tbsoft.dl
%SYSDIR%\mf.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=80EFBCAFBD26956B69EE9CEFC93423B0 SIZE=3177984
%PROGRAMFILES%\TC UP\PLUGINS\Library\TCUPShellExt.dll MD5=22AB2F0F9179D94644124FF1B524E6BB SIZE=160256
%PROGRAMFILES%\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll [Nero AG] [Cover Designer] MD5=314F4D23D1B710AB7614600185E52034 SIZE=2241832
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\drivers\Afc.sys [Arcsoft, Inc.] [Arcsoft(R) ASPI Shell] MD5=A7B8A3A79D35215D798A300DF49ED23F SIZE=11776
%SYSDIR%\DRIVERS\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=B81C2B5616F6420A9941EA093A92B150 SIZE=23616
%SYSDIR%\svchost.exe -k LocalSystemNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNoNetwork
%SYSDIR%\DRIVERS\bowser.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FCAFAEF6798D7B51FF029F99A9898961 SIZE=69632
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k DcomLaunch
%SYSDIR%\Drivers\dfsc.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=8E09E52EE2E3CEB199EF3DD99CF9E3FB SIZE=78336
%SYSDIR%\drivers\discache.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=1A050B0274BFB3890703D490F330C0DA SIZE=32256
%SYSDIR%\drivers\EIO.sys [ASUSTeK Computer Inc.] [ASUS Kernel Mode Driver for NT] MD5=0DAF3544804650526751C478AECCCE63 SIZE=12288
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\svchost.exe -k LocalServiceAndNoImpersonation
%SYSDIR%\DRIVERS\mrxsmb10.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=6532ACBF612A8D340EF9E25E4FEF21EE SIZE=221184
%SYSDIR%\DRIVERS\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FC6B9FF600CC585EA38B12589BD4E246 SIZE=28240
%SYSDIR%\DRIVERS\nvm62x32.sys [NVIDIA Corporation] [NVIDIA Networking Driver] MD5=B5E37E31C053BC9950455A257526514B SIZE=347264
%SYSDIR%\DRIVERS\nvlddmkm.sys [NVIDIA Corporation] [NVIDIA Windows Kernel Mode Driver, Version 185.93] MD5=B0881DDA5A8160422561FFAB7F0008B1 SIZE=9853248
%SYSDIR%\DRIVERS\nvstor.sys [NVIDIA Corporation] [NVIDIA nForce(TM) SATA Driver] MD5=C99F251A5DE63C6F129CF71933ACED0F SIZE=142416
%SYSDIR%\svchost.exe -k LocalServicePeerNet
%SYSDIR%\svchost.exe -k NetworkServiceNetworkRestricted
%SYSDIR%\svchost.exe -k RPCSS
%SYSDIR%\Drivers\sptd.sys SIZE=691696
%SYSDIR%\svchost.exe -k imgsvc
%PROGRAMFILES%\WinFast\WFDTV\WFIOCTL.SYS [Leadtek Research Inc.] [WinFast MultiMedia Device Driver (Windows 2000/XP)] MD5=9BC98A4E3401D52ED860CF883CCB7478 SIZE=9446
%SYSDIR%\drivers\wfeaglxt.sys [Leadtek Research Inc.] [wfeaglxt.sys] MD5=439FFDA8B6BCF6F3D7C4F3A41AF55A4B SIZE=405632
%SYSDIR%\SearchIndexer.exe \Embedding
%SYSDIR%\drivers\sp_rsdrv2.sys [Crawler.com] [Spyware Terminator] MD5=CCD6E6C387E3EFA3BA5FE0E7883821C1 SIZE=141312
%SYSDIR%\mscoree.dll [Microsoft Corporation] [Microsoft® .NET Framework] MD5=3CDEDF4059A2BDBB9CD888EA1979D54C SIZE=278864
%SYSDIR%\inetcomm.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=5E5DFC8EE7EA23CCAD44085BFDA70FBC SIZE=740864
End of Report
Logfile of Spyware Terminator v2.3.0.494 (db:1.000.000.000)
Scan Time: 19.2.2010 13:12:07 length: 5925 s
Platform: VISTA (6.1.0.7600)
User: Admin
Boot Mode: Normal
Scan type: Full_Virus__Spyware_Scan
Scanned Objects: 153051 (Critical:3)
Filter: No System items, No Safe items, No Invalid items
Running Processes
MsMpEng.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
ijplmsvc.exe : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
LSSrvc.exe [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
NBService.exe [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
ULCDRSvr.exe [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
Yw1.exe : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
msa.exe : C:\Windows\msa.exe
DTVSchdl.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
WFWIZ.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
BJMYPRT.EXE [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
jusched.exe [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
vsnpstd3.exe : C:\Windows\vsnpstd3.exe
LaunchApplication.exe [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
msseces.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
uTorrent.exe [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
sidebar.exe [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
DTLite.exe [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
rundll32.exe [Microsoft Corporation] : C:\Windows\system32\rundll32.exe
ServiceLayer.exe [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
wmpnetwk.exe [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
Internet Settings
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
BHO
02 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - [Sun Microsystems, Inc.] : C:\Program Files\Java\jre6\bin\jp2ssv.dll
Toolbars
03 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - : C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Google Update : [Google Inc.] : C:\Users\Pepa\AppData\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, uTorrent : [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sidebar : [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LosAlamos : : C:\Windows\system32\sshnas21.dll
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TOY5KNQ8OC : : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFastDTV : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFast Schedule : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonSolutionMenu : [CANON INC.] : C:\Program Files\CANON\SOLUTIONMENU\CNSLMAIN.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonMyPrinter : [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched : [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AdobeCS4ServiceManager : [Adobe Systems Incorporated] : C:\Program Files\Common Files\ADOBE\CS4SERVICEMANAGER\CS4SERVICEMANAGER.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, snpstd3 : : C:\Windows\vsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tsnpstd3 : : C:\Windows\tsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, PCSuiteTrayApplication : [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSE : [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
Shell Extensions
MF ADTS Property Handler - {80009818-f38f-4af1-87b5-eadab9433e58} - [Microsoft Corporation] : C:\Windows\system32\mf.dll
TCUP: Shell Extention - {544F5441-4C43-4D44-5550-5348454C4C00} - : C:\Program Files\TC UP\PLUGINS\Library\TCUPShellExt.dll
NeroCoverEdLiveIcons Class - {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} - [Nero AG] : C:\Program Files\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll
Nokia Phone Browser - {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
Protocol Handler
MHTML Asynchronous Pluggable Protocol Handler - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - [Microsoft Corporation] : C:\Windows\system32\inetcomm.dll
Services
23 - [Arcsoft, Inc.] : C:\Windows\system32\drivers\Afc.sys
23 - [Advanced Micro Devices] : C:\Windows\system32\DRIVERS\amdxata.sys
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\bowser.sys
23 - [Microsoft Corporation] : C:\Windows\system32\Drivers\dfsc.sys
23 - [Microsoft Corporation] : C:\Windows\system32\drivers\discache.sys
23 - [ASUSTeK Computer Inc.] : C:\Windows\system32\drivers\EIO.sys
23 - : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
23 - [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mrxsmb10.sys
23 - [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mssmbios.sys
23 - [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvm62x32.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvlddmkm.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvstor.sys
23 - [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
23 - : C:\Windows\system32\Drivers\sptd.sys
23 - [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
23 - [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS
23 - [Leadtek Research Inc.] : C:\Windows\system32\drivers\wfeaglxt.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
23 - [Crawler.com] : C:\Windows\system32\drivers\sp_rsdrv2.sys
System Policies
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoActiveDesktopChanges : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop, NoChangingWallPaper : :
Threat Files
<Server-FTP.SFH.d> : C:\Program Files\TC UP\PLUGINS\Tools\HFS\hfs.exe
<AdTool.MyWebSearch.bm> : C:\Users\Pepa\AppData\Local\Temp\NERO1004803\unit_app_75\Toolbar.exe
Advanced Files Report
%PROGRAMFILES%\Microsoft Security Essentials\MsMpEng.exe [Microsoft Corporation] [Microsoft Malware Protection] MD5=FBE736AF381983A1D4ADBBF1FACF6976 SIZE=17904
%SYSDIR%\CNMLM9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=7227043C783F12F9FB1F312BFF791660 SIZE=230912
%SYSDIR%\spool\PRTPROCS\W32X86\CNMPD9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=053A5647034E7F7447EC2584D5CEED34 SIZE=27136
%PROGRAMFILES%\Canon\IJPLM\ijplmsvc.exe [IJPLMSVC] MD5=755519F49906B73C1FE9CBBF75E347EA SIZE=103808
%COMMONFILES%\LightScribe\LSSrvc.exe [Hewlett-Packard Company] [LightScribe] MD5=108333981C841EB0FF198AA5DFCF3D3B SIZE=73728
%COMMONFILES%\LightScribe\LSSProxy.dll [Hewlett-Packard Company] [LightScribe] MD5=D73B5BEFC8BB6E877A7E6437E2613FFA SIZE=110592
%COMMONFILES%\LightScribe\LSLog.dll [Hewlett-Packard Company] [LightScribe] MD5=61DACB0FBB1F7237FFEF769C23C903AF SIZE=33792
%COMMONFILES%\Nero\Nero BackItUp 4\NBService.exe [Nero AG] [Nero BackItUp] MD5=B90E093E7A7250906F1054418B5339C0 SIZE=935208
%COMMONFILES%\Nero\Nero BackItUp 4\NB.dll [Nero AG] [Nero BackItUp] MD5=D167CA427516B8C416B746117F69B870 SIZE=1160488
%COMMONFILES%\Nero\Nero BackItUp 4\LBFC.dll [Nero AG] [Nero BackItUp] MD5=5F5360825D2B829121E78E84D4CB8785 SIZE=451880
%COMMONFILES%\Nero\Nero BackItUp 4\NBBurn.dll [Nero AG] [Nero BackItUp] MD5=81DA72712DF46480E6248AEB35E15FCC SIZE=275752
%COMMONFILES%\Nero\Nero BackItUp 4\NeroAPIGlueLayerUnicode.dll [Nero AG] [NeroAPIGlueLayerUnicode] MD5=8E2D68A36FCB58A8DA57DE3E064F39CC SIZE=181544
%COMMONFILES%\Ulead Systems\DVD\ULCDRSvr.exe [Ulead Systems, Inc.] [Ulead Systems ULCDRSvr] MD5=332D341D92B933600D41953B08360DFB SIZE=49152
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PhoneBrowser.dll [Nokia] [Phone Browser] MD5=83B84455615CA7E25A4E15C3890E2D58 SIZE=563200
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSCM.dll [Nokia] [PC Suite Common Modules] MD5=0E51263EA765F9AB45AA8F04CADB22B9 SIZE=659456
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_cze.nlr [Nokia] [Nokia Phone Browser] MD5=40F8D9ED9B9B18E93EB247DEEF74E6F8 SIZE=28160
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr [Nokia] [Nokia Phone Browser] MD5=B058E4E76A4524DC13FC44B7829FEE5F SIZE=543744
%PROGRAMFILES%\ArcSoft\Software Suite\PhotoImpression 5\share\pihook.dll MD5=9064D871EF0125B58CC58AFC767F1E47 SIZE=53248
%COMMONFILES%\Adobe\Adobe Drive CS4\BIB.dll [Adobe Systems Incorporated] [BIB 2008/06/03-17:36:12] MD5=87AF77718E3BFB5A7766F575609C057A SIZE=276992
%COMMONFILES%\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL [Adobe Systems, Incorporated] [Adobe VersionCue] MD5=A12F7C8E171E67E3D71358BF3AF10163 SIZE=1414496
%WINDIR%\msa.exe MD5=09E37D3474E616F9D257B7B933DF14E0 SIZE=161792
%PROGRAMFILES%\Canon\MyPrinter\BJMyRes.dll [CANON INC.] [Canon My Printer] MD5=A5327EBE026244837F56DAD114C227A4 SIZE=90112
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSSupportSetup.DLL [Nokia] [Nokia Connectivity Library] MD5=F7C6D906CE4CF1EBE64DCE92DA54A7A9 SIZE=77824
%PROGRAMFILES%\PC Connectivity Solution\ConnAPI.DLL [Nokia.] [PC Connectivity Solution] MD5=6EDB0B1E5CE652CB7261CD1B96CB25FD SIZE=429056
%PROGRAMFILES%\PC Connectivity Solution\ConfServer.dll [Nokia] [PC Connectivity Solution] MD5=20CC8683720C80E4412AAA0F16DD0082 SIZE=188416
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\LaunchApplication_cze.NLR [Nokia] MD5=A4E0157639D6295A8B62B39105EFCC27 SIZE=13312
%USERPROFILE%\Local\Microsoft\Windows Sidebar\Gadgets\Stahování z netu.gadget\netlib.dll [Jonathan Abbott] [NIC Information .NET Wrapper] MD5=942889718D170DA972E710F9BC1D7BE5 SIZE=20480
%SYSDIR%\nvd3dum.dll [NVIDIA Corporation] [NVIDIA Windows Vista WDDM driver] MD5=DD6D6D7C8E644904D897FCED6B09BD02 SIZE=7592960
%PROGRAMFILES%\DAEMON Tools Lite\DTCommonRes.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=D8F8768B624847472AF413DF94972986 SIZE=1344048
%PROGRAMFILES%\DAEMON Tools Lite\DTLiteUI.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=F72C338065ABBDF20403E76E32FB304B SIZE=397872
%PROGRAMFILES%\DAEMON Tools Lite\Engine.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=4EB846BBBE51C67D066C5F9FA997CD58 SIZE=2318896
%PROGRAMFILES%\DAEMON Tools Lite\imgengine.dll [DT Soft Ltd.] [DAEMON Tools Image Engine] MD5=21500EE9073A483752BD3162F39E34DB SIZE=282056
%SYSDIR%\rundll32.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=51138BEEA3E2C21EC44D0932C71762A8 SIZE=44544
%PROGRAMFILES%\PC Connectivity Solution\ServiceLayer.exe [Nokia.] [PC Connectivity Solution] MD5=019AB047B932AD277A4DA2673E5CC19C SIZE=300544
%PROGRAMFILES%\PC Connectivity Solution\NclTools.dll [Nokia] [PC Connectivity Solution] MD5=A8AC6EBC90EEF4D3AF15D9B98F23A8EF SIZE=135168
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLIrDAMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=01EE6FDC94168D5F06EFC758470C3F7B SIZE=127488
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLRSMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=02B1B5469314AD2A14E1F9635B677F30 SIZE=156672
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLUSBMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=C1DDF1C948242F935B283BC8ED1DDB45 SIZE=167424
%PROGRAMFILES%\PC Connectivity Solution\Transports\NclMSBTMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=56E1439FEB2BEDB986F9045C140F9ADE SIZE=166400
%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=77FBD400984CF72BA0FC4B3489D65F74 SIZE=1121280
%COMMONFILES%\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll [Adobe Systems Incorporated] [Adobe Drive CS4] MD5=185D50DA1832A734DC9826037E82BE40 SIZE=79240
%PROGRAMFILES%\WinClamAVShield\ClamAVServer.dll [Crawler, LLC] [CLAMAVServer] MD5=06BB9EDA9B7D93BF078FC135977A82AF SIZE=135168
%PROGRAMFILES%\WinClamAVShield\libclamav.dll [ClamWin Antivirus] MD5=97290402B38494EF36A575335BBCC954 SIZE=973312
%PROGRAMFILES%\WinClamAVShield\libclamunrar_iface.dll [ClamWin Antivirus] MD5=ACAFC7FD7C8D0BBEB69999487BEB58FD SIZE=45056
%PROGRAMFILES%\WinClamAVShield\libclamunrar.dll [ClamWin Antivirus] MD5=4CD796A1EBF08D73A1571E78F3891163 SIZE=62464
%USERPROFILE%\Local\Google\Chrome\Application\chrome.exe [Google Inc.] [Google Chrome] MD5=A11B4EA812B993F18420A0FB54FF8605 SIZE=527344
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\chrome.dll [Google Inc.] [Google Chrome] MD5=D4F7EA9854D884B4292EC02B88244347 SIZE=14492144
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\icudt42.dll [IBM Corporation and others] [International Components for Unicode] MD5=79CBDE440E195A8ABEC2B053E0DB3AD7 SIZE=10947056
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\gears.dll [Google Inc.] [Google Gears 0.5.33.0] MD5=05B854551B611D688966F9E643EA5568 SIZE=3184112
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\rlz.dll MD5=FC627890FF28F6CA119C0EDF7FA7E64C SIZE=109040
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avcodec-52.dll MD5=BE8A290B996C1BFECB4A053FC50496B4 SIZE=1112560
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avutil-50.dll MD5=9839634F601D649A2C2F9B91E32F43F4 SIZE=61424
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avformat-52.dll MD5=5049828E3A9192EE7152A8E8D7686288 SIZE=135152
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe Systems, Inc.] [Shockwave Flash] MD5=F8EFDCFC440A420D6C1ECD245AB20207 SIZE=3884312
%PROGRAMFILES%\Securityessentials2010\SE2010.exe
%PROGRAMFILES%\softonicen\tbsoft.dl
%SYSDIR%\mf.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=80EFBCAFBD26956B69EE9CEFC93423B0 SIZE=3177984
%PROGRAMFILES%\TC UP\PLUGINS\Library\TCUPShellExt.dll MD5=22AB2F0F9179D94644124FF1B524E6BB SIZE=160256
%PROGRAMFILES%\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll [Nero AG] [Cover Designer] MD5=314F4D23D1B710AB7614600185E52034 SIZE=2241832
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\drivers\Afc.sys [Arcsoft, Inc.] [Arcsoft(R) ASPI Shell] MD5=A7B8A3A79D35215D798A300DF49ED23F SIZE=11776
%SYSDIR%\DRIVERS\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=B81C2B5616F6420A9941EA093A92B150 SIZE=23616
%SYSDIR%\svchost.exe -k LocalSystemNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNoNetwork
%SYSDIR%\DRIVERS\bowser.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FCAFAEF6798D7B51FF029F99A9898961 SIZE=69632
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k DcomLaunch
%SYSDIR%\Drivers\dfsc.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=8E09E52EE2E3CEB199EF3DD99CF9E3FB SIZE=78336
%SYSDIR%\drivers\discache.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=1A050B0274BFB3890703D490F330C0DA SIZE=32256
%SYSDIR%\drivers\EIO.sys [ASUSTeK Computer Inc.] [ASUS Kernel Mode Driver for NT] MD5=0DAF3544804650526751C478AECCCE63 SIZE=12288
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\svchost.exe -k LocalServiceAndNoImpersonation
%SYSDIR%\DRIVERS\mrxsmb10.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=6532ACBF612A8D340EF9E25E4FEF21EE SIZE=221184
%SYSDIR%\DRIVERS\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FC6B9FF600CC585EA38B12589BD4E246 SIZE=28240
%SYSDIR%\DRIVERS\nvm62x32.sys [NVIDIA Corporation] [NVIDIA Networking Driver] MD5=B5E37E31C053BC9950455A257526514B SIZE=347264
%SYSDIR%\DRIVERS\nvlddmkm.sys [NVIDIA Corporation] [NVIDIA Windows Kernel Mode Driver, Version 185.93] MD5=B0881DDA5A8160422561FFAB7F0008B1 SIZE=9853248
%SYSDIR%\DRIVERS\nvstor.sys [NVIDIA Corporation] [NVIDIA nForce(TM) SATA Driver] MD5=C99F251A5DE63C6F129CF71933ACED0F SIZE=142416
%SYSDIR%\svchost.exe -k LocalServicePeerNet
%SYSDIR%\svchost.exe -k NetworkServiceNetworkRestricted
%SYSDIR%\svchost.exe -k RPCSS
%SYSDIR%\Drivers\sptd.sys SIZE=691696
%SYSDIR%\svchost.exe -k imgsvc
%PROGRAMFILES%\WinFast\WFDTV\WFIOCTL.SYS [Leadtek Research Inc.] [WinFast MultiMedia Device Driver (Windows 2000/XP)] MD5=9BC98A4E3401D52ED860CF883CCB7478 SIZE=9446
%SYSDIR%\drivers\wfeaglxt.sys [Leadtek Research Inc.] [wfeaglxt.sys] MD5=439FFDA8B6BCF6F3D7C4F3A41AF55A4B SIZE=405632
%SYSDIR%\SearchIndexer.exe \Embedding
%SYSDIR%\drivers\sp_rsdrv2.sys [Crawler.com] [Spyware Terminator] MD5=CCD6E6C387E3EFA3BA5FE0E7883821C1 SIZE=141312
%SYSDIR%\mscoree.dll [Microsoft Corporation] [Microsoft® .NET Framework] MD5=3CDEDF4059A2BDBB9CD888EA1979D54C SIZE=278864
%SYSDIR%\inetcomm.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=5E5DFC8EE7EA23CCAD44085BFDA70FBC SIZE=740864
End of Report
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?

- Podle návodu v odkazu nainstalujte, poté dejte úplný sken.
- Nic nemažte
MBAM má občas falešné detekce a mohl by smazat např. systémové soubory.
- Log vložte sem.
Re: Nejde spustit správce úloh jedná se o vir?
Staženo a spuštěna rychlá kontrala , čekám již jen na výsledek mmnt 

- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?
Toto nalezeno , a teť co dál ? Odstranit označené?
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3760
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
19.2.2010 15:09:46
mbam-log-2010-02-19 (15-09-33).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 101203
Uplynulý čas: 3 minute(s), 58 second(s)
Infikované procesy v paměti: 1
Infikované moduly v paměti: 1
Infikované klíče registru: 5
Infikované hodnoty registru: 2
Infikované datové položky registru: 14
Infikované adresáře: 0
Infikované soubory: 9
Infikované procesy v paměti:
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
Infikované moduly v paměti:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
Infikované klíče registru:
HKEY_CURRENT_USER\SOFTWARE\SE2010 (Rogue.Securityessentials2010) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ROUA3O12PW (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\TOY5KNQ8OC (Trojan.FakeAlert) -> No action taken.
Infikované hodnoty registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\losalamos (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\toy5knq8oc (Trojan.FakeAlert) -> No action taken.
Infikované datové položky registru:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\is-software-download.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-soft-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-software-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\activedesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
C:\Windows\System32\helpers32.dll (Trojan.Agent) -> No action taken.
C:\Users\Pepa\AppData\Local\Temp\Ywz.exe (Trojan.Fraudpack) -> No action taken.
C:\Windows\System32\warnings.html (Malware.Trace) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Windows\Start Menu\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> No action taken.
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3760
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
19.2.2010 15:09:46
mbam-log-2010-02-19 (15-09-33).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 101203
Uplynulý čas: 3 minute(s), 58 second(s)
Infikované procesy v paměti: 1
Infikované moduly v paměti: 1
Infikované klíče registru: 5
Infikované hodnoty registru: 2
Infikované datové položky registru: 14
Infikované adresáře: 0
Infikované soubory: 9
Infikované procesy v paměti:
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
Infikované moduly v paměti:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
Infikované klíče registru:
HKEY_CURRENT_USER\SOFTWARE\SE2010 (Rogue.Securityessentials2010) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ROUA3O12PW (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\TOY5KNQ8OC (Trojan.FakeAlert) -> No action taken.
Infikované hodnoty registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\losalamos (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\toy5knq8oc (Trojan.FakeAlert) -> No action taken.
Infikované datové položky registru:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\is-software-download.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-soft-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-software-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\activedesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
C:\Windows\System32\helpers32.dll (Trojan.Agent) -> No action taken.
C:\Users\Pepa\AppData\Local\Temp\Ywz.exe (Trojan.Fraudpack) -> No action taken.
C:\Windows\System32\warnings.html (Malware.Trace) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Windows\Start Menu\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> No action taken.
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?
Vše, co našel MBAM smažte a restartujte PC, poté dejte "úplný sken", zase nic nemazat a log sem.
Re: Nejde spustit správce úloh jedná se o vir?
Všiml jsem si pozdě že tam byla úplná kontrola takže jsem nic nemazal a dal jsem úplnou kontrolu a znova testovat už se na tom pracuje
momentík

- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?
Je to tu :
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3760
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
19.2.2010 15:48:16
mbam-log-2010-02-19 (15-48-08).txt
Typ kontroly: Kompletní kontrola (C:\|R:\|)
Zkontrolované objekty: 215599
Uplynulý čas: 33 minute(s), 8 second(s)
Infikované procesy v paměti: 1
Infikované moduly v paměti: 1
Infikované klíče registru: 5
Infikované hodnoty registru: 2
Infikované datové položky registru: 14
Infikované adresáře: 0
Infikované soubory: 9
Infikované procesy v paměti:
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
Infikované moduly v paměti:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
Infikované klíče registru:
HKEY_CURRENT_USER\SOFTWARE\SE2010 (Rogue.Securityessentials2010) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ROUA3O12PW (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\TOY5KNQ8OC (Trojan.FakeAlert) -> No action taken.
Infikované hodnoty registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\losalamos (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\toy5knq8oc (Trojan.FakeAlert) -> No action taken.
Infikované datové položky registru:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\is-software-download.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-soft-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-software-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\activedesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
C:\Users\Pepa\AppData\Local\Temp\Ywz.exe (Trojan.Fraudpack) -> No action taken.
C:\Windows\System32\helpers32.dll (Trojan.Agent) -> No action taken.
C:\Windows\System32\warnings.html (Malware.Trace) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Windows\Start Menu\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> No action taken.
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3760
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
19.2.2010 15:48:16
mbam-log-2010-02-19 (15-48-08).txt
Typ kontroly: Kompletní kontrola (C:\|R:\|)
Zkontrolované objekty: 215599
Uplynulý čas: 33 minute(s), 8 second(s)
Infikované procesy v paměti: 1
Infikované moduly v paměti: 1
Infikované klíče registru: 5
Infikované hodnoty registru: 2
Infikované datové položky registru: 14
Infikované adresáře: 0
Infikované soubory: 9
Infikované procesy v paměti:
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
Infikované moduly v paměti:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
Infikované klíče registru:
HKEY_CURRENT_USER\SOFTWARE\SE2010 (Rogue.Securityessentials2010) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\ROUA3O12PW (Trojan.FakeAlert) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\TOY5KNQ8OC (Trojan.FakeAlert) -> No action taken.
Infikované hodnoty registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\losalamos (Trojan.Downloader) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\toy5knq8oc (Trojan.FakeAlert) -> No action taken.
Infikované datové položky registru:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\is-software-download.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-soft-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-software-package.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com\http (Hijack.TrustedZone) -> Bad: (2) Good: (4) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\activedesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetActiveDesktop (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
C:\Windows\System32\sshnas21.dll (Trojan.Downloader) -> No action taken.
C:\Users\Pepa\AppData\Local\Temp\Ywz.exe (Trojan.Fraudpack) -> No action taken.
C:\Windows\System32\helpers32.dll (Trojan.Agent) -> No action taken.
C:\Windows\System32\warnings.html (Malware.Trace) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Users\Pepa\AppData\Roaming\Microsoft\Windows\Start Menu\Security essentials 2010.lnk (Rogue.SecurityEssentials2010) -> No action taken.
C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> No action taken.
C:\Windows\msa.exe (Trojan.Agent) -> No action taken.
C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?


Re: Nejde spustit správce úloh jedná se o vir?
Caroprd111 : Děkuju moc pomohlo to , už to funguje jak má






- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Nejde spustit správce úloh jedná se o vir?

Musíme ověřit, jestli tam něco nezůstalo

Re: Nejde spustit správce úloh jedná se o vir?
Je toho trochu víc , snad je to čisté 
Logfile of random's system information tool 1.06 (written by random/random)
Run by Pepa at 2010-02-19 16:20:16
Microsoft Windows 7 Ultimate Service Pack 3
System drive C: has 669 GB (70%) free of 954 GB
Total RAM: 2047 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:20:18, on 19.2.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\vsnpstd3.exe
C:\Windows\tsnpstd3.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Pepa.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2009787
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: &Crawler lišta - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [snpstd3] C:\Windows\vsnpstd3.exe
O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Pepa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O13 - Gopher Prefix:
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 6124 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2283332391-3664743815-2430706552-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2283332391-3664743815-2430706552-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2008-09-10 1194496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d6902984-559d-4d30-83ba-6315d7c84cd1}]
softonicen Toolbar - C:\Program Files\softonicen\tbsoft.dll [2009-12-31 2349080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-13 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{d6902984-559d-4d30-83ba-6315d7c84cd1} - softonicen Toolbar - C:\Program Files\softonicen\tbsoft.dll [2009-12-31 2349080]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler lišta - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2008-09-10 1194496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2007-11-16 90112]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2007-11-15 2850816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-10 689488]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-03 1848648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"snpstd3"=C:\Windows\vsnpstd3.exe [2007-05-10 835584]
"tsnpstd3"=C:\Windows\tsnpstd3.exe [2009-06-30 339968]
"PCSuiteTrayApplication"=C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe [2007-06-18 271360]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2010-01-29 1095872]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-02-19 1783808]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Pepa\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-12 135664]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2010-02-12 287536]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"ASUS SmartDoctor"=C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe [2007-03-28 1110016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll, snapapi32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktopChanges"=0
"NoSetActiveDesktop"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktopChanges"=
"NoSetActiveDesktop"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6a9102bc-18a1-11df-8f27-001966dac08a}]
shell\AutoRun\command - M:\setup.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-02-19 16:17:16 ----D---- C:\Program Files\trend micro
2010-02-19 16:17:15 ----D---- C:\rsit
2010-02-19 15:04:15 ----D---- C:\Users\Pepa\AppData\Roaming\Malwarebytes
2010-02-19 15:04:09 ----D---- C:\ProgramData\Malwarebytes
2010-02-19 15:04:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-02-19 13:03:45 ----D---- C:\Program Files\WinClamAVShield
2010-02-19 13:01:52 ----D---- C:\Program Files\Crawler
2010-02-19 13:01:34 ----D---- C:\Users\Pepa\AppData\Roaming\Spyware Terminator
2010-02-19 13:01:34 ----D---- C:\ProgramData\Spyware Terminator
2010-02-19 13:01:21 ----D---- C:\Program Files\Spyware Terminator
2010-02-19 00:37:16 ----D---- C:\Program Files\Microsoft Security Essentials
2010-02-19 00:36:32 ----SHD---- C:\Config.Msi
2010-02-19 00:18:15 ----A---- C:\Windows\ntbtlog.txt
2010-02-19 00:10:56 ----D---- C:\Windows\system32\Adobe
2010-02-18 23:49:32 ----D---- C:\Users\Pepa\AppData\Roaming\SumatraPDF
2010-02-17 21:24:02 ----A---- C:\Windows\system32\CmdLineExt.dll
2010-02-15 20:19:18 ----D---- C:\Users\Pepa\AppData\Roaming\Facebook
2010-02-15 03:00:55 ----D---- C:\Program Files\MSXML 4.0
2010-02-14 20:01:31 ----D---- C:\ProgramData\PC Suite
2010-02-14 20:01:03 ----D---- C:\Users\Pepa\AppData\Roaming\Nokia
2010-02-14 20:00:49 ----D---- C:\Program Files\Common Files\PCSuite
2010-02-14 20:00:48 ----D---- C:\Program Files\Common Files\Nokia
2010-02-14 20:00:42 ----D---- C:\Program Files\DIFX
2010-02-14 20:00:39 ----D---- C:\Users\Pepa\AppData\Roaming\PC Suite
2010-02-14 20:00:34 ----D---- C:\Program Files\PC Connectivity Solution
2010-02-14 20:00:22 ----A---- C:\Windows\system32\nmwcdcls.dll
2010-02-14 20:00:21 ----D---- C:\Program Files\Nokia
2010-02-14 19:57:15 ----D---- C:\ProgramData\Installations
2010-02-14 18:09:06 ----D---- C:\PFiles
2010-02-14 15:50:05 ----D---- C:\Windows\Downloaded Installations
2010-02-14 15:44:00 ----D---- C:\ProgramData\LightScribe
2010-02-14 15:43:59 ----D---- C:\Users\Pepa\AppData\Roaming\Nero
2010-02-14 15:33:41 ----HD---- C:\Windows\PIF
2010-02-14 15:28:55 ----A---- C:\Windows\Irremote.ini
2010-02-14 15:26:08 ----A---- C:\Windows\amcap.exe
2010-02-14 15:26:06 ----A---- C:\Windows\vsnpstd3.exe
2010-02-14 15:26:05 ----A---- C:\Windows\tsnpstd3.exe
2010-02-14 15:26:05 ----A---- C:\Windows\snpstd3.ini
2010-02-14 15:26:01 ----D---- C:\Program Files\Common Files\snpstd3
2010-02-14 15:26:01 ----A---- C:\Windows\system32\vsnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\system32\rsnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\system32\csnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\csnpstd3.dll
2010-02-14 15:25:32 ----D---- C:\Users\Pepa\AppData\Roaming\InstallShield
2010-02-14 15:09:55 ----D---- C:\Program Files\Nero
2010-02-14 15:09:05 ----D---- C:\ProgramData\Nero
2010-02-14 15:09:03 ----D---- C:\Program Files\Common Files\Nero
2010-02-14 15:08:35 ----D---- C:\Program Files\Common Files\LightScribe
2010-02-14 14:47:57 ----D---- C:\Users\Pepa\AppData\Roaming\HEXelon
2010-02-14 14:46:53 ----D---- C:\Program Files\TC UP
2010-02-14 14:19:28 ----N---- C:\Windows\system32\pxcpya64.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\vxblock.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxwave.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxsfs.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxmas.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxinsa64.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxhpinst.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxdrv.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxafs.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\px.dll
2010-02-14 14:19:22 ----D---- C:\Users\Pepa\AppData\Roaming\Winamp
2010-02-14 14:19:22 ----D---- C:\Program Files\Winamp
2010-02-14 11:57:47 ----D---- C:\Program Files\Common Files\Electronic Arts
2010-02-14 10:06:26 ----D---- C:\Windows\Sun
2010-02-13 22:55:26 ----D---- C:\Program Files\PlayReady
2010-02-13 21:51:47 ----AD---- C:\ProgramData\TEMP
2010-02-13 21:51:21 ----D---- C:\Program Files\CamSpace
2010-02-13 16:00:01 ----D---- C:\Windows\ulead.dat
2010-02-13 16:00:01 ----A---- C:\Windows\ulead32.ini
2010-02-13 15:30:17 ----A---- C:\Windows\game.ini
2010-02-13 15:22:56 ----D---- C:\Games
2010-02-13 15:19:14 ----SHD---- C:\Windows\ftpcache
2010-02-13 14:29:27 ----D---- C:\Program Files\Adobe Media Player
2010-02-13 14:25:49 ----D---- C:\Program Files\Common Files\Adobe AIR
2010-02-13 14:22:15 ----D---- C:\ProgramData\Adobe
2010-02-13 14:21:48 ----D---- C:\Program Files\Adobe
2010-02-13 14:19:48 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-02-13 14:15:08 ----D---- C:\Program Files\Common Files\Adobe
2010-02-13 14:09:54 ----D---- C:\Program Files\DAEMON Tools Toolbar
2010-02-13 14:07:53 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-13 14:07:23 ----D---- C:\Users\Pepa\AppData\Roaming\DAEMON Tools Lite
2010-02-13 14:07:21 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-02-13 13:43:26 ----D---- C:\Users\Pepa\AppData\Roaming\Media Player Classic
2010-02-13 13:43:05 ----D---- C:\Program Files\MPC HomeCinema
2010-02-13 13:08:32 ----D---- C:\ProgramData\Sun
2010-02-13 13:08:32 ----D---- C:\Program Files\Common Files\Java
2010-02-13 13:07:48 ----A---- C:\Windows\system32\javaws.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\javaw.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\java.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\deploytk.dll
2010-02-13 13:07:32 ----D---- C:\Program Files\Java
2010-02-13 11:08:00 ----A---- C:\Windows\system32\Dvbpws.dll
2010-02-13 11:04:37 ----D---- C:\WinFast WorkArea
2010-02-13 10:33:29 ----D---- C:\Users\Pepa\AppData\Roaming\dvdcss
2010-02-13 10:33:26 ----D---- C:\Users\Pepa\AppData\Roaming\vlc
2010-02-13 10:32:26 ----D---- C:\Program Files\VideoLAN
2010-02-13 10:31:40 ----D---- C:\Program Files\DVDVideoSoft
2010-02-13 10:31:40 ----D---- C:\Program Files\Common Files\DVDVideoSoft
2010-02-13 10:23:33 ----D---- C:\Program Files\The KMPlayer
2010-02-13 10:23:17 ----D---- C:\Program Files\softonicen
2010-02-13 10:23:17 ----D---- C:\Program Files\Conduit
2010-02-13 09:08:25 ----D---- C:\Program Files\ASUS
2010-02-13 09:06:30 ----D---- C:\Programy
2010-02-13 09:02:17 ----D---- C:\Users\Pepa\AppData\Roaming\ArcSoft
2010-02-13 08:09:58 ----D---- C:\Stahované
2010-02-13 07:52:24 ----HD---- C:\ProgramData\CanonIJSolutionMenu
2010-02-13 07:52:18 ----HD---- C:\ProgramData\CanonIJMyPrinter
2010-02-13 07:52:13 ----D---- C:\ProgramData\CanonIJPLM
2010-02-13 07:51:17 ----D---- C:\Program Files\Common Files\CANON
2010-02-13 07:49:11 ----HD---- C:\ProgramData\CanonBJ
2010-02-13 07:49:06 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2010-02-13 07:48:52 ----A---- C:\Windows\system32\CNMLM9H.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240O.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240L.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240I.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240C.DLL
2010-02-13 07:48:37 ----HD---- C:\Program Files\CanonBJ
2010-02-13 07:47:57 ----D---- C:\Program Files\Canon
2010-02-13 07:47:07 ----A---- C:\Windows\system32\gdiplus.dll
2010-02-13 07:45:28 ----D---- C:\Program Files\ArcSoft
2010-02-13 07:45:28 ----A---- C:\Windows\PCDLIB32.DLL
2010-02-13 07:43:30 ----D---- C:\Program Files\Common Files\ArcSoft
2010-02-13 07:42:26 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-02-13 07:41:32 ----D---- C:\WFDB
2010-02-13 07:41:25 ----D---- C:\Program Files\WinFast
2010-02-13 07:36:51 ----D---- C:\Windows\system32\WinFast
2010-02-13 07:36:50 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-13 07:36:45 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-13 07:29:51 ----A---- C:\Windows\Ascd_tmp.ini
2010-02-13 02:25:43 ----D---- C:\Windows\Panther
2010-02-12 20:43:04 ----D---- C:\Users\Pepa\AppData\Roaming\Macromedia
2010-02-12 20:43:04 ----D---- C:\Users\Pepa\AppData\Roaming\Adobe
2010-02-12 20:43:03 ----D---- C:\Windows\system32\Macromed
2010-02-12 20:39:31 ----D---- C:\Program Files\uTorrent
2010-02-12 20:38:47 ----D---- C:\Users\Pepa\AppData\Roaming\uTorrent
2010-02-12 19:18:33 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-02-12 19:18:33 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-02-12 19:18:33 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xinput1_3.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx10.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xinput1_2.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xinput1_1.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-02-12 19:17:23 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-02-12 19:14:49 ----HD---- C:\Windows\msdownld.tmp
2010-02-12 19:14:45 ----D---- C:\Windows\system32\directx
2010-02-12 19:13:29 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-12 19:13:23 ----SHD---- C:\Windows\Installer
2010-02-12 18:35:03 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-12 18:34:37 ----A---- C:\Windows\system32\MRT.exe
2010-02-12 18:33:26 ----A---- C:\Windows\system32\tzres.dll
2010-02-12 18:33:18 ----N---- C:\Windows\system32\MpSigStub.exe
2010-02-12 18:32:05 ----A---- C:\Windows\system32\winlogon.exe
2010-02-12 18:32:05 ----A---- C:\Windows\system32\msasn1.dll
2010-02-12 18:32:05 ----A---- C:\Windows\explorer.exe
2010-02-12 18:32:04 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\quartz.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msyuv.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msrle32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\avifil32.dll
2010-02-12 18:32:03 ----A---- C:\Windows\system32\wmp.dll
2010-02-12 18:32:02 ----A---- C:\Windows\system32\winresume.exe
2010-02-12 18:32:02 ----A---- C:\Windows\system32\winload.exe
2010-02-12 18:32:02 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-12 18:32:01 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-12 18:31:57 ----A---- C:\Windows\system32\mshtml.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\wininet.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\urlmon.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\ieframe.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\t2embed.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\fontsub.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\atmfd.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-12 17:56:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-12 17:51:36 ----D---- C:\Users\Pepa\AppData\Roaming\Identities
2010-02-12 17:51:22 ----SD---- C:\Users\Pepa\AppData\Roaming\Microsoft
2010-02-12 17:51:22 ----D---- C:\Users\Pepa\AppData\Roaming\Media Center Programs
2010-02-12 17:51:16 ----SHD---- C:\Recovery
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Šablony
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Plocha
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Oblíbené položky
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Nabídka Start
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Dokumenty
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Data aplikací
2010-02-12 17:29:24 ----D---- C:\Windows\SoftwareDistribution
2010-02-12 17:26:48 ----SHD---- C:\System Volume Information

Logfile of random's system information tool 1.06 (written by random/random)
Run by Pepa at 2010-02-19 16:20:16
Microsoft Windows 7 Ultimate Service Pack 3
System drive C: has 669 GB (70%) free of 954 GB
Total RAM: 2047 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:20:18, on 19.2.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\vsnpstd3.exe
C:\Windows\tsnpstd3.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Pepa\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Pepa.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2009787
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: softonicen Toolbar - {d6902984-559d-4d30-83ba-6315d7c84cd1} - C:\Program Files\softonicen\tbsoft.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: &Crawler lišta - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [snpstd3] C:\Windows\vsnpstd3.exe
O4 - HKLM\..\Run: [tsnpstd3] C:\Windows\tsnpstd3.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Pepa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ASUS SmartDoctor] C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe /start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O13 - Gopher Prefix:
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 6124 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2283332391-3664743815-2430706552-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2283332391-3664743815-2430706552-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2008-09-10 1194496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d6902984-559d-4d30-83ba-6315d7c84cd1}]
softonicen Toolbar - C:\Program Files\softonicen\tbsoft.dll [2009-12-31 2349080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-13 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{d6902984-559d-4d30-83ba-6315d7c84cd1} - softonicen Toolbar - C:\Program Files\softonicen\tbsoft.dll [2009-12-31 2349080]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler lišta - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2008-09-10 1194496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2007-11-16 90112]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2007-11-15 2850816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-10 689488]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-03 1848648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"snpstd3"=C:\Windows\vsnpstd3.exe [2007-05-10 835584]
"tsnpstd3"=C:\Windows\tsnpstd3.exe [2009-06-30 339968]
"PCSuiteTrayApplication"=C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe [2007-06-18 271360]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2010-01-29 1095872]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-02-19 1783808]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Pepa\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-12 135664]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2010-02-12 287536]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"ASUS SmartDoctor"=C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe [2007-03-28 1110016]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll, snapapi32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktopChanges"=0
"NoSetActiveDesktop"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktopChanges"=
"NoSetActiveDesktop"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6a9102bc-18a1-11df-8f27-001966dac08a}]
shell\AutoRun\command - M:\setup.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-02-19 16:17:16 ----D---- C:\Program Files\trend micro
2010-02-19 16:17:15 ----D---- C:\rsit
2010-02-19 15:04:15 ----D---- C:\Users\Pepa\AppData\Roaming\Malwarebytes
2010-02-19 15:04:09 ----D---- C:\ProgramData\Malwarebytes
2010-02-19 15:04:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-02-19 13:03:45 ----D---- C:\Program Files\WinClamAVShield
2010-02-19 13:01:52 ----D---- C:\Program Files\Crawler
2010-02-19 13:01:34 ----D---- C:\Users\Pepa\AppData\Roaming\Spyware Terminator
2010-02-19 13:01:34 ----D---- C:\ProgramData\Spyware Terminator
2010-02-19 13:01:21 ----D---- C:\Program Files\Spyware Terminator
2010-02-19 00:37:16 ----D---- C:\Program Files\Microsoft Security Essentials
2010-02-19 00:36:32 ----SHD---- C:\Config.Msi
2010-02-19 00:18:15 ----A---- C:\Windows\ntbtlog.txt
2010-02-19 00:10:56 ----D---- C:\Windows\system32\Adobe
2010-02-18 23:49:32 ----D---- C:\Users\Pepa\AppData\Roaming\SumatraPDF
2010-02-17 21:24:02 ----A---- C:\Windows\system32\CmdLineExt.dll
2010-02-15 20:19:18 ----D---- C:\Users\Pepa\AppData\Roaming\Facebook
2010-02-15 03:00:55 ----D---- C:\Program Files\MSXML 4.0
2010-02-14 20:01:31 ----D---- C:\ProgramData\PC Suite
2010-02-14 20:01:03 ----D---- C:\Users\Pepa\AppData\Roaming\Nokia
2010-02-14 20:00:49 ----D---- C:\Program Files\Common Files\PCSuite
2010-02-14 20:00:48 ----D---- C:\Program Files\Common Files\Nokia
2010-02-14 20:00:42 ----D---- C:\Program Files\DIFX
2010-02-14 20:00:39 ----D---- C:\Users\Pepa\AppData\Roaming\PC Suite
2010-02-14 20:00:34 ----D---- C:\Program Files\PC Connectivity Solution
2010-02-14 20:00:22 ----A---- C:\Windows\system32\nmwcdcls.dll
2010-02-14 20:00:21 ----D---- C:\Program Files\Nokia
2010-02-14 19:57:15 ----D---- C:\ProgramData\Installations
2010-02-14 18:09:06 ----D---- C:\PFiles
2010-02-14 15:50:05 ----D---- C:\Windows\Downloaded Installations
2010-02-14 15:44:00 ----D---- C:\ProgramData\LightScribe
2010-02-14 15:43:59 ----D---- C:\Users\Pepa\AppData\Roaming\Nero
2010-02-14 15:33:41 ----HD---- C:\Windows\PIF
2010-02-14 15:28:55 ----A---- C:\Windows\Irremote.ini
2010-02-14 15:26:08 ----A---- C:\Windows\amcap.exe
2010-02-14 15:26:06 ----A---- C:\Windows\vsnpstd3.exe
2010-02-14 15:26:05 ----A---- C:\Windows\tsnpstd3.exe
2010-02-14 15:26:05 ----A---- C:\Windows\snpstd3.ini
2010-02-14 15:26:01 ----D---- C:\Program Files\Common Files\snpstd3
2010-02-14 15:26:01 ----A---- C:\Windows\system32\vsnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\system32\rsnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\system32\csnpstd3.dll
2010-02-14 15:26:01 ----A---- C:\Windows\csnpstd3.dll
2010-02-14 15:25:32 ----D---- C:\Users\Pepa\AppData\Roaming\InstallShield
2010-02-14 15:09:55 ----D---- C:\Program Files\Nero
2010-02-14 15:09:05 ----D---- C:\ProgramData\Nero
2010-02-14 15:09:03 ----D---- C:\Program Files\Common Files\Nero
2010-02-14 15:08:35 ----D---- C:\Program Files\Common Files\LightScribe
2010-02-14 14:47:57 ----D---- C:\Users\Pepa\AppData\Roaming\HEXelon
2010-02-14 14:46:53 ----D---- C:\Program Files\TC UP
2010-02-14 14:19:28 ----N---- C:\Windows\system32\pxcpya64.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\vxblock.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxwave.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxsfs.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxmas.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxinsa64.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxhpinst.exe
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxdrv.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\pxafs.dll
2010-02-14 14:19:27 ----N---- C:\Windows\system32\px.dll
2010-02-14 14:19:22 ----D---- C:\Users\Pepa\AppData\Roaming\Winamp
2010-02-14 14:19:22 ----D---- C:\Program Files\Winamp
2010-02-14 11:57:47 ----D---- C:\Program Files\Common Files\Electronic Arts
2010-02-14 10:06:26 ----D---- C:\Windows\Sun
2010-02-13 22:55:26 ----D---- C:\Program Files\PlayReady
2010-02-13 21:51:47 ----AD---- C:\ProgramData\TEMP
2010-02-13 21:51:21 ----D---- C:\Program Files\CamSpace
2010-02-13 16:00:01 ----D---- C:\Windows\ulead.dat
2010-02-13 16:00:01 ----A---- C:\Windows\ulead32.ini
2010-02-13 15:30:17 ----A---- C:\Windows\game.ini
2010-02-13 15:22:56 ----D---- C:\Games
2010-02-13 15:19:14 ----SHD---- C:\Windows\ftpcache
2010-02-13 14:29:27 ----D---- C:\Program Files\Adobe Media Player
2010-02-13 14:25:49 ----D---- C:\Program Files\Common Files\Adobe AIR
2010-02-13 14:22:15 ----D---- C:\ProgramData\Adobe
2010-02-13 14:21:48 ----D---- C:\Program Files\Adobe
2010-02-13 14:19:48 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-02-13 14:15:08 ----D---- C:\Program Files\Common Files\Adobe
2010-02-13 14:09:54 ----D---- C:\Program Files\DAEMON Tools Toolbar
2010-02-13 14:07:53 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-13 14:07:23 ----D---- C:\Users\Pepa\AppData\Roaming\DAEMON Tools Lite
2010-02-13 14:07:21 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-02-13 13:43:26 ----D---- C:\Users\Pepa\AppData\Roaming\Media Player Classic
2010-02-13 13:43:05 ----D---- C:\Program Files\MPC HomeCinema
2010-02-13 13:08:32 ----D---- C:\ProgramData\Sun
2010-02-13 13:08:32 ----D---- C:\Program Files\Common Files\Java
2010-02-13 13:07:48 ----A---- C:\Windows\system32\javaws.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\javaw.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\java.exe
2010-02-13 13:07:48 ----A---- C:\Windows\system32\deploytk.dll
2010-02-13 13:07:32 ----D---- C:\Program Files\Java
2010-02-13 11:08:00 ----A---- C:\Windows\system32\Dvbpws.dll
2010-02-13 11:04:37 ----D---- C:\WinFast WorkArea
2010-02-13 10:33:29 ----D---- C:\Users\Pepa\AppData\Roaming\dvdcss
2010-02-13 10:33:26 ----D---- C:\Users\Pepa\AppData\Roaming\vlc
2010-02-13 10:32:26 ----D---- C:\Program Files\VideoLAN
2010-02-13 10:31:40 ----D---- C:\Program Files\DVDVideoSoft
2010-02-13 10:31:40 ----D---- C:\Program Files\Common Files\DVDVideoSoft
2010-02-13 10:23:33 ----D---- C:\Program Files\The KMPlayer
2010-02-13 10:23:17 ----D---- C:\Program Files\softonicen
2010-02-13 10:23:17 ----D---- C:\Program Files\Conduit
2010-02-13 09:08:25 ----D---- C:\Program Files\ASUS
2010-02-13 09:06:30 ----D---- C:\Programy
2010-02-13 09:02:17 ----D---- C:\Users\Pepa\AppData\Roaming\ArcSoft
2010-02-13 08:09:58 ----D---- C:\Stahované
2010-02-13 07:52:24 ----HD---- C:\ProgramData\CanonIJSolutionMenu
2010-02-13 07:52:18 ----HD---- C:\ProgramData\CanonIJMyPrinter
2010-02-13 07:52:13 ----D---- C:\ProgramData\CanonIJPLM
2010-02-13 07:51:17 ----D---- C:\Program Files\Common Files\CANON
2010-02-13 07:49:11 ----HD---- C:\ProgramData\CanonBJ
2010-02-13 07:49:06 ----HD---- C:\Windows\system32\CanonIJ Uninstaller Information
2010-02-13 07:48:52 ----A---- C:\Windows\system32\CNMLM9H.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240O.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240L.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240I.DLL
2010-02-13 07:48:46 ----A---- C:\Windows\system32\CNC240C.DLL
2010-02-13 07:48:37 ----HD---- C:\Program Files\CanonBJ
2010-02-13 07:47:57 ----D---- C:\Program Files\Canon
2010-02-13 07:47:07 ----A---- C:\Windows\system32\gdiplus.dll
2010-02-13 07:45:28 ----D---- C:\Program Files\ArcSoft
2010-02-13 07:45:28 ----A---- C:\Windows\PCDLIB32.DLL
2010-02-13 07:43:30 ----D---- C:\Program Files\Common Files\ArcSoft
2010-02-13 07:42:26 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-02-13 07:41:32 ----D---- C:\WFDB
2010-02-13 07:41:25 ----D---- C:\Program Files\WinFast
2010-02-13 07:36:51 ----D---- C:\Windows\system32\WinFast
2010-02-13 07:36:50 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-13 07:36:45 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-13 07:29:51 ----A---- C:\Windows\Ascd_tmp.ini
2010-02-13 02:25:43 ----D---- C:\Windows\Panther
2010-02-12 20:43:04 ----D---- C:\Users\Pepa\AppData\Roaming\Macromedia
2010-02-12 20:43:04 ----D---- C:\Users\Pepa\AppData\Roaming\Adobe
2010-02-12 20:43:03 ----D---- C:\Windows\system32\Macromed
2010-02-12 20:39:31 ----D---- C:\Program Files\uTorrent
2010-02-12 20:38:47 ----D---- C:\Users\Pepa\AppData\Roaming\uTorrent
2010-02-12 19:18:33 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-02-12 19:18:33 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-02-12 19:18:33 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-02-12 19:18:32 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-02-12 19:18:31 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-02-12 19:18:30 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-02-12 19:18:29 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xinput1_3.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-02-12 19:18:28 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-02-12 19:18:27 ----A---- C:\Windows\system32\d3dx10.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xinput1_2.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xinput1_1.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-02-12 19:17:24 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-02-12 19:17:23 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-02-12 19:17:22 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-02-12 19:17:21 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-02-12 19:14:49 ----HD---- C:\Windows\msdownld.tmp
2010-02-12 19:14:45 ----D---- C:\Windows\system32\directx
2010-02-12 19:13:29 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-12 19:13:23 ----SHD---- C:\Windows\Installer
2010-02-12 18:35:03 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-12 18:34:37 ----A---- C:\Windows\system32\MRT.exe
2010-02-12 18:33:26 ----A---- C:\Windows\system32\tzres.dll
2010-02-12 18:33:18 ----N---- C:\Windows\system32\MpSigStub.exe
2010-02-12 18:32:05 ----A---- C:\Windows\system32\winlogon.exe
2010-02-12 18:32:05 ----A---- C:\Windows\system32\msasn1.dll
2010-02-12 18:32:05 ----A---- C:\Windows\explorer.exe
2010-02-12 18:32:04 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\quartz.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msyuv.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\msrle32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-12 18:32:04 ----A---- C:\Windows\system32\avifil32.dll
2010-02-12 18:32:03 ----A---- C:\Windows\system32\wmp.dll
2010-02-12 18:32:02 ----A---- C:\Windows\system32\winresume.exe
2010-02-12 18:32:02 ----A---- C:\Windows\system32\winload.exe
2010-02-12 18:32:02 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-12 18:32:01 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-12 18:31:57 ----A---- C:\Windows\system32\mshtml.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\wininet.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\urlmon.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\ieframe.dll
2010-02-12 18:31:56 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\t2embed.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\fontsub.dll
2010-02-12 18:31:55 ----A---- C:\Windows\system32\atmfd.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\secproc.dll
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-12 18:31:48 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-12 17:56:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-12 17:51:36 ----D---- C:\Users\Pepa\AppData\Roaming\Identities
2010-02-12 17:51:22 ----SD---- C:\Users\Pepa\AppData\Roaming\Microsoft
2010-02-12 17:51:22 ----D---- C:\Users\Pepa\AppData\Roaming\Media Center Programs
2010-02-12 17:51:16 ----SHD---- C:\Recovery
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Šablony
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Plocha
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Oblíbené položky
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Nabídka Start
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Dokumenty
2010-02-12 17:51:16 ----SHD---- C:\ProgramData\Data aplikací
2010-02-12 17:29:24 ----D---- C:\Windows\SoftwareDistribution
2010-02-12 17:26:48 ----SHD---- C:\System Volume Information
Re: Nejde spustit správce úloh jedná se o vir?
======List of files/folders modified in the last 1 months======
2010-02-19 16:19:34 ----D---- C:\Windows\Temp
2010-02-19 16:17:27 ----D---- C:\Windows\Prefetch
2010-02-19 16:17:16 ----RD---- C:\Program Files
2010-02-19 16:12:08 ----D---- C:\Windows\system32\config
2010-02-19 16:03:04 ----D---- C:\Windows\System32
2010-02-19 16:03:03 ----D---- C:\Windows\inf
2010-02-19 15:56:42 ----RSD---- C:\Windows\Media
2010-02-19 15:56:41 ----D---- C:\Windows\system32\drivers
2010-02-19 15:54:55 ----D---- C:\Windows\system32\Tasks
2010-02-19 15:54:52 ----HD---- C:\Windows
2010-02-19 15:54:52 ----D---- C:\Windows\Tasks
2010-02-19 15:04:09 ----HD---- C:\ProgramData
2010-02-19 12:54:52 ----D---- C:\Windows\system32\catroot
2010-02-17 20:01:10 ----RSD---- C:\Windows\assembly
2010-02-15 03:01:15 ----D---- C:\Windows\winsxs
2010-02-14 20:01:06 ----D---- C:\Windows\system32\DriverStore
2010-02-14 20:00:49 ----D---- C:\Program Files\Common Files
2010-02-14 18:09:02 ----D---- C:\Windows\system32\catroot2
2010-02-14 15:26:08 ----A---- C:\Windows\win.ini
2010-02-14 15:26:05 ----D---- C:\Windows\twain_32
2010-02-14 15:07:18 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-14 10:12:27 ----SHD---- C:\$Recycle.Bin
2010-02-13 23:38:48 ----D---- C:\Windows\rescache
2010-02-13 23:37:16 ----D---- C:\Windows\Logs
2010-02-13 22:55:26 ----SD---- C:\ProgramData\Microsoft
2010-02-13 14:28:37 ----RSD---- C:\Windows\Fonts
2010-02-13 13:07:21 ----D---- C:\Windows\Microsoft.NET
2010-02-13 10:56:36 ----D---- C:\Windows\system32\wdi
2010-02-13 10:52:23 ----D---- C:\Windows\system32\LogFiles
2010-02-12 19:05:32 ----D---- C:\Windows\system32\Boot
2010-02-12 19:05:32 ----D---- C:\Windows\ehome
2010-02-12 19:05:32 ----D---- C:\Windows\AppPatch
2010-02-12 19:05:32 ----D---- C:\Program Files\Windows Media Player
2010-02-12 19:05:31 ----D---- C:\Windows\system32\cs-CZ
2010-02-12 19:05:31 ----D---- C:\Program Files\Internet Explorer
2010-02-12 18:34:38 ----D---- C:\Windows\debug
2010-02-12 18:32:10 ----D---- C:\Windows\system32\restore
2010-02-12 18:15:50 ----D---- C:\Windows\system32\oobe
2010-02-12 17:55:54 ----D---- C:\Windows\system32\wbem
2010-02-12 17:51:22 ----RD---- C:\Users
2010-02-12 17:51:16 ----D---- C:\Program Files\Windows NT
2010-02-12 17:40:51 ----D---- C:\Windows\system32\CodeIntegrity
2010-02-12 17:29:18 ----D---- C:\Windows\system32\sysprep
2010-02-12 17:27:18 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys [2009-07-14 35328]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys [2009-07-14 78336]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2009-07-14 32256]
R1 EIO;EIO; \??\C:\Windows\system32\drivers\EIO.sys [2006-06-14 12288]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2009-12-02 149040]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2009-07-14 16896]
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys [2009-07-14 6656]
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys [2009-07-14 7168]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-02-19 141312]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2009-07-14 74240]
R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2009-07-14 63488]
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys [2009-07-14 9728]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys [2009-07-14 48128]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2009-07-14 86528]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2009-07-14 586752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys [2009-07-14 60928]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2009-07-14 34816]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-22 11776]
R3 AmdK8;Ovladač procesoru AMD K8; C:\Windows\system32\DRIVERS\amdk8.sys [2009-07-14 55296]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2009-07-14 69632]
R3 CompositeBus;Ovladač rozpoznávacího modulu složené sběrnice; C:\Windows\system32\DRIVERS\CompositeBus.sys [2009-07-14 31232]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2009-10-02 728648]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-07-14 304128]
R3 HDAudBus;Ovladač sběrnice Microsoft UAA pro zvuk High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys [2009-07-14 108544]
R3 HidUsb;Ovladač třídy standardu HID Microsoft; C:\Windows\system32\DRIVERS\hidusb.sys [2009-07-14 24064]
R3 monitor;Služba ovladače funkce třídy monitorů Microsoft; C:\Windows\system32\DRIVERS\monitor.sys [2009-07-14 23552]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2009-12-02 42368]
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys [2009-07-14 60416]
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys [2010-01-08 221184]
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys [2009-07-14 95744]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-06-10 9853248]
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys [2009-07-14 49152]
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys [2009-07-14 75264]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys [2009-07-14 18944]
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys [2009-07-14 306688]
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [2009-12-08 113664]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys [2009-07-14 108544]
R3 umbus;Ovladač sběrnice UMBus Enumerator; C:\Windows\system32\DRIVERS\umbus.sys [2009-07-14 39936]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\Windows\system32\DRIVERS\usbccgp.sys [2009-07-14 75264]
R3 usbehci;Ovladač miniportu vylepšeného hostitelského řadiče Microsoft USB 2.0; C:\Windows\system32\DRIVERS\usbehci.sys [2009-10-24 41984]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\Windows\system32\DRIVERS\usbhub.sys [2009-10-24 258560]
R3 usbohci;Ovladač miniportu otevřeného hostitelského řadiče Microsoft USB; C:\Windows\system32\DRIVERS\usbohci.sys [2009-07-14 20480]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\Windows\system32\DRIVERS\USBSTOR.SYS [2009-07-14 74752]
R3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS [2005-01-06 9446]
R3 WFLR6654;WinFast DTV1800 H (Video); C:\Windows\system32\drivers\wfeaglxt.sys [2007-07-25 405632]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S3 1394ohci;1394 OHCI Compliant Host Controller; C:\Windows\system32\DRIVERS\1394ohci.sys [2009-07-14 163328]
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys [2009-07-14 9728]
S3 adp94xx;adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [2009-07-14 422976]
S3 adpahci;adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [2009-07-14 297552]
S3 adpu320;adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [2009-07-14 146512]
S3 agp440;Intel AGP Bus Filter; C:\Windows\system32\DRIVERS\agp440.sys [2009-07-14 53312]
S3 am8jp3lt;am8jp3lt; C:\Windows\system32\drivers\am8jp3lt.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 amdide;amdide; C:\Windows\system32\DRIVERS\amdide.sys [2009-07-14 14912]
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys [2009-07-14 52736]
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [2009-07-14 79952]
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys [2009-07-14 159312]
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys [2009-07-14 50176]
S3 arc;arc; C:\Windows\system32\DRIVERS\arc.sys [2009-07-14 76368]
S3 arcsas;arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [2009-07-14 86608]
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbdx.sys [2009-07-13 430080]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\DRIVERS\BrFiltLo.sys [2009-07-13 13568]
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\DRIVERS\BrFiltUp.sys [2009-07-13 5248]
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys [2009-07-14 272128]
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys [2009-07-13 62336]
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys [2009-07-13 12160]
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys [2009-07-13 11904]
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\DRIVERS\bthmodem.sys [2009-07-14 56320]
S3 circlass;Consumer IR Devices; C:\Windows\system32\DRIVERS\circlass.sys [2009-07-14 37888]
S3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2009-07-14 14080]
S3 Compbatt;Compbatt; C:\Windows\system32\DRIVERS\compbatt.sys [2009-07-14 19024]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbdx.sys [2009-07-13 3100160]
S3 elxstor;elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [2009-07-14 453712]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys [2009-07-14 7168]
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys [2009-07-14 142336]
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys [2009-07-14 28160]
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys [2009-07-14 46160]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\DRIVERS\gagp30kx.sys [2009-07-14 57936]
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys [2009-07-13 26624]
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys [2009-07-14 21504]
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\DRIVERS\hidbth.sys [2009-07-14 91136]
S3 HidIr;Microsoft Infrared HID Driver; C:\Windows\system32\DRIVERS\hidir.sys [2009-07-14 37888]
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys [2009-07-14 67152]
S3 iaStorV;iaStorV; C:\Windows\system32\DRIVERS\iaStorV.sys [2009-07-14 332352]
S3 iirsp;iirsp; C:\Windows\system32\DRIVERS\iirsp.sys [2009-07-14 41040]
S3 intelide;intelide; C:\Windows\system32\DRIVERS\intelide.sys [2009-07-14 15424]
S3 intelppm;Intel Processor Driver; C:\Windows\system32\DRIVERS\intelppm.sys [2009-07-14 53760]
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys [2009-07-14 65536]
S3 isapnp;isapnp; C:\Windows\system32\DRIVERS\isapnp.sys [2009-07-14 46656]
S3 iScsiPrt;iScsiPort Driver; C:\Windows\system32\DRIVERS\msiscsi.sys [2009-07-14 186960]
S3 kbdhid;Ovladač klávesnice standardu HID; C:\Windows\system32\DRIVERS\kbdhid.sys [2009-07-14 28160]
S3 LSI_FC;LSI_FC; C:\Windows\system32\DRIVERS\lsi_fc.sys [2009-07-14 95824]
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\DRIVERS\lsi_sas.sys [2009-07-14 89168]
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys [2009-07-14 54864]
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\DRIVERS\lsi_scsi.sys [2009-07-14 96848]
S3 megasas;megasas; C:\Windows\system32\DRIVERS\megasas.sys [2009-07-14 30800]
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys [2009-07-14 235584]
S3 mouhid;Ovladač myši standardu HID; C:\Windows\system32\DRIVERS\mouhid.sys [2009-07-14 26112]
S3 mpio;mpio; C:\Windows\system32\DRIVERS\mpio.sys [2009-07-14 130624]
S3 msahci;msahci; C:\Windows\system32\DRIVERS\msahci.sys [2009-07-14 27712]
S3 msdsm;msdsm; C:\Windows\system32\DRIVERS\msdsm.sys [2009-07-14 115792]
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys [2009-07-14 4096]
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys [2009-07-14 162896]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2009-07-14 6144]
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys [2009-07-14 12288]
S3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys [2009-07-14 267264]
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys [2009-07-14 27136]
S3 nfrd960;nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [2009-07-14 44624]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\Windows\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\Windows\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 nv_agp;NVIDIA nForce AGP Bus Filter; C:\Windows\system32\DRIVERS\nv_agp.sys [2009-07-14 105024]
S3 nvraid;nvraid; C:\Windows\system32\DRIVERS\nvraid.sys [2009-07-14 117312]
S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy); C:\Windows\system32\DRIVERS\ohci1394.sys [2009-07-14 62464]
S3 ql2300;ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [2009-07-14 1383488]
S3 ql40xx;ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [2009-07-14 106064]
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys [2009-07-14 31744]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sbp2port;sbp2port; C:\Windows\system32\DRIVERS\sbp2port.sys [2009-07-14 85568]
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys [2009-07-14 26624]
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\DRIVERS\sermouse.sys [2009-07-14 19968]
S3 sffdisk;SFF Storage Class Driver; C:\Windows\system32\DRIVERS\sffdisk.sys [2009-07-14 11264]
S3 sffp_mmc;SFF Storage Protocol Driver for MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys [2009-07-14 12288]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys [2009-07-14 12800]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\DRIVERS\SiSRaid2.sys [2009-07-14 40016]
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\DRIVERS\sisraid4.sys [2009-07-14 77888]
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys [2009-07-14 71168]
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys [2009-07-14 21072]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys [2009-07-14 1285712]
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys [2009-07-14 30208]
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\DRIVERS\uagp35.sys [2009-07-14 55888]
S3 uliagpkx;Uli AGP Bus Filter; C:\Windows\system32\DRIVERS\uliagpkx.sys [2009-07-14 57424]
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2009-07-14 8192]
S3 usbcir;eHome Infrared Receiver (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys [2009-07-14 86016]
S3 usbprint;Třída USB Printer; C:\Windows\system32\DRIVERS\usbprint.sys [2009-07-14 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbuhci;Ovladač miniportu univerzálního hostitelského řadiče Microsoft USB; C:\Windows\system32\DRIVERS\usbuhci.sys [2009-07-14 24064]
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys [2009-07-14 26112]
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys [2009-07-14 159824]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsmraid;vsmraid; C:\Windows\system32\DRIVERS\vsmraid.sys [2009-07-14 141904]
S3 vwifibus;@%SystemRoot%\System32\drivers\vwifibus.sys,-257; C:\Windows\System32\drivers\vwifibus.sys [2009-07-14 19968]
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\DRIVERS\wacompen.sys [2009-07-14 21632]
S3 Wd;Wd; C:\Windows\system32\DRIVERS\wd.sys [2009-07-14 19024]
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2009-07-14 11264]
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\DRIVERS\crcdisk.sys [2009-07-14 22096]
S4 ws2ifsl;@%systemroot%\System32\drivers\ws2ifsl.sys,-1000; C:\Windows\system32\drivers\ws2ifsl.sys [2009-07-14 16384]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AudioEndpointBuilder;@%SystemRoot%\system32\audiosrv.dll,-204; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 gpsvc;@gpapi.dll,-112; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-12-09 17904]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-05-15 935208]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-02-19 570880]
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 UxSms;@%SystemRoot%\system32\dwm.exe,-2000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files\Windows Media Player\wmpnetwk.exe [2009-07-14 1121280]
R2 WSearch;@%systemroot%\system32\SearchIndexer.exe,-103; C:\Windows\system32\SearchIndexer.exe [2009-07-14 428032]
R2 wudfsvc;@%SystemRoot%\system32\wudfsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 KeyIso;@keyiso.dll,-100; C:\Windows\system32\lsass.exe [2009-07-14 22528]
R3 netprofm;@%SystemRoot%\system32\netprofm.dll,-202; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-06-15 300544]
R3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\Windows\servicing\TrustedInstaller.exe [2009-07-14 204800]
R3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 WPDBusEnum;@%SystemRoot%\system32\wpdbusenum.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe [2009-07-14 3179520]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-06-10 66384]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe [2009-07-14 22528]
S3 ehRecvr;@%SystemRoot%\ehome\ehrecvr.exe,-101; C:\Windows\ehome\ehRecvr.exe [2009-07-14 557056]
S3 ehSched;@%SystemRoot%\ehome\ehsched.exe,-101; C:\Windows\ehome\ehsched.exe [2009-07-14 94720]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2009-07-14 522752]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-13 655624]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2009-06-10 42856]
S3 idsvc;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2009-06-10 878416]
S3 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IPBusEnum;@%systemroot%\system32\IPBusEnum.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 KtmRm;@comres.dll,-2946; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\Windows\System32\snmptrap.exe [2009-07-14 12800]
S3 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TBS;@%SystemRoot%\system32\tbssvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\Windows\system32\UI0Detect.exe [2009-07-14 35840]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe [2009-07-14 22528]
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\Windows\System32\vds.exe [2009-07-14 452608]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2009-07-14 1202688]
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Wlansvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WPCSvc;@%SystemRoot%\system32\wpcsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WwanSvc;@%SystemRoot%\System32\wwansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 Mcx2Svc;@%SystemRoot%\ehome\ehres.dll,-15501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-06-10 128848]
-----------------EOF-----------------
2010-02-19 16:19:34 ----D---- C:\Windows\Temp
2010-02-19 16:17:27 ----D---- C:\Windows\Prefetch
2010-02-19 16:17:16 ----RD---- C:\Program Files
2010-02-19 16:12:08 ----D---- C:\Windows\system32\config
2010-02-19 16:03:04 ----D---- C:\Windows\System32
2010-02-19 16:03:03 ----D---- C:\Windows\inf
2010-02-19 15:56:42 ----RSD---- C:\Windows\Media
2010-02-19 15:56:41 ----D---- C:\Windows\system32\drivers
2010-02-19 15:54:55 ----D---- C:\Windows\system32\Tasks
2010-02-19 15:54:52 ----HD---- C:\Windows
2010-02-19 15:54:52 ----D---- C:\Windows\Tasks
2010-02-19 15:04:09 ----HD---- C:\ProgramData
2010-02-19 12:54:52 ----D---- C:\Windows\system32\catroot
2010-02-17 20:01:10 ----RSD---- C:\Windows\assembly
2010-02-15 03:01:15 ----D---- C:\Windows\winsxs
2010-02-14 20:01:06 ----D---- C:\Windows\system32\DriverStore
2010-02-14 20:00:49 ----D---- C:\Program Files\Common Files
2010-02-14 18:09:02 ----D---- C:\Windows\system32\catroot2
2010-02-14 15:26:08 ----A---- C:\Windows\win.ini
2010-02-14 15:26:05 ----D---- C:\Windows\twain_32
2010-02-14 15:07:18 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-14 10:12:27 ----SHD---- C:\$Recycle.Bin
2010-02-13 23:38:48 ----D---- C:\Windows\rescache
2010-02-13 23:37:16 ----D---- C:\Windows\Logs
2010-02-13 22:55:26 ----SD---- C:\ProgramData\Microsoft
2010-02-13 14:28:37 ----RSD---- C:\Windows\Fonts
2010-02-13 13:07:21 ----D---- C:\Windows\Microsoft.NET
2010-02-13 10:56:36 ----D---- C:\Windows\system32\wdi
2010-02-13 10:52:23 ----D---- C:\Windows\system32\LogFiles
2010-02-12 19:05:32 ----D---- C:\Windows\system32\Boot
2010-02-12 19:05:32 ----D---- C:\Windows\ehome
2010-02-12 19:05:32 ----D---- C:\Windows\AppPatch
2010-02-12 19:05:32 ----D---- C:\Program Files\Windows Media Player
2010-02-12 19:05:31 ----D---- C:\Windows\system32\cs-CZ
2010-02-12 19:05:31 ----D---- C:\Program Files\Internet Explorer
2010-02-12 18:34:38 ----D---- C:\Windows\debug
2010-02-12 18:32:10 ----D---- C:\Windows\system32\restore
2010-02-12 18:15:50 ----D---- C:\Windows\system32\oobe
2010-02-12 17:55:54 ----D---- C:\Windows\system32\wbem
2010-02-12 17:51:22 ----RD---- C:\Users
2010-02-12 17:51:16 ----D---- C:\Program Files\Windows NT
2010-02-12 17:40:51 ----D---- C:\Windows\system32\CodeIntegrity
2010-02-12 17:29:18 ----D---- C:\Windows\system32\sysprep
2010-02-12 17:27:18 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys [2009-07-14 35328]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys [2009-07-14 78336]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2009-07-14 32256]
R1 EIO;EIO; \??\C:\Windows\system32\drivers\EIO.sys [2006-06-14 12288]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2009-12-02 149040]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2009-07-14 16896]
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys [2009-07-14 6656]
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys [2009-07-14 7168]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-02-19 141312]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2009-07-14 74240]
R1 VD_FileDisk;VD_FileDisk; C:\Windows\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2009-07-14 63488]
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys [2009-07-14 9728]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys [2009-07-14 48128]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2009-07-14 86528]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2009-07-14 586752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys [2009-07-14 60928]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2009-07-14 34816]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-22 11776]
R3 AmdK8;Ovladač procesoru AMD K8; C:\Windows\system32\DRIVERS\amdk8.sys [2009-07-14 55296]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2009-07-14 69632]
R3 CompositeBus;Ovladač rozpoznávacího modulu složené sběrnice; C:\Windows\system32\DRIVERS\CompositeBus.sys [2009-07-14 31232]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2009-10-02 728648]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-07-14 304128]
R3 HDAudBus;Ovladač sběrnice Microsoft UAA pro zvuk High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys [2009-07-14 108544]
R3 HidUsb;Ovladač třídy standardu HID Microsoft; C:\Windows\system32\DRIVERS\hidusb.sys [2009-07-14 24064]
R3 monitor;Služba ovladače funkce třídy monitorů Microsoft; C:\Windows\system32\DRIVERS\monitor.sys [2009-07-14 23552]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2009-12-02 42368]
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys [2009-07-14 60416]
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys [2010-01-08 221184]
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys [2009-07-14 95744]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-06-10 9853248]
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys [2009-07-14 49152]
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys [2009-07-14 75264]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys [2009-07-14 18944]
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys [2009-07-14 306688]
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [2009-12-08 113664]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys [2009-07-14 108544]
R3 umbus;Ovladač sběrnice UMBus Enumerator; C:\Windows\system32\DRIVERS\umbus.sys [2009-07-14 39936]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\Windows\system32\DRIVERS\usbccgp.sys [2009-07-14 75264]
R3 usbehci;Ovladač miniportu vylepšeného hostitelského řadiče Microsoft USB 2.0; C:\Windows\system32\DRIVERS\usbehci.sys [2009-10-24 41984]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\Windows\system32\DRIVERS\usbhub.sys [2009-10-24 258560]
R3 usbohci;Ovladač miniportu otevřeného hostitelského řadiče Microsoft USB; C:\Windows\system32\DRIVERS\usbohci.sys [2009-07-14 20480]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\Windows\system32\DRIVERS\USBSTOR.SYS [2009-07-14 74752]
R3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS [2005-01-06 9446]
R3 WFLR6654;WinFast DTV1800 H (Video); C:\Windows\system32\drivers\wfeaglxt.sys [2007-07-25 405632]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S3 1394ohci;1394 OHCI Compliant Host Controller; C:\Windows\system32\DRIVERS\1394ohci.sys [2009-07-14 163328]
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys [2009-07-14 9728]
S3 adp94xx;adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [2009-07-14 422976]
S3 adpahci;adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [2009-07-14 297552]
S3 adpu320;adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [2009-07-14 146512]
S3 agp440;Intel AGP Bus Filter; C:\Windows\system32\DRIVERS\agp440.sys [2009-07-14 53312]
S3 am8jp3lt;am8jp3lt; C:\Windows\system32\drivers\am8jp3lt.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 amdide;amdide; C:\Windows\system32\DRIVERS\amdide.sys [2009-07-14 14912]
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys [2009-07-14 52736]
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [2009-07-14 79952]
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys [2009-07-14 159312]
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys [2009-07-14 50176]
S3 arc;arc; C:\Windows\system32\DRIVERS\arc.sys [2009-07-14 76368]
S3 arcsas;arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [2009-07-14 86608]
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbdx.sys [2009-07-13 430080]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\DRIVERS\BrFiltLo.sys [2009-07-13 13568]
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\DRIVERS\BrFiltUp.sys [2009-07-13 5248]
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys [2009-07-14 272128]
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys [2009-07-13 62336]
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys [2009-07-13 12160]
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys [2009-07-13 11904]
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\DRIVERS\bthmodem.sys [2009-07-14 56320]
S3 circlass;Consumer IR Devices; C:\Windows\system32\DRIVERS\circlass.sys [2009-07-14 37888]
S3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2009-07-14 14080]
S3 Compbatt;Compbatt; C:\Windows\system32\DRIVERS\compbatt.sys [2009-07-14 19024]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbdx.sys [2009-07-13 3100160]
S3 elxstor;elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [2009-07-14 453712]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys [2009-07-14 7168]
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys [2009-07-14 142336]
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys [2009-07-14 28160]
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys [2009-07-14 46160]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\DRIVERS\gagp30kx.sys [2009-07-14 57936]
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys [2009-07-13 26624]
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys [2009-07-14 21504]
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\DRIVERS\hidbth.sys [2009-07-14 91136]
S3 HidIr;Microsoft Infrared HID Driver; C:\Windows\system32\DRIVERS\hidir.sys [2009-07-14 37888]
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys [2009-07-14 67152]
S3 iaStorV;iaStorV; C:\Windows\system32\DRIVERS\iaStorV.sys [2009-07-14 332352]
S3 iirsp;iirsp; C:\Windows\system32\DRIVERS\iirsp.sys [2009-07-14 41040]
S3 intelide;intelide; C:\Windows\system32\DRIVERS\intelide.sys [2009-07-14 15424]
S3 intelppm;Intel Processor Driver; C:\Windows\system32\DRIVERS\intelppm.sys [2009-07-14 53760]
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys [2009-07-14 65536]
S3 isapnp;isapnp; C:\Windows\system32\DRIVERS\isapnp.sys [2009-07-14 46656]
S3 iScsiPrt;iScsiPort Driver; C:\Windows\system32\DRIVERS\msiscsi.sys [2009-07-14 186960]
S3 kbdhid;Ovladač klávesnice standardu HID; C:\Windows\system32\DRIVERS\kbdhid.sys [2009-07-14 28160]
S3 LSI_FC;LSI_FC; C:\Windows\system32\DRIVERS\lsi_fc.sys [2009-07-14 95824]
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\DRIVERS\lsi_sas.sys [2009-07-14 89168]
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys [2009-07-14 54864]
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\DRIVERS\lsi_scsi.sys [2009-07-14 96848]
S3 megasas;megasas; C:\Windows\system32\DRIVERS\megasas.sys [2009-07-14 30800]
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys [2009-07-14 235584]
S3 mouhid;Ovladač myši standardu HID; C:\Windows\system32\DRIVERS\mouhid.sys [2009-07-14 26112]
S3 mpio;mpio; C:\Windows\system32\DRIVERS\mpio.sys [2009-07-14 130624]
S3 msahci;msahci; C:\Windows\system32\DRIVERS\msahci.sys [2009-07-14 27712]
S3 msdsm;msdsm; C:\Windows\system32\DRIVERS\msdsm.sys [2009-07-14 115792]
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys [2009-07-14 4096]
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys [2009-07-14 162896]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2009-07-14 6144]
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys [2009-07-14 12288]
S3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys [2009-07-14 267264]
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys [2009-07-14 27136]
S3 nfrd960;nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [2009-07-14 44624]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\Windows\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\Windows\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 nv_agp;NVIDIA nForce AGP Bus Filter; C:\Windows\system32\DRIVERS\nv_agp.sys [2009-07-14 105024]
S3 nvraid;nvraid; C:\Windows\system32\DRIVERS\nvraid.sys [2009-07-14 117312]
S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy); C:\Windows\system32\DRIVERS\ohci1394.sys [2009-07-14 62464]
S3 ql2300;ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [2009-07-14 1383488]
S3 ql40xx;ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [2009-07-14 106064]
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys [2009-07-14 31744]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sbp2port;sbp2port; C:\Windows\system32\DRIVERS\sbp2port.sys [2009-07-14 85568]
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys [2009-07-14 26624]
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\DRIVERS\sermouse.sys [2009-07-14 19968]
S3 sffdisk;SFF Storage Class Driver; C:\Windows\system32\DRIVERS\sffdisk.sys [2009-07-14 11264]
S3 sffp_mmc;SFF Storage Protocol Driver for MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys [2009-07-14 12288]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys [2009-07-14 12800]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\DRIVERS\SiSRaid2.sys [2009-07-14 40016]
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\DRIVERS\sisraid4.sys [2009-07-14 77888]
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys [2009-07-14 71168]
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys [2009-07-14 21072]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys [2009-07-14 1285712]
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys [2009-07-14 30208]
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\DRIVERS\uagp35.sys [2009-07-14 55888]
S3 uliagpkx;Uli AGP Bus Filter; C:\Windows\system32\DRIVERS\uliagpkx.sys [2009-07-14 57424]
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2009-07-14 8192]
S3 usbcir;eHome Infrared Receiver (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys [2009-07-14 86016]
S3 usbprint;Třída USB Printer; C:\Windows\system32\DRIVERS\usbprint.sys [2009-07-14 19968]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbuhci;Ovladač miniportu univerzálního hostitelského řadiče Microsoft USB; C:\Windows\system32\DRIVERS\usbuhci.sys [2009-07-14 24064]
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys [2009-07-14 26112]
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys [2009-07-14 159824]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsmraid;vsmraid; C:\Windows\system32\DRIVERS\vsmraid.sys [2009-07-14 141904]
S3 vwifibus;@%SystemRoot%\System32\drivers\vwifibus.sys,-257; C:\Windows\System32\drivers\vwifibus.sys [2009-07-14 19968]
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\DRIVERS\wacompen.sys [2009-07-14 21632]
S3 Wd;Wd; C:\Windows\system32\DRIVERS\wd.sys [2009-07-14 19024]
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2009-07-14 11264]
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\DRIVERS\crcdisk.sys [2009-07-14 22096]
S4 ws2ifsl;@%systemroot%\System32\drivers\ws2ifsl.sys,-1000; C:\Windows\system32\drivers\ws2ifsl.sys [2009-07-14 16384]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AudioEndpointBuilder;@%SystemRoot%\system32\audiosrv.dll,-204; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 gpsvc;@gpapi.dll,-112; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IJPLMSVC;Inkjet Printer/Scanner Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2008-01-22 103808]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-12-09 17904]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-05-15 935208]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-02-19 570880]
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 UxSms;@%SystemRoot%\system32\dwm.exe,-2000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files\Windows Media Player\wmpnetwk.exe [2009-07-14 1121280]
R2 WSearch;@%systemroot%\system32\SearchIndexer.exe,-103; C:\Windows\system32\SearchIndexer.exe [2009-07-14 428032]
R2 wudfsvc;@%SystemRoot%\system32\wudfsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 KeyIso;@keyiso.dll,-100; C:\Windows\system32\lsass.exe [2009-07-14 22528]
R3 netprofm;@%SystemRoot%\system32\netprofm.dll,-202; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-06-15 300544]
R3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\Windows\servicing\TrustedInstaller.exe [2009-07-14 204800]
R3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 WPDBusEnum;@%SystemRoot%\system32\wpdbusenum.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe [2009-07-14 3179520]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-06-10 66384]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe [2009-07-14 22528]
S3 ehRecvr;@%SystemRoot%\ehome\ehrecvr.exe,-101; C:\Windows\ehome\ehRecvr.exe [2009-07-14 557056]
S3 ehSched;@%SystemRoot%\ehome\ehsched.exe,-101; C:\Windows\ehome\ehsched.exe [2009-07-14 94720]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2009-07-14 522752]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-13 655624]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2009-06-10 42856]
S3 idsvc;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2009-06-10 878416]
S3 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IPBusEnum;@%systemroot%\system32\IPBusEnum.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 KtmRm;@comres.dll,-2946; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\Windows\System32\snmptrap.exe [2009-07-14 12800]
S3 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TBS;@%SystemRoot%\system32\tbssvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\Windows\system32\UI0Detect.exe [2009-07-14 35840]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe [2009-07-14 22528]
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\Windows\System32\vds.exe [2009-07-14 452608]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2009-07-14 1202688]
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Wlansvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WPCSvc;@%SystemRoot%\system32\wpcsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WwanSvc;@%SystemRoot%\System32\wwansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 Mcx2Svc;@%SystemRoot%\ehome\ehres.dll,-15501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-06-10 128848]
-----------------EOF-----------------