
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Avast hlasi stale malware
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Avast hlasi stale malware
Poprosim o kontrolu logu nakpolko mi avast stale hlasi nejaky malware cca kazde 5 sekundy
Dakujem
Log:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Róbert at 2010-02-27 11:20:15
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 98 GB (93%) free of 105 GB
Total RAM: 3069 MB (85% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:20:30, on 27. 2. 2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\AccelerometerSt.Exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\CTFMON.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Róbert\Plocha\RSIT.exe
C:\Program Files\trend micro\Róbert.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.Exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 6089 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Registry Winner Schedule.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-13 63128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"=C:\WINDOWS\system32\AccelerometerSt.Exe [2008-06-18 82224]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2008-07-25 888832]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2010-02-26 2097152]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-05-19 61440]
"HPCam_Menu"=c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-03-10 506936]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-01-16 1044480]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-02-18 177720]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2008-03-28 2598808]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-02-11 2756488]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"cdoosoft"=C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\herss.exe [2010-02-26 99328]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2009-04-24 203928]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-05-19 155648]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0c909c76-22d0-11df-8859-c78d13e3bac2}]
shell\AutoRun\command - E:\s1.exe
shell\open\command - E:\s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b7170dee-237c-11df-8865-00247eaa9c51}]
shell\AutoRun\command - H:\s1.exe
shell\open\command - H:\s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ca51826d-22d3-11df-96e8-806d6172696f}]
shell\AutoRun\command - s1.exe
shell\open\command - s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d986631e-237e-11df-ab97-806d6172696f}]
shell\AutoRun\command - s1.exe
shell\open\command - s1.exe
======List of files/folders created in the last 1 months======
2010-02-27 11:20:16 ----D---- C:\Program Files\trend micro
2010-02-27 11:20:15 ----D---- C:\rsit
2010-02-27 10:34:53 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-27 10:34:49 ----D---- C:\Program Files\Alwil Software
2010-02-27 10:34:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-02-27 10:21:25 ----SHD---- C:\RECYCLER
2010-02-27 09:55:22 ----D---- C:\Program Files\Registry Winner
2010-02-27 09:50:44 ----D---- C:\Program Files\DVD Shrink
2010-02-27 09:50:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
2010-02-27 09:47:17 ----D---- C:\Program Files\Alcohol Soft
2010-02-27 09:46:56 ----D---- C:\Documents and Settings\Róbert\Data aplikací\PCToolsFirewallPlus
2010-02-27 09:44:03 ----D---- C:\Program Files\PowerQuest
2010-02-27 09:43:30 ----D---- C:\Program Files\Verdict Free
2010-02-27 09:43:01 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Opera
2010-02-27 09:42:36 ----A---- C:\WINDOWS\iun6002.exe
2010-02-27 09:42:33 ----D---- C:\Program Files\Codec Pack - All In 1
2010-02-27 09:42:15 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2010-02-27 09:40:52 ----D---- C:\Program Files\Common Files\PC Tools
2010-02-27 09:40:51 ----D---- C:\Program Files\PC Tools Firewall Plus
2010-02-27 09:40:14 ----D---- C:\Program Files\Opera
2010-02-27 09:38:46 ----D---- C:\Program Files\Microsoft Works
2010-02-27 09:38:30 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-27 09:38:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-27 09:37:59 ----D---- C:\Program Files\Microsoft.NET
2010-02-27 09:36:35 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-02-27 09:36:12 ----D---- C:\WINDOWS\SHELLNEW
2010-02-27 09:35:59 ----D---- C:\Program Files\Microsoft Office
2010-02-27 09:35:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-27 09:35:46 ----RHD---- C:\MSOCache
2010-02-27 09:33:49 ----D---- C:\Documents and Settings\Róbert\Data aplikací\WinRAR
2010-02-27 09:30:46 ----D---- C:\totalcmd
2010-02-27 09:30:46 ----A---- C:\WINDOWS\wincmd.ini
2010-02-27 09:28:26 ----D---- C:\Program Files\WinRAR
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-02-26 15:54:18 ----D---- C:\Program Files\Common Files\Ahead
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-02-26 15:54:17 ----D---- C:\Program Files\Ahead
2010-02-26 15:54:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\wmv9vcm.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\ssldivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\libdivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dtu100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\divx.dll
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Real
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Real
2010-02-26 15:53:42 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-26 15:53:42 ----D---- C:\Program Files\Common Files\Adobe
2010-02-26 15:53:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-02-26 15:53:37 ----D---- C:\Program Files\Adobe
2010-02-26 15:47:41 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-02-26 15:47:39 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmns.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmn.dll
2010-02-26 15:47:34 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2010-02-26 15:47:29 ----D---- C:\Program Files\Synaptics
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-02-26 14:41:43 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-26 14:41:30 ----D---- C:\WINDOWS\system32\cs-CZ
2010-02-26 14:40:10 ----D---- C:\Program Files\MSBuild
2010-02-26 14:40:07 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-26 14:40:04 ----D---- C:\WINDOWS\system32\en-us
2010-02-26 14:40:04 ----D---- C:\Program Files\Reference Assemblies
2010-02-26 14:39:42 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-26 14:37:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-02-26 14:37:18 ----D---- C:\Program Files\MSXML 6.0
2010-02-26 14:34:17 ----D---- C:\Program Files\Atheros
2010-02-26 14:34:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Atheros
2010-02-26 14:30:57 ----D---- C:\Program Files\IDT
2010-02-26 14:12:31 ----D---- C:\Program Files\Marvell
2010-02-26 14:10:08 ----A---- C:\WINDOWS\system32\BCMLogon.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\wltrynt.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.bat
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\preflib.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlu00.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlpkt.dll
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRYSVC.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRAY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLBCGCBPRO731.DLL
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\BCMWLTRY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\bcm1xsup.dll
2010-02-26 14:00:57 ----A---- C:\WINDOWS\system32\h323log.txt
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Macromedia
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Adobe
2010-02-26 13:52:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Mozilla
2010-02-26 13:52:21 ----D---- C:\Program Files\Mozilla Firefox
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-02-26 13:47:54 ----A---- C:\WINDOWS\system32\usbui.dll
2010-02-26 13:46:46 ----A---- C:\WINDOWS\imsins.BAK
2010-02-26 13:46:43 ----SHD---- C:\WINDOWS\Installer
2010-02-26 13:46:43 ----D---- C:\Program Files\Common Files\ODBC
2010-02-26 13:46:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-26 13:46:43 ----A---- C:\WINDOWS\ODBCINST.INI
2010-02-26 13:46:39 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-02-26 13:46:38 ----RD---- C:\Program Files
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\Róbert\Data aplikací\ATI
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\irclass.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-02-26 13:46:21 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-02-26 13:46:19 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-02-26 13:46:19 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-02-26 13:46:18 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-26 13:46:18 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-02-26 13:46:17 ----A---- C:\WINDOWS\system32\storprop.dll
2010-02-26 13:46:10 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-02-26 13:46:07 ----RA---- C:\WINDOWS\SET8.tmp
2010-02-26 13:46:05 ----RA---- C:\WINDOWS\SET4.tmp
2010-02-26 13:46:03 ----RA---- C:\WINDOWS\SET3.tmp
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-26 13:45:53 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-02-26 13:45:50 ----A---- C:\Documents and Settings\All Users\Data aplikací\HPWALog.txt
2010-02-26 13:45:25 ----A---- C:\WINDOWS\setuplog.txt
2010-02-26 13:45:22 ----D---- C:\Documents and Settings
2010-02-26 13:45:21 ----SHD---- C:\System Volume Information
2010-02-26 13:44:35 ----SH---- C:\boot.ini
2010-02-26 13:43:33 ----AD---- C:\Documents and Settings\All Users\Data aplikací\Temp
2010-02-26 13:41:39 ----D---- C:\Documents and Settings\Róbert\Data aplikací\hpqLog
2010-02-26 13:41:00 ----RSD---- C:\WINDOWS\assembly
2010-02-26 13:40:45 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-26 13:40:30 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-26 13:40:20 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-02-26 13:39:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-26 13:39:20 ----RSD---- C:\WINDOWS\Fonts
2010-02-26 13:39:20 ----RD---- C:\WINDOWS\Web
2010-02-26 13:39:20 ----HD---- C:\WINDOWS\inf
2010-02-26 13:39:20 ----D---- C:\WINDOWS\WinSxS
2010-02-26 13:39:20 ----D---- C:\WINDOWS\twain_32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Temp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wins
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wbem
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\usmt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\spool
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ShellExt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\Setup
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ras
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\oobe
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\npp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\IME
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\icsxml
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ias
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\export
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\drivers
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\dhcp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3com_dmi
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3076
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\2052
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1054
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1042
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1041
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1037
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1033
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1031
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1029
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1028
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1025
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system
2010-02-26 13:39:20 ----D---- C:\WINDOWS\security
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Resources
2010-02-26 13:39:20 ----D---- C:\WINDOWS\repair
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Provisioning
2010-02-26 13:39:20 ----D---- C:\WINDOWS\pchealth
2010-02-26 13:39:20 ----D---- C:\WINDOWS\PeerNet
2010-02-26 13:39:20 ----D---- C:\WINDOWS\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msapps
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msagent
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Media
2010-02-26 13:39:20 ----D---- C:\WINDOWS\java
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ime
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Help
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ehome
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Driver Cache
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Debug
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Cursors
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Connection Wizard
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\AppPatch
2010-02-26 13:39:20 ----D---- C:\WINDOWS\addins
2010-02-26 13:39:20 ----D---- C:\WINDOWS
2010-02-26 13:39:16 ----D---- C:\WINDOWS\HPQ
2010-02-26 13:38:50 ----D---- C:\Program Files\ATI Technologies
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\vsnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\csnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snuvcdsm.exe
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snp2uvc.ini
2010-02-26 13:32:10 ----D---- C:\Program Files\Common Files\SNP2UVC
2010-02-26 13:32:10 ----A---- C:\WINDOWS\system32\rsnp2uvc.dll
2010-02-26 13:31:40 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-26 13:30:31 ----A---- C:\WINDOWS\system32\bcmwlcoi.dll
2010-02-26 13:30:30 ----D---- C:\Program Files\Broadcom
2010-02-26 13:30:29 ----D---- C:\Documents and Settings\Róbert\Data aplikací\InstallShield
2010-02-26 13:29:43 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-02-26 13:29:36 ----D---- C:\Program Files\WIDCOMM
2010-02-26 13:22:53 ----D---- C:\Program Files\Analog Devices
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\DSndUp.exe
2010-02-26 13:22:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-02-26 13:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-02-26 13:21:54 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-26 13:21:50 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-26 13:21:40 ----RSH---- C:\c2e.exe
2010-02-26 13:13:12 ----D---- C:\Program Files\AMD
2010-02-26 13:13:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-26 13:13:06 ----D---- C:\WINDOWS\system32\HP3DG
2010-02-26 13:13:06 ----D---- C:\Program Files\Hewlett-Packard
2010-02-26 13:11:26 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Identities
2010-02-26 13:11:24 ----HD---- C:\Program Files\Uninstall Information
2010-02-26 13:11:18 ----ASH---- C:\Documents and Settings\Róbert\Data aplikací\desktop.ini
2010-02-26 13:11:17 ----SD---- C:\Documents and Settings\Róbert\Data aplikací\Microsoft
2010-02-26 13:10:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-26 13:10:21 ----D---- C:\WINDOWS\Prefetch
2010-02-26 13:10:20 ----SD---- C:\WINDOWS\system32\Microsoft
2010-02-26 13:10:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-26 13:07:09 ----D---- C:\WINDOWS\system32\xircom
2010-02-26 13:07:09 ----D---- C:\Program Files\xerox
2010-02-26 13:07:09 ----D---- C:\Program Files\microsoft frontpage
2010-02-26 13:06:51 ----A---- C:\WINDOWS\control.ini
2010-02-26 13:06:51 ----A---- C:\AUTOEXEC.BAT
2010-02-26 13:06:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-26 13:06:38 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-02-26 13:05:52 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-02-26 13:05:52 ----RD---- C:\WINDOWS\Offline Web Pages
2010-02-26 13:05:52 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-02-26 13:05:47 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-02-26 13:05:43 ----HD---- C:\Program Files\WindowsUpdate
2010-02-26 13:05:39 ----D---- C:\Program Files\Online Services
2010-02-26 13:05:20 ----D---- C:\WINDOWS\system32\DirectX
2010-02-26 13:04:55 ----A---- C:\WINDOWS\system32\atrace.dll
2010-02-26 13:04:51 ----A---- C:\WINDOWS\system32\desktop.ini
2010-02-26 13:04:51 ----A---- C:\WINDOWS\desktop.ini
2010-02-26 13:04:43 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-02-26 13:04:42 ----A---- C:\WINDOWS\system32\acctres.dll
2010-02-26 13:04:41 ----D---- C:\Program Files\Common Files\Services
2010-02-26 13:04:38 ----SD---- C:\WINDOWS\Tasks
2010-02-26 13:04:38 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-02-26 13:04:37 ----D---- C:\Program Files\Common Files\MSSoap
2010-02-26 13:04:32 ----D---- C:\WINDOWS\srchasst
2010-02-26 13:04:31 ----D---- C:\WINDOWS\system32\Macromed
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wups.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-26 13:04:21 ----D---- C:\Program Files\Movie Maker
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-26 13:04:11 ----D---- C:\WINDOWS\system32\Restore
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srclient.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\ils.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\msconf.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-02-26 13:04:06 ----D---- C:\Program Files\NetMeeting
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-02-26 13:04:05 ----A---- C:\WINDOWS\system32\inetres.dll
2010-02-26 13:04:04 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-02-26 13:04:02 ----D---- C:\Program Files\Outlook Express
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstask.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\isign32.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-02-26 13:03:54 ----D---- C:\Program Files\Common Files\System
2010-02-26 13:03:49 ----D---- C:\Program Files\Internet Explorer
2010-02-26 13:03:17 ----D---- C:\Program Files\ComPlus Applications
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vbaddin.ini
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vb.ini
2010-02-26 13:03:10 ----D---- C:\WINDOWS\Registration
2010-02-26 13:03:03 ----D---- C:\Program Files\Windows Media Player
2010-02-26 13:02:55 ----D---- C:\Program Files\Messenger
2010-02-26 13:02:50 ----D---- C:\Program Files\MSN Gaming Zone
2010-02-26 13:02:50 ----A---- C:\WINDOWS\system32\write.exe
2010-02-26 13:02:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\hticons.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avwav.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-02-26 13:02:37 ----A---- C:\WINDOWS\system32\winchat.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\charmap.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\getuname.dll
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\winmine.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\sol.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\calc.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tskill.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\reset.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\freecell.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\shadow.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\regini.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\msg.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\logoff.exe
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\stclient.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-26 13:02:23 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-26 13:02:17 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-26 13:02:15 ----D---- C:\Program Files\Windows NT
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\spider.exe
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-02-26 13:02:11 ----D---- C:\WINDOWS\system32\MsDtc
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-02-26 13:02:09 ----D---- C:\WINDOWS\system32\Com
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-26 13:02:00 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-02-27 09:36:22 ----A---- C:\WINDOWS\win.ini
2010-02-26 13:46:37 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-02-11 28880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-02-11 162512]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-02-11 46672]
R1 pctfw2;pctfw2; \??\C:\WINDOWS\system32\drivers\pctfw2.sys []
R1 pctmp;PC Tools Firewall Memory Protection Driver; C:\WINDOWS\system32\drivers\pctmp.sys [2008-02-21 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver; C:\WINDOWS\system32\drivers\pctssipc.sys [2008-02-21 18328]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-02-11 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-02-11 100432]
R3 Accelerometer;HP Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2008-05-23 28592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2009-01-16 339456]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-02-11 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-05-19 3566080]
R3 BCM43XX;Broadcom 802.11 - ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2010-02-26 1950336]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2009-01-14 534568]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2009-01-14 37160]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2009-01-14 991656]
R3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2009-01-14 156816]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2009-01-14 47272]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 SFilter;PCTools Driver; C:\WINDOWS\system32\DRIVERS\pctfw.sys [2008-02-25 93440]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2009-03-26 1765168]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-02-06 205232]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2009-08-17 291840]
S3 an1fo9us;an1fo9us; C:\WINDOWS\system32\drivers\an1fo9us.sys []
S3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-04-01 93184]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2009-03-16 58208]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-05-19 602112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-11 346720]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2008-03-19 92056]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2010-02-26 25088]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-12-04 222512]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-23 223232]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
Dakujem
Log:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Róbert at 2010-02-27 11:20:15
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 98 GB (93%) free of 105 GB
Total RAM: 3069 MB (85% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:20:30, on 27. 2. 2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\AccelerometerSt.Exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\CTFMON.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Róbert\Plocha\RSIT.exe
C:\Program Files\trend micro\Róbert.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.Exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\herss.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 6089 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Registry Winner Schedule.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-13 63128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"=C:\WINDOWS\system32\AccelerometerSt.Exe [2008-06-18 82224]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2008-07-25 888832]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2010-02-26 2097152]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-05-19 61440]
"HPCam_Menu"=c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-03-10 506936]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-01-16 1044480]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-02-18 177720]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2008-03-28 2598808]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-02-11 2756488]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"cdoosoft"=C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\herss.exe [2010-02-26 99328]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2009-04-24 203928]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-05-19 155648]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0c909c76-22d0-11df-8859-c78d13e3bac2}]
shell\AutoRun\command - E:\s1.exe
shell\open\command - E:\s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b7170dee-237c-11df-8865-00247eaa9c51}]
shell\AutoRun\command - H:\s1.exe
shell\open\command - H:\s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ca51826d-22d3-11df-96e8-806d6172696f}]
shell\AutoRun\command - s1.exe
shell\open\command - s1.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d986631e-237e-11df-ab97-806d6172696f}]
shell\AutoRun\command - s1.exe
shell\open\command - s1.exe
======List of files/folders created in the last 1 months======
2010-02-27 11:20:16 ----D---- C:\Program Files\trend micro
2010-02-27 11:20:15 ----D---- C:\rsit
2010-02-27 10:34:53 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-27 10:34:49 ----D---- C:\Program Files\Alwil Software
2010-02-27 10:34:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-02-27 10:21:25 ----SHD---- C:\RECYCLER
2010-02-27 09:55:22 ----D---- C:\Program Files\Registry Winner
2010-02-27 09:50:44 ----D---- C:\Program Files\DVD Shrink
2010-02-27 09:50:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
2010-02-27 09:47:17 ----D---- C:\Program Files\Alcohol Soft
2010-02-27 09:46:56 ----D---- C:\Documents and Settings\Róbert\Data aplikací\PCToolsFirewallPlus
2010-02-27 09:44:03 ----D---- C:\Program Files\PowerQuest
2010-02-27 09:43:30 ----D---- C:\Program Files\Verdict Free
2010-02-27 09:43:01 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Opera
2010-02-27 09:42:36 ----A---- C:\WINDOWS\iun6002.exe
2010-02-27 09:42:33 ----D---- C:\Program Files\Codec Pack - All In 1
2010-02-27 09:42:15 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2010-02-27 09:40:52 ----D---- C:\Program Files\Common Files\PC Tools
2010-02-27 09:40:51 ----D---- C:\Program Files\PC Tools Firewall Plus
2010-02-27 09:40:14 ----D---- C:\Program Files\Opera
2010-02-27 09:38:46 ----D---- C:\Program Files\Microsoft Works
2010-02-27 09:38:30 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-27 09:38:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-27 09:37:59 ----D---- C:\Program Files\Microsoft.NET
2010-02-27 09:36:35 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-02-27 09:36:12 ----D---- C:\WINDOWS\SHELLNEW
2010-02-27 09:35:59 ----D---- C:\Program Files\Microsoft Office
2010-02-27 09:35:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-27 09:35:46 ----RHD---- C:\MSOCache
2010-02-27 09:33:49 ----D---- C:\Documents and Settings\Róbert\Data aplikací\WinRAR
2010-02-27 09:30:46 ----D---- C:\totalcmd
2010-02-27 09:30:46 ----A---- C:\WINDOWS\wincmd.ini
2010-02-27 09:28:26 ----D---- C:\Program Files\WinRAR
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-02-26 15:54:18 ----D---- C:\Program Files\Common Files\Ahead
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-02-26 15:54:17 ----D---- C:\Program Files\Ahead
2010-02-26 15:54:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\wmv9vcm.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\ssldivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\libdivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dtu100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\divx.dll
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Real
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Real
2010-02-26 15:53:42 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-26 15:53:42 ----D---- C:\Program Files\Common Files\Adobe
2010-02-26 15:53:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-02-26 15:53:37 ----D---- C:\Program Files\Adobe
2010-02-26 15:47:41 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-02-26 15:47:39 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmns.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmn.dll
2010-02-26 15:47:34 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2010-02-26 15:47:29 ----D---- C:\Program Files\Synaptics
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-02-26 14:41:43 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-26 14:41:30 ----D---- C:\WINDOWS\system32\cs-CZ
2010-02-26 14:40:10 ----D---- C:\Program Files\MSBuild
2010-02-26 14:40:07 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-26 14:40:04 ----D---- C:\WINDOWS\system32\en-us
2010-02-26 14:40:04 ----D---- C:\Program Files\Reference Assemblies
2010-02-26 14:39:42 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-26 14:37:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-02-26 14:37:18 ----D---- C:\Program Files\MSXML 6.0
2010-02-26 14:34:17 ----D---- C:\Program Files\Atheros
2010-02-26 14:34:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Atheros
2010-02-26 14:30:57 ----D---- C:\Program Files\IDT
2010-02-26 14:12:31 ----D---- C:\Program Files\Marvell
2010-02-26 14:10:08 ----A---- C:\WINDOWS\system32\BCMLogon.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\wltrynt.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.bat
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\preflib.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlu00.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlpkt.dll
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRYSVC.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRAY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLBCGCBPRO731.DLL
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\BCMWLTRY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\bcm1xsup.dll
2010-02-26 14:00:57 ----A---- C:\WINDOWS\system32\h323log.txt
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Macromedia
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Adobe
2010-02-26 13:52:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Mozilla
2010-02-26 13:52:21 ----D---- C:\Program Files\Mozilla Firefox
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-02-26 13:47:54 ----A---- C:\WINDOWS\system32\usbui.dll
2010-02-26 13:46:46 ----A---- C:\WINDOWS\imsins.BAK
2010-02-26 13:46:43 ----SHD---- C:\WINDOWS\Installer
2010-02-26 13:46:43 ----D---- C:\Program Files\Common Files\ODBC
2010-02-26 13:46:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-26 13:46:43 ----A---- C:\WINDOWS\ODBCINST.INI
2010-02-26 13:46:39 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-02-26 13:46:38 ----RD---- C:\Program Files
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\Róbert\Data aplikací\ATI
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\irclass.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-02-26 13:46:21 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-02-26 13:46:19 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-02-26 13:46:19 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-02-26 13:46:18 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-26 13:46:18 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-02-26 13:46:17 ----A---- C:\WINDOWS\system32\storprop.dll
2010-02-26 13:46:10 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-02-26 13:46:07 ----RA---- C:\WINDOWS\SET8.tmp
2010-02-26 13:46:05 ----RA---- C:\WINDOWS\SET4.tmp
2010-02-26 13:46:03 ----RA---- C:\WINDOWS\SET3.tmp
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-26 13:45:53 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-02-26 13:45:50 ----A---- C:\Documents and Settings\All Users\Data aplikací\HPWALog.txt
2010-02-26 13:45:25 ----A---- C:\WINDOWS\setuplog.txt
2010-02-26 13:45:22 ----D---- C:\Documents and Settings
2010-02-26 13:45:21 ----SHD---- C:\System Volume Information
2010-02-26 13:44:35 ----SH---- C:\boot.ini
2010-02-26 13:43:33 ----AD---- C:\Documents and Settings\All Users\Data aplikací\Temp
2010-02-26 13:41:39 ----D---- C:\Documents and Settings\Róbert\Data aplikací\hpqLog
2010-02-26 13:41:00 ----RSD---- C:\WINDOWS\assembly
2010-02-26 13:40:45 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-26 13:40:30 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-26 13:40:20 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-02-26 13:39:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-26 13:39:20 ----RSD---- C:\WINDOWS\Fonts
2010-02-26 13:39:20 ----RD---- C:\WINDOWS\Web
2010-02-26 13:39:20 ----HD---- C:\WINDOWS\inf
2010-02-26 13:39:20 ----D---- C:\WINDOWS\WinSxS
2010-02-26 13:39:20 ----D---- C:\WINDOWS\twain_32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Temp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wins
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wbem
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\usmt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\spool
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ShellExt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\Setup
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ras
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\oobe
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\npp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\IME
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\icsxml
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ias
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\export
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\drivers
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\dhcp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3com_dmi
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3076
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\2052
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1054
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1042
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1041
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1037
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1033
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1031
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1029
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1028
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1025
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system
2010-02-26 13:39:20 ----D---- C:\WINDOWS\security
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Resources
2010-02-26 13:39:20 ----D---- C:\WINDOWS\repair
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Provisioning
2010-02-26 13:39:20 ----D---- C:\WINDOWS\pchealth
2010-02-26 13:39:20 ----D---- C:\WINDOWS\PeerNet
2010-02-26 13:39:20 ----D---- C:\WINDOWS\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msapps
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msagent
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Media
2010-02-26 13:39:20 ----D---- C:\WINDOWS\java
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ime
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Help
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ehome
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Driver Cache
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Debug
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Cursors
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Connection Wizard
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\AppPatch
2010-02-26 13:39:20 ----D---- C:\WINDOWS\addins
2010-02-26 13:39:20 ----D---- C:\WINDOWS
2010-02-26 13:39:16 ----D---- C:\WINDOWS\HPQ
2010-02-26 13:38:50 ----D---- C:\Program Files\ATI Technologies
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\vsnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\csnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snuvcdsm.exe
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snp2uvc.ini
2010-02-26 13:32:10 ----D---- C:\Program Files\Common Files\SNP2UVC
2010-02-26 13:32:10 ----A---- C:\WINDOWS\system32\rsnp2uvc.dll
2010-02-26 13:31:40 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-26 13:30:31 ----A---- C:\WINDOWS\system32\bcmwlcoi.dll
2010-02-26 13:30:30 ----D---- C:\Program Files\Broadcom
2010-02-26 13:30:29 ----D---- C:\Documents and Settings\Róbert\Data aplikací\InstallShield
2010-02-26 13:29:43 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-02-26 13:29:36 ----D---- C:\Program Files\WIDCOMM
2010-02-26 13:22:53 ----D---- C:\Program Files\Analog Devices
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\DSndUp.exe
2010-02-26 13:22:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-02-26 13:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-02-26 13:21:54 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-26 13:21:50 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-26 13:21:40 ----RSH---- C:\c2e.exe
2010-02-26 13:13:12 ----D---- C:\Program Files\AMD
2010-02-26 13:13:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-26 13:13:06 ----D---- C:\WINDOWS\system32\HP3DG
2010-02-26 13:13:06 ----D---- C:\Program Files\Hewlett-Packard
2010-02-26 13:11:26 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Identities
2010-02-26 13:11:24 ----HD---- C:\Program Files\Uninstall Information
2010-02-26 13:11:18 ----ASH---- C:\Documents and Settings\Róbert\Data aplikací\desktop.ini
2010-02-26 13:11:17 ----SD---- C:\Documents and Settings\Róbert\Data aplikací\Microsoft
2010-02-26 13:10:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-26 13:10:21 ----D---- C:\WINDOWS\Prefetch
2010-02-26 13:10:20 ----SD---- C:\WINDOWS\system32\Microsoft
2010-02-26 13:10:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-26 13:07:09 ----D---- C:\WINDOWS\system32\xircom
2010-02-26 13:07:09 ----D---- C:\Program Files\xerox
2010-02-26 13:07:09 ----D---- C:\Program Files\microsoft frontpage
2010-02-26 13:06:51 ----A---- C:\WINDOWS\control.ini
2010-02-26 13:06:51 ----A---- C:\AUTOEXEC.BAT
2010-02-26 13:06:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-26 13:06:38 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-02-26 13:05:52 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-02-26 13:05:52 ----RD---- C:\WINDOWS\Offline Web Pages
2010-02-26 13:05:52 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-02-26 13:05:47 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-02-26 13:05:43 ----HD---- C:\Program Files\WindowsUpdate
2010-02-26 13:05:39 ----D---- C:\Program Files\Online Services
2010-02-26 13:05:20 ----D---- C:\WINDOWS\system32\DirectX
2010-02-26 13:04:55 ----A---- C:\WINDOWS\system32\atrace.dll
2010-02-26 13:04:51 ----A---- C:\WINDOWS\system32\desktop.ini
2010-02-26 13:04:51 ----A---- C:\WINDOWS\desktop.ini
2010-02-26 13:04:43 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-02-26 13:04:42 ----A---- C:\WINDOWS\system32\acctres.dll
2010-02-26 13:04:41 ----D---- C:\Program Files\Common Files\Services
2010-02-26 13:04:38 ----SD---- C:\WINDOWS\Tasks
2010-02-26 13:04:38 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-02-26 13:04:37 ----D---- C:\Program Files\Common Files\MSSoap
2010-02-26 13:04:32 ----D---- C:\WINDOWS\srchasst
2010-02-26 13:04:31 ----D---- C:\WINDOWS\system32\Macromed
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wups.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-26 13:04:21 ----D---- C:\Program Files\Movie Maker
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-26 13:04:11 ----D---- C:\WINDOWS\system32\Restore
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srclient.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\ils.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\msconf.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-02-26 13:04:06 ----D---- C:\Program Files\NetMeeting
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-02-26 13:04:05 ----A---- C:\WINDOWS\system32\inetres.dll
2010-02-26 13:04:04 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-02-26 13:04:02 ----D---- C:\Program Files\Outlook Express
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstask.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\isign32.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-02-26 13:03:54 ----D---- C:\Program Files\Common Files\System
2010-02-26 13:03:49 ----D---- C:\Program Files\Internet Explorer
2010-02-26 13:03:17 ----D---- C:\Program Files\ComPlus Applications
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vbaddin.ini
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vb.ini
2010-02-26 13:03:10 ----D---- C:\WINDOWS\Registration
2010-02-26 13:03:03 ----D---- C:\Program Files\Windows Media Player
2010-02-26 13:02:55 ----D---- C:\Program Files\Messenger
2010-02-26 13:02:50 ----D---- C:\Program Files\MSN Gaming Zone
2010-02-26 13:02:50 ----A---- C:\WINDOWS\system32\write.exe
2010-02-26 13:02:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\hticons.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avwav.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-02-26 13:02:37 ----A---- C:\WINDOWS\system32\winchat.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\charmap.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\getuname.dll
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\winmine.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\sol.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\calc.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tskill.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\reset.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\freecell.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\shadow.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\regini.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\msg.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\logoff.exe
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\stclient.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-26 13:02:23 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-26 13:02:17 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-26 13:02:15 ----D---- C:\Program Files\Windows NT
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\spider.exe
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-02-26 13:02:11 ----D---- C:\WINDOWS\system32\MsDtc
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-02-26 13:02:09 ----D---- C:\WINDOWS\system32\Com
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-26 13:02:00 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-02-27 09:36:22 ----A---- C:\WINDOWS\win.ini
2010-02-26 13:46:37 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-02-11 28880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-02-11 162512]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-02-11 46672]
R1 pctfw2;pctfw2; \??\C:\WINDOWS\system32\drivers\pctfw2.sys []
R1 pctmp;PC Tools Firewall Memory Protection Driver; C:\WINDOWS\system32\drivers\pctmp.sys [2008-02-21 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver; C:\WINDOWS\system32\drivers\pctssipc.sys [2008-02-21 18328]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-02-11 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-02-11 100432]
R3 Accelerometer;HP Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2008-05-23 28592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2009-01-16 339456]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-02-11 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-05-19 3566080]
R3 BCM43XX;Broadcom 802.11 - ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2010-02-26 1950336]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2009-01-14 534568]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2009-01-14 37160]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2009-01-14 991656]
R3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2009-01-14 156816]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2009-01-14 47272]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 SFilter;PCTools Driver; C:\WINDOWS\system32\DRIVERS\pctfw.sys [2008-02-25 93440]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2009-03-26 1765168]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-02-06 205232]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2009-08-17 291840]
S3 an1fo9us;an1fo9us; C:\WINDOWS\system32\drivers\an1fo9us.sys []
S3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-04-01 93184]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2009-03-16 58208]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-05-19 602112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-11 346720]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2008-03-19 92056]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2010-02-26 25088]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-12-04 222512]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-23 223232]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware










Re: Avast hlasi stale malware
Hlasi striedavo na C: a na D: a aj na USB ak ho zapojim medzitym som urobil este raz avast kontrolu a naslo chyby v System Volume Information jak v C: tak aj v D: potom Local setings a aj v C:/c2.exe D:/d2.exe a mnoho ialsich podobnych. Lenze po restarte som stratil zvuk a nemozem si otvorit ziaden pevny disk jednoducho ma don nepusti zvuk si musim stale nanovo pripajat v pridani hardveru ale po restarte zase nie je asi tak Vdaka
Tu je log z combofixu:
ComboFix 10-02-26.03 - Róbert . 02. 2010 16:15:02.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.3069.2729 [GMT 1:00]
Spuštěný z: c:\documents and settings\Róbert\Plocha\ComboFix.exe
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: PC Tools Firewall Plus *disabled* {ABBD5028-5A95-4B6D-996E-98D64AE88D52}
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
c:\windows\system32\ieuinit.inf
c:\windows\system32\oem11.inf
D:\Autorun.inf
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 13:49 . 2004-08-03 22:07 46464 -c--a-w- c:\windows\system32\dllcache\gagp30kx.sys
2010-02-27 13:49 . 2004-08-03 22:07 46464 ----a-w- c:\windows\system32\drivers\GAGP30KX.SYS
2010-02-27 13:45 . 2004-08-03 21:32 10880 -c--a-w- c:\windows\system32\dllcache\admjoy.sys
2010-02-27 13:45 . 2004-08-03 21:32 10880 ----a-w- c:\windows\system32\drivers\admjoy.sys
2010-02-27 10:20 . 2010-02-27 10:20 -------- d-----w- c:\program files\trend micro
2010-02-27 10:20 . 2010-02-27 10:20 -------- d-----w- C:\rsit
2010-02-27 09:35 . 2010-02-11 18:42 162512 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-02-27 09:35 . 2010-02-11 18:38 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-02-27 09:35 . 2010-02-11 18:39 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-02-27 09:35 . 2010-02-11 18:42 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-02-27 09:35 . 2010-02-11 18:38 100432 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-02-27 09:35 . 2010-02-11 18:38 94800 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-02-27 09:35 . 2010-02-11 18:38 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-02-27 09:34 . 2010-02-11 18:53 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-02-27 09:34 . 2010-02-11 18:53 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-02-27 09:34 . 2010-02-27 09:34 -------- d-----w- c:\program files\Alwil Software
2010-02-27 08:55 . 2010-02-27 08:55 -------- d-----w- c:\program files\Registry Winner
2010-02-27 08:50 . 2010-02-27 08:50 -------- d-----w- c:\program files\DVD Shrink
2010-02-27 08:47 . 2010-02-27 08:47 -------- d-----w- c:\program files\Alcohol Soft
2010-02-27 08:45 . 2010-02-27 08:45 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-27 08:44 . 2010-02-27 08:44 -------- d-----w- c:\program files\PowerQuest
2010-02-27 08:43 . 2010-02-27 08:43 -------- d-----w- c:\program files\Verdict Free
2010-02-27 08:42 . 2010-02-27 08:42 737280 ----a-w- c:\windows\iun6002.exe
2010-02-27 08:42 . 2010-02-27 08:42 -------- d-----w- c:\program files\Codec Pack - All In 1
2010-02-27 08:40 . 2008-03-12 08:30 159896 ----a-w- c:\windows\system32\drivers\pctfw2.sys
2010-02-27 08:40 . 2008-02-25 15:38 93440 ----a-w- c:\windows\system32\drivers\pctfw.sys
2010-02-27 08:40 . 2010-02-27 08:40 -------- d-----w- c:\program files\Common Files\PC Tools
2010-02-27 08:40 . 2008-02-21 07:56 18328 ----a-w- c:\windows\system32\drivers\pctssipc.sys
2010-02-27 08:40 . 2008-02-21 07:56 40856 ----a-w- c:\windows\system32\drivers\pctmp.sys
2010-02-27 08:40 . 2010-02-27 08:46 -------- d-----w- c:\program files\PC Tools Firewall Plus
2010-02-27 08:40 . 2010-02-27 09:26 -------- d-----w- c:\program files\Opera
2010-02-27 08:38 . 2010-02-27 08:38 -------- d-----w- c:\program files\Microsoft Works
2010-02-27 08:37 . 2010-02-27 08:37 -------- d-----w- c:\program files\Microsoft.NET
2010-02-27 08:36 . 2010-02-27 08:36 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-02-27 08:36 . 2010-02-27 08:36 -------- d-----w- c:\windows\SHELLNEW
2010-02-27 08:35 . 2010-02-27 08:35 -------- d-----r- C:\MSOCache
2010-02-27 08:30 . 2010-02-27 08:31 -------- d-----w- C:\totalcmd
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\UC.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\RAR.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\PKZIP.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\LHA.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\ARJ.PIF
2010-02-26 14:54 . 2004-03-02 16:37 125184 ------w- c:\windows\system32\drivers\imagesrv.sys
2010-02-26 14:54 . 2004-03-02 16:37 5504 ------w- c:\windows\system32\drivers\imagedrv.sys
2010-02-26 14:54 . 2010-02-26 14:54 -------- d-----w- c:\program files\Common Files\Ahead
2010-02-26 14:54 . 2004-07-26 16:16 476320 ------w- c:\windows\system32\ImagXpr7.dll
2010-02-26 14:54 . 2004-07-26 16:16 471040 ------w- c:\windows\system32\ImagXRA7.dll
2010-02-26 14:54 . 2004-07-26 16:16 262144 ------w- c:\windows\system32\ImagXR7.dll
2010-02-26 14:54 . 2004-07-26 16:16 1568768 ------w- c:\windows\system32\ImagX7.dll
2010-02-26 14:54 . 2001-07-09 10:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2010-02-26 14:54 . 2000-06-26 10:45 106496 ----a-w- c:\windows\system32\TwnLib20.dll
2010-02-26 14:54 . 2010-02-26 14:54 -------- d-----w- c:\program files\Ahead
2010-02-26 14:47 . 2008-03-21 12:57 14640 ------w- c:\windows\system32\spmsgXP_2k3.dll
2010-02-26 14:47 . 2007-06-18 15:12 16768 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys
2010-02-26 14:47 . 2006-11-02 05:09 1419232 ----a-w- c:\windows\system32\wdfcoinstaller01005.dll
2010-02-26 14:47 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmns.dll
2010-02-26 14:47 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmn.dll
2010-02-26 14:47 . 2010-02-26 14:47 -------- d-----w- c:\program files\Synaptics
2010-02-26 14:47 . 2009-02-06 10:33 205232 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-02-26 14:47 . 2009-02-06 10:32 161064 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-02-26 14:47 . 2009-02-06 10:32 120104 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-02-26 14:47 . 2009-02-06 10:32 206120 ----a-w- c:\windows\system32\SynCtrl.dll
2010-02-26 14:47 . 2009-02-06 10:32 169256 ----a-w- c:\windows\system32\SynCOM.dll
2010-02-26 14:47 . 2008-07-08 10:55 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2010-02-26 13:41 . 2010-02-26 13:41 -------- d-----w- c:\windows\system32\cs-CZ
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\program files\MSBuild
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\windows\system32\XPSViewer
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\program files\Reference Assemblies
2010-02-26 13:39 . 2007-03-22 19:24 28160 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-02-26 13:39 . 2006-06-29 12:07 14048 ------w- c:\windows\system32\spmsg2.dll
2010-02-26 13:37 . 2010-02-26 13:37 -------- d-----w- c:\program files\MSXML 6.0
2010-02-26 13:34 . 2009-03-16 22:19 58208 ----a-w- c:\windows\system32\wsimd.sys
2010-02-26 13:34 . 2009-03-16 22:19 58208 ----a-w- c:\windows\system32\drivers\wsimd.sys
2010-02-26 13:34 . 2010-02-26 13:34 -------- d-----w- c:\program files\Atheros
2010-02-26 13:30 . 2010-02-26 13:31 -------- d-----w- c:\program files\IDT
2010-02-26 13:12 . 2010-02-26 13:12 -------- d-----w- c:\program files\Marvell
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 15:02 . 2001-10-25 12:00 78354 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 15:02 . 2001-10-25 12:00 429444 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 12:36 . 2010-02-26 12:06 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-27 12:36 . 2010-02-26 12:06 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-27 12:35 . 2010-02-26 12:06 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-27 08:43 . 2010-02-26 12:21 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-26 14:53 . 2010-02-26 14:53 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-02-26 14:53 . 2010-02-26 14:53 -------- d-----w- c:\program files\Common Files\Adobe
2010-02-26 14:48 . 2010-02-26 12:13 -------- d-----w- c:\program files\Hewlett-Packard
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01007.Wdf
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_HpqKbFiltr_01005.Wdf
2010-02-26 14:47 . 2010-02-26 12:21 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-26 13:09 . 2010-02-26 12:30 91376 ----a-w- c:\windows\system32\bcmwlcoi.dll
2010-02-26 12:52 . 2010-02-26 12:52 0 ----a-w- c:\windows\nsreg.dat
2010-02-26 12:45 . 2010-02-26 12:45 0 ----a-w- c:\windows\ativpsrm.bin
2010-02-26 12:43 . 2010-02-26 12:38 -------- d-----w- c:\program files\ATI Technologies
2010-02-26 12:32 . 2010-02-26 12:32 -------- d-----w- c:\program files\Common Files\SNP2UVC
2010-02-26 12:30 . 2010-02-26 12:30 -------- d-----w- c:\program files\Broadcom
2010-02-26 12:29 . 2010-02-26 12:29 -------- d-----w- c:\program files\WIDCOMM
2010-02-26 12:22 . 2010-02-26 12:22 -------- d-----w- c:\program files\Analog Devices
2010-02-26 12:13 . 2010-02-26 12:13 -------- d-----w- c:\program files\AMD
2010-02-26 12:07 . 2010-02-26 12:07 -------- d-----w- c:\program files\microsoft frontpage
2010-02-26 12:03 . 2010-02-26 12:03 21812 ----a-w- c:\windows\system32\emptyregdb.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-04-24 203928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"="c:\windows\system32\AccelerometerSt.Exe" [2008-06-18 82224]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2010-02-26 2097152]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-05-19 61440]
"HPCam_Menu"="c:\program files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" [2009-02-25 218408]
"WirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-03-10 506936]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2009-01-16 1044480]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-02-06 1430824]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-02-18 177720]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"00PCTFW"="c:\program files\PC Tools Firewall Plus\FirewallGUI.exe" [2008-03-28 2598808]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-02-11 2756488]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-12-11 604776]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Opera\\opera.exe"=
R0 Amddfltr;Amd Disk Lower Filter Driver;c:\windows\system32\drivers\Amddfltr.sys [26. 2. 2010 13:13 15416]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\windows\system32\drivers\sfaudio.sys [28. 3. 2008 11:14 24064]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [27. 2. 2010 10:35 162512]
R1 pctfw2;pctfw2;c:\windows\system32\drivers\pctfw2.sys [27. 2. 2010 9:40 159896]
R1 pctmp;PC Tools Firewall Memory Protection Driver;c:\windows\system32\drivers\pctmp.sys [27. 2. 2010 9:40 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver;c:\windows\system32\drivers\pctssipc.sys [27. 2. 2010 9:40 18328]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27. 2. 2010 10:35 19024]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [27. 2. 2010 9:45 721904]
S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [26. 2. 2010 15:47 222512]
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Registry Winner Schedule.job
- c:\program files\Registry Winner\RegistryWinner.exe [2010-02-27 16:26]
.
.
------- Doplňkový sken -------
.
IE: Odeslat do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat do zařízení Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\documents and settings\Róbert\Data aplikací\Mozilla\Firefox\Profiles\oenkm593.default\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 16:17
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(1296)
c:\windows\system32\Ati2evxx.dll
c:\windows\System32\BCMLogon.dll
.
Celkový čas: 2010-02-27 16:18:22
ComboFix-quarantined-files.txt 2010-02-27 15:18
Před spuštěním: Volných bajtů: 100 978 417 664
Po spuštění: Volných bajtů: 100 965 007 360
- - End Of File - - 9FD183C5B5ABAE9302E189F45A4BDF21
Tu je log z combofixu:
ComboFix 10-02-26.03 - Róbert . 02. 2010 16:15:02.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.3069.2729 [GMT 1:00]
Spuštěný z: c:\documents and settings\Róbert\Plocha\ComboFix.exe
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: PC Tools Firewall Plus *disabled* {ABBD5028-5A95-4B6D-996E-98D64AE88D52}
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
c:\windows\system32\ieuinit.inf
c:\windows\system32\oem11.inf
D:\Autorun.inf
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 13:49 . 2004-08-03 22:07 46464 -c--a-w- c:\windows\system32\dllcache\gagp30kx.sys
2010-02-27 13:49 . 2004-08-03 22:07 46464 ----a-w- c:\windows\system32\drivers\GAGP30KX.SYS
2010-02-27 13:45 . 2004-08-03 21:32 10880 -c--a-w- c:\windows\system32\dllcache\admjoy.sys
2010-02-27 13:45 . 2004-08-03 21:32 10880 ----a-w- c:\windows\system32\drivers\admjoy.sys
2010-02-27 10:20 . 2010-02-27 10:20 -------- d-----w- c:\program files\trend micro
2010-02-27 10:20 . 2010-02-27 10:20 -------- d-----w- C:\rsit
2010-02-27 09:35 . 2010-02-11 18:42 162512 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-02-27 09:35 . 2010-02-11 18:38 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-02-27 09:35 . 2010-02-11 18:39 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-02-27 09:35 . 2010-02-11 18:42 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-02-27 09:35 . 2010-02-11 18:38 100432 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-02-27 09:35 . 2010-02-11 18:38 94800 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-02-27 09:35 . 2010-02-11 18:38 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-02-27 09:34 . 2010-02-11 18:53 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-02-27 09:34 . 2010-02-11 18:53 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-02-27 09:34 . 2010-02-27 09:34 -------- d-----w- c:\program files\Alwil Software
2010-02-27 08:55 . 2010-02-27 08:55 -------- d-----w- c:\program files\Registry Winner
2010-02-27 08:50 . 2010-02-27 08:50 -------- d-----w- c:\program files\DVD Shrink
2010-02-27 08:47 . 2010-02-27 08:47 -------- d-----w- c:\program files\Alcohol Soft
2010-02-27 08:45 . 2010-02-27 08:45 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-27 08:44 . 2010-02-27 08:44 -------- d-----w- c:\program files\PowerQuest
2010-02-27 08:43 . 2010-02-27 08:43 -------- d-----w- c:\program files\Verdict Free
2010-02-27 08:42 . 2010-02-27 08:42 737280 ----a-w- c:\windows\iun6002.exe
2010-02-27 08:42 . 2010-02-27 08:42 -------- d-----w- c:\program files\Codec Pack - All In 1
2010-02-27 08:40 . 2008-03-12 08:30 159896 ----a-w- c:\windows\system32\drivers\pctfw2.sys
2010-02-27 08:40 . 2008-02-25 15:38 93440 ----a-w- c:\windows\system32\drivers\pctfw.sys
2010-02-27 08:40 . 2010-02-27 08:40 -------- d-----w- c:\program files\Common Files\PC Tools
2010-02-27 08:40 . 2008-02-21 07:56 18328 ----a-w- c:\windows\system32\drivers\pctssipc.sys
2010-02-27 08:40 . 2008-02-21 07:56 40856 ----a-w- c:\windows\system32\drivers\pctmp.sys
2010-02-27 08:40 . 2010-02-27 08:46 -------- d-----w- c:\program files\PC Tools Firewall Plus
2010-02-27 08:40 . 2010-02-27 09:26 -------- d-----w- c:\program files\Opera
2010-02-27 08:38 . 2010-02-27 08:38 -------- d-----w- c:\program files\Microsoft Works
2010-02-27 08:37 . 2010-02-27 08:37 -------- d-----w- c:\program files\Microsoft.NET
2010-02-27 08:36 . 2010-02-27 08:36 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-02-27 08:36 . 2010-02-27 08:36 -------- d-----w- c:\windows\SHELLNEW
2010-02-27 08:35 . 2010-02-27 08:35 -------- d-----r- C:\MSOCache
2010-02-27 08:30 . 2010-02-27 08:31 -------- d-----w- C:\totalcmd
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\UC.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\RAR.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\PKZIP.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\LHA.PIF
2010-02-27 08:30 . 2007-03-21 06:00 545 ----a-w- c:\windows\ARJ.PIF
2010-02-26 14:54 . 2004-03-02 16:37 125184 ------w- c:\windows\system32\drivers\imagesrv.sys
2010-02-26 14:54 . 2004-03-02 16:37 5504 ------w- c:\windows\system32\drivers\imagedrv.sys
2010-02-26 14:54 . 2010-02-26 14:54 -------- d-----w- c:\program files\Common Files\Ahead
2010-02-26 14:54 . 2004-07-26 16:16 476320 ------w- c:\windows\system32\ImagXpr7.dll
2010-02-26 14:54 . 2004-07-26 16:16 471040 ------w- c:\windows\system32\ImagXRA7.dll
2010-02-26 14:54 . 2004-07-26 16:16 262144 ------w- c:\windows\system32\ImagXR7.dll
2010-02-26 14:54 . 2004-07-26 16:16 1568768 ------w- c:\windows\system32\ImagX7.dll
2010-02-26 14:54 . 2001-07-09 10:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2010-02-26 14:54 . 2000-06-26 10:45 106496 ----a-w- c:\windows\system32\TwnLib20.dll
2010-02-26 14:54 . 2010-02-26 14:54 -------- d-----w- c:\program files\Ahead
2010-02-26 14:47 . 2008-03-21 12:57 14640 ------w- c:\windows\system32\spmsgXP_2k3.dll
2010-02-26 14:47 . 2007-06-18 15:12 16768 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys
2010-02-26 14:47 . 2006-11-02 05:09 1419232 ----a-w- c:\windows\system32\wdfcoinstaller01005.dll
2010-02-26 14:47 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmns.dll
2010-02-26 14:47 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmn.dll
2010-02-26 14:47 . 2010-02-26 14:47 -------- d-----w- c:\program files\Synaptics
2010-02-26 14:47 . 2009-02-06 10:33 205232 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-02-26 14:47 . 2009-02-06 10:32 161064 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-02-26 14:47 . 2009-02-06 10:32 120104 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-02-26 14:47 . 2009-02-06 10:32 206120 ----a-w- c:\windows\system32\SynCtrl.dll
2010-02-26 14:47 . 2009-02-06 10:32 169256 ----a-w- c:\windows\system32\SynCOM.dll
2010-02-26 14:47 . 2008-07-08 10:55 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2010-02-26 13:41 . 2010-02-26 13:41 -------- d-----w- c:\windows\system32\cs-CZ
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\program files\MSBuild
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\windows\system32\XPSViewer
2010-02-26 13:40 . 2010-02-26 13:40 -------- d-----w- c:\program files\Reference Assemblies
2010-02-26 13:39 . 2007-03-22 19:24 28160 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-02-26 13:39 . 2006-06-29 12:07 14048 ------w- c:\windows\system32\spmsg2.dll
2010-02-26 13:37 . 2010-02-26 13:37 -------- d-----w- c:\program files\MSXML 6.0
2010-02-26 13:34 . 2009-03-16 22:19 58208 ----a-w- c:\windows\system32\wsimd.sys
2010-02-26 13:34 . 2009-03-16 22:19 58208 ----a-w- c:\windows\system32\drivers\wsimd.sys
2010-02-26 13:34 . 2010-02-26 13:34 -------- d-----w- c:\program files\Atheros
2010-02-26 13:30 . 2010-02-26 13:31 -------- d-----w- c:\program files\IDT
2010-02-26 13:12 . 2010-02-26 13:12 -------- d-----w- c:\program files\Marvell
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 15:02 . 2001-10-25 12:00 78354 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 15:02 . 2001-10-25 12:00 429444 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 12:36 . 2010-02-26 12:06 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-27 12:36 . 2010-02-26 12:06 2426 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-27 12:35 . 2010-02-26 12:06 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-27 08:43 . 2010-02-26 12:21 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-26 14:53 . 2010-02-26 14:53 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-02-26 14:53 . 2010-02-26 14:53 -------- d-----w- c:\program files\Common Files\Adobe
2010-02-26 14:48 . 2010-02-26 12:13 -------- d-----w- c:\program files\Hewlett-Packard
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01007.Wdf
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2010-02-26 14:47 . 2010-02-26 14:47 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_HpqKbFiltr_01005.Wdf
2010-02-26 14:47 . 2010-02-26 12:21 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-26 13:09 . 2010-02-26 12:30 91376 ----a-w- c:\windows\system32\bcmwlcoi.dll
2010-02-26 12:52 . 2010-02-26 12:52 0 ----a-w- c:\windows\nsreg.dat
2010-02-26 12:45 . 2010-02-26 12:45 0 ----a-w- c:\windows\ativpsrm.bin
2010-02-26 12:43 . 2010-02-26 12:38 -------- d-----w- c:\program files\ATI Technologies
2010-02-26 12:32 . 2010-02-26 12:32 -------- d-----w- c:\program files\Common Files\SNP2UVC
2010-02-26 12:30 . 2010-02-26 12:30 -------- d-----w- c:\program files\Broadcom
2010-02-26 12:29 . 2010-02-26 12:29 -------- d-----w- c:\program files\WIDCOMM
2010-02-26 12:22 . 2010-02-26 12:22 -------- d-----w- c:\program files\Analog Devices
2010-02-26 12:13 . 2010-02-26 12:13 -------- d-----w- c:\program files\AMD
2010-02-26 12:07 . 2010-02-26 12:07 -------- d-----w- c:\program files\microsoft frontpage
2010-02-26 12:03 . 2010-02-26 12:03 21812 ----a-w- c:\windows\system32\emptyregdb.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-04-24 203928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"="c:\windows\system32\AccelerometerSt.Exe" [2008-06-18 82224]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2010-02-26 2097152]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-05-19 61440]
"HPCam_Menu"="c:\program files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" [2009-02-25 218408]
"WirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-03-10 506936]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2009-01-16 1044480]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-02-06 1430824]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2009-02-18 177720]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"00PCTFW"="c:\program files\PC Tools Firewall Plus\FirewallGUI.exe" [2008-03-28 2598808]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-02-11 2756488]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-12-11 604776]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Opera\\opera.exe"=
R0 Amddfltr;Amd Disk Lower Filter Driver;c:\windows\system32\drivers\Amddfltr.sys [26. 2. 2010 13:13 15416]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\windows\system32\drivers\sfaudio.sys [28. 3. 2008 11:14 24064]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [27. 2. 2010 10:35 162512]
R1 pctfw2;pctfw2;c:\windows\system32\drivers\pctfw2.sys [27. 2. 2010 9:40 159896]
R1 pctmp;PC Tools Firewall Memory Protection Driver;c:\windows\system32\drivers\pctmp.sys [27. 2. 2010 9:40 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver;c:\windows\system32\drivers\pctssipc.sys [27. 2. 2010 9:40 18328]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27. 2. 2010 10:35 19024]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [27. 2. 2010 9:45 721904]
S3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [26. 2. 2010 15:47 222512]
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Registry Winner Schedule.job
- c:\program files\Registry Winner\RegistryWinner.exe [2010-02-27 16:26]
.
.
------- Doplňkový sken -------
.
IE: Odeslat do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat do zařízení Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\documents and settings\Róbert\Data aplikací\Mozilla\Firefox\Profiles\oenkm593.default\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 16:17
Windows 5.1.2600 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(1296)
c:\windows\system32\Ati2evxx.dll
c:\windows\System32\BCMLogon.dll
.
Celkový čas: 2010-02-27 16:18:22
ComboFix-quarantined-files.txt 2010-02-27 15:18
Před spuštěním: Volných bajtů: 100 978 417 664
Po spuštění: Volných bajtů: 100 965 007 360
- - End Of File - - 9FD183C5B5ABAE9302E189F45A4BDF21
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware


- Podle návodu v odkazu nainstalujte, poté dejte úplný sken.
- Nic nemažte
MBAM má občas falešné detekce a mohl by smazat např. systémové soubory.
- Log vložte sem.
Re: Avast hlasi stale malware
MBAM:
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3800
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
27. 2. 2010 17:03:24
mbam-log-2010-02-27 (17-03-24).txt
Typ kontroly: Kompletní kontrola (C:\|D:\|H:\|)
Zkontrolované objekty: 143481
Uplynulý čas: 12 minute(s), 51 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3800
Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180
27. 2. 2010 17:03:24
mbam-log-2010-02-27 (17-03-24).txt
Typ kontroly: Kompletní kontrola (C:\|D:\|H:\|)
Zkontrolované objekty: 143481
Uplynulý čas: 12 minute(s), 51 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware
Log 1
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit quick scan 2010-02-27 20:18:51
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\pwxdipog.sys
---- System - GMER 1.0.15 ----
SSDT spnm.sys ZwEnumerateKey [0xB9EC5CA4]
SSDT spnm.sys ZwEnumerateValueKey [0xB9EC6032]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0x9C9C04FE]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0x9C9C0322]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0x9C9C045C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
Device \FileSystem\Ntfs \Ntfs 8AB0B1F8
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Tcp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Udp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit quick scan 2010-02-27 20:18:51
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\pwxdipog.sys
---- System - GMER 1.0.15 ----
SSDT spnm.sys ZwEnumerateKey [0xB9EC5CA4]
SSDT spnm.sys ZwEnumerateValueKey [0xB9EC6032]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0x9C9C04FE]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0x9C9C0322]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0x9C9C045C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
Device \FileSystem\Ntfs \Ntfs 8AB0B1F8
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Tcp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Udp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----
Re: Avast hlasi stale malware
Log 2
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-02-27 20:30:56
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\pwxdipog.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\system32\drivers\pctmp.sys (Memory Monitor Driver/PCTools Research Pty Ltd.) ZwAllocateVirtualMemory [0xBA19AEEC]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwClose [0x9C9B3C5A]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateKey [0x9C9B3B16]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteKey [0x9C9B40CA]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteValueKey [0x9C9B3FF4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDuplicateObject [0x9C9B36EC]
SSDT spnm.sys ZwEnumerateKey [0xB9EC5CA4]
SSDT spnm.sys ZwEnumerateValueKey [0xB9EC6032]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenKey [0x9C9B3BF0]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenProcess [0x9C9B362C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenThread [0x9C9B3690]
SSDT \SystemRoot\system32\drivers\pctmp.sys (Memory Monitor Driver/PCTools Research Pty Ltd.) ZwProtectVirtualMemory [0xBA19B27E]
SSDT spnm.sys ZwQueryKey [0xB9EC610A]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwQueryValueKey [0x9C9B3D10]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRenameKey [0x9C9B4198]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRestoreKey [0x9C9B3CD0]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwSetValueKey [0x9C9B3E50]
INT 0x83 ? 8AB0CBF8
INT 0x94 ? 8A97FBF8
INT 0x94 ? 8A97FBF8
INT 0x94 ? 8A97FBF8
INT 0xA4 ? 8A97FBF8
INT 0xA4 ? 8A97FBF8
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0x9C9C04FE]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0x9C9C0322]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0x9C9C045C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Kernel code sections - GMER 1.0.15 ----
PAGE ntkrnlpa.exe!ZwLoadDriver 80582DFE 7 Bytes JMP 9C9C0460 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!NtCreateSection 805A9DEE 7 Bytes JMP 9C9C0326 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ObMakeTemporaryObject 805BAEDA 5 Bytes JMP 9C9BC4BA \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ObInsertObject 805C1810 5 Bytes JMP 9C9BD972 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ZwCreateProcessEx 805CF966 7 Bytes JMP 9C9C0502 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
? spnm.sys Systém nemůže nalézt uvedený soubor. !
.text C:\WINDOWS\system32\DRIVERS\ati2mtag.sys section is writeable [0xA9447000, 0x1C5E3C, 0xE8000020]
.text USBPORT.SYS!DllUnload A91BA62C 5 Bytes JMP 8A97F1D8
.text ar1z208z.SYS A90BE386 35 Bytes [00, 00, 00, 00, 00, 00, 20, ...]
.text ar1z208z.SYS A90BE3AA 24 Bytes [00, 00, 00, 00, 00, 00, 00, ...]
.text ar1z208z.SYS A90BE3C4 3 Bytes [00, 70, 02] {ADD [EAX+0x2], DH}
.text ar1z208z.SYS A90BE3C9 1 Byte [2E]
.text ar1z208z.SYS A90BE3C9 11 Bytes [2E, 00, 00, 00, 5A, 02, 00, ...]
.text ...
---- Kernel IAT/EAT - GMER 1.0.15 ----
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [B9EA8042] spnm.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [B9EA813E] spnm.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [B9EA80C0] spnm.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [B9EA8800] spnm.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [B9EA86D6] spnm.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [B9EB7E9C] spnm.sys
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfAcquireSpinLock] 001C9C96
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_UCHAR] C6168B00
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KeGetCurrentIrql] 001CB986
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfRaiseIrql] 428A0A00
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfLowerIrql] BA86880C
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!HalGetInterruptVector] 8B00001C
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!HalTranslateBusAddress] 24A48DFA
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KeStallExecutionProcessor] 00000000
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfReleaseSpinLock] 4B8BDF8B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_BUFFER_USHORT] 8D3F0304
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_USHORT] CB033043
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!WRITE_PORT_BUFFER_USHORT] 0673C13B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!WRITE_PORT_UCHAR] C13B0003
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[WMILIB.SYS!WmiSystemControl] 75000E7B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[WMILIB.SYS!WmiCompleteRequest] 0B7D80E3
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\WINDOWS\system32\services.exe[1372] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 003C0002
IAT C:\WINDOWS\system32\services.exe[1372] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW] 003C0000
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
Device \FileSystem\Ntfs \Ntfs 8AB0B1F8
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
Device \Driver\usbohci \Device\USBPDO-0 8A86E1F8
Device \Driver\dmio \Device\DmControl\DmIoDaemon 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmConfig 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmPnP 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmInfo 8AA9A1F8
Device \Driver\usbohci \Device\USBPDO-1 8A86E1F8
Device \Driver\usbohci \Device\USBPDO-2 8A86E1F8
Device \Driver\usbehci \Device\USBPDO-3 8A9731F8
Device \Driver\usbohci \Device\USBPDO-4 8A86E1F8
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Tcp pctfw2.sys (PC Tools TDI Driver/PC Tools)
Device \Driver\usbohci \Device\USBPDO-5 8A86E1F8
Device \Driver\PCI_PNP3490 \Device\00000062 spnm.sys
Device \Driver\usbehci \Device\USBPDO-6 8A9731F8
Device \Driver\Ftdisk \Device\HarddiskVolume1 8AB0D1F8
Device \Driver\Ftdisk \Device\HarddiskVolume2 8AB0D1F8
Device \Driver\Cdrom \Device\CdRom0 8A9801F8
Device \Driver\Cdrom \Device\CdRom1 8A9801F8
Device \Driver\atapi \Device\Ide\IdePort0 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdePort1 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e 8AB0C1F8
Device \Driver\Cdrom \Device\CdRom2 8A9801F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{3705FB9D-81F5-4727-B095-F5D7AEAEEF12} 8A629500
Device \Driver\sptd \Device\185962240 spnm.sys
Device \Driver\NetBT \Device\NetBt_Wins_Export 8A629500
Device \Driver\NetBT \Device\NetbiosSmb 8A629500
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Udp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device \Driver\usbohci \Device\USBFDO-0 8A86E1F8
Device \Driver\usbohci \Device\USBFDO-1 8A86E1F8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 8A613500
Device \Driver\usbehci \Device\USBFDO-2 8A9731F8
Device \FileSystem\MRxSmb \Device\LanmanRedirector 8A613500
Device \Driver\usbohci \Device\USBFDO-3 8A86E1F8
Device \Driver\usbohci \Device\USBFDO-4 8A86E1F8
Device \Driver\Ftdisk \Device\FtControl 8AB0D1F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{83B58C1C-F058-4CC8-B331-E7E248D2D7CB} 8A629500
Device \Driver\usbehci \Device\USBFDO-5 8A9731F8
Device \Driver\usbohci \Device\USBFDO-6 8A86E1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1Port2Path0Target1Lun0 8A65D1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1 8A65D1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1Port2Path0Target0Lun0 8A65D1F8
Device \FileSystem\Cdfs \Cdfs 8A8B5500
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
---- EOF - GMER 1.0.15 ----
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-02-27 20:30:56
Windows 5.1.2600 Service Pack 2
Running: gmer.exe; Driver: C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\pwxdipog.sys
---- System - GMER 1.0.15 ----
SSDT \SystemRoot\system32\drivers\pctmp.sys (Memory Monitor Driver/PCTools Research Pty Ltd.) ZwAllocateVirtualMemory [0xBA19AEEC]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwClose [0x9C9B3C5A]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateKey [0x9C9B3B16]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteKey [0x9C9B40CA]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDeleteValueKey [0x9C9B3FF4]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwDuplicateObject [0x9C9B36EC]
SSDT spnm.sys ZwEnumerateKey [0xB9EC5CA4]
SSDT spnm.sys ZwEnumerateValueKey [0xB9EC6032]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenKey [0x9C9B3BF0]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenProcess [0x9C9B362C]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwOpenThread [0x9C9B3690]
SSDT \SystemRoot\system32\drivers\pctmp.sys (Memory Monitor Driver/PCTools Research Pty Ltd.) ZwProtectVirtualMemory [0xBA19B27E]
SSDT spnm.sys ZwQueryKey [0xB9EC610A]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwQueryValueKey [0x9C9B3D10]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRenameKey [0x9C9B4198]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwRestoreKey [0x9C9B3CD0]
SSDT \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwSetValueKey [0x9C9B3E50]
INT 0x83 ? 8AB0CBF8
INT 0x94 ? 8A97FBF8
INT 0x94 ? 8A97FBF8
INT 0x94 ? 8A97FBF8
INT 0xA4 ? 8A97FBF8
INT 0xA4 ? 8A97FBF8
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateProcessEx [0x9C9C04FE]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwCreateSection [0x9C9C0322]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ZwLoadDriver [0x9C9C045C]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) NtCreateSection
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software) ObMakeTemporaryObject
---- Kernel code sections - GMER 1.0.15 ----
PAGE ntkrnlpa.exe!ZwLoadDriver 80582DFE 7 Bytes JMP 9C9C0460 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!NtCreateSection 805A9DEE 7 Bytes JMP 9C9C0326 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ObMakeTemporaryObject 805BAEDA 5 Bytes JMP 9C9BC4BA \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ObInsertObject 805C1810 5 Bytes JMP 9C9BD972 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
PAGE ntkrnlpa.exe!ZwCreateProcessEx 805CF966 7 Bytes JMP 9C9C0502 \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/ALWIL Software)
? spnm.sys Systém nemůže nalézt uvedený soubor. !
.text C:\WINDOWS\system32\DRIVERS\ati2mtag.sys section is writeable [0xA9447000, 0x1C5E3C, 0xE8000020]
.text USBPORT.SYS!DllUnload A91BA62C 5 Bytes JMP 8A97F1D8
.text ar1z208z.SYS A90BE386 35 Bytes [00, 00, 00, 00, 00, 00, 20, ...]
.text ar1z208z.SYS A90BE3AA 24 Bytes [00, 00, 00, 00, 00, 00, 00, ...]
.text ar1z208z.SYS A90BE3C4 3 Bytes [00, 70, 02] {ADD [EAX+0x2], DH}
.text ar1z208z.SYS A90BE3C9 1 Byte [2E]
.text ar1z208z.SYS A90BE3C9 11 Bytes [2E, 00, 00, 00, 5A, 02, 00, ...]
.text ...
---- Kernel IAT/EAT - GMER 1.0.15 ----
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [B9EA8042] spnm.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [B9EA813E] spnm.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [B9EA80C0] spnm.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [B9EA8800] spnm.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [B9EA86D6] spnm.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [B9EB7E9C] spnm.sys
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfAcquireSpinLock] 001C9C96
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_UCHAR] C6168B00
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KeGetCurrentIrql] 001CB986
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfRaiseIrql] 428A0A00
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfLowerIrql] BA86880C
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!HalGetInterruptVector] 8B00001C
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!HalTranslateBusAddress] 24A48DFA
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KeStallExecutionProcessor] 00000000
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!KfReleaseSpinLock] 4B8BDF8B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_BUFFER_USHORT] 8D3F0304
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!READ_PORT_USHORT] CB033043
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!WRITE_PORT_BUFFER_USHORT] 0673C13B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[HAL.dll!WRITE_PORT_UCHAR] C13B0003
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[WMILIB.SYS!WmiSystemControl] 75000E7B
IAT \SystemRoot\System32\Drivers\ar1z208z.SYS[WMILIB.SYS!WmiCompleteRequest] 0B7D80E3
---- User IAT/EAT - GMER 1.0.15 ----
IAT C:\WINDOWS\system32\services.exe[1372] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 003C0002
IAT C:\WINDOWS\system32\services.exe[1372] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW] 003C0000
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/ALWIL Software)
Device \FileSystem\Ntfs \Ntfs 8AB0B1F8
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Ip pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 wdf01000.sys (WDF Dynamic/Microsoft Corporation)
Device \Driver\usbohci \Device\USBPDO-0 8A86E1F8
Device \Driver\dmio \Device\DmControl\DmIoDaemon 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmConfig 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmPnP 8AA9A1F8
Device \Driver\dmio \Device\DmControl\DmInfo 8AA9A1F8
Device \Driver\usbohci \Device\USBPDO-1 8A86E1F8
Device \Driver\usbohci \Device\USBPDO-2 8A86E1F8
Device \Driver\usbehci \Device\USBPDO-3 8A9731F8
Device \Driver\usbohci \Device\USBPDO-4 8A86E1F8
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Tcp pctfw2.sys (PC Tools TDI Driver/PC Tools)
Device \Driver\usbohci \Device\USBPDO-5 8A86E1F8
Device \Driver\PCI_PNP3490 \Device\00000062 spnm.sys
Device \Driver\usbehci \Device\USBPDO-6 8A9731F8
Device \Driver\Ftdisk \Device\HarddiskVolume1 8AB0D1F8
Device \Driver\Ftdisk \Device\HarddiskVolume2 8AB0D1F8
Device \Driver\Cdrom \Device\CdRom0 8A9801F8
Device \Driver\Cdrom \Device\CdRom1 8A9801F8
Device \Driver\atapi \Device\Ide\IdePort0 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdePort1 8AB0C1F8
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-e 8AB0C1F8
Device \Driver\Cdrom \Device\CdRom2 8A9801F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{3705FB9D-81F5-4727-B095-F5D7AEAEEF12} 8A629500
Device \Driver\sptd \Device\185962240 spnm.sys
Device \Driver\NetBT \Device\NetBt_Wins_Export 8A629500
Device \Driver\NetBT \Device\NetbiosSmb 8A629500
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\Tcpip \Device\Udp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp pctfw2.sys (PC Tools TDI Driver/PC Tools)
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
Device \Driver\usbohci \Device\USBFDO-0 8A86E1F8
Device \Driver\usbohci \Device\USBFDO-1 8A86E1F8
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver 8A613500
Device \Driver\usbehci \Device\USBFDO-2 8A9731F8
Device \FileSystem\MRxSmb \Device\LanmanRedirector 8A613500
Device \Driver\usbohci \Device\USBFDO-3 8A86E1F8
Device \Driver\usbohci \Device\USBFDO-4 8A86E1F8
Device \Driver\Ftdisk \Device\FtControl 8AB0D1F8
Device \Driver\NetBT \Device\NetBT_Tcpip_{83B58C1C-F058-4CC8-B331-E7E248D2D7CB} 8A629500
Device \Driver\usbehci \Device\USBFDO-5 8A9731F8
Device \Driver\usbohci \Device\USBFDO-6 8A86E1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1Port2Path0Target1Lun0 8A65D1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1 8A65D1F8
Device \Driver\ar1z208z \Device\Scsi\ar1z208z1Port2Path0Target0Lun0 8A65D1F8
Device \FileSystem\Cdfs \Cdfs 8A8B5500
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@p0 C:\Program Files\Alcohol Soft\Alcohol 120\
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@h0 0
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04@ujdew 0xC4 0x10 0x8B 0xD2 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001@ujdew 0xE8 0x9C 0x45 0x60 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg40@ujdew 0x7D 0x20 0xF3 0x0A ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04\00000001\jdgg41@ujdew 0x7D 0x20 0xF3 0x0A ...
---- EOF - GMER 1.0.15 ----
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware

C:\Windows\System32\Drivers\ar1z208z.SYS
(Soubor nehledejte, jenom vložíte tučně označenou cestu, v případě hlášky "Soubor již byl testován" dejte otestovat znovu. Výsledek analýzy sem vložte.)


- Vyberte verzi podle svého operačního systému (64 & 32b). Uložte na plochu a spusťte.
- zvolte možnost Uninstall a restartujte PC.


- Vyskočí okénko, zkopírujte do něj:
Kód: Vybrat vše
"%userprofile%\plocha\mbr" -t
- Klikněte na OK
- Vytvoří se log s názvem mbr.log, vložte ho sem.
Re: Avast hlasi stale malware
Tak z tym prvym mi neurobilo nic lebo ho to vobec nemohlo najst a tu je ten log a tamto som odinstaloval tie emulatory
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys hpdskflt.sys hal.dll Amddfltr.sys ACPI.sys atapi.sys pciide.sys PCIIDEX.SYS
kernel: MBR read successfully
user & kernel MBR OK
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys hpdskflt.sys hal.dll Amddfltr.sys ACPI.sys atapi.sys pciide.sys PCIIDEX.SYS
kernel: MBR read successfully
user & kernel MBR OK
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware
No uz sa na disky dostanem ale ide pomalsie a zacal mrznut
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Avast hlasi stale malware

Re: Avast hlasi stale malware
Logfile of random's system information tool 1.06 (written by random/random)
Run by Róbert at 2010-02-27 21:22:28
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 97 GB (93%) free of 105 GB
Total RAM: 3069 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:22:32, on 27. 2. 2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\AccelerometerSt.Exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Róbert\Plocha\RSIT.exe
C:\Program Files\trend micro\Róbert.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.Exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 5644 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Registry Winner Schedule.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-13 63128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"=C:\WINDOWS\system32\AccelerometerSt.Exe [2008-06-18 82224]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2010-02-26 2097152]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-05-19 61440]
"HPCam_Menu"=c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-03-10 506936]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-01-16 1044480]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-02-18 177720]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2008-03-28 2598808]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-02-11 2756488]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-05-19 155648]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-02-27 20:18:11 ----SHD---- C:\RECYCLER
2010-02-27 16:46:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Malwarebytes
2010-02-27 16:46:37 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-02-27 16:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-02-27 16:18:24 ----D---- C:\WINDOWS\temp
2010-02-27 16:18:23 ----A---- C:\ComboFix.txt
2010-02-27 16:14:17 ----A---- C:\WINDOWS\zip.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWSC.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWREG.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\sed.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\PEV.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\NIRCMD.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\MBR.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\grep.exe
2010-02-27 16:14:12 ----D---- C:\WINDOWS\ERDNT
2010-02-27 16:12:45 ----AD---- C:\Qoobox
2010-02-27 15:13:01 ----D---- C:\WINDOWS\Minidump
2010-02-27 11:49:29 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-27 11:20:16 ----D---- C:\Program Files\trend micro
2010-02-27 11:20:15 ----D---- C:\rsit
2010-02-27 10:34:53 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-27 10:34:49 ----D---- C:\Program Files\Alwil Software
2010-02-27 10:34:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-02-27 09:55:22 ----D---- C:\Program Files\Registry Winner
2010-02-27 09:50:44 ----D---- C:\Program Files\DVD Shrink
2010-02-27 09:50:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
2010-02-27 09:46:56 ----D---- C:\Documents and Settings\Róbert\Data aplikací\PCToolsFirewallPlus
2010-02-27 09:44:03 ----D---- C:\Program Files\PowerQuest
2010-02-27 09:43:30 ----D---- C:\Program Files\Verdict Free
2010-02-27 09:43:01 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Opera
2010-02-27 09:42:36 ----A---- C:\WINDOWS\iun6002.exe
2010-02-27 09:42:33 ----D---- C:\Program Files\Codec Pack - All In 1
2010-02-27 09:42:15 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2010-02-27 09:40:52 ----D---- C:\Program Files\Common Files\PC Tools
2010-02-27 09:40:51 ----D---- C:\Program Files\PC Tools Firewall Plus
2010-02-27 09:40:14 ----D---- C:\Program Files\Opera
2010-02-27 09:38:46 ----D---- C:\Program Files\Microsoft Works
2010-02-27 09:38:30 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-27 09:38:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-27 09:37:59 ----D---- C:\Program Files\Microsoft.NET
2010-02-27 09:36:35 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-02-27 09:36:12 ----D---- C:\WINDOWS\SHELLNEW
2010-02-27 09:35:59 ----D---- C:\Program Files\Microsoft Office
2010-02-27 09:35:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-27 09:35:46 ----RD---- C:\MSOCache
2010-02-27 09:33:49 ----D---- C:\Documents and Settings\Róbert\Data aplikací\WinRAR
2010-02-27 09:30:46 ----D---- C:\totalcmd
2010-02-27 09:30:46 ----A---- C:\WINDOWS\wincmd.ini
2010-02-27 09:28:26 ----D---- C:\Program Files\WinRAR
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-02-26 15:54:18 ----D---- C:\Program Files\Common Files\Ahead
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-02-26 15:54:17 ----D---- C:\Program Files\Ahead
2010-02-26 15:54:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\wmv9vcm.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\ssldivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\libdivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dtu100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\divx.dll
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Real
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Real
2010-02-26 15:53:42 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-26 15:53:42 ----D---- C:\Program Files\Common Files\Adobe
2010-02-26 15:53:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-02-26 15:53:37 ----D---- C:\Program Files\Adobe
2010-02-26 15:47:41 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-02-26 15:47:39 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmns.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmn.dll
2010-02-26 15:47:34 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2010-02-26 15:47:29 ----D---- C:\Program Files\Synaptics
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-02-26 14:41:43 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-26 14:41:30 ----D---- C:\WINDOWS\system32\cs-CZ
2010-02-26 14:40:10 ----D---- C:\Program Files\MSBuild
2010-02-26 14:40:07 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-26 14:40:04 ----D---- C:\WINDOWS\system32\en-us
2010-02-26 14:40:04 ----D---- C:\Program Files\Reference Assemblies
2010-02-26 14:39:42 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-26 14:37:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-02-26 14:37:18 ----D---- C:\Program Files\MSXML 6.0
2010-02-26 14:34:17 ----D---- C:\Program Files\Atheros
2010-02-26 14:34:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Atheros
2010-02-26 14:30:57 ----D---- C:\Program Files\IDT
2010-02-26 14:12:31 ----D---- C:\Program Files\Marvell
2010-02-26 14:10:08 ----A---- C:\WINDOWS\system32\BCMLogon.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\wltrynt.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.bat
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\preflib.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlu00.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlpkt.dll
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRYSVC.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRAY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLBCGCBPRO731.DLL
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\BCMWLTRY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\bcm1xsup.dll
2010-02-26 14:00:57 ----A---- C:\WINDOWS\system32\h323log.txt
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Macromedia
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Adobe
2010-02-26 13:52:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Mozilla
2010-02-26 13:52:21 ----D---- C:\Program Files\Mozilla Firefox
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-02-26 13:47:54 ----A---- C:\WINDOWS\system32\usbui.dll
2010-02-26 13:46:46 ----A---- C:\WINDOWS\imsins.BAK
2010-02-26 13:46:43 ----SHD---- C:\WINDOWS\Installer
2010-02-26 13:46:43 ----D---- C:\Program Files\Common Files\ODBC
2010-02-26 13:46:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-26 13:46:43 ----A---- C:\WINDOWS\ODBCINST.INI
2010-02-26 13:46:39 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-02-26 13:46:38 ----RD---- C:\Program Files
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\Róbert\Data aplikací\ATI
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\irclass.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-02-26 13:46:21 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-02-26 13:46:19 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-02-26 13:46:19 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-02-26 13:46:18 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-26 13:46:18 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-02-26 13:46:17 ----A---- C:\WINDOWS\system32\storprop.dll
2010-02-26 13:46:10 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-02-26 13:46:07 ----RA---- C:\WINDOWS\SET8.tmp
2010-02-26 13:46:05 ----RA---- C:\WINDOWS\SET4.tmp
2010-02-26 13:46:03 ----RA---- C:\WINDOWS\SET3.tmp
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-26 13:45:53 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-02-26 13:45:50 ----A---- C:\Documents and Settings\All Users\Data aplikací\HPWALog.txt
2010-02-26 13:45:25 ----A---- C:\WINDOWS\setuplog.txt
2010-02-26 13:45:22 ----D---- C:\Documents and Settings
2010-02-26 13:45:21 ----SHD---- C:\System Volume Information
2010-02-26 13:44:35 ----SH---- C:\boot.ini
2010-02-26 13:43:33 ----AD---- C:\Documents and Settings\All Users\Data aplikací\Temp
2010-02-26 13:41:39 ----D---- C:\Documents and Settings\Róbert\Data aplikací\hpqLog
2010-02-26 13:41:00 ----RSD---- C:\WINDOWS\assembly
2010-02-26 13:40:45 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-26 13:40:30 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-26 13:40:20 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-02-26 13:39:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-26 13:39:20 ----RSD---- C:\WINDOWS\Fonts
2010-02-26 13:39:20 ----RD---- C:\WINDOWS\Web
2010-02-26 13:39:20 ----HD---- C:\WINDOWS\inf
2010-02-26 13:39:20 ----D---- C:\WINDOWS\WinSxS
2010-02-26 13:39:20 ----D---- C:\WINDOWS\twain_32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wins
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wbem
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\usmt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\spool
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ShellExt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\Setup
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ras
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\oobe
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\npp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\IME
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\icsxml
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ias
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\export
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\drivers
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\dhcp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3com_dmi
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3076
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\2052
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1054
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1042
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1041
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1037
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1033
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1031
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1029
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1028
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1025
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system
2010-02-26 13:39:20 ----D---- C:\WINDOWS\security
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Resources
2010-02-26 13:39:20 ----D---- C:\WINDOWS\repair
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Provisioning
2010-02-26 13:39:20 ----D---- C:\WINDOWS\pchealth
2010-02-26 13:39:20 ----D---- C:\WINDOWS\PeerNet
2010-02-26 13:39:20 ----D---- C:\WINDOWS\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msapps
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msagent
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Media
2010-02-26 13:39:20 ----D---- C:\WINDOWS\java
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ime
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Help
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ehome
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Driver Cache
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Debug
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Cursors
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Connection Wizard
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\AppPatch
2010-02-26 13:39:20 ----D---- C:\WINDOWS\addins
2010-02-26 13:39:20 ----D---- C:\WINDOWS
2010-02-26 13:39:16 ----D---- C:\WINDOWS\HPQ
2010-02-26 13:38:50 ----D---- C:\Program Files\ATI Technologies
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\vsnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\csnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snuvcdsm.exe
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snp2uvc.ini
2010-02-26 13:32:10 ----D---- C:\Program Files\Common Files\SNP2UVC
2010-02-26 13:32:10 ----A---- C:\WINDOWS\system32\rsnp2uvc.dll
2010-02-26 13:31:40 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-26 13:30:31 ----A---- C:\WINDOWS\system32\bcmwlcoi.dll
2010-02-26 13:30:30 ----D---- C:\Program Files\Broadcom
2010-02-26 13:30:29 ----D---- C:\Documents and Settings\Róbert\Data aplikací\InstallShield
2010-02-26 13:29:43 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-02-26 13:29:36 ----D---- C:\Program Files\WIDCOMM
2010-02-26 13:22:53 ----D---- C:\Program Files\Analog Devices
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\DSndUp.exe
2010-02-26 13:22:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-02-26 13:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-02-26 13:21:54 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-26 13:21:50 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-26 13:13:12 ----D---- C:\Program Files\AMD
2010-02-26 13:13:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-26 13:13:06 ----D---- C:\WINDOWS\system32\HP3DG
2010-02-26 13:13:06 ----D---- C:\Program Files\Hewlett-Packard
2010-02-26 13:11:26 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Identities
2010-02-26 13:11:24 ----HD---- C:\Program Files\Uninstall Information
2010-02-26 13:11:18 ----ASH---- C:\Documents and Settings\Róbert\Data aplikací\desktop.ini
2010-02-26 13:11:17 ----SD---- C:\Documents and Settings\Róbert\Data aplikací\Microsoft
2010-02-26 13:10:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-26 13:10:21 ----D---- C:\WINDOWS\Prefetch
2010-02-26 13:10:20 ----SD---- C:\WINDOWS\system32\Microsoft
2010-02-26 13:10:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-26 13:07:09 ----D---- C:\WINDOWS\system32\xircom
2010-02-26 13:07:09 ----D---- C:\Program Files\xerox
2010-02-26 13:07:09 ----D---- C:\Program Files\microsoft frontpage
2010-02-26 13:06:51 ----A---- C:\WINDOWS\control.ini
2010-02-26 13:06:51 ----A---- C:\AUTOEXEC.BAT
2010-02-26 13:06:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-26 13:06:38 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-02-26 13:05:52 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-02-26 13:05:52 ----RD---- C:\WINDOWS\Offline Web Pages
2010-02-26 13:05:52 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-02-26 13:05:47 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-02-26 13:05:43 ----HD---- C:\Program Files\WindowsUpdate
2010-02-26 13:05:39 ----D---- C:\Program Files\Online Services
2010-02-26 13:05:20 ----D---- C:\WINDOWS\system32\DirectX
2010-02-26 13:04:55 ----A---- C:\WINDOWS\system32\atrace.dll
2010-02-26 13:04:51 ----A---- C:\WINDOWS\system32\desktop.ini
2010-02-26 13:04:51 ----A---- C:\WINDOWS\desktop.ini
2010-02-26 13:04:43 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-02-26 13:04:42 ----A---- C:\WINDOWS\system32\acctres.dll
2010-02-26 13:04:41 ----D---- C:\Program Files\Common Files\Services
2010-02-26 13:04:38 ----SD---- C:\WINDOWS\Tasks
2010-02-26 13:04:38 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-02-26 13:04:37 ----D---- C:\Program Files\Common Files\MSSoap
2010-02-26 13:04:32 ----D---- C:\WINDOWS\srchasst
2010-02-26 13:04:31 ----D---- C:\WINDOWS\system32\Macromed
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wups.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-02-26 13:04:26 ----N---- C:\WINDOWS\system32\wuauclt.exe
2010-02-26 13:04:26 ----N---- C:\WINDOWS\system32\qmgr.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-26 13:04:21 ----D---- C:\Program Files\Movie Maker
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-26 13:04:11 ----N---- C:\WINDOWS\system32\srsvc.dll
2010-02-26 13:04:11 ----D---- C:\WINDOWS\system32\Restore
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srclient.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\ils.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\msconf.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-02-26 13:04:06 ----D---- C:\Program Files\NetMeeting
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-02-26 13:04:05 ----A---- C:\WINDOWS\system32\inetres.dll
2010-02-26 13:04:04 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-02-26 13:04:02 ----N---- C:\WINDOWS\system32\schedsvc.dll
2010-02-26 13:04:02 ----D---- C:\Program Files\Outlook Express
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstask.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\isign32.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-02-26 13:03:54 ----D---- C:\Program Files\Common Files\System
2010-02-26 13:03:49 ----D---- C:\Program Files\Internet Explorer
2010-02-26 13:03:17 ----D---- C:\Program Files\ComPlus Applications
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vbaddin.ini
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vb.ini
2010-02-26 13:03:10 ----D---- C:\WINDOWS\Registration
2010-02-26 13:03:03 ----D---- C:\Program Files\Windows Media Player
2010-02-26 13:02:55 ----D---- C:\Program Files\Messenger
2010-02-26 13:02:50 ----D---- C:\Program Files\MSN Gaming Zone
2010-02-26 13:02:50 ----A---- C:\WINDOWS\system32\write.exe
2010-02-26 13:02:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\hticons.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avwav.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-02-26 13:02:37 ----A---- C:\WINDOWS\system32\winchat.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\charmap.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\getuname.dll
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\winmine.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\sol.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\calc.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tskill.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\reset.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\freecell.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\shadow.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\regini.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\msg.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\logoff.exe
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\stclient.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-26 13:02:23 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-26 13:02:17 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-26 13:02:15 ----D---- C:\Program Files\Windows NT
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\spider.exe
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-26 13:02:12 ----N---- C:\WINDOWS\system32\termsrv.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-02-26 13:02:11 ----D---- C:\WINDOWS\system32\MsDtc
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-02-26 13:02:09 ----D---- C:\WINDOWS\system32\Com
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-26 13:02:00 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-02-27 16:17:27 ----A---- C:\WINDOWS\system.ini
2010-02-27 09:36:22 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-02-11 28880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-02-11 162512]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-02-11 46672]
R1 pctfw2;pctfw2; \??\C:\WINDOWS\system32\drivers\pctfw2.sys []
R1 pctmp;PC Tools Firewall Memory Protection Driver; C:\WINDOWS\system32\drivers\pctmp.sys [2008-02-21 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver; C:\WINDOWS\system32\drivers\pctssipc.sys [2008-02-21 18328]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-02-11 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-02-11 100432]
R3 Accelerometer;HP Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2008-05-23 28592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2009-01-16 339456]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-02-11 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-05-19 3566080]
R3 BCM43XX;Broadcom 802.11 - ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2010-02-26 1950336]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2009-01-14 37160]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2009-01-14 991656]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 SFilter;PCTools Driver; C:\WINDOWS\system32\DRIVERS\pctfw.sys [2008-02-25 93440]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2009-03-26 1765168]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-02-06 205232]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2009-08-17 291840]
S3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-04-01 93184]
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2009-01-14 534568]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2009-01-14 156816]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2009-01-14 47272]
S3 catchme;catchme; \??\C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 mbr;mbr; \??\C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\mbr.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2009-03-16 58208]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-05-19 602112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-11 346720]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2008-03-19 92056]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2010-02-26 25088]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-12-04 222512]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-23 223232]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
Run by Róbert at 2010-02-27 21:22:28
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 97 GB (93%) free of 105 GB
Total RAM: 3069 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:22:32, on 27. 2. 2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\AccelerometerSt.Exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Róbert\Plocha\RSIT.exe
C:\Program Files\trend micro\Róbert.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.Exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 5644 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Registry Winner Schedule.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-13 63128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AccelerometerSysTrayApplet"=C:\WINDOWS\system32\AccelerometerSt.Exe [2008-06-18 82224]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2010-02-26 2097152]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-05-19 61440]
"HPCam_Menu"=c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-03-10 506936]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-01-16 1044480]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-02-18 177720]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2008-03-28 2598808]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-02-11 2756488]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-05-19 155648]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-02-27 20:18:11 ----SHD---- C:\RECYCLER
2010-02-27 16:46:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Malwarebytes
2010-02-27 16:46:37 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-02-27 16:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2010-02-27 16:18:24 ----D---- C:\WINDOWS\temp
2010-02-27 16:18:23 ----A---- C:\ComboFix.txt
2010-02-27 16:14:17 ----A---- C:\WINDOWS\zip.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWSC.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\SWREG.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\sed.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\PEV.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\NIRCMD.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\MBR.exe
2010-02-27 16:14:17 ----A---- C:\WINDOWS\grep.exe
2010-02-27 16:14:12 ----D---- C:\WINDOWS\ERDNT
2010-02-27 16:12:45 ----AD---- C:\Qoobox
2010-02-27 15:13:01 ----D---- C:\WINDOWS\Minidump
2010-02-27 11:49:29 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-27 11:20:16 ----D---- C:\Program Files\trend micro
2010-02-27 11:20:15 ----D---- C:\rsit
2010-02-27 10:34:53 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-27 10:34:49 ----D---- C:\Program Files\Alwil Software
2010-02-27 10:34:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-02-27 09:55:22 ----D---- C:\Program Files\Registry Winner
2010-02-27 09:50:44 ----D---- C:\Program Files\DVD Shrink
2010-02-27 09:50:44 ----D---- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
2010-02-27 09:46:56 ----D---- C:\Documents and Settings\Róbert\Data aplikací\PCToolsFirewallPlus
2010-02-27 09:44:03 ----D---- C:\Program Files\PowerQuest
2010-02-27 09:43:30 ----D---- C:\Program Files\Verdict Free
2010-02-27 09:43:01 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Opera
2010-02-27 09:42:36 ----A---- C:\WINDOWS\iun6002.exe
2010-02-27 09:42:33 ----D---- C:\Program Files\Codec Pack - All In 1
2010-02-27 09:42:15 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2010-02-27 09:40:52 ----D---- C:\Program Files\Common Files\PC Tools
2010-02-27 09:40:51 ----D---- C:\Program Files\PC Tools Firewall Plus
2010-02-27 09:40:14 ----D---- C:\Program Files\Opera
2010-02-27 09:38:46 ----D---- C:\Program Files\Microsoft Works
2010-02-27 09:38:30 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-27 09:38:30 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-27 09:37:59 ----D---- C:\Program Files\Microsoft.NET
2010-02-27 09:36:35 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-02-27 09:36:12 ----D---- C:\WINDOWS\SHELLNEW
2010-02-27 09:35:59 ----D---- C:\Program Files\Microsoft Office
2010-02-27 09:35:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-27 09:35:46 ----RD---- C:\MSOCache
2010-02-27 09:33:49 ----D---- C:\Documents and Settings\Róbert\Data aplikací\WinRAR
2010-02-27 09:30:46 ----D---- C:\totalcmd
2010-02-27 09:30:46 ----A---- C:\WINDOWS\wincmd.ini
2010-02-27 09:28:26 ----D---- C:\Program Files\WinRAR
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-02-26 15:54:18 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-02-26 15:54:18 ----D---- C:\Program Files\Common Files\Ahead
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-02-26 15:54:18 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-02-26 15:54:17 ----D---- C:\Program Files\Ahead
2010-02-26 15:54:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-02-26 15:53:54 ----A---- C:\WINDOWS\system32\pncrt.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-02-26 15:53:49 ----A---- C:\WINDOWS\system32\wmv9vcm.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\ssldivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\libdivx.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dtu100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-02-26 15:53:48 ----A---- C:\WINDOWS\system32\divx.dll
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-02-26 15:53:47 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Real
2010-02-26 15:53:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\Real
2010-02-26 15:53:42 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-26 15:53:42 ----D---- C:\Program Files\Common Files\Adobe
2010-02-26 15:53:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-02-26 15:53:37 ----D---- C:\Program Files\Adobe
2010-02-26 15:47:41 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-02-26 15:47:39 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmns.dll
2010-02-26 15:47:36 ----A---- C:\WINDOWS\system32\BttnCmn.dll
2010-02-26 15:47:34 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2010-02-26 15:47:29 ----D---- C:\Program Files\Synaptics
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-02-26 15:47:23 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-02-26 14:41:43 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-26 14:41:30 ----D---- C:\WINDOWS\system32\cs-CZ
2010-02-26 14:40:10 ----D---- C:\Program Files\MSBuild
2010-02-26 14:40:07 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-26 14:40:04 ----D---- C:\WINDOWS\system32\en-us
2010-02-26 14:40:04 ----D---- C:\Program Files\Reference Assemblies
2010-02-26 14:39:42 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-26 14:37:22 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-02-26 14:37:18 ----D---- C:\Program Files\MSXML 6.0
2010-02-26 14:34:17 ----D---- C:\Program Files\Atheros
2010-02-26 14:34:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\Atheros
2010-02-26 14:30:57 ----D---- C:\Program Files\IDT
2010-02-26 14:12:31 ----D---- C:\Program Files\Marvell
2010-02-26 14:10:08 ----A---- C:\WINDOWS\system32\BCMLogon.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\wltrynt.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\vcredist_x86.bat
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\preflib.dll
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlu00.exe
2010-02-26 14:10:06 ----A---- C:\WINDOWS\system32\bcmwlpkt.dll
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRYSVC.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLTRAY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\WLBCGCBPRO731.DLL
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\BCMWLTRY.EXE
2010-02-26 14:10:05 ----A---- C:\WINDOWS\system32\bcm1xsup.dll
2010-02-26 14:00:57 ----A---- C:\WINDOWS\system32\h323log.txt
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Macromedia
2010-02-26 13:53:10 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Adobe
2010-02-26 13:52:42 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Mozilla
2010-02-26 13:52:21 ----D---- C:\Program Files\Mozilla Firefox
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-26 13:49:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-02-26 13:47:54 ----A---- C:\WINDOWS\system32\usbui.dll
2010-02-26 13:46:46 ----A---- C:\WINDOWS\imsins.BAK
2010-02-26 13:46:43 ----SHD---- C:\WINDOWS\Installer
2010-02-26 13:46:43 ----D---- C:\Program Files\Common Files\ODBC
2010-02-26 13:46:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-26 13:46:43 ----A---- C:\WINDOWS\ODBCINST.INI
2010-02-26 13:46:39 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-02-26 13:46:38 ----RD---- C:\Program Files
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-26 13:46:38 ----D---- C:\Program Files\Common Files
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\Róbert\Data aplikací\ATI
2010-02-26 13:46:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-02-26 13:46:35 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-02-26 13:46:33 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-02-26 13:46:32 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-02-26 13:46:30 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-02-26 13:46:28 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-02-26 13:46:24 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-02-26 13:46:23 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\irclass.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-02-26 13:46:22 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-02-26 13:46:21 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-02-26 13:46:19 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-02-26 13:46:19 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-02-26 13:46:18 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-26 13:46:18 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-02-26 13:46:17 ----A---- C:\WINDOWS\system32\storprop.dll
2010-02-26 13:46:10 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-02-26 13:46:07 ----RA---- C:\WINDOWS\SET8.tmp
2010-02-26 13:46:05 ----RA---- C:\WINDOWS\SET4.tmp
2010-02-26 13:46:03 ----RA---- C:\WINDOWS\SET3.tmp
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-26 13:45:59 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-26 13:45:53 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-02-26 13:45:50 ----A---- C:\Documents and Settings\All Users\Data aplikací\HPWALog.txt
2010-02-26 13:45:25 ----A---- C:\WINDOWS\setuplog.txt
2010-02-26 13:45:22 ----D---- C:\Documents and Settings
2010-02-26 13:45:21 ----SHD---- C:\System Volume Information
2010-02-26 13:44:35 ----SH---- C:\boot.ini
2010-02-26 13:43:33 ----AD---- C:\Documents and Settings\All Users\Data aplikací\Temp
2010-02-26 13:41:39 ----D---- C:\Documents and Settings\Róbert\Data aplikací\hpqLog
2010-02-26 13:41:00 ----RSD---- C:\WINDOWS\assembly
2010-02-26 13:40:45 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-26 13:40:30 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-26 13:40:20 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-02-26 13:39:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-26 13:39:20 ----RSD---- C:\WINDOWS\Fonts
2010-02-26 13:39:20 ----RD---- C:\WINDOWS\Web
2010-02-26 13:39:20 ----HD---- C:\WINDOWS\inf
2010-02-26 13:39:20 ----D---- C:\WINDOWS\WinSxS
2010-02-26 13:39:20 ----D---- C:\WINDOWS\twain_32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wins
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\wbem
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\usmt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\spool
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ShellExt
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\Setup
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ras
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\oobe
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\npp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\IME
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\icsxml
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\ias
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\export
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\drivers
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\dhcp
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3com_dmi
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\3076
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\2052
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1054
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1042
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1041
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1037
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1033
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1031
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1029
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1028
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32\1025
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system32
2010-02-26 13:39:20 ----D---- C:\WINDOWS\system
2010-02-26 13:39:20 ----D---- C:\WINDOWS\security
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Resources
2010-02-26 13:39:20 ----D---- C:\WINDOWS\repair
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Provisioning
2010-02-26 13:39:20 ----D---- C:\WINDOWS\pchealth
2010-02-26 13:39:20 ----D---- C:\WINDOWS\PeerNet
2010-02-26 13:39:20 ----D---- C:\WINDOWS\mui
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msapps
2010-02-26 13:39:20 ----D---- C:\WINDOWS\msagent
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Media
2010-02-26 13:39:20 ----D---- C:\WINDOWS\java
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ime
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Help
2010-02-26 13:39:20 ----D---- C:\WINDOWS\ehome
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Driver Cache
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Debug
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Cursors
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Connection Wizard
2010-02-26 13:39:20 ----D---- C:\WINDOWS\Config
2010-02-26 13:39:20 ----D---- C:\WINDOWS\AppPatch
2010-02-26 13:39:20 ----D---- C:\WINDOWS\addins
2010-02-26 13:39:20 ----D---- C:\WINDOWS
2010-02-26 13:39:16 ----D---- C:\WINDOWS\HPQ
2010-02-26 13:38:50 ----D---- C:\Program Files\ATI Technologies
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\vsnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\system32\csnp2uvc.dll
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snuvcdsm.exe
2010-02-26 13:32:14 ----A---- C:\WINDOWS\snp2uvc.ini
2010-02-26 13:32:10 ----D---- C:\Program Files\Common Files\SNP2UVC
2010-02-26 13:32:10 ----A---- C:\WINDOWS\system32\rsnp2uvc.dll
2010-02-26 13:31:40 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-26 13:30:31 ----A---- C:\WINDOWS\system32\bcmwlcoi.dll
2010-02-26 13:30:30 ----D---- C:\Program Files\Broadcom
2010-02-26 13:30:29 ----D---- C:\Documents and Settings\Róbert\Data aplikací\InstallShield
2010-02-26 13:29:43 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-02-26 13:29:36 ----D---- C:\Program Files\WIDCOMM
2010-02-26 13:22:53 ----D---- C:\Program Files\Analog Devices
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2010-02-26 13:22:53 ----A---- C:\WINDOWS\system32\DSndUp.exe
2010-02-26 13:22:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-02-26 13:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-02-26 13:21:54 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-26 13:21:50 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-26 13:13:12 ----D---- C:\Program Files\AMD
2010-02-26 13:13:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-26 13:13:06 ----D---- C:\WINDOWS\system32\HP3DG
2010-02-26 13:13:06 ----D---- C:\Program Files\Hewlett-Packard
2010-02-26 13:11:26 ----D---- C:\Documents and Settings\Róbert\Data aplikací\Identities
2010-02-26 13:11:24 ----HD---- C:\Program Files\Uninstall Information
2010-02-26 13:11:18 ----ASH---- C:\Documents and Settings\Róbert\Data aplikací\desktop.ini
2010-02-26 13:11:17 ----SD---- C:\Documents and Settings\Róbert\Data aplikací\Microsoft
2010-02-26 13:10:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-26 13:10:21 ----D---- C:\WINDOWS\Prefetch
2010-02-26 13:10:20 ----SD---- C:\WINDOWS\system32\Microsoft
2010-02-26 13:10:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-26 13:07:09 ----D---- C:\WINDOWS\system32\xircom
2010-02-26 13:07:09 ----D---- C:\Program Files\xerox
2010-02-26 13:07:09 ----D---- C:\Program Files\microsoft frontpage
2010-02-26 13:06:51 ----A---- C:\WINDOWS\control.ini
2010-02-26 13:06:51 ----A---- C:\AUTOEXEC.BAT
2010-02-26 13:06:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-02-26 13:06:38 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-02-26 13:05:52 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-02-26 13:05:52 ----RD---- C:\WINDOWS\Offline Web Pages
2010-02-26 13:05:52 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-02-26 13:05:47 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-02-26 13:05:43 ----HD---- C:\Program Files\WindowsUpdate
2010-02-26 13:05:39 ----D---- C:\Program Files\Online Services
2010-02-26 13:05:20 ----D---- C:\WINDOWS\system32\DirectX
2010-02-26 13:04:55 ----A---- C:\WINDOWS\system32\atrace.dll
2010-02-26 13:04:51 ----A---- C:\WINDOWS\system32\desktop.ini
2010-02-26 13:04:51 ----A---- C:\WINDOWS\desktop.ini
2010-02-26 13:04:43 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-02-26 13:04:42 ----A---- C:\WINDOWS\system32\acctres.dll
2010-02-26 13:04:41 ----D---- C:\Program Files\Common Files\Services
2010-02-26 13:04:38 ----SD---- C:\WINDOWS\Tasks
2010-02-26 13:04:38 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-02-26 13:04:37 ----D---- C:\Program Files\Common Files\MSSoap
2010-02-26 13:04:32 ----D---- C:\WINDOWS\srchasst
2010-02-26 13:04:31 ----D---- C:\WINDOWS\system32\Macromed
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wups.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-26 13:04:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-02-26 13:04:26 ----N---- C:\WINDOWS\system32\wuauclt.exe
2010-02-26 13:04:26 ----N---- C:\WINDOWS\system32\qmgr.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-26 13:04:26 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-26 13:04:21 ----D---- C:\Program Files\Movie Maker
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-02-26 13:04:16 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-02-26 13:04:12 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-26 13:04:11 ----N---- C:\WINDOWS\system32\srsvc.dll
2010-02-26 13:04:11 ----D---- C:\WINDOWS\system32\Restore
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-02-26 13:04:11 ----A---- C:\WINDOWS\system32\srclient.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-02-26 13:04:10 ----A---- C:\WINDOWS\system32\ils.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\msconf.dll
2010-02-26 13:04:09 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-02-26 13:04:06 ----D---- C:\Program Files\NetMeeting
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-02-26 13:04:06 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-02-26 13:04:05 ----A---- C:\WINDOWS\system32\inetres.dll
2010-02-26 13:04:04 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-02-26 13:04:02 ----N---- C:\WINDOWS\system32\schedsvc.dll
2010-02-26 13:04:02 ----D---- C:\Program Files\Outlook Express
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-02-26 13:04:02 ----A---- C:\WINDOWS\system32\mstask.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\isign32.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-02-26 13:04:01 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-02-26 13:03:54 ----D---- C:\Program Files\Common Files\System
2010-02-26 13:03:49 ----D---- C:\Program Files\Internet Explorer
2010-02-26 13:03:17 ----D---- C:\Program Files\ComPlus Applications
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vbaddin.ini
2010-02-26 13:03:14 ----A---- C:\WINDOWS\vb.ini
2010-02-26 13:03:10 ----D---- C:\WINDOWS\Registration
2010-02-26 13:03:03 ----D---- C:\Program Files\Windows Media Player
2010-02-26 13:02:55 ----D---- C:\Program Files\Messenger
2010-02-26 13:02:50 ----D---- C:\Program Files\MSN Gaming Zone
2010-02-26 13:02:50 ----A---- C:\WINDOWS\system32\write.exe
2010-02-26 13:02:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\hticons.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avwav.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-02-26 13:02:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-02-26 13:02:37 ----A---- C:\WINDOWS\system32\winchat.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\charmap.exe
2010-02-26 13:02:29 ----A---- C:\WINDOWS\system32\getuname.dll
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\winmine.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\sol.exe
2010-02-26 13:02:28 ----A---- C:\WINDOWS\system32\calc.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\tskill.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\reset.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-02-26 13:02:27 ----A---- C:\WINDOWS\system32\freecell.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\tscon.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\shadow.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\regini.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\msg.exe
2010-02-26 13:02:26 ----A---- C:\WINDOWS\system32\logoff.exe
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-02-26 13:02:25 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\stclient.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-26 13:02:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-26 13:02:23 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-26 13:02:17 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-02-26 13:02:16 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-26 13:02:15 ----D---- C:\Program Files\Windows NT
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-02-26 13:02:15 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\spider.exe
2010-02-26 13:02:14 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-26 13:02:13 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-26 13:02:12 ----N---- C:\WINDOWS\system32\termsrv.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-02-26 13:02:12 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-02-26 13:02:11 ----D---- C:\WINDOWS\system32\MsDtc
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-02-26 13:02:11 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-02-26 13:02:10 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-02-26 13:02:09 ----D---- C:\WINDOWS\system32\Com
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-26 13:02:09 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-26 13:02:08 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-26 13:02:07 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-26 13:02:00 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-02-26 13:01:59 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-02-27 16:17:27 ----A---- C:\WINDOWS\system.ini
2010-02-27 09:36:22 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-02-11 28880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-02-11 162512]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-02-11 46672]
R1 pctfw2;pctfw2; \??\C:\WINDOWS\system32\drivers\pctfw2.sys []
R1 pctmp;PC Tools Firewall Memory Protection Driver; C:\WINDOWS\system32\drivers\pctmp.sys [2008-02-21 40856]
R1 pctssipc;PC Tools Security Suite IPC Driver; C:\WINDOWS\system32\drivers\pctssipc.sys [2008-02-21 18328]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-02-11 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-02-11 100432]
R3 Accelerometer;HP Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2008-05-23 28592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2009-01-16 339456]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-02-11 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-05-19 3566080]
R3 BCM43XX;Broadcom 802.11 - ovládač sieťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2010-02-26 1950336]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2009-01-14 37160]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2009-01-14 991656]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 SFilter;PCTools Driver; C:\WINDOWS\system32\DRIVERS\pctfw.sys [2008-02-25 93440]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2009-03-26 1765168]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-02-06 205232]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2009-08-17 291840]
S3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-04-01 93184]
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2009-01-14 534568]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2009-01-14 156816]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2009-01-14 47272]
S3 catchme;catchme; \??\C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 mbr;mbr; \??\C:\DOCUME~1\RBERT~1\LOCALS~1\Temp\mbr.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2009-03-16 58208]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-05-19 602112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-11 346720]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2008-03-19 92056]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2010-02-26 25088]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-12-04 222512]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-23 223232]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------