Děkuji za pomoc.

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
nejde spustit ani instalovat mwav, mbam, tuneup
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
nejde spustit ani instalovat mwav, mbam, tuneup
Dobrý den, situace začala když jsem zapnul pc, již při přihlášení uživatele byly místo ikonek šachovnice. Od té doby pc blbne a nechce moc komunikovat. Windows chce instalovat aktualizace, nejdou, po spuštění se nespustí Avast i když by měl, nejde nainstalovat Mbam, nejde spustit Mwav, Tune up jde spustit ale pak už s ním nic nehne, nereaguje a nejde vypnout jinak než přes Správce úloh. Nevím jesli to s tím souvisí, ale nefunguje od té doby i správně klávesnice, jako by nebyla česká.
Děkuji za pomoc.
Děkuji za pomoc.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
A ještě, instalace Ashampoo Burning proběhla v pořádku, program běží.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Dobrý večer
V nouzovém režimu jsou stejné problémy?
vložte log ze Rsitu, viz můj podpis 
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Dobry den log rsit, zacaly blikat i ikony , dale nejde preinstalovat windows
Logfile of random's system information tool 1.06 (written by random/random)
Run by ruda677 at 2010-04-13 09:32:28
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 25 GB (54%) free of 47 GB
Total RAM: 3327 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:32:35, on 13.4.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TuneUp Utilities 2009\OneClickStarter.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\skeys.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\ruda677\Plocha\RSIT.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\ruda677\Plocha\ruda677.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,SKEYS /I
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SRFirstRun] rundll32 srclient.dll,CreateFirstRunRp
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone
O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone
O17 - HKLM\System\CCS\Services\Tcpip\..\{DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04}: NameServer = 10.3.0.1,62.84.128.6
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 7506 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
Yahoo! Companion BHO - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2009-12-21 61888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll [2010-03-12 116088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-09 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - &Yahoo! Companion - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]
{D4027C7F-154A-4066-A1AD-4243D8127440}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-16 13529088]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"SNPSTD2"=C:\WINDOWS\vsnpstd2.exe [2004-06-10 286720]
"PinnacleDriverCheck"=C:\WINDOWS\system32\PSDrvCheck.exe [2004-03-10 406016]
"SRFirstRun"=rundll32 srclient.dll,CreateFirstRunRp []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-05-16 86016]
"nwiz"=nwiz.exe /install []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-18 1848648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-11 689488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2008-08-15 30003200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
C:\Program Files\Ahead\InCD\InCD.exe [2004-04-06 1298542]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
C:\Program Files\Pinnacle\Studio 9\LaunchList.exe [2004-03-23 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
C:\PROGRA~1\Pinnacle\PPE\PPE.EXE [2004-02-03 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe [2003-12-08 32768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-11 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-04-10 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zzzHPSETUP]
F:\Setup.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2006-10-26 98632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\usmt\migwiz.exe"="C:\WINDOWS\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-04-13 09:32:28 ----DC---- C:\rsit
2010-04-13 09:18:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-13 09:18:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-13 09:18:35 ----A---- C:\WINDOWS\imsins.BAK
2010-04-13 09:18:24 ----D---- C:\WINDOWS\ie7updates
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\VDLL.DLL
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\system32\runouce.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\rundll16.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\RUNDL132.EXE
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo1_.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo_1.exe
2010-04-13 00:04:34 ----A---- C:\WINDOWS\system32\msvcr80.dll
2010-04-13 00:04:33 ----A---- C:\WINDOWS\system32\msvcp80.dll
2010-04-13 00:04:32 ----A---- C:\WINDOWS\system32\eEmpty.exe
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\T.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\REGEDIT.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\R.COM
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files\MicroWorld
2010-04-12 23:41:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2010-04-12 21:07:22 ----A---- C:\Program Files\nerocsy.txt
2010-04-12 21:07:22 ----A---- C:\Program Files\Cti_mne.txt
2010-04-12 18:26:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-04-12 18:26:13 ----D---- C:\Program Files\Ashampoo
2010-04-12 16:52:33 ----A---- C:\WINDOWS\system32\TUProgSt.exe
2010-04-12 16:52:32 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2010-04-12 16:52:31 ----A---- C:\WINDOWS\system32\TuneUpDefragService.exe
2010-04-12 16:51:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2010-04-12 16:51:38 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{55A29068-F2CE-456C-9148-C869879E2357}
2010-04-12 12:23:40 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonIJEGV
2010-04-11 10:35:10 ----DC---- C:\My Documents
2010-04-11 10:35:10 ----D---- C:\WINDOWS\Application Data
2010-04-11 10:34:24 ----D---- C:\Program Files\Ahead
2010-04-11 10:33:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\CyberLink
2010-04-11 10:33:28 ----A---- C:\Program Files\Uninstall_CDS.exe
2010-04-11 10:33:25 ----D---- C:\Program Files\CyberLink DVD Solution
2010-04-10 16:12:43 ----A---- C:\WINDOWS\u3dedit3.INI
2010-04-10 14:54:10 ----DC---- C:\Config.Msi
2010-04-10 14:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-09 12:56:12 ----DC---- C:\OpenSSL
2010-04-09 09:08:26 ----HDC---- C:\WINDOWS\ie7
2010-04-09 09:08:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2010-04-09 09:08:08 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2010-04-09 07:26:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-09 07:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-09 07:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-09 07:25:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-09 07:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-09 07:25:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-09 07:25:43 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-09 07:25:38 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-09 07:25:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-09 07:25:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-09 07:25:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-09 07:25:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-09 07:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-09 07:25:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-09 07:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-09 07:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB977165-v2$
2010-04-09 07:24:48 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-09 07:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-09 07:24:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-09 07:24:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-09 07:24:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-09 07:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-09 07:24:11 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-09 07:24:04 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-09 07:23:55 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-04-09 07:23:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-09 07:23:44 ----DC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-09 07:23:39 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-09 07:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-09 07:23:27 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-09 07:23:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-09 07:23:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-09 07:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-09 07:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB980182$
2010-04-09 07:22:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-09 07:22:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-09 07:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-09 07:22:19 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-09 07:22:09 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-09 07:22:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-09 07:22:00 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-09 07:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-09 07:21:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-09 07:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-09 07:21:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-09 07:21:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-09 07:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-09 07:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-09 07:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-09 07:21:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-09 07:20:56 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-09 07:20:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-09 07:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-04-09 07:20:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-09 07:20:36 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-09 07:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-08 17:48:21 ----D---- C:\Program Files\Easy CD-DA Extractor 10
2010-04-08 08:33:31 ----D---- C:\WINDOWS\NV17562876.TMP
2010-04-08 08:20:10 ----D---- C:\WINDOWS\NV28762836.TMP
2010-04-08 08:14:53 ----D---- C:\WINDOWS\AsDmiHtm
2010-04-08 08:04:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2010-04-08 08:04:10 ----D---- C:\Program Files\WinZip
2010-04-08 08:01:08 ----DC---- C:\ASUS.000
2010-04-08 08:00:55 ----DC---- C:\ASUS.SYS
2010-04-08 07:55:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Corel
2010-04-08 07:55:32 ----D---- C:\Program Files\Corel
2010-04-08 07:50:19 ----D---- C:\Program Files\ASUS
2010-04-07 19:24:23 ----D---- C:\Program Files\Wise Registry Cleaner
2010-04-07 18:46:33 ----D---- C:\WINDOWS\Prefetch
2010-04-07 18:40:49 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-07 18:31:11 ----RA---- C:\WINDOWS\SET47.tmp
2010-04-07 18:31:08 ----RA---- C:\WINDOWS\SET3B.tmp
2010-04-07 18:31:07 ----RA---- C:\WINDOWS\SET38.tmp
2010-04-07 14:22:45 ----RA---- C:\WINDOWS\SET46.tmp
2010-04-07 14:22:43 ----RA---- C:\WINDOWS\SET3A.tmp
2010-04-07 14:22:42 ----RA---- C:\WINDOWS\SET37.tmp
2010-04-07 13:34:00 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-07 13:33:55 ----RA---- C:\WINDOWS\SET8E.tmp
2010-04-07 13:33:53 ----RA---- C:\WINDOWS\SET82.tmp
2010-04-07 13:33:51 ----RA---- C:\WINDOWS\SET7F.tmp
2010-04-07 13:23:46 ----A---- C:\WINDOWS\UPGRADE.TXT
2010-04-07 12:58:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Easy CD-DA Extractor
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\muweb.dll
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-04-07 08:45:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-06 14:32:34 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\SETBROWS.EXE
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\INETWH32.DLL
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iacenc.dll
2010-04-06 09:22:55 ----A---- C:\WINDOWS\PixieTool.INI
2010-04-04 14:46:59 ----A---- C:\WINDOWS\hpqcopy.INI
2010-04-04 14:36:15 ----D---- C:\Program Files\Common Files\Java
2010-04-04 14:36:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\java.exe
2010-04-04 14:15:03 ----A---- C:\WINDOWS\system32\VegaShEx.dll
2010-04-04 14:15:01 ----A---- C:\WINDOWS\system32\ZDec.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lttwn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltkrn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltimg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltfil80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwpg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwfx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftif80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftga80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfras80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpsd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpng80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpct80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmsp80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmac80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflmb80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflma80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Pcdlib32.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lfkodak.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfimg80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfica80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfgif80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffpx80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lffpx7.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffax80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfeps80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcal80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfbmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfawd80n.dll
2010-03-30 15:25:57 ----A---- C:\WINDOWS\WTRAN32.INI
2010-03-29 18:56:41 ----D---- C:\WINDOWS\Easy CD-DA Extractor 12.0.4
2010-03-29 18:27:24 ----D---- C:\Program Files\Easy CD-DA Extractor 12
2010-03-29 13:40:35 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-03-20 09:33:03 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
2010-03-20 09:32:54 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2010-03-20 09:32:46 ----HD---- C:\Program Files\CanonBJ
2010-03-19 15:59:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-03-19 09:58:05 ----A---- C:\WINDOWS\system32\MRT.exe
2010-03-14 20:12:50 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-03-14 19:45:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\McAfee
2010-03-14 19:45:12 ----D---- C:\Program Files\McAfee Security Scan
2010-03-14 19:02:34 ----A---- C:\WINDOWS\Irremote.ini
2010-03-14 17:12:17 ----D---- C:\WINDOWS\NV1601152.TMP
2010-03-14 17:11:20 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-03-14 17:06:11 ----D---- C:\WINDOWS\NV8681232.TMP
2010-03-14 16:48:27 ----D---- C:\Program Files\Theorica Divx
Codecs
2010-03-14 16:41:18 ----A---- C:\WINDOWS\iun6002.exe
2010-03-14 16:36:07 ----A---- C:\WINDOWS\RtlExUpd.dll
2010-03-14 16:31:01 ----D---- C:\Program Files\Kodek CZ
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-03-14 16:26:21 ----A---- C:\WINDOWS\avisplitter.ini
2010-03-14 16:26:20 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\divx.dll
2010-03-14 16:23:11 ----D---- C:\Program Files\XP Codec Pack
======List of files/folders modified in the last 1 months======
2010-04-13 09:32:32 ----D---- C:\WINDOWS\Temp
2010-04-13 09:21:54 ----D---- C:\WINDOWS
2010-04-13 09:21:34 ----D---- C:\WINDOWS\system32
2010-04-13 09:20:50 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-13 09:20:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-13 09:18:47 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-13 09:18:47 ----HD---- C:\WINDOWS\inf
2010-04-13 09:18:47 ----D---- C:\WINDOWS\system32\drivers
2010-04-13 09:18:41 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-13 09:18:29 ----D---- C:\Program Files\Internet Explorer
2010-04-12 23:53:34 ----A---- C:\WINDOWS\win.ini
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files
2010-04-12 23:26:15 ----SHD---- C:\WINDOWS\Installer
2010-04-12 23:24:47 ----D---- C:\Program Files\Microsoft Works
2010-04-12 23:24:39 ----D---- C:\Program Files\MSBuild
2010-04-12 23:24:06 ----D---- C:\Program Files\Common Files\DESIGNER
2010-04-12 23:23:58 ----HD---- C:\WINDOWS\ShellNew
2010-04-12 23:23:20 ----RSD---- C:\WINDOWS\Fonts
2010-04-12 21:16:14 ----D---- C:\Documents and Settings
2010-04-12 21:13:02 ----RD---- C:\Program Files
2010-04-12 17:52:46 ----D---- C:\WINDOWS\pss
2010-04-12 17:03:27 ----D---- C:\Program Files\Ask.com
2010-04-12 17:02:41 ----SD---- C:\WINDOWS\Tasks
2010-04-12 16:55:05 ----D---- C:\Program Files\TuneUp Utilities 2009
2010-04-12 16:52:33 ----D---- C:\WINDOWS\system32\config
2010-04-12 13:30:20 ----D---- C:\WINDOWS\Debug
2010-04-12 13:10:29 ----D---- C:\WINDOWS\setup.pss
2010-04-12 13:08:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-12 13:08:47 ----D---- C:\WINDOWS\Help
2010-04-12 11:47:52 ----D---- C:\Program Files\Canon
2010-04-12 11:28:45 ----D---- C:\Program Files\WinRAR
2010-04-11 10:40:17 ----D---- C:\ppwork
2010-04-11 10:33:37 ----D---- C:\Program Files\CyberLink
2010-04-11 10:33:34 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-11 09:52:45 ----A---- C:\WINDOWS\Ascd_log.ini
2010-04-11 09:44:45 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-04-11 09:38:01 ----D---- C:\Program Files\VIA
2010-04-11 08:37:06 ----D---- C:\WINDOWS\security
2010-04-10 16:14:38 ----A---- C:\WINDOWS\ULead32.ini
2010-04-10 16:02:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
2010-04-10 16:00:28 ----D---- C:\WINDOWS\system32\wbem
2010-04-10 16:00:28 ----D---- C:\WINDOWS\AppPatch
2010-04-10 15:49:44 ----D---- C:\Program Files\Movie Maker
2010-04-10 15:48:58 ----D---- C:\Program Files\Outlook Express
2010-04-10 15:44:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-10 15:40:48 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-10 15:37:49 ----D---- C:\Program Files\Pinnacle
2010-04-10 15:20:55 ----D---- C:\Program Files\Hemera Products
2010-04-10 14:58:51 ----D---- C:\WINDOWS\Registration
2010-04-10 14:58:38 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-04-10 14:57:32 ----D---- C:\TRANSLAT
2010-04-10 14:57:20 ----D---- C:\Program Files\Common Files\snpstd2
2010-04-10 14:55:42 ----HD---- C:\WINDOWS\msdownld.tmp
2010-04-10 14:54:42 ----D---- C:\Program Files\Symantec
2010-04-10 14:54:02 ----D---- C:\Program Files\Ulead Systems
2010-04-10 14:53:15 ----D---- C:\WINDOWS\system32\Restore
2010-04-09 13:53:17 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-04-09 09:11:37 ----D---- C:\WINDOWS\Media
2010-04-09 09:09:27 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-09 08:11:53 ----D---- C:\Program Files\Hewlett-Packard
2010-04-09 08:09:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Symantec
2010-04-08 18:33:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
2010-04-08 17:09:08 ----D---- C:\WINDOWS\nview
2010-04-08 07:52:38 ----D---- C:\Program Files\Common Files\Adobe
2010-04-08 07:52:36 ----D---- C:\WINDOWS\WinSxS
2010-04-08 07:52:29 ----D---- C:\Program Files\Adobe
2010-04-08 07:51:09 ----D---- C:\Program Files\Realtek
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system32\Setup
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system
2010-04-07 20:29:01 ----D---- C:\WINDOWS\L2Schemas
2010-04-07 20:29:00 ----D---- C:\WINDOWS\system32\usmt
2010-04-07 20:28:50 ----D---- C:\WINDOWS\ime
2010-04-07 20:28:48 ----D---- C:\WINDOWS\Network Diagnostic
2010-04-07 20:28:35 ----D---- C:\WINDOWS\PeerNet
2010-04-07 20:28:22 ----D---- C:\WINDOWS\system32\npp
2010-04-07 20:28:16 ----D---- C:\WINDOWS\msagent
2010-04-07 20:28:12 ----D---- C:\WINDOWS\system32\cs
2010-04-07 20:25:31 ----D---- C:\WINDOWS\system32\1029
2010-04-07 20:25:20 ----D---- C:\WINDOWS\twain_32
2010-04-07 20:24:48 ----D---- C:\WINDOWS\system32\icsxml
2010-04-07 20:24:20 ----D---- C:\WINDOWS\system32\ias
2010-04-07 20:24:15 ----D---- C:\WINDOWS\system32\1033
2010-04-07 20:23:14 ----D---- C:\WINDOWS\Driver Cache
2010-04-07 19:13:08 ----D---- C:\Program Files\K-Lite Codec Pack
2010-04-07 18:46:49 ----SHD---- C:\System Volume Information
2010-04-07 18:41:32 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-07 18:40:51 ----RD---- C:\WINDOWS\Web
2010-04-07 18:40:45 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-07 18:40:33 ----D---- C:\WINDOWS\system32\oobe
2010-04-07 18:40:20 ----D---- C:\WINDOWS\system32\Com
2010-04-07 18:38:59 ----SHC---- C:\boot.ini
2010-04-07 18:31:26 ----A---- C:\WINDOWS\system.ini
2010-04-07 13:44:46 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-04-06 14:15:07 ----D---- C:\Program Files\Intel
2010-04-04 14:57:08 ----D---- C:\Program Files\Mozilla Firefox
2010-04-04 14:36:22 ----D---- C:\Program Files\hp deskjet 845c series
2010-04-04 14:36:01 ----D---- C:\Program Files\Java
2010-03-31 12:25:10 ----D---- C:\WINDOWS\ie8updates
2010-03-29 13:40:14 ----D---- C:\WINDOWS\Easy CD-DA Extractor
2010-03-24 09:41:10 ----D---- C:\Program Files\JDownloader
2010-03-19 10:02:33 ----HDC---- C:\WINDOWS\ie8
2010-03-19 10:02:27 ----D---- C:\WINDOWS\WBEM
2010-03-14 17:49:59 ----A---- C:\WINDOWS\Ascd_tmp.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2010-04-10 82380]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2004-03-29 90464]
R3 monfilt;monfilt; C:\WINDOWS\system32\drivers\monfilt.sys [2008-02-14 1389056]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-05-16 6557408]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-12-05 10368]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-07-01 108800]
R3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
R3 snpstd2;VideoCAM Look; C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 334080]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\WINDOWS\system32\drivers\viahduaa.sys [2008-07-25 845184]
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-14 48128]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-14 38912]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-14 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-09 238968]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 Capture Device Service;Capture Device Service; C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe [2007-03-06 198168]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-09 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-05-16 159812]
R2 SerialKeys;SerialKeys; C:\WINDOWS\system32\skeys.exe [2008-04-14 26112]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service; C:\WINDOWS\System32\TUProgSt.exe [2010-04-12 603904]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2007-03-03 67056]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 LiveUpdate Notice;LiveUpdate Notice; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-02-09 3220856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2010-04-12 360192]
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by ruda677 at 2010-04-13 09:32:28
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 25 GB (54%) free of 47 GB
Total RAM: 3327 MB (86% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:32:35, on 13.4.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TuneUp Utilities 2009\OneClickStarter.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\skeys.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\ruda677\Plocha\RSIT.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\ruda677\Plocha\ruda677.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,SKEYS /I
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SRFirstRun] rundll32 srclient.dll,CreateFirstRunRp
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone
O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone
O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone
O17 - HKLM\System\CCS\Services\Tcpip\..\{DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04}: NameServer = 10.3.0.1,62.84.128.6
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
--
End of file - 7506 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
Yahoo! Companion BHO - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2009-12-21 61888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\Symantec Shared\IDS\IPSBHO.dll [2010-03-12 116088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-09 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-03-09 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - &Yahoo! Companion - C:\Program Files\Yahoo!\Companion\Installs\cpn2\ycomp5_6_2_0.dll [2005-04-22 328275]
{D4027C7F-154A-4066-A1AD-4243D8127440}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-16 13529088]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"SNPSTD2"=C:\WINDOWS\vsnpstd2.exe [2004-06-10 286720]
"PinnacleDriverCheck"=C:\WINDOWS\system32\PSDrvCheck.exe [2004-03-10 406016]
"SRFirstRun"=rundll32 srclient.dll,CreateFirstRunRp []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-05-16 86016]
"nwiz"=nwiz.exe /install []
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2008-03-18 1848648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2008-03-11 689488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2008-08-15 30003200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
C:\Program Files\Ahead\InCD\InCD.exe [2004-04-06 1298542]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
C:\Program Files\Pinnacle\Studio 9\LaunchList.exe [2004-03-23 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
C:\PROGRA~1\Pinnacle\PPE\PPE.EXE [2004-02-03 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe [2003-12-08 32768]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-11 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-04-10 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zzzHPSETUP]
F:\Setup.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2006-10-26 98632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\usmt\migwiz.exe"="C:\WINDOWS\system32\usmt\migwiz.exe:*:Enabled:Průvodce přenesením souborů a nastavení"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-04-13 09:32:28 ----DC---- C:\rsit
2010-04-13 09:18:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-04-13 09:18:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-04-13 09:18:35 ----A---- C:\WINDOWS\imsins.BAK
2010-04-13 09:18:24 ----D---- C:\WINDOWS\ie7updates
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\VDLL.DLL
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\system32\runouce.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\rundll16.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\RUNDL132.EXE
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo1_.exe
2010-04-13 00:05:58 ----AD---- C:\WINDOWS\logo_1.exe
2010-04-13 00:04:34 ----A---- C:\WINDOWS\system32\msvcr80.dll
2010-04-13 00:04:33 ----A---- C:\WINDOWS\system32\msvcp80.dll
2010-04-13 00:04:32 ----A---- C:\WINDOWS\system32\eEmpty.exe
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\system32\T.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\REGEDIT.COM
2010-04-12 23:42:05 ----A---- C:\WINDOWS\R.COM
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files\MicroWorld
2010-04-12 23:41:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2010-04-12 21:07:22 ----A---- C:\Program Files\nerocsy.txt
2010-04-12 21:07:22 ----A---- C:\Program Files\Cti_mne.txt
2010-04-12 18:26:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-04-12 18:26:13 ----D---- C:\Program Files\Ashampoo
2010-04-12 16:52:33 ----A---- C:\WINDOWS\system32\TUProgSt.exe
2010-04-12 16:52:32 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2010-04-12 16:52:31 ----A---- C:\WINDOWS\system32\TuneUpDefragService.exe
2010-04-12 16:51:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2010-04-12 16:51:38 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{55A29068-F2CE-456C-9148-C869879E2357}
2010-04-12 12:23:40 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonIJEGV
2010-04-11 10:35:10 ----DC---- C:\My Documents
2010-04-11 10:35:10 ----D---- C:\WINDOWS\Application Data
2010-04-11 10:34:24 ----D---- C:\Program Files\Ahead
2010-04-11 10:33:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\CyberLink
2010-04-11 10:33:28 ----A---- C:\Program Files\Uninstall_CDS.exe
2010-04-11 10:33:25 ----D---- C:\Program Files\CyberLink DVD Solution
2010-04-10 16:12:43 ----A---- C:\WINDOWS\u3dedit3.INI
2010-04-10 14:54:10 ----DC---- C:\Config.Msi
2010-04-10 14:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-09 12:56:12 ----DC---- C:\OpenSSL
2010-04-09 09:08:26 ----HDC---- C:\WINDOWS\ie7
2010-04-09 09:08:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2010-04-09 09:08:08 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2010-04-09 07:26:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-09 07:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-09 07:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-09 07:25:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-09 07:25:51 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-09 07:25:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-09 07:25:43 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-09 07:25:38 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-09 07:25:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-09 07:25:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-04-09 07:25:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-09 07:25:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-09 07:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-09 07:25:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-09 07:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-09 07:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB977165-v2$
2010-04-09 07:24:48 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-09 07:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-09 07:24:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-04-09 07:24:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-09 07:24:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-09 07:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-09 07:24:11 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-09 07:24:04 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-09 07:23:55 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-04-09 07:23:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-09 07:23:44 ----DC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-09 07:23:39 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-09 07:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-09 07:23:27 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-09 07:23:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-09 07:23:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-09 07:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-09 07:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB980182$
2010-04-09 07:22:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-09 07:22:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-09 07:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-09 07:22:19 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-09 07:22:09 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-09 07:22:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-09 07:22:00 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-04-09 07:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-09 07:21:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-09 07:21:38 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-09 07:21:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-09 07:21:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-09 07:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-09 07:21:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-09 07:21:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-09 07:21:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-09 07:20:56 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-09 07:20:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-09 07:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-04-09 07:20:42 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-09 07:20:36 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-09 07:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-08 17:48:21 ----D---- C:\Program Files\Easy CD-DA Extractor 10
2010-04-08 08:33:31 ----D---- C:\WINDOWS\NV17562876.TMP
2010-04-08 08:20:10 ----D---- C:\WINDOWS\NV28762836.TMP
2010-04-08 08:14:53 ----D---- C:\WINDOWS\AsDmiHtm
2010-04-08 08:04:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2010-04-08 08:04:10 ----D---- C:\Program Files\WinZip
2010-04-08 08:01:08 ----DC---- C:\ASUS.000
2010-04-08 08:00:55 ----DC---- C:\ASUS.SYS
2010-04-08 07:55:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Corel
2010-04-08 07:55:32 ----D---- C:\Program Files\Corel
2010-04-08 07:50:19 ----D---- C:\Program Files\ASUS
2010-04-07 19:24:23 ----D---- C:\Program Files\Wise Registry Cleaner
2010-04-07 18:46:33 ----D---- C:\WINDOWS\Prefetch
2010-04-07 18:40:49 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-07 18:31:23 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-07 18:31:11 ----RA---- C:\WINDOWS\SET47.tmp
2010-04-07 18:31:08 ----RA---- C:\WINDOWS\SET3B.tmp
2010-04-07 18:31:07 ----RA---- C:\WINDOWS\SET38.tmp
2010-04-07 14:22:45 ----RA---- C:\WINDOWS\SET46.tmp
2010-04-07 14:22:43 ----RA---- C:\WINDOWS\SET3A.tmp
2010-04-07 14:22:42 ----RA---- C:\WINDOWS\SET37.tmp
2010-04-07 13:34:00 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-04-07 13:33:55 ----RA---- C:\WINDOWS\SET8E.tmp
2010-04-07 13:33:53 ----RA---- C:\WINDOWS\SET82.tmp
2010-04-07 13:33:51 ----RA---- C:\WINDOWS\SET7F.tmp
2010-04-07 13:23:46 ----A---- C:\WINDOWS\UPGRADE.TXT
2010-04-07 12:58:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Easy CD-DA Extractor
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\muweb.dll
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-04-07 08:48:01 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-04-07 08:45:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-06 14:32:34 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\SETBROWS.EXE
2010-04-06 14:24:37 ----A---- C:\WINDOWS\system32\INETWH32.DLL
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2010-04-06 14:15:08 ----A---- C:\WINDOWS\system32\Iacenc.dll
2010-04-06 09:22:55 ----A---- C:\WINDOWS\PixieTool.INI
2010-04-04 14:46:59 ----A---- C:\WINDOWS\hpqcopy.INI
2010-04-04 14:36:15 ----D---- C:\Program Files\Common Files\Java
2010-04-04 14:36:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-04 14:36:02 ----A---- C:\WINDOWS\system32\java.exe
2010-04-04 14:15:03 ----A---- C:\WINDOWS\system32\VegaShEx.dll
2010-04-04 14:15:01 ----A---- C:\WINDOWS\system32\ZDec.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lttwn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltkrn80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltimg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\ltfil80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwpg80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfwfx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftif80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lftga80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfras80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpsd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpng80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcx80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpct80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfpcd80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmsp80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lfmac80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflmb80n.dll
2010-04-04 14:14:57 ----A---- C:\WINDOWS\system32\lflma80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Pcdlib32.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lfkodak.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfimg80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfica80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfgif80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffpx80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\Lffpx7.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lffax80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfeps80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfcal80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfbmp80n.dll
2010-04-04 14:14:56 ----A---- C:\WINDOWS\system32\lfawd80n.dll
2010-03-30 15:25:57 ----A---- C:\WINDOWS\WTRAN32.INI
2010-03-29 18:56:41 ----D---- C:\WINDOWS\Easy CD-DA Extractor 12.0.4
2010-03-29 18:27:24 ----D---- C:\Program Files\Easy CD-DA Extractor 12
2010-03-29 13:40:35 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-03-20 09:33:03 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
2010-03-20 09:32:54 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2010-03-20 09:32:46 ----HD---- C:\Program Files\CanonBJ
2010-03-19 15:59:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-03-19 09:58:05 ----A---- C:\WINDOWS\system32\MRT.exe
2010-03-14 20:12:50 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-03-14 19:45:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\McAfee
2010-03-14 19:45:12 ----D---- C:\Program Files\McAfee Security Scan
2010-03-14 19:02:34 ----A---- C:\WINDOWS\Irremote.ini
2010-03-14 17:12:17 ----D---- C:\WINDOWS\NV1601152.TMP
2010-03-14 17:11:20 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-03-14 17:06:11 ----D---- C:\WINDOWS\NV8681232.TMP
2010-03-14 16:48:27 ----D---- C:\Program Files\Theorica Divx
2010-03-14 16:41:18 ----A---- C:\WINDOWS\iun6002.exe
2010-03-14 16:36:07 ----A---- C:\WINDOWS\RtlExUpd.dll
2010-03-14 16:31:01 ----D---- C:\Program Files\Kodek CZ
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5032.dll
2010-03-14 16:26:22 ----A---- C:\WINDOWS\system32\pndx5016.dll
2010-03-14 16:26:21 ----A---- C:\WINDOWS\avisplitter.ini
2010-03-14 16:26:20 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-03-14 16:26:19 ----A---- C:\WINDOWS\system32\divx.dll
2010-03-14 16:23:11 ----D---- C:\Program Files\XP Codec Pack
======List of files/folders modified in the last 1 months======
2010-04-13 09:32:32 ----D---- C:\WINDOWS\Temp
2010-04-13 09:21:54 ----D---- C:\WINDOWS
2010-04-13 09:21:34 ----D---- C:\WINDOWS\system32
2010-04-13 09:20:50 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-13 09:20:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-13 09:18:47 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-13 09:18:47 ----HD---- C:\WINDOWS\inf
2010-04-13 09:18:47 ----D---- C:\WINDOWS\system32\drivers
2010-04-13 09:18:41 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-13 09:18:29 ----D---- C:\Program Files\Internet Explorer
2010-04-12 23:53:34 ----A---- C:\WINDOWS\win.ini
2010-04-12 23:42:02 ----D---- C:\Program Files\Common Files
2010-04-12 23:26:15 ----SHD---- C:\WINDOWS\Installer
2010-04-12 23:24:47 ----D---- C:\Program Files\Microsoft Works
2010-04-12 23:24:39 ----D---- C:\Program Files\MSBuild
2010-04-12 23:24:06 ----D---- C:\Program Files\Common Files\DESIGNER
2010-04-12 23:23:58 ----HD---- C:\WINDOWS\ShellNew
2010-04-12 23:23:20 ----RSD---- C:\WINDOWS\Fonts
2010-04-12 21:16:14 ----D---- C:\Documents and Settings
2010-04-12 21:13:02 ----RD---- C:\Program Files
2010-04-12 17:52:46 ----D---- C:\WINDOWS\pss
2010-04-12 17:03:27 ----D---- C:\Program Files\Ask.com
2010-04-12 17:02:41 ----SD---- C:\WINDOWS\Tasks
2010-04-12 16:55:05 ----D---- C:\Program Files\TuneUp Utilities 2009
2010-04-12 16:52:33 ----D---- C:\WINDOWS\system32\config
2010-04-12 13:30:20 ----D---- C:\WINDOWS\Debug
2010-04-12 13:10:29 ----D---- C:\WINDOWS\setup.pss
2010-04-12 13:08:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-12 13:08:47 ----D---- C:\WINDOWS\Help
2010-04-12 11:47:52 ----D---- C:\Program Files\Canon
2010-04-12 11:28:45 ----D---- C:\Program Files\WinRAR
2010-04-11 10:40:17 ----D---- C:\ppwork
2010-04-11 10:33:37 ----D---- C:\Program Files\CyberLink
2010-04-11 10:33:34 ----HD---- C:\Program Files\InstallShield Installation Information
2010-04-11 09:52:45 ----A---- C:\WINDOWS\Ascd_log.ini
2010-04-11 09:44:45 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-04-11 09:38:01 ----D---- C:\Program Files\VIA
2010-04-11 08:37:06 ----D---- C:\WINDOWS\security
2010-04-10 16:14:38 ----A---- C:\WINDOWS\ULead32.ini
2010-04-10 16:02:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ulead Systems
2010-04-10 16:00:28 ----D---- C:\WINDOWS\system32\wbem
2010-04-10 16:00:28 ----D---- C:\WINDOWS\AppPatch
2010-04-10 15:49:44 ----D---- C:\Program Files\Movie Maker
2010-04-10 15:48:58 ----D---- C:\Program Files\Outlook Express
2010-04-10 15:44:23 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-10 15:40:48 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-10 15:37:49 ----D---- C:\Program Files\Pinnacle
2010-04-10 15:20:55 ----D---- C:\Program Files\Hemera Products
2010-04-10 14:58:51 ----D---- C:\WINDOWS\Registration
2010-04-10 14:58:38 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-04-10 14:57:32 ----D---- C:\TRANSLAT
2010-04-10 14:57:20 ----D---- C:\Program Files\Common Files\snpstd2
2010-04-10 14:55:42 ----HD---- C:\WINDOWS\msdownld.tmp
2010-04-10 14:54:42 ----D---- C:\Program Files\Symantec
2010-04-10 14:54:02 ----D---- C:\Program Files\Ulead Systems
2010-04-10 14:53:15 ----D---- C:\WINDOWS\system32\Restore
2010-04-09 13:53:17 ----D---- C:\Program Files\Common Files\Ulead Systems
2010-04-09 09:11:37 ----D---- C:\WINDOWS\Media
2010-04-09 09:09:27 ----D---- C:\WINDOWS\system32\cs-cz
2010-04-09 08:11:53 ----D---- C:\Program Files\Hewlett-Packard
2010-04-09 08:09:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Symantec
2010-04-08 18:33:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Pinnacle
2010-04-08 17:09:08 ----D---- C:\WINDOWS\nview
2010-04-08 07:52:38 ----D---- C:\Program Files\Common Files\Adobe
2010-04-08 07:52:36 ----D---- C:\WINDOWS\WinSxS
2010-04-08 07:52:29 ----D---- C:\Program Files\Adobe
2010-04-08 07:51:09 ----D---- C:\Program Files\Realtek
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system32\Setup
2010-04-07 20:29:09 ----D---- C:\WINDOWS\system
2010-04-07 20:29:01 ----D---- C:\WINDOWS\L2Schemas
2010-04-07 20:29:00 ----D---- C:\WINDOWS\system32\usmt
2010-04-07 20:28:50 ----D---- C:\WINDOWS\ime
2010-04-07 20:28:48 ----D---- C:\WINDOWS\Network Diagnostic
2010-04-07 20:28:35 ----D---- C:\WINDOWS\PeerNet
2010-04-07 20:28:22 ----D---- C:\WINDOWS\system32\npp
2010-04-07 20:28:16 ----D---- C:\WINDOWS\msagent
2010-04-07 20:28:12 ----D---- C:\WINDOWS\system32\cs
2010-04-07 20:25:31 ----D---- C:\WINDOWS\system32\1029
2010-04-07 20:25:20 ----D---- C:\WINDOWS\twain_32
2010-04-07 20:24:48 ----D---- C:\WINDOWS\system32\icsxml
2010-04-07 20:24:20 ----D---- C:\WINDOWS\system32\ias
2010-04-07 20:24:15 ----D---- C:\WINDOWS\system32\1033
2010-04-07 20:23:14 ----D---- C:\WINDOWS\Driver Cache
2010-04-07 19:13:08 ----D---- C:\Program Files\K-Lite Codec Pack
2010-04-07 18:46:49 ----SHD---- C:\System Volume Information
2010-04-07 18:41:32 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-07 18:40:51 ----RD---- C:\WINDOWS\Web
2010-04-07 18:40:45 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-07 18:40:33 ----D---- C:\WINDOWS\system32\oobe
2010-04-07 18:40:20 ----D---- C:\WINDOWS\system32\Com
2010-04-07 18:38:59 ----SHC---- C:\boot.ini
2010-04-07 18:31:26 ----A---- C:\WINDOWS\system.ini
2010-04-07 13:44:46 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-04-06 14:15:07 ----D---- C:\Program Files\Intel
2010-04-04 14:57:08 ----D---- C:\Program Files\Mozilla Firefox
2010-04-04 14:36:22 ----D---- C:\Program Files\hp deskjet 845c series
2010-04-04 14:36:01 ----D---- C:\Program Files\Java
2010-03-31 12:25:10 ----D---- C:\WINDOWS\ie8updates
2010-03-29 13:40:14 ----D---- C:\WINDOWS\Easy CD-DA Extractor
2010-03-24 09:41:10 ----D---- C:\Program Files\JDownloader
2010-03-19 10:02:33 ----HDC---- C:\WINDOWS\ie8
2010-03-19 10:02:27 ----D---- C:\WINDOWS\WBEM
2010-03-14 17:49:59 ----A---- C:\WINDOWS\Ascd_tmp.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2010-04-10 82380]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2004-03-29 90464]
R3 monfilt;monfilt; C:\WINDOWS\system32\drivers\monfilt.sys [2008-02-14 1389056]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-05-16 6557408]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-12-05 10368]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-07-01 108800]
R3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
R3 snpstd2;VideoCAM Look; C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 334080]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\WINDOWS\system32\drivers\viahduaa.sys [2008-07-25 845184]
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-14 48128]
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-14 38912]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-14 51200]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-09 238968]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 Capture Device Service;Capture Device Service; C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe [2007-03-06 198168]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-03-09 153376]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-05-16 159812]
R2 SerialKeys;SerialKeys; C:\WINDOWS\system32\skeys.exe [2008-04-14 26112]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service; C:\WINDOWS\System32\TUProgSt.exe [2010-04-12 603904]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2007-03-03 67056]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 LiveUpdate Notice;LiveUpdate Notice; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-02-09 3220856]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2010-04-12 360192]
-----------------EOF-----------------
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Kdyby s Vámi počítač nechtěl komunikovat, nouzový režim Vám funguje? Pracujte v něm.
Ještě si něco ověřím, a jdem na to
- objeví se červené okno a program bude pracovat.
-po dokončení skenu na Vás vyskočí poznámkový blok result.txt- obsah sem zkopírujte
- v případě že na Vás nevyskočí, najdete ho zde c:\result.txt
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Nouzovy reyim dela to same, rsit nejde spustit ani v nouzovem reyimu, vypisuje Chyba nacteni se nezdarilo .....
Re: nejde spustit ani instalovat mwav, mbam, tuneup
rsit? myslíte reglooks,ne? rsit už jste dělalzmija832 píše:Nouzovy reyim dela to same, rsit nejde spustit ani v nouzovem reyimu, vypisuje Chyba nacteni se nezdarilo .....
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
ano jsem popleta
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Nevadí, zkusíme něco jiného. Jinak máte možnost vypálit live cd na jiném počítači?
Stahněte Rkill z jednoho z odkazů, pokud by ho vir blokoval, zkuste stahnout jiný
Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill COM:
http://download.bleepingcomputer.com/grinler/rkill.com
Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif
-spusťte ho a nechejte pracovat. Sám se ukončí.
-
Ted nerestartujte počítač!
Combofix stahněte takto:
- pravým myšítkem klikněte na odkaz combofixu --uložit jako.. ,a teď ho přejmenujte na Potvora.com a uložte.
Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
-souhlaste s instalací konzole pro zotavení
- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill COM:
http://download.bleepingcomputer.com/grinler/rkill.com
Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif
-spusťte ho a nechejte pracovat. Sám se ukončí.
-
- pravým myšítkem klikněte na odkaz combofixu --uložit jako.. ,a teď ho přejmenujte na Potvora.com a uložte.
-souhlaste s instalací konzole pro zotavení
- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
BUDETE SE ASI ZLOBIT, SPUSTIL JSEM COMBOFIX BEY PREJMENOVANI
MOJE NERVY , PAK TO ZAMRZLO A NESEL ZKOPIROVAT LOG, VLOGU BYLO NECO SMAZANE , PAK JSEM SPUSTIL ZNOVA COMBOFIX PREJMENOVANY, LOG ZDE
ComboFix 10-04-12.04 - ruda677 13.04.2010 10:32:50.2.2 - x86
Spuštěný z: c:\documents and settings\ruda677\Plocha\POVORA.COM.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-03-13 do 2010-04-13 )))))))))))))))))))))))))))))))
.
2010-04-13 07:45 . 2010-04-13 07:59 -------- d-----w- c:\windows\RegLooks
2010-04-13 07:32 . 2010-04-13 07:32 -------- dc----w- C:\rsit
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\VDLL.DLL
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\system32\runouce.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\rundll16.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\RUNDL132.EXE
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo1_.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo_1.exe
2010-04-12 22:04 . 2010-04-12 22:04 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-12 22:04 . 2010-04-12 22:04 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-12 22:04 . 2010-04-12 22:04 34048 ----a-w- c:\windows\system32\eEmpty.exe
2010-04-12 21:42 . 2008-04-14 12:00 147968 ----a-w- c:\windows\R.COM
2010-04-12 21:42 . 2008-04-14 12:00 137216 ----a-w- c:\windows\system32\T.COM
2010-04-12 21:42 . 2010-04-12 21:42 -------- d-----w- c:\program files\Common Files\MicroWorld
2010-04-12 16:26 . 2010-04-12 16:26 -------- d-----w- c:\program files\Ashampoo
2010-04-12 14:52 . 2010-04-12 14:52 603904 ----a-w- c:\windows\system32\TUProgSt.exe
2010-04-12 14:52 . 2008-12-11 11:31 27904 ----a-w- c:\windows\system32\uxtuneup.dll
2010-04-12 14:52 . 2010-04-12 14:52 360192 ----a-w- c:\windows\system32\TuneUpDefragService.exe
2010-04-12 09:30 . 2009-10-20 16:20 265728 -c----w- c:\windows\system32\dllcache\http.sys
2010-04-12 09:30 . 2010-03-11 12:36 52224 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-04-12 09:30 . 2010-03-11 12:36 459264 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-04-12 09:30 . 2010-03-11 12:36 268288 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-04-12 09:30 . 2010-03-11 12:36 63488 -c----w- c:\windows\system32\dllcache\icardie.dll
2010-04-12 09:30 . 2010-03-11 12:36 6067200 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-04-12 09:30 . 2010-03-11 12:36 380928 -c----w- c:\windows\system32\dllcache\ieapfltr.dll
2010-04-12 09:30 . 2010-03-10 13:17 13824 -c----w- c:\windows\system32\dllcache\ieudinit.exe
2010-04-12 09:30 . 2009-06-29 08:33 2452872 -c----w- c:\windows\system32\dllcache\ieapfltr.dat
2010-04-11 08:35 . 2010-04-11 08:35 -------- dc----w- C:\My Documents
2010-04-11 08:35 . 2010-04-11 08:35 -------- d-----w- c:\windows\Application Data
2010-04-11 08:34 . 2010-04-11 08:34 -------- d-----w- c:\program files\Ahead
2010-04-11 08:34 . 2003-12-05 09:46 10368 ------w- c:\windows\system32\drivers\pfc.sys
2010-04-11 08:33 . 2004-03-11 11:27 40960 ----a-w- c:\program files\Uninstall_CDS.exe
2010-04-11 08:33 . 2010-04-11 08:33 -------- d-----w- c:\program files\CyberLink DVD Solution
2010-04-10 13:47 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-04-10 13:46 . 2009-06-10 07:21 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-04-10 13:46 . 2009-12-09 10:11 2191360 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-04-10 13:46 . 2009-12-09 10:11 2068224 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2010-04-10 13:46 . 2009-12-09 10:11 2147328 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-04-10 13:46 . 2009-12-09 10:11 2025984 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-04-10 13:46 . 2009-12-04 18:22 455424 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-10 13:46 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 8704 -c----w- c:\windows\system32\dllcache\tsbyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 48128 -c----w- c:\windows\system32\dllcache\iyuv_32.dll
2010-04-10 12:58 . 2010-04-10 12:58 -------- d-----w- c:\windows\system32\wbem\Repository
2010-04-09 10:56 . 2010-04-10 12:54 -------- dc----w- C:\OpenSSL
2010-04-08 15:48 . 2010-04-10 12:57 -------- d-----w- c:\program files\Easy CD-DA Extractor 10
2010-04-08 06:33 . 2010-04-10 12:57 -------- d-----w- c:\windows\NV17562876.TMP
2010-04-08 06:20 . 2010-04-10 12:58 -------- d-----w- c:\windows\NV28762836.TMP
2010-04-08 06:14 . 2010-04-10 12:58 -------- d-----w- c:\windows\AsDmiHtm
2010-04-08 06:01 . 2010-04-08 06:01 -------- dc----w- C:\ASUS.000
2010-04-08 06:00 . 2010-04-10 12:58 -------- dc----w- C:\ASUS.SYS
2010-04-08 05:55 . 2010-04-08 05:55 -------- d-----w- c:\program files\Corel
2010-04-08 05:50 . 2010-04-10 12:58 -------- d-----w- c:\program files\ASUS
2010-04-07 17:24 . 2010-04-10 12:58 -------- d-----w- c:\program files\Wise Registry Cleaner
2010-04-07 16:42 . 2008-04-14 12:00 79872 -c--a-w- c:\windows\system32\dllcache\rwia330.dll
2010-04-07 16:41 . 2001-10-24 10:24 5632 -c--a-w- c:\windows\system32\dllcache\EXCH_adsiisex.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 ----a-w- c:\windows\system32\irclass.dll
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Nabídka Start
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\LocalService.NT AUTHORITY.002\Data aplikací
2010-04-07 06:28 . 2010-04-10 12:58 -------- d-sh--w- c:\documents and settings\NetworkService.NT AUTHORITY.002
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Data aplikací
2010-04-06 12:32 . 2008-04-14 12:00 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-04-06 12:32 . 2010-04-10 12:58 -------- d-----w- c:\documents and settings\adamek
2010-04-06 12:32 . 2010-04-07 16:09 -------- d--h--r- c:\documents and settings\adamek\Data aplikací
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Oblíbené položky
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Nabídka Start
2010-04-06 12:32 . 2010-04-07 06:26 -------- d-----r- c:\documents and settings\adamek\Dokumenty
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní tiskárny
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní síť
2010-04-06 12:32 . 2010-03-12 18:11 -------- d-----w- c:\documents and settings\adamek\Plocha
2010-04-06 12:24 . 1996-09-10 20:33 48640 ----a-w- c:\windows\system32\INETWH32.DLL
2010-04-06 12:24 . 1996-08-27 12:48 4528 ----a-w- c:\windows\system32\SETBROWS.EXE
2010-04-06 12:15 . 1998-11-18 14:33 144384 ----a-w- c:\windows\system32\Iacenc.dll
2010-04-06 12:15 . 1997-06-13 06:56 56832 ----a-w- c:\windows\system32\Iyvu9_32.dll
2010-04-05 09:22 . 2008-04-13 22:16 51200 ----a-w- c:\windows\system32\drivers\msdv.sys
2010-04-05 09:22 . 2008-04-13 22:16 38912 ----a-w- c:\windows\system32\drivers\avc.sys
2010-04-05 09:22 . 2008-04-13 22:16 48128 ----a-w- c:\windows\system32\drivers\61883.sys
2010-04-04 12:36 . 2010-04-04 12:36 -------- d-----w- c:\program files\Common Files\Java
2010-04-04 12:15 . 2001-11-02 11:50 147456 ----a-w- c:\windows\system32\VegaShEx.dll
2010-04-04 12:15 . 2002-02-13 14:15 77824 ----a-w- c:\windows\system32\ZDec.dll
2010-04-04 12:09 . 2010-04-10 13:02 82380 ----a-w- c:\windows\system32\drivers\AFS2K.SYS
2010-03-29 16:56 . 2010-04-10 13:15 -------- d-----w- c:\windows\Easy CD-DA Extractor 12.0.4
2010-03-29 16:27 . 2010-04-10 13:15 -------- d-----w- c:\program files\Easy CD-DA Extractor 12
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\program files\CanonBJ
2010-03-19 13:47 . 2008-04-13 22:17 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-03-19 08:33 . 2010-03-19 08:33 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2010-03-16 12:39 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\ruda677\6MaxfaktorTvz
2010-03-14 18:12 . 2010-03-09 02:28 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-03-14 17:45 . 2010-03-22 10:45 -------- d-----w- c:\program files\McAfee Security Scan
2010-03-14 15:12 . 2010-03-14 15:30 -------- d-----w- c:\windows\NV1601152.TMP
2010-03-14 15:11 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-03-14 15:06 . 2010-03-14 15:08 -------- d-----w- c:\windows\NV8681232.TMP
2010-03-14 14:48 . 2010-03-14 14:48 -------- d-----w- c:\program files\Theorica Divx
Codecs
2010-03-14 14:41 . 2010-03-14 14:41 729088 ----a-w- c:\windows\iun6002.exe
2010-03-14 14:36 . 2009-11-02 12:48 831488 ----a-w- c:\windows\RtlExUpd.dll
2010-03-14 14:31 . 2010-04-07 17:14 -------- d-----w- c:\program files\Kodek CZ
2010-03-14 14:26 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-14 14:26 . 2009-07-14 00:15 90112 ----a-w- c:\windows\system32\dpl100.dll
2010-03-14 14:26 . 2009-07-14 00:15 685056 ----a-w- c:\windows\system32\divx.dll
2010-03-14 14:26 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-14 14:23 . 2010-03-14 14:23 -------- d-----w- c:\program files\XP Codec Pack
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\Microsoft Works
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\MSBuild
2010-04-12 15:03 . 2010-03-13 13:44 -------- d-----w- c:\program files\Ask.com
2010-04-12 14:55 . 2010-03-12 16:38 -------- d-----w- c:\program files\TuneUp Utilities 2009
2010-04-12 11:08 . 2008-04-14 12:00 47386 ----a-w- c:\windows\system32\perfc005.dat
2010-04-12 11:08 . 2008-04-14 12:00 313244 ----a-w- c:\windows\system32\perfh005.dat
2010-04-12 09:47 . 2009-07-17 11:52 -------- d-----w- c:\program files\Canon
2010-04-11 08:33 . 2009-10-26 11:57 -------- d-----w- c:\program files\CyberLink
2010-04-11 08:33 . 2009-02-27 13:43 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-11 07:38 . 2010-03-12 14:54 -------- d-----w- c:\program files\VIA
2010-04-10 13:37 . 2010-03-13 11:55 -------- d-----w- c:\program files\Pinnacle
2010-04-10 13:20 . 2009-06-16 05:07 -------- d-----w- c:\program files\Hemera Products
2010-04-10 12:58 . 2010-03-06 10:39 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-04-10 12:57 . 2010-03-13 08:53 -------- d-----w- c:\program files\Common Files\snpstd2
2010-04-10 12:54 . 2010-03-12 14:45 -------- d-----w- c:\program files\Symantec
2010-04-10 12:54 . 2010-03-07 08:29 -------- d-----w- c:\program files\Ulead Systems
2010-04-09 11:53 . 2010-03-07 08:58 -------- d-----w- c:\program files\Common Files\Ulead Systems
2010-04-09 06:11 . 2009-03-17 16:34 -------- d-----w- c:\program files\Hewlett-Packard
2010-04-08 05:52 . 2009-04-02 07:16 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-08 05:51 . 2010-03-12 15:00 -------- d-----w- c:\program files\Realtek
2010-04-07 17:13 . 2010-03-05 16:16 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-04-07 16:40 . 2010-03-12 17:21 22976 ----a-w- c:\windows\system32\emptyregdb.dat
2010-04-06 12:15 . 2009-02-27 13:41 -------- d-----w- c:\program files\Intel
2010-04-04 12:36 . 2009-03-17 16:34 -------- d-----w- c:\program files\hp deskjet 845c series
2010-04-04 12:36 . 2009-11-16 11:26 -------- d-----w- c:\program files\Java
2010-03-24 07:41 . 2010-03-06 16:37 -------- d-----w- c:\program files\JDownloader
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\Haali
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\CoreCodec
2010-03-13 11:44 . 2010-03-13 11:44 -------- d-----w- c:\program files\ArcSoft
2010-03-13 11:43 . 2009-07-21 05:15 -------- d-----w- c:\program files\Digital Camera (3310)
2010-03-13 09:56 . 2010-03-13 09:56 -------- d-----w- c:\program files\Common Files\CANON
2010-03-13 08:53 . 2010-03-13 08:53 -------- d-----w- c:\program files\KYE
2010-03-12 22:37 . 2009-05-12 08:05 -------- d-----w- c:\program files\Winamp
2010-03-12 22:22 . 2010-03-12 22:22 0 ----a-w- c:\windows\nsreg.dat
2010-03-12 21:46 . 2010-03-12 21:46 -------- d-----w- c:\program files\CCleaner
2010-03-12 20:38 . 2010-03-12 17:23 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-03-12 20:38 . 2010-03-12 17:23 2378 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-03-12 20:38 . 2010-03-12 17:23 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-03-12 15:25 . 2010-03-12 15:25 -------- d-----w- c:\program files\Yahoo!
2010-03-11 16:24 . 2010-03-11 16:24 -------- d-----w- c:\program files\GIGABYTE
2010-03-11 12:36 . 2008-04-14 12:00 832512 ------w- c:\windows\system32\wininet.dll
2010-03-11 12:36 . 2008-04-14 12:00 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:36 . 2008-04-14 12:00 17408 ----a-w- c:\windows\system32\corpol.dll
2010-03-07 08:47 . 2010-03-07 08:47 -------- d-----w- c:\program files\InterVideo
2010-03-07 08:47 . 2010-03-07 08:31 -------- d-----w- c:\program files\Common Files\InterVideo
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\DivX
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-03-06 08:00 . 2010-03-06 07:58 -------- d-----w- c:\program files\Google
2010-03-05 13:48 . 2010-03-05 13:45 -------- d-----w- c:\program files\Movie DVD Maker
2010-03-05 11:17 . 2010-03-05 11:11 -------- d-----w- c:\program files\Common Files\MAGIX Shared
2010-03-05 11:12 . 2010-03-05 11:10 -------- d-----w- c:\program files\MAGIX
2010-02-24 13:55 . 2010-02-24 13:55 -------- d-----w- c:\program files\AVG
2010-02-24 08:49 . 2010-02-24 08:49 -------- d-----w- c:\program files\Translate Client
2010-02-23 19:14 . 2010-02-23 19:00 -------- d-----w- c:\program files\Absolute Uninstaller
2010-02-23 17:34 . 2010-01-26 17:58 -------- d-----w- c:\program files\Exact Audio Copy
2010-02-23 16:52 . 2009-04-15 10:14 -------- d-----w- c:\program files\Windows Media Connect 2
2010-02-23 16:52 . 2009-06-09 14:51 -------- d-----w- c:\program files\Kalenden2009
2010-02-21 12:39 . 2009-12-05 12:51 -------- d-----w- c:\program files\MyHeritage
2010-02-21 08:20 . 2010-02-21 08:20 -------- d-----w- c:\program files\Microsoft Silverlight
2010-02-10 17:13 . 2003-09-30 10:47 165376 ----a-w- c:\windows\system32\unrar.dll
2010-02-03 12:37 . 2010-01-19 08:29 1315 ---ha-w- C:\hpothb07.dat
2010-02-02 19:42 . 2010-03-12 21:36 2025768 ----a-w- c:\program files\SkypeSetup.exe
2009-11-13 08:56 . 2010-03-12 21:18 39502856 ----a-r- c:\program files\setupcze.exe
2009-10-16 13:51 . 2010-03-12 21:46 3309072 ----a-w- c:\program files\ccsetup224.exe
2009-03-02 14:59 . 2009-03-02 14:58 7353264 -c--a-w- c:\program files\Firefox Setup 3.0.6.exe
2006-03-09 22:41 . 2010-04-12 19:07 290 ----a-w- c:\program files\file_id.diz
2006-03-09 22:38 . 2010-04-12 19:07 1634304 ----a-w- c:\program files\covered-csy.nls
2006-03-09 22:38 . 2010-04-12 19:07 1171456 ----a-w- c:\program files\nerocsy.nls
2006-03-09 22:05 . 2010-04-12 19:07 7414 ----a-w- c:\program files\Cti_mne.txt
2006-03-09 15:01 . 2010-04-12 19:07 39868 ----a-w- c:\program files\nerocsy.txt
.
------- Sigcheck -------
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\system32\DRIVERS\atapi.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 2B269C916766BDB43404F043B763427D . 399360 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\rpcss.dll
[-] 2009-02-09 . BEF7BB41E666EAA34BE7E99C2B107DB8 . 401408 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\rpcss.dll
[-] 2008-04-14 . C868F3AE15CF71A93F2AA3A32856D839 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\services.exe
[-] 2009-02-09 . 4F9F7B567970B524F31D9970A23F7C24 . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\services.exe
[-] 2009-02-09 . 33081FED75032291EE0E008D5385E86F . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\services.exe
[-] 2008-04-14 . F0D2AE69035092BF22DAD6B50FAB85C2 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe
[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\wuauclt.exe
[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\dllcache\wuauclt.exe
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 12:00 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll
[-] 2009-03-21 . 0D8F61460F84139BBE5E391D8DE18D9A . 990208 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\SoftwareDistribution\Download\5aa53a77792c8cc6cbdb431d4bf47daa\sp3gdr\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2008-04-14 . FD91CD95A1C663DF54DD371CC8A234DE . 988160 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll
[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe
[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . 7D9B31E0903E2809DA5FC10A94813091 . 2182528 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntoskrnl.exe
[-] 2009-12-09 . B214F89473F73C0733D9C402F36E2125 . 2188160 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2009-12-09 . 07A58A2A4460A4B7A58E0920F4CFA729 . 2147328 . . [5.1.2600.5913] . . c:\windows\system32\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . DF530FCAD41349C92945DF52EBA9F3E4 . 2182656 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntoskrnl.exe
[-] 2009-02-09 . C424407DDD99223BF3248044CBBE91F6 . 2188288 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntoskrnl.exe
[-] 2009-02-09 . F48662F55CD8DDD4DBBBCB69DE197725 . 2191232 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntoskrnl.exe
[-] 2009-02-09 . 6499BF91CF62B4319D6ED7E99D0B6998 . 2147328 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe
[-] 2008-04-14 . 27C7A7AED8A477F6A0C7D3AD00AB9419 . 2147328 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll
[-] 2008-04-14 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2008-04-14 12:00 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-14 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll
[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll
[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe
[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 76D45A9AFAD9FFE3070814DE95648EC7 . 2059904 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntkrnlpa.exe
[-] 2009-12-09 . D9FB61F23249B39EE9922A2CC3001DD0 . 2065280 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2009-12-09 . B2CEA3C57AA8230C7BCC0B2AF35EC55A . 2025984 . . [5.1.2600.5913] . . c:\windows\system32\ntkrnlpa.exe
[-] 2009-02-10 . D721665942F74CA7FF4162A0761CBB0A . 2068224 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntkrnlpa.exe
[-] 2009-02-09 . 73A13AA10E146A3E2B4AC6D007953A74 . 2059904 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntkrnlpa.exe
[-] 2009-02-09 . BB64DC108F8C4EE4D4B7998AA19E5FA7 . 2065152 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntkrnlpa.exe
[-] 2009-02-09 . 6DD6966FA0FF770A3E5545875557C7F1 . 2025984 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntkrnlpa.exe
[-] 2008-04-14 . 9F12E026DC0B0C43F521114EFB3A3ACC . 2025984 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-04-13_08.26.26 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-04-07 06:28 . 2010-04-13 08:32 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
- 2010-04-07 06:28 . 2010-04-13 08:23 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
+ 2010-04-13 08:34 . 2010-04-13 08:34 53248 c:\windows\Temp\catchme.dll
- 2010-04-13 08:26 . 2010-04-13 08:26 53248 c:\windows\Temp\catchme.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-16 13529088]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"SNPSTD2"="c:\windows\vsnpstd2.exe" [2004-06-10 286720]
"PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016]
"SRFirstRun"="srclient.dll" [2008-04-14 67584]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-16 86016]
"nwiz"="nwiz.exe" [2008-05-16 1630208]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKLM\~\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
path=c:\documents and settings\ruda677\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk
backup=c:\windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2008-03-18 01:06 1848648 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
2008-03-11 01:20 689488 ----a-w- c:\program files\Canon\SolutionMenu\CNSLMAIN.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2006-10-26 22:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2008-08-15 03:13 30003200 ----a-r- c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
2004-04-06 17:36 1298542 ------w- c:\program files\Ahead\InCD\InCD.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2005-08-11 15:30 249856 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2005-08-11 15:30 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
2004-03-23 12:44 49152 ----a-w- c:\program files\Pinnacle\Studio 9\LaunchList.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
2004-02-03 13:13 49152 ----a-w- c:\progra~1\Pinnacle\PPE\PPE.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2003-12-08 15:35 32768 ----a-w- c:\program files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
2002-04-11 02:19 69632 -c--a-w- c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2009-04-10 17:29 37888 ----a-w- c:\program files\Winamp\winampa.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\Common Files\Symantec Shared\ccSvcHst.exe [x]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2009-11-24 20560]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2008-07-25 845184]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-04-13 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-04-13 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-02-04 14:50]
.
.
------- Doplňkový sken -------
.
TCP: {DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04} = 10.3.0.1,62.84.128.6
FF - ProfilePath -
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-13 10:34
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Multimedia]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\SystemCertificates]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\WinTrust]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(772)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
- - - - - - - > 'lsass.exe'(828)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
- - - - - - - > 'explorer.exe'(3276)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
.
Celkový čas: 2010-04-13 10:35:58
ComboFix-quarantined-files.txt 2010-04-13 08:35
ComboFix2.txt 2010-04-13 08:27
Před spuštěním: Volných bajtů: 26 740 051 968
Po spuštění: Volných bajtů: 26 727 665 664
Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - C6D7DEE31798EFCDDD367113BED2F40C
ComboFix 10-04-12.04 - ruda677 13.04.2010 10:32:50.2.2 - x86
Spuštěný z: c:\documents and settings\ruda677\Plocha\POVORA.COM.exe
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-03-13 do 2010-04-13 )))))))))))))))))))))))))))))))
.
2010-04-13 07:45 . 2010-04-13 07:59 -------- d-----w- c:\windows\RegLooks
2010-04-13 07:32 . 2010-04-13 07:32 -------- dc----w- C:\rsit
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\VDLL.DLL
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\system32\runouce.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\rundll16.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\RUNDL132.EXE
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo1_.exe
2010-04-12 22:05 . 2010-04-12 22:05 -------- d---a-w- c:\windows\logo_1.exe
2010-04-12 22:04 . 2010-04-12 22:04 632064 ----a-w- c:\windows\system32\msvcr80.dll
2010-04-12 22:04 . 2010-04-12 22:04 554240 ----a-w- c:\windows\system32\msvcp80.dll
2010-04-12 22:04 . 2010-04-12 22:04 34048 ----a-w- c:\windows\system32\eEmpty.exe
2010-04-12 21:42 . 2008-04-14 12:00 147968 ----a-w- c:\windows\R.COM
2010-04-12 21:42 . 2008-04-14 12:00 137216 ----a-w- c:\windows\system32\T.COM
2010-04-12 21:42 . 2010-04-12 21:42 -------- d-----w- c:\program files\Common Files\MicroWorld
2010-04-12 16:26 . 2010-04-12 16:26 -------- d-----w- c:\program files\Ashampoo
2010-04-12 14:52 . 2010-04-12 14:52 603904 ----a-w- c:\windows\system32\TUProgSt.exe
2010-04-12 14:52 . 2008-12-11 11:31 27904 ----a-w- c:\windows\system32\uxtuneup.dll
2010-04-12 14:52 . 2010-04-12 14:52 360192 ----a-w- c:\windows\system32\TuneUpDefragService.exe
2010-04-12 09:30 . 2009-10-20 16:20 265728 -c----w- c:\windows\system32\dllcache\http.sys
2010-04-12 09:30 . 2010-03-11 12:36 52224 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-04-12 09:30 . 2010-03-11 12:36 459264 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-04-12 09:30 . 2010-03-11 12:36 268288 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-04-12 09:30 . 2010-03-11 12:36 63488 -c----w- c:\windows\system32\dllcache\icardie.dll
2010-04-12 09:30 . 2010-03-11 12:36 6067200 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-04-12 09:30 . 2010-03-11 12:36 380928 -c----w- c:\windows\system32\dllcache\ieapfltr.dll
2010-04-12 09:30 . 2010-03-10 13:17 13824 -c----w- c:\windows\system32\dllcache\ieudinit.exe
2010-04-12 09:30 . 2009-06-29 08:33 2452872 -c----w- c:\windows\system32\dllcache\ieapfltr.dat
2010-04-11 08:35 . 2010-04-11 08:35 -------- dc----w- C:\My Documents
2010-04-11 08:35 . 2010-04-11 08:35 -------- d-----w- c:\windows\Application Data
2010-04-11 08:34 . 2010-04-11 08:34 -------- d-----w- c:\program files\Ahead
2010-04-11 08:34 . 2003-12-05 09:46 10368 ------w- c:\windows\system32\drivers\pfc.sys
2010-04-11 08:33 . 2004-03-11 11:27 40960 ----a-w- c:\program files\Uninstall_CDS.exe
2010-04-11 08:33 . 2010-04-11 08:33 -------- d-----w- c:\program files\CyberLink DVD Solution
2010-04-10 13:47 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-04-10 13:46 . 2009-06-10 07:21 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-04-10 13:46 . 2009-12-09 10:11 2191360 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2010-04-10 13:46 . 2009-12-09 10:11 2068224 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2010-04-10 13:46 . 2009-12-09 10:11 2147328 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2010-04-10 13:46 . 2009-12-09 10:11 2025984 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2010-04-10 13:46 . 2009-12-04 18:22 455424 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-10 13:46 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 8704 -c----w- c:\windows\system32\dllcache\tsbyuv.dll
2010-04-10 13:46 . 2009-11-27 16:09 48128 -c----w- c:\windows\system32\dllcache\iyuv_32.dll
2010-04-10 12:58 . 2010-04-10 12:58 -------- d-----w- c:\windows\system32\wbem\Repository
2010-04-09 10:56 . 2010-04-10 12:54 -------- dc----w- C:\OpenSSL
2010-04-08 15:48 . 2010-04-10 12:57 -------- d-----w- c:\program files\Easy CD-DA Extractor 10
2010-04-08 06:33 . 2010-04-10 12:57 -------- d-----w- c:\windows\NV17562876.TMP
2010-04-08 06:20 . 2010-04-10 12:58 -------- d-----w- c:\windows\NV28762836.TMP
2010-04-08 06:14 . 2010-04-10 12:58 -------- d-----w- c:\windows\AsDmiHtm
2010-04-08 06:01 . 2010-04-08 06:01 -------- dc----w- C:\ASUS.000
2010-04-08 06:00 . 2010-04-10 12:58 -------- dc----w- C:\ASUS.SYS
2010-04-08 05:55 . 2010-04-08 05:55 -------- d-----w- c:\program files\Corel
2010-04-08 05:50 . 2010-04-10 12:58 -------- d-----w- c:\program files\ASUS
2010-04-07 17:24 . 2010-04-10 12:58 -------- d-----w- c:\program files\Wise Registry Cleaner
2010-04-07 16:42 . 2008-04-14 12:00 79872 -c--a-w- c:\windows\system32\dllcache\rwia330.dll
2010-04-07 16:41 . 2001-10-24 10:24 5632 -c--a-w- c:\windows\system32\dllcache\EXCH_adsiisex.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2010-04-07 16:31 . 2008-04-14 12:00 13312 ----a-w- c:\windows\system32\irclass.dll
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Nabídka Start
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\LocalService.NT AUTHORITY.002\Data aplikací
2010-04-07 06:28 . 2010-04-10 12:58 -------- d-sh--w- c:\documents and settings\NetworkService.NT AUTHORITY.002
2010-04-07 06:28 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\NetworkService.NT AUTHORITY.002\Data aplikací
2010-04-06 12:32 . 2008-04-14 12:00 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-04-06 12:32 . 2010-04-10 12:58 -------- d-----w- c:\documents and settings\adamek
2010-04-06 12:32 . 2010-04-07 16:09 -------- d--h--r- c:\documents and settings\adamek\Data aplikací
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Oblíbené položky
2010-04-06 12:32 . 2010-04-07 06:27 -------- d-----r- c:\documents and settings\adamek\Nabídka Start
2010-04-06 12:32 . 2010-04-07 06:26 -------- d-----r- c:\documents and settings\adamek\Dokumenty
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní tiskárny
2010-04-06 12:32 . 2010-03-12 18:11 -------- d--h--w- c:\documents and settings\adamek\Okolní síť
2010-04-06 12:32 . 2010-03-12 18:11 -------- d-----w- c:\documents and settings\adamek\Plocha
2010-04-06 12:24 . 1996-09-10 20:33 48640 ----a-w- c:\windows\system32\INETWH32.DLL
2010-04-06 12:24 . 1996-08-27 12:48 4528 ----a-w- c:\windows\system32\SETBROWS.EXE
2010-04-06 12:15 . 1998-11-18 14:33 144384 ----a-w- c:\windows\system32\Iacenc.dll
2010-04-06 12:15 . 1997-06-13 06:56 56832 ----a-w- c:\windows\system32\Iyvu9_32.dll
2010-04-05 09:22 . 2008-04-13 22:16 51200 ----a-w- c:\windows\system32\drivers\msdv.sys
2010-04-05 09:22 . 2008-04-13 22:16 38912 ----a-w- c:\windows\system32\drivers\avc.sys
2010-04-05 09:22 . 2008-04-13 22:16 48128 ----a-w- c:\windows\system32\drivers\61883.sys
2010-04-04 12:36 . 2010-04-04 12:36 -------- d-----w- c:\program files\Common Files\Java
2010-04-04 12:15 . 2001-11-02 11:50 147456 ----a-w- c:\windows\system32\VegaShEx.dll
2010-04-04 12:15 . 2002-02-13 14:15 77824 ----a-w- c:\windows\system32\ZDec.dll
2010-04-04 12:09 . 2010-04-10 13:02 82380 ----a-w- c:\windows\system32\drivers\AFS2K.SYS
2010-03-29 16:56 . 2010-04-10 13:15 -------- d-----w- c:\windows\Easy CD-DA Extractor 12.0.4
2010-03-29 16:27 . 2010-04-10 13:15 -------- d-----w- c:\program files\Easy CD-DA Extractor 12
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2010-03-20 07:32 . 2010-03-20 07:32 -------- d--h--w- c:\program files\CanonBJ
2010-03-19 13:47 . 2008-04-13 22:17 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-03-19 08:33 . 2010-03-19 08:33 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2010-03-16 12:39 . 2010-04-07 06:28 -------- d-----w- c:\documents and settings\ruda677\6MaxfaktorTvz
2010-03-14 18:12 . 2010-03-09 02:28 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-03-14 17:45 . 2010-03-22 10:45 -------- d-----w- c:\program files\McAfee Security Scan
2010-03-14 15:12 . 2010-03-14 15:30 -------- d-----w- c:\windows\NV1601152.TMP
2010-03-14 15:11 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-03-14 15:06 . 2010-03-14 15:08 -------- d-----w- c:\windows\NV8681232.TMP
2010-03-14 14:48 . 2010-03-14 14:48 -------- d-----w- c:\program files\Theorica Divx
2010-03-14 14:41 . 2010-03-14 14:41 729088 ----a-w- c:\windows\iun6002.exe
2010-03-14 14:36 . 2009-11-02 12:48 831488 ----a-w- c:\windows\RtlExUpd.dll
2010-03-14 14:31 . 2010-04-07 17:14 -------- d-----w- c:\program files\Kodek CZ
2010-03-14 14:26 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-14 14:26 . 2009-07-14 00:15 90112 ----a-w- c:\windows\system32\dpl100.dll
2010-03-14 14:26 . 2009-07-14 00:15 685056 ----a-w- c:\windows\system32\divx.dll
2010-03-14 14:26 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-14 14:23 . 2010-03-14 14:23 -------- d-----w- c:\program files\XP Codec Pack
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\Microsoft Works
2010-04-12 21:24 . 2009-11-19 11:36 -------- d-----w- c:\program files\MSBuild
2010-04-12 15:03 . 2010-03-13 13:44 -------- d-----w- c:\program files\Ask.com
2010-04-12 14:55 . 2010-03-12 16:38 -------- d-----w- c:\program files\TuneUp Utilities 2009
2010-04-12 11:08 . 2008-04-14 12:00 47386 ----a-w- c:\windows\system32\perfc005.dat
2010-04-12 11:08 . 2008-04-14 12:00 313244 ----a-w- c:\windows\system32\perfh005.dat
2010-04-12 09:47 . 2009-07-17 11:52 -------- d-----w- c:\program files\Canon
2010-04-11 08:33 . 2009-10-26 11:57 -------- d-----w- c:\program files\CyberLink
2010-04-11 08:33 . 2009-02-27 13:43 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-11 07:38 . 2010-03-12 14:54 -------- d-----w- c:\program files\VIA
2010-04-10 13:37 . 2010-03-13 11:55 -------- d-----w- c:\program files\Pinnacle
2010-04-10 13:20 . 2009-06-16 05:07 -------- d-----w- c:\program files\Hemera Products
2010-04-10 12:58 . 2010-03-06 10:39 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-04-10 12:57 . 2010-03-13 08:53 -------- d-----w- c:\program files\Common Files\snpstd2
2010-04-10 12:54 . 2010-03-12 14:45 -------- d-----w- c:\program files\Symantec
2010-04-10 12:54 . 2010-03-07 08:29 -------- d-----w- c:\program files\Ulead Systems
2010-04-09 11:53 . 2010-03-07 08:58 -------- d-----w- c:\program files\Common Files\Ulead Systems
2010-04-09 06:11 . 2009-03-17 16:34 -------- d-----w- c:\program files\Hewlett-Packard
2010-04-08 05:52 . 2009-04-02 07:16 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-08 05:51 . 2010-03-12 15:00 -------- d-----w- c:\program files\Realtek
2010-04-07 17:13 . 2010-03-05 16:16 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-04-07 16:40 . 2010-03-12 17:21 22976 ----a-w- c:\windows\system32\emptyregdb.dat
2010-04-06 12:15 . 2009-02-27 13:41 -------- d-----w- c:\program files\Intel
2010-04-04 12:36 . 2009-03-17 16:34 -------- d-----w- c:\program files\hp deskjet 845c series
2010-04-04 12:36 . 2009-11-16 11:26 -------- d-----w- c:\program files\Java
2010-03-24 07:41 . 2010-03-06 16:37 -------- d-----w- c:\program files\JDownloader
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\Haali
2010-03-13 13:38 . 2010-03-13 13:38 -------- d-----w- c:\program files\CoreCodec
2010-03-13 11:44 . 2010-03-13 11:44 -------- d-----w- c:\program files\ArcSoft
2010-03-13 11:43 . 2009-07-21 05:15 -------- d-----w- c:\program files\Digital Camera (3310)
2010-03-13 09:56 . 2010-03-13 09:56 -------- d-----w- c:\program files\Common Files\CANON
2010-03-13 08:53 . 2010-03-13 08:53 -------- d-----w- c:\program files\KYE
2010-03-12 22:37 . 2009-05-12 08:05 -------- d-----w- c:\program files\Winamp
2010-03-12 22:22 . 2010-03-12 22:22 0 ----a-w- c:\windows\nsreg.dat
2010-03-12 21:46 . 2010-03-12 21:46 -------- d-----w- c:\program files\CCleaner
2010-03-12 20:38 . 2010-03-12 17:23 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-03-12 20:38 . 2010-03-12 17:23 2378 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-03-12 20:38 . 2010-03-12 17:23 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-03-12 15:25 . 2010-03-12 15:25 -------- d-----w- c:\program files\Yahoo!
2010-03-11 16:24 . 2010-03-11 16:24 -------- d-----w- c:\program files\GIGABYTE
2010-03-11 12:36 . 2008-04-14 12:00 832512 ------w- c:\windows\system32\wininet.dll
2010-03-11 12:36 . 2008-04-14 12:00 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:36 . 2008-04-14 12:00 17408 ----a-w- c:\windows\system32\corpol.dll
2010-03-07 08:47 . 2010-03-07 08:47 -------- d-----w- c:\program files\InterVideo
2010-03-07 08:47 . 2010-03-07 08:31 -------- d-----w- c:\program files\Common Files\InterVideo
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\DivX
2010-03-06 10:34 . 2010-03-06 07:58 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-03-06 08:00 . 2010-03-06 07:58 -------- d-----w- c:\program files\Google
2010-03-05 13:48 . 2010-03-05 13:45 -------- d-----w- c:\program files\Movie DVD Maker
2010-03-05 11:17 . 2010-03-05 11:11 -------- d-----w- c:\program files\Common Files\MAGIX Shared
2010-03-05 11:12 . 2010-03-05 11:10 -------- d-----w- c:\program files\MAGIX
2010-02-24 13:55 . 2010-02-24 13:55 -------- d-----w- c:\program files\AVG
2010-02-24 08:49 . 2010-02-24 08:49 -------- d-----w- c:\program files\Translate Client
2010-02-23 19:14 . 2010-02-23 19:00 -------- d-----w- c:\program files\Absolute Uninstaller
2010-02-23 17:34 . 2010-01-26 17:58 -------- d-----w- c:\program files\Exact Audio Copy
2010-02-23 16:52 . 2009-04-15 10:14 -------- d-----w- c:\program files\Windows Media Connect 2
2010-02-23 16:52 . 2009-06-09 14:51 -------- d-----w- c:\program files\Kalenden2009
2010-02-21 12:39 . 2009-12-05 12:51 -------- d-----w- c:\program files\MyHeritage
2010-02-21 08:20 . 2010-02-21 08:20 -------- d-----w- c:\program files\Microsoft Silverlight
2010-02-10 17:13 . 2003-09-30 10:47 165376 ----a-w- c:\windows\system32\unrar.dll
2010-02-03 12:37 . 2010-01-19 08:29 1315 ---ha-w- C:\hpothb07.dat
2010-02-02 19:42 . 2010-03-12 21:36 2025768 ----a-w- c:\program files\SkypeSetup.exe
2009-11-13 08:56 . 2010-03-12 21:18 39502856 ----a-r- c:\program files\setupcze.exe
2009-10-16 13:51 . 2010-03-12 21:46 3309072 ----a-w- c:\program files\ccsetup224.exe
2009-03-02 14:59 . 2009-03-02 14:58 7353264 -c--a-w- c:\program files\Firefox Setup 3.0.6.exe
2006-03-09 22:41 . 2010-04-12 19:07 290 ----a-w- c:\program files\file_id.diz
2006-03-09 22:38 . 2010-04-12 19:07 1634304 ----a-w- c:\program files\covered-csy.nls
2006-03-09 22:38 . 2010-04-12 19:07 1171456 ----a-w- c:\program files\nerocsy.nls
2006-03-09 22:05 . 2010-04-12 19:07 7414 ----a-w- c:\program files\Cti_mne.txt
2006-03-09 15:01 . 2010-04-12 19:07 39868 ----a-w- c:\program files\nerocsy.txt
.
------- Sigcheck -------
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\system32\DRIVERS\atapi.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . C0BD34A62508BA68F146E22CE45919F9 . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . BE27674D1CBC3214AEC84B4336A38BBF . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 2B269C916766BDB43404F043B763427D . 399360 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\rpcss.dll
[-] 2009-02-09 . BEF7BB41E666EAA34BE7E99C2B107DB8 . 401408 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\rpcss.dll
[-] 2008-04-14 . C868F3AE15CF71A93F2AA3A32856D839 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . 9EF697AF07BB8DD82C3B02CA953A95B7 . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2009-02-09 . 3D107D45CCFDB266E91D84B52CD7F430 . 111104 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\services.exe
[-] 2009-02-09 . 4F9F7B567970B524F31D9970A23F7C24 . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\services.exe
[-] 2009-02-09 . 33081FED75032291EE0E008D5385E86F . 111104 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\services.exe
[-] 2008-04-14 . F0D2AE69035092BF22DAD6B50FAB85C2 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe
[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\wuauclt.exe
[-] 2009-08-06 . 62BB79160F86CD962F312C68C6239BFD . 53472 . . [7.4.7600.226] . . c:\windows\system32\dllcache\wuauclt.exe
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 12:00 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll
[-] 2009-03-21 . 0D8F61460F84139BBE5E391D8DE18D9A . 990208 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\SoftwareDistribution\Download\5aa53a77792c8cc6cbdb431d4bf47daa\sp3gdr\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . 545C653E8FE241CA6200798AA94FE5C7 . 988160 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2008-04-14 . FD91CD95A1C663DF54DD371CC8A234DE . 988160 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll
[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe
[-] 2009-12-10 . 7782F11AE957B736585870CD2671227B . 2191488 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . 7D9B31E0903E2809DA5FC10A94813091 . 2182528 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntoskrnl.exe
[-] 2009-12-09 . B214F89473F73C0733D9C402F36E2125 . 2188160 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntoskrnl.exe
[-] 2009-12-09 . 3B0DC252A20C8A938ED21073EE736AEA . 2191360 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2009-12-09 . 07A58A2A4460A4B7A58E0920F4CFA729 . 2147328 . . [5.1.2600.5913] . . c:\windows\system32\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . 97480EBFE1D4B547657BAD75AAAB1325 . 2191360 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . DF530FCAD41349C92945DF52EBA9F3E4 . 2182656 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntoskrnl.exe
[-] 2009-02-09 . C424407DDD99223BF3248044CBBE91F6 . 2188288 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntoskrnl.exe
[-] 2009-02-09 . F48662F55CD8DDD4DBBBCB69DE197725 . 2191232 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntoskrnl.exe
[-] 2009-02-09 . 6499BF91CF62B4319D6ED7E99D0B6998 . 2147328 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe
[-] 2008-04-14 . 27C7A7AED8A477F6A0C7D3AD00AB9419 . 2147328 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll
[-] 2008-04-14 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2008-04-14 12:00 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-14 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll
[-] 2008-04-14 12:00 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll
[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
[-] 2008-04-14 12:00 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe
[-] 2009-12-10 . 58516936F00D10D4B615C458A8A4AB71 . 2068352 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 76D45A9AFAD9FFE3070814DE95648EC7 . 2059904 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2GDR\ntkrnlpa.exe
[-] 2009-12-09 . D9FB61F23249B39EE9922A2CC3001DD0 . 2065280 . . [5.1.2600.3654] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP2QFE\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\SoftwareDistribution\Download\c598abb0f20235776cb4dcfe11c042d3\SP3GDR\ntkrnlpa.exe
[-] 2009-12-09 . 166530C022AB3A0F9EADB20633AE034E . 2068224 . . [5.1.2600.5913] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2009-12-09 . B2CEA3C57AA8230C7BCC0B2AF35EC55A . 2025984 . . [5.1.2600.5913] . . c:\windows\system32\ntkrnlpa.exe
[-] 2009-02-10 . D721665942F74CA7FF4162A0761CBB0A . 2068224 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3GDR\ntkrnlpa.exe
[-] 2009-02-09 . 73A13AA10E146A3E2B4AC6D007953A74 . 2059904 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2GDR\ntkrnlpa.exe
[-] 2009-02-09 . BB64DC108F8C4EE4D4B7998AA19E5FA7 . 2065152 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP2QFE\ntkrnlpa.exe
[-] 2009-02-09 . 6DD6966FA0FF770A3E5545875557C7F1 . 2025984 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2009-02-09 . FF8A3F180A224AA27EBAB937CA027F4D . 2068352 . . [5.1.2600.5755] . . c:\windows\SoftwareDistribution\Download\3600e56e45ad54d0df91c2e4c0249f5a\SP3QFE\ntkrnlpa.exe
[-] 2008-04-14 . 9F12E026DC0B0C43F521114EFB3A3ACC . 2025984 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 12:00 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-04-13_08.26.26 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-04-07 06:28 . 2010-04-13 08:32 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
- 2010-04-07 06:28 . 2010-04-13 08:23 32768 c:\windows\Temp\Temporary Internet Files\Content.IE5\index.dat
+ 2010-04-13 08:34 . 2010-04-13 08:34 53248 c:\windows\Temp\catchme.dll
- 2010-04-13 08:26 . 2010-04-13 08:26 53248 c:\windows\Temp\catchme.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-16 13529088]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"SNPSTD2"="c:\windows\vsnpstd2.exe" [2004-06-10 286720]
"PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-10 406016]
"SRFirstRun"="srclient.dll" [2008-04-14 67584]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-16 86016]
"nwiz"="nwiz.exe" [2008-05-16 1630208]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKLM\~\startupfolder\C:^Documents and Settings^ruda677^Nabídka Start^Programy^Po spuštění^Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk]
path=c:\documents and settings\ruda677\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk
backup=c:\windows\pss\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
2008-03-18 01:06 1848648 ----a-w- c:\program files\Canon\MyPrinter\BJMYPRT.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
2008-03-11 01:20 689488 ----a-w- c:\program files\Canon\SolutionMenu\CNSLMAIN.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2006-10-26 22:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
2008-08-15 03:13 30003200 ----a-r- c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
2004-04-06 17:36 1298542 ------w- c:\program files\Ahead\InCD\InCD.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2005-08-11 15:30 249856 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2005-08-11 15:30 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LaunchList]
2004-03-23 12:44 49152 ----a-w- c:\program files\Pinnacle\Studio 9\LaunchList.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCLEPCI]
2004-02-03 13:13 49152 ----a-w- c:\progra~1\Pinnacle\PPE\PPE.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2003-12-08 15:35 32768 ----a-w- c:\program files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Share-to-Web Namespace Daemon]
2002-04-11 02:19 69632 -c--a-w- c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-02-18 09:43 248040 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2009-04-10 17:29 37888 ----a-w- c:\program files\Winamp\winampa.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\Common Files\Symantec Shared\ccSvcHst.exe [x]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2009-11-24 20560]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2008-07-25 845184]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-04-13 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 19:36]
2010-04-13 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-02-04 14:50]
.
.
------- Doplňkový sken -------
.
TCP: {DEE853AE-BD9F-4D36-BDA3-E5EF1E22BA04} = 10.3.0.1,62.84.128.6
FF - ProfilePath -
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-13 10:34
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Multimedia]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\SystemCertificates]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-1801674531-507921405-2147098553-1004\Software\Microsoft\Windows\CurrentVersion\WinTrust]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(772)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
- - - - - - - > 'lsass.exe'(828)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
- - - - - - - > 'explorer.exe'(3276)
c:\windows\system32\vorbis.dll
c:\windows\system32\ogg.dll
.
Celkový čas: 2010-04-13 10:35:58
ComboFix-quarantined-files.txt 2010-04-13 08:35
ComboFix2.txt 2010-04-13 08:27
Před spuštěním: Volných bajtů: 26 740 051 968
Po spuštění: Volných bajtů: 26 727 665 664
Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - C6D7DEE31798EFCDDD367113BED2F40C
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Já bych se nezlobila, přejmenovává se to kvůli blokování havěti, ale potřebuju vidět, co poprvé smazal
Start - Spustit
-do okénka napište
notepad "C:\ComboFix.txt"
-pokud na Vás vyběhne log, vložte ho zde
-do okénka napište
notepad "C:\ComboFix.txt"
-pokud na Vás vyběhne log, vložte ho zde
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
PC PORAD PROBLIKAVA, START NEJDE SPUSTIT, JAKO BY PORAD KAZDOU SEKUNDU NACITAVAL, TAKZE MENU START NEZOBRAZI 
Re: nejde spustit ani instalovat mwav, mbam, tuneup
Najděte na disku C tento log
C:\ComboFix.txt
C:\ComboFix.txt
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: nejde spustit ani instalovat mwav, mbam, tuneup
uAU, NEJDE NAJET DO C PISE obsahuje skryte soubory, dam zobrazit souborz a nejde to ,zase pise obsahuje skryte soubory. 
Re: nejde spustit ani instalovat mwav, mbam, tuneup
musim od pc , objevim se odpoledne, prozatim diky


Přispějete na provoz fóra?