
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
rpcnet.exe
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: rpcnet.exe
A hodnocení systemu jsem měl 3,2 nyní není k dispozici. Při pokusu o aktual. zobrazí nalezen novy hardware=winSAT.exe(neznamy vydavatel) tak jsem to radši zrušil protože cokoliv v mojim počitači vyžaduje heslo spravce tak je podepsano neznamy vydavatel.
VF1
Re: rpcnet.exe
Pote,co preinstalujete AVG,provedte opravu systemu z instalacniho media Windows Vista - http://www.viry.cz/forum/viewtopic.php?t=41036
Pak budeme pokracovat.
Pak budeme pokracovat.
Autoruns + HitmanPro + UPM + Avenger + GMER + OTM + AVPTool + RSIT + RootRepeal
________________________________________________________________________________________
AKTUALIZOVANY ANTIVIR A PERSONALNI FIREWALL JSOU DVE NEZBYTNE OCHRANNE KOMPONENTY KAZDEHO PC,PRIPOJENEHO DO INTERNETU!!!
ZALOHOVANIM OSOBNICH DAT O NE NEPRIJDETE V PRIPADE FATALNICH PROBLEMU SE SOFTWAREM I HARDWAREM!!
NEPOUZIVEJTE COMBOFIX NA VLASTNI PEST, POUZE, POKUD K TOMU BUDETE VYZVANI.PRI NESPRAVNE MANIPULACI S NIM MUZE DOJIT K ZNEFUNKCNENI SYSTEMU!


___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
________________________________________________________________________________________







___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
Re: rpcnet.exe
místo avg jsem nainstaloval avast profesional oprava systemu nenašla žadnou chybu ale defender stale nelze spustit win. Update při pokusu vyhledat aktualizace hlasi že služba systemu w.update je vypnuta a že ja třeba počítač restartovat ale zkoušel jsem to třikrat a stale je to stejné. U https stale chyba s připojenim. jedine https ktere otevřu je mail.google.com ale tam jsem zjistil že je pro změnu problem s ověřenim certifikatu
VF1
Re: rpcnet.exe
A ještě na cokoliv chci použít napovědu on-line zobrazí se toto=Téma nebylo nalezeno
Téma, které hledáte, není dostupné v této verzi systému Windows. Další informace naleznete vyhledáváním na webu http://www.microsoft.com.
Téma, které hledáte, není dostupné v této verzi systému Windows. Další informace naleznete vyhledáváním na webu http://www.microsoft.com.
VF1
Re: rpcnet.exe
Windows Defender opravte dle tohoto postupu - http://support.microsoft.com/kb/931849/cs
Https nejde zobrazit zrejme kvuli tomu,ze nemate povolen na firewalu port 443.
Co pouzivate za firewal?
Https nejde zobrazit zrejme kvuli tomu,ze nemate povolen na firewalu port 443.
Co pouzivate za firewal?
Autoruns + HitmanPro + UPM + Avenger + GMER + OTM + AVPTool + RSIT + RootRepeal
________________________________________________________________________________________
AKTUALIZOVANY ANTIVIR A PERSONALNI FIREWALL JSOU DVE NEZBYTNE OCHRANNE KOMPONENTY KAZDEHO PC,PRIPOJENEHO DO INTERNETU!!!
ZALOHOVANIM OSOBNICH DAT O NE NEPRIJDETE V PRIPADE FATALNICH PROBLEMU SE SOFTWAREM I HARDWAREM!!
NEPOUZIVEJTE COMBOFIX NA VLASTNI PEST, POUZE, POKUD K TOMU BUDETE VYZVANI.PRI NESPRAVNE MANIPULACI S NIM MUZE DOJIT K ZNEFUNKCNENI SYSTEMU!


___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
________________________________________________________________________________________







___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
Re: rpcnet.exe
už je snad vše v pohodě už mě to nebavylo tak jsem smazal cely harddisk a nainstaloval znovu cely windows tak už to snad bude v pohodě
VF1
Re: rpcnet.exe
Byl jsem mimo pc.
Melo by byt,doufam,ze priste budeme uspesnejsi.
Melo by byt,doufam,ze priste budeme uspesnejsi.
Autoruns + HitmanPro + UPM + Avenger + GMER + OTM + AVPTool + RSIT + RootRepeal
________________________________________________________________________________________
AKTUALIZOVANY ANTIVIR A PERSONALNI FIREWALL JSOU DVE NEZBYTNE OCHRANNE KOMPONENTY KAZDEHO PC,PRIPOJENEHO DO INTERNETU!!!
ZALOHOVANIM OSOBNICH DAT O NE NEPRIJDETE V PRIPADE FATALNICH PROBLEMU SE SOFTWAREM I HARDWAREM!!
NEPOUZIVEJTE COMBOFIX NA VLASTNI PEST, POUZE, POKUD K TOMU BUDETE VYZVANI.PRI NESPRAVNE MANIPULACI S NIM MUZE DOJIT K ZNEFUNKCNENI SYSTEMU!


___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
________________________________________________________________________________________







___________________________________________________________
----------------------earl@forum.viry.cz-----------------------
Re: rpcnet.exe
Zdavim, tak to netrvalo dlouho a uz je tady dalsi problem... AVG mi pravě oznamilo infekci =virus Wom/Generic_c.ZS co s tim???????Předem diky za pomoc.
VF1
Re: rpcnet.exe
Dobrý večer
Kolega si dovolenkuje
, doufám že Vám budud stačit já
.
Poprosím Vás o log ze Rsitu, viz můj podpis.
V jakém souboru má vir být?

Kolega si dovolenkuje



Poprosím Vás o log ze Rsitu, viz můj podpis.
V jakém souboru má vir být?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: rpcnet.exe
ještě prosim o radu jak se zbavit souboru a kliču v registru když k nim nemam přistup removery viru je automaticky vynechavaji protože jsou zamčene???z avg centra jsem se dozvěděl že bych mohl mit v pc magistra tak jsem si stahl remover přimo na nej spustil ho a pc se restartoval a od te doby při pokusu o nouzovy režim při načitani ovladaču vždy zamrzne tak nevim. Tady je log==Logfile of random's system information tool 1.08 (written by random/random)
Run by vf1 at 2010-07-21 01:33:58
Microsoft® Windows Vista™ Ultimate Service Pack 2
System drive C: has 33 GB (65%) free of 50 GB
Total RAM: 1788 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:34:35, on 21.7.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18928)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\Documents\Downloads\RSIT (1).exe
C:\Program Files\trend micro\vf1.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{88D1C584-55D4-D154-6B97-F58E4A7FA26F}: NameServer = 217.77.165.81 217.77.161.131
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: AVG E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: AVG Firewall (avgfws9) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgfws9.exe
O23 - Service: AVG9IDSAgent (AVGIDSAgent) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: rpcnetp - Unknown owner - C:\Windows\System32\rpcnetp.exe (file missing)
--
End of file - 6525 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{16A41C02-1E23-4CD4-948E-2C6998CEDA2D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-07-17 1615200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-07-17 2065760]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-14 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2008-05-02 307200]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-05-27 1721640]
"MsmqIntCert"=regsvr32 /s mqrt.dll []
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2010-03-02 1347496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
oobefldr.dll,ShowWelcomeCenter []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-07-20 22:44:25 ----N---- C:\Windows\system32\MpSigStub.exe
2010-07-20 22:02:20 ----D---- C:\Windows\LastGood
2010-07-20 20:31:47 ----D---- C:\Program Files\BitLocker
2010-07-20 20:31:07 ----A---- C:\Windows\system32\SecureKeyBackupCPL.dll
2010-07-20 19:16:15 ----D---- C:\Users\vf1\AppData\Roaming\AVG9
2010-07-20 17:46:48 ----D---- C:\Program Files\DBF Viewer 2000
2010-07-20 16:50:15 ----D---- C:\Windows\system32\WindowsPowerShell
2010-07-20 16:48:35 ----A---- C:\Windows\system32\winrsmgr.dll
2010-07-20 16:48:02 ----A---- C:\Windows\system32\wsmprovhost.exe
2010-07-20 16:48:02 ----A---- C:\Windows\system32\winrshost.exe
2010-07-20 16:48:02 ----A---- C:\Windows\system32\winrs.exe
2010-07-20 16:48:01 ----A---- C:\Windows\system32\wsmplpxy.dll
2010-07-20 16:48:01 ----A---- C:\Windows\system32\winrssrv.dll
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wevtfwd.dll
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wecutil.exe
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wecapi.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\WsmRes.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\wecsvc.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\pwrshplugin.dll
2010-07-20 16:47:42 ----A---- C:\Windows\system32\winrm.vbs
2010-07-20 16:47:36 ----A---- C:\Windows\system32\WsmAuto.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WsmWmiPl.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WsmSvc.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2010-07-20 16:47:35 ----A---- C:\Windows\system32\winrscmd.dll
2010-07-20 15:45:26 ----D---- C:\Program Files\Microsoft Windows OneCare Live
2010-07-19 20:41:40 ----A---- C:\Windows\system32\drivers\ser2pl.sys
2010-07-19 20:41:39 ----A---- C:\Windows\system32\SER9PL.sys
2010-07-19 20:41:37 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-19 17:46:31 ----D---- C:\Program Files\LSI SoftModem
2010-07-19 15:03:06 ----D---- C:\Users\vf1\AppData\Roaming\HP
2010-07-19 12:47:41 ----D---- C:\Program Files\Marvell
2010-07-19 09:18:00 ----A---- C:\ProgramData\HPWALog.txt
2010-07-19 09:11:40 ----D---- C:\Program Files\Hewlett-Packard
2010-07-19 09:11:34 ----D---- C:\Users\vf1\AppData\Roaming\hpqLog
2010-07-19 09:07:38 ----D---- C:\SWSetup
2010-07-19 08:08:44 ----D---- C:\Users\vf1\AppData\Roaming\Macromedia
2010-07-19 08:08:43 ----D---- C:\Users\vf1\AppData\Roaming\Adobe
2010-07-19 07:27:58 ----A---- C:\Windows\system32\tlntsess.exe
2010-07-19 07:27:58 ----A---- C:\Windows\system32\telnet.exe
2010-07-19 03:22:39 ----D---- C:\ProgramData\HPSSUPPLY
2010-07-19 03:05:22 ----D---- C:\Windows\system32\msmq
2010-07-19 03:05:22 ----D---- C:\Windows\SUA
2010-07-19 03:05:13 ----D---- C:\inetpub
2010-07-19 02:27:53 ----D---- C:\Windows\system32\appmgmt
2010-07-19 02:07:17 ----ASH---- C:\hiberfil.sys
2010-07-19 00:32:35 ----D---- C:\Program Files\MSXML 4.0
2010-07-19 00:13:59 ----D---- C:\ProgramData\Gemfor
2010-07-18 21:09:01 ----A---- C:\Windows\ntbtlog.txt
2010-07-18 20:38:33 ----D---- C:\Program Files\T-Mobile
2010-07-18 18:47:47 ----D---- C:\ProgramData\HP Product Assistant
2010-07-18 18:44:38 ----D---- C:\Windows\system32\Macromed
2010-07-18 18:43:41 ----D---- C:\Program Files\Common Files\HP
2010-07-18 18:43:03 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-07-18 18:38:52 ----HD---- C:\Config.Msi
2010-07-18 18:38:19 ----D---- C:\Program Files\HP
2010-07-18 18:23:58 ----D---- C:\Program Files\Microsoft.NET
2010-07-18 17:57:29 ----A---- C:\Windows\system32\winhttp.dll
2010-07-18 17:11:58 ----D---- C:\rsit
2010-07-18 17:11:58 ----D---- C:\Program Files\trend micro
2010-07-18 15:37:36 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2010-07-18 15:37:35 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2010-07-18 15:10:51 ----D---- C:\Program Files\Synaptics
2010-07-18 15:06:08 ----A---- C:\Windows\system32\gpprefcl.dll
2010-07-18 14:43:09 ----D---- C:\Program Files\Google
2010-07-18 14:19:40 ----D---- C:\Program Files\Windows Portable Devices
2010-07-18 14:11:28 ----A---- C:\Windows\system32\UIAnimation.dll
2010-07-18 14:11:24 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-07-18 14:11:23 ----A---- C:\Windows\system32\UIRibbon.dll
2010-07-18 14:10:51 ----A---- C:\Windows\system32\WMPhoto.dll
2010-07-18 14:10:46 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2010-07-18 14:10:46 ----A---- C:\Windows\system32\cdd.dll
2010-07-18 14:10:42 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-07-18 14:10:42 ----A---- C:\Windows\system32\d3d10warp.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\d2d1.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\xpsservices.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\XpsPrint.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-07-18 14:10:40 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\OpcServices.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\dxdiagn.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\dxdiag.exe
2010-07-18 14:10:39 ----A---- C:\Windows\system32\FntCache.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\dxgi.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\DWrite.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d11.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10level9.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10core.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10_1.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10.dll
2010-07-18 14:10:16 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-07-18 14:10:16 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-07-18 14:10:16 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-07-18 14:10:09 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\WPDSp.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\wpdshext.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\wpd_ci.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-07-18 14:09:02 ----A---- C:\Windows\system32\oleaccrc.dll
2010-07-18 14:09:00 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-07-18 14:09:00 ----A---- C:\Windows\system32\oleacc.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\PresentationHost.exe
2010-07-18 14:08:10 ----A---- C:\Windows\system32\netfxperf.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\mscoree.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\dfshim.dll
2010-07-18 13:22:33 ----A---- C:\Windows\system32\wmpdxm.dll
2010-07-18 13:21:11 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-07-18 13:21:11 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-07-18 13:12:12 ----A---- C:\Windows\system32\t2embed.dll
2010-07-18 13:09:58 ----A---- C:\Windows\system32\wmp.dll
2010-07-18 13:09:55 ----A---- C:\Windows\system32\unregmp2.exe
2010-07-18 13:09:51 ----A---- C:\Windows\system32\wmploc.DLL
2010-07-18 13:09:50 ----A---- C:\Windows\system32\dxmasf.dll
2010-07-18 13:09:49 ----A---- C:\Windows\system32\spwmp.dll
2010-07-18 13:07:30 ----A---- C:\Windows\system32\vbscript.dll
2010-07-18 03:17:03 ----D---- C:\Windows\Panther
2010-07-18 03:04:04 ----A---- C:\Windows\system32\hpzids01.dll
2010-07-18 03:02:48 ----A---- C:\Windows\system32\hpf3l70w.dll
2010-07-18 00:26:51 ----A---- C:\Windows\system32\browserchoice.exe
2010-07-18 00:08:48 ----A---- C:\Windows\system32\iisrstap.dll
2010-07-18 00:08:48 ----A---- C:\Windows\system32\iisreset.exe
2010-07-18 00:08:47 ----A---- C:\Windows\system32\iisRtl.dll
2010-07-18 00:08:44 ----A---- C:\Windows\system32\nshhttp.dll
2010-07-18 00:08:40 ----A---- C:\Windows\system32\admwprox.dll
2010-07-18 00:08:38 ----A---- C:\Windows\system32\ahadmin.dll
2010-07-18 00:08:36 ----A---- C:\Windows\system32\drivers\http.sys
2010-07-18 00:08:34 ----A---- C:\Windows\system32\httpapi.dll
2010-07-18 00:08:30 ----A---- C:\Windows\system32\wamregps.dll
2010-07-18 00:02:53 ----A---- C:\Windows\system32\kerberos.dll
2010-07-18 00:02:50 ----A---- C:\Windows\system32\schannel.dll
2010-07-18 00:00:42 ----A---- C:\Windows\system32\hpost_p02f.dll
2010-07-18 00:00:42 ----A---- C:\Windows\system32\hposc_p02a.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\hppldcoi.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\hposwia_p02f.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\difxapi.dll
2010-07-17 23:43:56 ----A---- C:\Windows\system32\netiohlp.dll
2010-07-17 23:43:51 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-07-17 23:43:51 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-07-17 23:43:51 ----A---- C:\Windows\system32\ARP.EXE
2010-07-17 23:43:50 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-07-17 23:43:50 ----A---- C:\Windows\system32\finger.exe
2010-07-17 23:43:49 ----A---- C:\Windows\system32\ROUTE.EXE
2010-07-17 23:43:49 ----A---- C:\Windows\system32\MRINFO.EXE
2010-07-17 23:43:46 ----A---- C:\Windows\system32\netevent.dll
2010-07-17 23:37:22 ----A---- C:\Windows\system32\mshtml.dll
2010-07-17 23:37:20 ----A---- C:\Windows\system32\ieframe.dll
2010-07-17 23:37:19 ----A---- C:\Windows\system32\iertutil.dll
2010-07-17 23:37:18 ----A---- C:\Windows\system32\urlmon.dll
2010-07-17 23:37:17 ----A---- C:\Windows\system32\wininet.dll
2010-07-17 23:37:17 ----A---- C:\Windows\system32\msfeeds.dll
2010-07-17 23:37:16 ----A---- C:\Windows\system32\occache.dll
2010-07-17 23:37:16 ----A---- C:\Windows\system32\iedkcs32.dll
2010-07-17 23:37:15 ----A---- C:\Windows\system32\mstime.dll
2010-07-17 23:37:12 ----A---- C:\Windows\system32\ieui.dll
2010-07-17 23:37:12 ----A---- C:\Windows\system32\iepeers.dll
2010-07-17 23:37:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-07-17 23:37:11 ----A---- C:\Windows\system32\ieUnatt.exe
2010-07-17 23:37:10 ----A---- C:\Windows\system32\jsproxy.dll
2010-07-17 23:37:10 ----A---- C:\Windows\system32\iesysprep.dll
2010-07-17 23:37:09 ----A---- C:\Windows\system32\msfeedssync.exe
2010-07-17 23:37:09 ----A---- C:\Windows\system32\iesetup.dll
2010-07-17 23:37:09 ----A---- C:\Windows\system32\ie4uinit.exe
2010-07-17 23:37:08 ----A---- C:\Windows\system32\iernonce.dll
2010-07-17 23:31:53 ----D---- C:\ProgramData\HP
2010-07-17 23:28:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-07-17 23:28:38 ----A---- C:\Windows\system32\secproc.dll
2010-07-17 23:28:30 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-07-17 23:28:27 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-07-17 23:28:27 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-07-17 23:28:26 ----A---- C:\Windows\system32\RMActivate.exe
2010-07-17 23:28:25 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-07-17 23:28:25 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-07-17 23:28:25 ----A---- C:\Windows\system32\msdrm.dll
2010-07-17 23:15:58 ----A---- C:\Windows\system32\gameux.dll
2010-07-17 23:15:52 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-07-17 23:15:51 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-07-17 23:15:30 ----A---- C:\Windows\system32\tzres.dll
2010-07-17 23:14:41 ----A---- C:\Windows\system32\drivers\tcpip.sys
2010-07-17 23:14:39 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-07-17 23:14:39 ----A---- C:\Windows\system32\drivers\tunnel.sys
2010-07-17 23:14:38 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2010-07-17 23:10:55 ----A---- C:\Windows\system32\msv1_0.dll
2010-07-17 23:10:54 ----A---- C:\Windows\system32\wdigest.dll
2010-07-17 23:10:53 ----A---- C:\Windows\system32\lsasrv.dll
2010-07-17 23:10:53 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2010-07-17 23:10:52 ----A---- C:\Windows\system32\secur32.dll
2010-07-17 23:10:52 ----A---- C:\Windows\system32\lsass.exe
2010-07-17 23:10:43 ----A---- C:\Windows\system32\win32k.sys
2010-07-17 23:10:26 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-07-17 23:10:23 ----A---- C:\Windows\system32\mf.dll
2010-07-17 23:03:31 ----A---- C:\Windows\system32\msxml6.dll
2010-07-17 23:03:30 ----A---- C:\Windows\system32\msxml3.dll
2010-07-17 23:03:19 ----A---- C:\Windows\system32\drivers\srv.sys
2010-07-17 23:03:18 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-07-17 23:00:41 ----A---- C:\Windows\system32\asycfilt.dll
2010-07-17 23:00:06 ----A---- C:\Windows\system32\quartz.dll
2010-07-17 23:00:05 ----A---- C:\Windows\system32\msvidc32.dll
2010-07-17 23:00:04 ----A---- C:\Windows\system32\tsbyuv.dll
2010-07-17 23:00:04 ----A---- C:\Windows\system32\msrle32.dll
2010-07-17 23:00:03 ----A---- C:\Windows\system32\msyuv.dll
2010-07-17 23:00:02 ----A---- C:\Windows\system32\iyuv_32.dll
2010-07-17 22:59:59 ----A---- C:\Windows\system32\mciavi32.dll
2010-07-17 22:59:59 ----A---- C:\Windows\system32\avifil32.dll
2010-07-17 22:59:57 ----A---- C:\Windows\system32\msvfw32.dll
2010-07-17 22:59:46 ----A---- C:\Windows\system32\rpcrt4.dll
2010-07-17 22:59:40 ----A---- C:\Windows\system32\jscript.dll
2010-07-17 22:59:35 ----A---- C:\Windows\system32\mstscax.dll
2010-07-17 22:59:26 ----A---- C:\Windows\system32\wlanmsm.dll
2010-07-17 22:59:26 ----A---- C:\Windows\system32\L2SecHC.dll
2010-07-17 22:59:25 ----A---- C:\Windows\system32\wlansec.dll
2010-07-17 22:59:25 ----A---- C:\Windows\system32\wlanapi.dll
2010-07-17 22:59:24 ----A---- C:\Windows\system32\wlansvc.dll
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2010-07-17 22:55:49 ----A---- C:\Windows\system32\inetcomm.dll
2010-07-17 22:55:39 ----A---- C:\Windows\system32\atl.dll
2010-07-17 22:55:02 ----A---- C:\Windows\system32\rastls.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\lpk.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\fontsub.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\atmfd.dll
2010-07-17 22:52:41 ----A---- C:\Windows\system32\dciman32.dll
2010-07-17 22:52:41 ----A---- C:\Windows\system32\atmlib.dll
2010-07-17 22:48:05 ----A---- C:\Windows\system32\localspl.dll
2010-07-17 22:46:48 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-07-17 22:45:49 ----A---- C:\Windows\system32\wkssvc.dll
2010-07-17 22:23:13 ----A---- C:\Windows\system32\WSDApi.dll
2010-07-17 22:16:24 ----A---- C:\Windows\system32\msasn1.dll
2010-07-17 22:09:38 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-07-17 22:00:23 ----A---- C:\Windows\system32\wintrust.dll
2010-07-17 22:00:16 ----A---- C:\Windows\system32\cabview.dll
2010-07-17 21:52:17 ----A---- C:\Windows\system32\avgrsstx.dll
2010-07-17 19:31:27 ----D---- C:\Users\vf1\AppData\Roaming\Opera
2010-07-17 19:30:41 ----D---- C:\Program Files\Opera
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wups2.dll
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wucltux.dll
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wuauclt.exe
2010-07-17 19:25:31 ----A---- C:\Windows\system32\wuaueng.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wups.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wudriver.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wuapi.dll
2010-07-17 19:25:09 ----A---- C:\Windows\system32\wuwebv.dll
2010-07-17 19:25:09 ----A---- C:\Windows\system32\wuapp.exe
2010-07-17 19:05:52 ----D---- C:\Users\vf1\AppData\Roaming\ATI
2010-07-17 19:05:52 ----D---- C:\ProgramData\ATI
2010-07-17 18:59:04 ----D---- C:\Program Files\ATI Technologies
2010-07-17 18:59:01 ----D---- C:\Program Files\ATI
2010-07-17 18:58:26 ----D---- C:\ATI
2010-07-17 18:18:40 ----HD---- C:\$AVG
2010-07-17 18:18:38 ----A---- C:\Windows\system32\drivers\avgrkx86.sys
2010-07-17 18:18:37 ----A---- C:\Windows\system32\drivers\avgtdix.sys
2010-07-17 18:18:30 ----A---- C:\Windows\system32\drivers\avgldx86.sys
2010-07-17 18:18:28 ----A---- C:\Windows\system32\drivers\avgmfx86.sys
2010-07-17 18:18:27 ----D---- C:\Windows\system32\drivers\Avg
2010-07-17 18:18:26 ----D---- C:\ProgramData\AVG Security Toolbar
2010-07-17 18:18:19 ----A---- C:\Windows\system32\drivers\AVGIDSvx.sys
2010-07-17 18:17:54 ----A---- C:\Windows\system32\drivers\avgfwd6x.sys
2010-07-17 18:17:53 ----D---- C:\ProgramData\avg9
2010-07-17 18:17:53 ----D---- C:\Program Files\AVG
2010-07-17 17:58:12 ----D---- C:\ProgramData\Adobe
2010-07-17 17:58:08 ----D---- C:\Program Files\Common Files\Adobe
2010-07-17 17:58:08 ----D---- C:\Program Files\Adobe
2010-07-17 17:57:21 ----SHD---- C:\Windows\Installer
2010-07-17 17:38:42 ----D---- C:\Users\vf1\AppData\Roaming\Identities
2010-07-17 17:38:28 ----SD---- C:\Users\vf1\AppData\Roaming\Microsoft
2010-07-17 17:38:28 ----D---- C:\Users\vf1\AppData\Roaming\Media Center Programs
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Šablony
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Plocha
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Oblíbené položky
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Nabídka Start
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Dokumenty
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Data aplikací
2010-07-17 17:34:23 ----D---- C:\Windows\Debug
2010-07-17 17:22:37 ----D---- C:\Windows\SoftwareDistribution
2010-07-17 17:20:19 ----D---- C:\Windows\CSC
2010-07-17 17:18:08 ----ASH---- C:\pagefile.sys
2010-07-17 17:18:07 ----SHD---- C:\System Volume Information
======List of files/folders modified in the last 1 months======
2010-07-21 01:34:25 ----D---- C:\Windows\Temp
2010-07-20 22:58:13 ----D---- C:\Windows\Tasks
2010-07-20 22:58:13 ----D---- C:\Windows\system32\Tasks
2010-07-20 22:44:25 ----D---- C:\Windows\System32
2010-07-20 22:03:29 ----D---- C:\Windows
2010-07-20 22:03:12 ----D---- C:\Windows\system32\drivers
2010-07-20 22:03:10 ----D---- C:\Windows\twain_32
2010-07-20 22:02:21 ----D---- C:\Windows\system32\catroot
2010-07-20 22:02:20 ----D---- C:\Windows\inf
2010-07-20 21:55:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-07-20 21:13:32 ----D---- C:\Windows\rescache
2010-07-20 20:59:55 ----D---- C:\Windows\system32\inetsrv
2010-07-20 20:31:47 ----RD---- C:\Program Files
2010-07-20 20:31:47 ----D---- C:\Windows\winsxs
2010-07-20 20:31:44 ----D---- C:\Windows\system32\catroot2
2010-07-20 20:31:22 ----D---- C:\Windows\system32\en-US
2010-07-20 20:31:22 ----D---- C:\Windows\system32\cs-CZ
2010-07-20 20:29:23 ----D---- C:\Windows\system32\wbem
2010-07-20 19:15:30 ----HD---- C:\ProgramData
2010-07-20 16:56:45 ----D---- C:\Windows\Microsoft.NET
2010-07-20 16:52:21 ----RSD---- C:\Windows\assembly
2010-07-20 16:50:23 ----D---- C:\Windows\PolicyDefinitions
2010-07-19 09:20:30 ----D---- C:\Windows\Prefetch
2010-07-19 03:26:47 ----D---- C:\Windows\system32\NDF
2010-07-19 03:05:22 ----D---- C:\Windows\system32\migration
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\etc
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\en-US
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\cs-CZ
2010-07-19 03:05:22 ----D---- C:\Windows\system32\0409
2010-07-19 03:05:22 ----D---- C:\Windows\system32\0405
2010-07-19 03:05:22 ----D---- C:\Windows\en-US
2010-07-19 00:15:10 ----D---- C:\Windows\ModemLogs
2010-07-18 19:43:29 ----A---- C:\Windows\win.ini
2010-07-18 18:48:26 ----RSD---- C:\Windows\Fonts
2010-07-18 18:43:41 ----D---- C:\Program Files\Common Files
2010-07-18 14:41:16 ----D---- C:\Windows\system32\LogFiles
2010-07-18 14:29:25 ----D---- C:\Windows\system32\WDI
2010-07-18 14:19:42 ----D---- C:\Program Files\Windows Mail
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-TW
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-HK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-CN
2010-07-18 14:19:37 ----D---- C:\Windows\system32\uk-UA
2010-07-18 14:19:37 ----D---- C:\Windows\system32\tr-TR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\th-TH
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sv-SE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sl-SI
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sk-SK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ru-RU
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ro-RO
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pt-PT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pt-BR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pl-PL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\nl-NL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\nb-NO
2010-07-18 14:19:37 ----D---- C:\Windows\system32\lv-LV
2010-07-18 14:19:37 ----D---- C:\Windows\system32\lt-LT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ko-KR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ja-JP
2010-07-18 14:19:37 ----D---- C:\Windows\system32\it-IT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\hu-HU
2010-07-18 14:19:37 ----D---- C:\Windows\system32\hr-HR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\he-IL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\fr-FR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\fi-FI
2010-07-18 14:19:37 ----D---- C:\Windows\system32\et-EE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\es-ES
2010-07-18 14:19:37 ----D---- C:\Windows\system32\el-GR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\de-DE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\da-DK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\bg-BG
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ar-SA
2010-07-18 14:13:15 ----D---- C:\Windows\system32\drivers\UMDF
2010-07-18 14:07:24 ----D---- C:\Program Files\Windows Media Player
2010-07-18 12:44:02 ----D---- C:\Windows\AppPatch
2010-07-18 12:44:00 ----D---- C:\Windows\ehome
2010-07-18 12:44:00 ----D---- C:\Program Files\Movie Maker
2010-07-18 12:43:59 ----D---- C:\Program Files\Internet Explorer
2010-07-17 22:26:01 ----SHD---- C:\$Recycle.Bin
2010-07-17 22:25:02 ----RD---- C:\Users
2010-07-17 21:59:09 ----D---- C:\Windows\Logs
2010-07-17 18:17:25 ----D---- C:\Program Files\Common Files\microsoft shared
2010-07-17 17:57:51 ----D---- C:\Windows\system32\restore
2010-07-17 17:34:58 ----D---- C:\Program Files\Windows NT
2010-07-17 17:25:20 ----D---- C:\Windows\system32\sysprep
2010-07-17 17:24:35 ----SD---- C:\ProgramData\Microsoft
2010-07-02 12:39:06 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSErHrvtx;AVG9IDSErHr; C:\Windows\System32\Drivers\AVGIDSvx.sys [2010-07-17 25168]
R0 AvgRkx86;avgrkx86.sys; C:\Windows\System32\Drivers\avgrkx86.sys [2010-07-17 52872]
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2009-04-11 143848]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2010-06-15 25656]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2010-07-17 24856]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2010-07-17 216400]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2010-07-17 29584]
R1 AvgTdiX;AVG Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2010-07-17 243024]
R2 RMCAST;Ovladač protokolu RMCAST (Pgm); C:\Windows\system32\DRIVERS\RMCAST.sys [2009-04-11 113664]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2010-06-15 33848]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-11-21 1204128]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-15 5068800]
R3 AVGIDSDrivervtx;AVG9IDSDriver; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSDriver.sys [2010-07-17 122448]
R3 AVGIDSFiltervtx;AVG9IDSFilter; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSFilter.sys [2010-07-17 30288]
R3 AVGIDSShimvtx;AVG9IDSShim; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSShim.sys [2010-07-17 27216]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 MQAC;@mqutil.dll,-6101; C:\Windows\system32\drivers\mqac.sys [2008-01-21 126976]
R3 NfsRdr;@%windir%\system32\nfsrc.dll,-5003; C:\Windows\system32\drivers\nfsrdr.sys [2009-04-11 195584]
R3 PsxDrv;PsxDrv; C:\Windows\system32\drivers\psxdrv.sys [2008-01-21 9216]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RpcXdr;@%windir%\system32\nfsrc.dll,-5011; C:\Windows\system32\drivers\rpcxdr.sys [2009-04-11 76800]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-03-27 1810992]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2006-11-02 467456]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-21 179712]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-21 159744]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2009-07-17 80384]
S3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-05-27 245936]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2008-01-21 45624]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2009-06-04 312832]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2008-08-26 14336]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-07-15 172032]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [2010-03-02 67312]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 avg9emc;AVG E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-07-17 921440]
R2 avg9wd;AVG WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-07-17 308136]
R2 avgfws9;AVG Firewall; C:\Program Files\AVG\AVG9\avgfws9.exe [2010-07-17 2331032]
R2 AVGIDSAgent;AVG9IDSAgent; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-07-17 5897808]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2008-01-21 11264]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2010-06-15 26168]
R2 IISADMIN;@%windir%\system32\inetsrv\iisres.dll,-30007; C:\Windows\system32\inetsrv\inetinfo.exe [2008-01-21 13824]
R2 iprip;@%Systemroot%\system32\iprip.dll,-200; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 LPDSVC;@%systemroot%\system32\lpdsvc.dll,-500; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 MSMQ;@mqutil.dll,-6102; C:\Windows\system32\mqsvc.exe [2006-11-02 8704]
R2 MSMQTriggers;@mqutil.dll,-6203; C:\Windows\system32\mqtgsvc.exe [2009-04-11 125952]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NfsClnt;@%windir%\system32\nfsrc.dll,-5001; C:\Windows\system32\nfsclnt.exe [2009-04-11 50688]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe [2009-08-14 9728]
R2 SNMP;@%SystemRoot%\system32\snmp.exe,-3; C:\Windows\System32\snmp.exe [2009-04-11 47616]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-07-20 136176]
S2 rpcnetp;rpcnetp; C:\Windows\System32\rpcnetp.exe []
S3 aspnet_state;@%windir%\system32\inetsrv\iisres.dll,-30009; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-04-11 31048]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 MSFTPSVC;@%windir%\system32\inetsrv\iisres.dll,-30005; C:\Windows\system32\inetsrv\inetinfo.exe [2008-01-21 13824]
S3 NtmsSvc;@%SystemRoot%\system32\ntmssvc.dll,-2; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 WMSvc;@%windir%\system32\inetsrv\iisres.dll,-20001; C:\Windows\system32\inetsrv\wmsvc.exe [2008-01-21 11264]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 TlntSvr;@%SystemRoot%\system32\tlntsvr.exe,-119; C:\Windows\System32\tlntsvr.exe [2009-04-11 71168]
-----------------EOF-----------------
Run by vf1 at 2010-07-21 01:33:58
Microsoft® Windows Vista™ Ultimate Service Pack 2
System drive C: has 33 GB (65%) free of 50 GB
Total RAM: 1788 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:34:35, on 21.7.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18928)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\fil\Documents\Downloads\RSIT (1).exe
C:\Program Files\trend micro\vf1.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{88D1C584-55D4-D154-6B97-F58E4A7FA26F}: NameServer = 217.77.165.81 217.77.161.131
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: AVG E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: AVG Firewall (avgfws9) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgfws9.exe
O23 - Service: AVG9IDSAgent (AVGIDSAgent) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: rpcnetp - Unknown owner - C:\Windows\System32\rpcnetp.exe (file missing)
--
End of file - 6525 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{16A41C02-1E23-4CD4-948E-2C6998CEDA2D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-07-17 1615200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-07-17 2065760]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-14 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2008-05-02 307200]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-05-27 1721640]
"MsmqIntCert"=regsvr32 /s mqrt.dll []
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2010-03-02 1347496]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
oobefldr.dll,ShowWelcomeCenter []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-07-20 22:44:25 ----N---- C:\Windows\system32\MpSigStub.exe
2010-07-20 22:02:20 ----D---- C:\Windows\LastGood
2010-07-20 20:31:47 ----D---- C:\Program Files\BitLocker
2010-07-20 20:31:07 ----A---- C:\Windows\system32\SecureKeyBackupCPL.dll
2010-07-20 19:16:15 ----D---- C:\Users\vf1\AppData\Roaming\AVG9
2010-07-20 17:46:48 ----D---- C:\Program Files\DBF Viewer 2000
2010-07-20 16:50:15 ----D---- C:\Windows\system32\WindowsPowerShell
2010-07-20 16:48:35 ----A---- C:\Windows\system32\winrsmgr.dll
2010-07-20 16:48:02 ----A---- C:\Windows\system32\wsmprovhost.exe
2010-07-20 16:48:02 ----A---- C:\Windows\system32\winrshost.exe
2010-07-20 16:48:02 ----A---- C:\Windows\system32\winrs.exe
2010-07-20 16:48:01 ----A---- C:\Windows\system32\wsmplpxy.dll
2010-07-20 16:48:01 ----A---- C:\Windows\system32\winrssrv.dll
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wevtfwd.dll
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wecutil.exe
2010-07-20 16:47:53 ----A---- C:\Windows\system32\wecapi.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\WsmRes.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\wecsvc.dll
2010-07-20 16:47:52 ----A---- C:\Windows\system32\pwrshplugin.dll
2010-07-20 16:47:42 ----A---- C:\Windows\system32\winrm.vbs
2010-07-20 16:47:36 ----A---- C:\Windows\system32\WsmAuto.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WsmWmiPl.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WsmSvc.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2010-07-20 16:47:35 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2010-07-20 16:47:35 ----A---- C:\Windows\system32\winrscmd.dll
2010-07-20 15:45:26 ----D---- C:\Program Files\Microsoft Windows OneCare Live
2010-07-19 20:41:40 ----A---- C:\Windows\system32\drivers\ser2pl.sys
2010-07-19 20:41:39 ----A---- C:\Windows\system32\SER9PL.sys
2010-07-19 20:41:37 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-19 17:46:31 ----D---- C:\Program Files\LSI SoftModem
2010-07-19 15:03:06 ----D---- C:\Users\vf1\AppData\Roaming\HP
2010-07-19 12:47:41 ----D---- C:\Program Files\Marvell
2010-07-19 09:18:00 ----A---- C:\ProgramData\HPWALog.txt
2010-07-19 09:11:40 ----D---- C:\Program Files\Hewlett-Packard
2010-07-19 09:11:34 ----D---- C:\Users\vf1\AppData\Roaming\hpqLog
2010-07-19 09:07:38 ----D---- C:\SWSetup
2010-07-19 08:08:44 ----D---- C:\Users\vf1\AppData\Roaming\Macromedia
2010-07-19 08:08:43 ----D---- C:\Users\vf1\AppData\Roaming\Adobe
2010-07-19 07:27:58 ----A---- C:\Windows\system32\tlntsess.exe
2010-07-19 07:27:58 ----A---- C:\Windows\system32\telnet.exe
2010-07-19 03:22:39 ----D---- C:\ProgramData\HPSSUPPLY
2010-07-19 03:05:22 ----D---- C:\Windows\system32\msmq
2010-07-19 03:05:22 ----D---- C:\Windows\SUA
2010-07-19 03:05:13 ----D---- C:\inetpub
2010-07-19 02:27:53 ----D---- C:\Windows\system32\appmgmt
2010-07-19 02:07:17 ----ASH---- C:\hiberfil.sys
2010-07-19 00:32:35 ----D---- C:\Program Files\MSXML 4.0
2010-07-19 00:13:59 ----D---- C:\ProgramData\Gemfor
2010-07-18 21:09:01 ----A---- C:\Windows\ntbtlog.txt
2010-07-18 20:38:33 ----D---- C:\Program Files\T-Mobile
2010-07-18 18:47:47 ----D---- C:\ProgramData\HP Product Assistant
2010-07-18 18:44:38 ----D---- C:\Windows\system32\Macromed
2010-07-18 18:43:41 ----D---- C:\Program Files\Common Files\HP
2010-07-18 18:43:03 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2010-07-18 18:38:52 ----HD---- C:\Config.Msi
2010-07-18 18:38:19 ----D---- C:\Program Files\HP
2010-07-18 18:23:58 ----D---- C:\Program Files\Microsoft.NET
2010-07-18 17:57:29 ----A---- C:\Windows\system32\winhttp.dll
2010-07-18 17:11:58 ----D---- C:\rsit
2010-07-18 17:11:58 ----D---- C:\Program Files\trend micro
2010-07-18 15:37:36 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2010-07-18 15:37:35 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2010-07-18 15:10:51 ----D---- C:\Program Files\Synaptics
2010-07-18 15:06:08 ----A---- C:\Windows\system32\gpprefcl.dll
2010-07-18 14:43:09 ----D---- C:\Program Files\Google
2010-07-18 14:19:40 ----D---- C:\Program Files\Windows Portable Devices
2010-07-18 14:11:28 ----A---- C:\Windows\system32\UIAnimation.dll
2010-07-18 14:11:24 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-07-18 14:11:23 ----A---- C:\Windows\system32\UIRibbon.dll
2010-07-18 14:10:51 ----A---- C:\Windows\system32\WMPhoto.dll
2010-07-18 14:10:46 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2010-07-18 14:10:46 ----A---- C:\Windows\system32\cdd.dll
2010-07-18 14:10:42 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-07-18 14:10:42 ----A---- C:\Windows\system32\d3d10warp.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-07-18 14:10:41 ----A---- C:\Windows\system32\d2d1.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\xpsservices.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\XpsPrint.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-07-18 14:10:40 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\OpcServices.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\dxdiagn.dll
2010-07-18 14:10:40 ----A---- C:\Windows\system32\dxdiag.exe
2010-07-18 14:10:39 ----A---- C:\Windows\system32\FntCache.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\dxgi.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\DWrite.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d11.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10level9.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10core.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10_1.dll
2010-07-18 14:10:39 ----A---- C:\Windows\system32\d3d10.dll
2010-07-18 14:10:16 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-07-18 14:10:16 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-07-18 14:10:16 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-07-18 14:10:09 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\WPDSp.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\wpdshext.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\wpd_ci.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-07-18 14:10:04 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-07-18 14:09:02 ----A---- C:\Windows\system32\oleaccrc.dll
2010-07-18 14:09:00 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-07-18 14:09:00 ----A---- C:\Windows\system32\oleacc.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\PresentationHost.exe
2010-07-18 14:08:10 ----A---- C:\Windows\system32\netfxperf.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\mscoree.dll
2010-07-18 14:08:10 ----A---- C:\Windows\system32\dfshim.dll
2010-07-18 13:22:33 ----A---- C:\Windows\system32\wmpdxm.dll
2010-07-18 13:21:11 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-07-18 13:21:11 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-07-18 13:12:12 ----A---- C:\Windows\system32\t2embed.dll
2010-07-18 13:09:58 ----A---- C:\Windows\system32\wmp.dll
2010-07-18 13:09:55 ----A---- C:\Windows\system32\unregmp2.exe
2010-07-18 13:09:51 ----A---- C:\Windows\system32\wmploc.DLL
2010-07-18 13:09:50 ----A---- C:\Windows\system32\dxmasf.dll
2010-07-18 13:09:49 ----A---- C:\Windows\system32\spwmp.dll
2010-07-18 13:07:30 ----A---- C:\Windows\system32\vbscript.dll
2010-07-18 03:17:03 ----D---- C:\Windows\Panther
2010-07-18 03:04:04 ----A---- C:\Windows\system32\hpzids01.dll
2010-07-18 03:02:48 ----A---- C:\Windows\system32\hpf3l70w.dll
2010-07-18 00:26:51 ----A---- C:\Windows\system32\browserchoice.exe
2010-07-18 00:08:48 ----A---- C:\Windows\system32\iisrstap.dll
2010-07-18 00:08:48 ----A---- C:\Windows\system32\iisreset.exe
2010-07-18 00:08:47 ----A---- C:\Windows\system32\iisRtl.dll
2010-07-18 00:08:44 ----A---- C:\Windows\system32\nshhttp.dll
2010-07-18 00:08:40 ----A---- C:\Windows\system32\admwprox.dll
2010-07-18 00:08:38 ----A---- C:\Windows\system32\ahadmin.dll
2010-07-18 00:08:36 ----A---- C:\Windows\system32\drivers\http.sys
2010-07-18 00:08:34 ----A---- C:\Windows\system32\httpapi.dll
2010-07-18 00:08:30 ----A---- C:\Windows\system32\wamregps.dll
2010-07-18 00:02:53 ----A---- C:\Windows\system32\kerberos.dll
2010-07-18 00:02:50 ----A---- C:\Windows\system32\schannel.dll
2010-07-18 00:00:42 ----A---- C:\Windows\system32\hpost_p02f.dll
2010-07-18 00:00:42 ----A---- C:\Windows\system32\hposc_p02a.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\hppldcoi.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\hposwia_p02f.dll
2010-07-18 00:00:41 ----A---- C:\Windows\system32\difxapi.dll
2010-07-17 23:43:56 ----A---- C:\Windows\system32\netiohlp.dll
2010-07-17 23:43:51 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-07-17 23:43:51 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-07-17 23:43:51 ----A---- C:\Windows\system32\ARP.EXE
2010-07-17 23:43:50 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-07-17 23:43:50 ----A---- C:\Windows\system32\finger.exe
2010-07-17 23:43:49 ----A---- C:\Windows\system32\ROUTE.EXE
2010-07-17 23:43:49 ----A---- C:\Windows\system32\MRINFO.EXE
2010-07-17 23:43:46 ----A---- C:\Windows\system32\netevent.dll
2010-07-17 23:37:22 ----A---- C:\Windows\system32\mshtml.dll
2010-07-17 23:37:20 ----A---- C:\Windows\system32\ieframe.dll
2010-07-17 23:37:19 ----A---- C:\Windows\system32\iertutil.dll
2010-07-17 23:37:18 ----A---- C:\Windows\system32\urlmon.dll
2010-07-17 23:37:17 ----A---- C:\Windows\system32\wininet.dll
2010-07-17 23:37:17 ----A---- C:\Windows\system32\msfeeds.dll
2010-07-17 23:37:16 ----A---- C:\Windows\system32\occache.dll
2010-07-17 23:37:16 ----A---- C:\Windows\system32\iedkcs32.dll
2010-07-17 23:37:15 ----A---- C:\Windows\system32\mstime.dll
2010-07-17 23:37:12 ----A---- C:\Windows\system32\ieui.dll
2010-07-17 23:37:12 ----A---- C:\Windows\system32\iepeers.dll
2010-07-17 23:37:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-07-17 23:37:11 ----A---- C:\Windows\system32\ieUnatt.exe
2010-07-17 23:37:10 ----A---- C:\Windows\system32\jsproxy.dll
2010-07-17 23:37:10 ----A---- C:\Windows\system32\iesysprep.dll
2010-07-17 23:37:09 ----A---- C:\Windows\system32\msfeedssync.exe
2010-07-17 23:37:09 ----A---- C:\Windows\system32\iesetup.dll
2010-07-17 23:37:09 ----A---- C:\Windows\system32\ie4uinit.exe
2010-07-17 23:37:08 ----A---- C:\Windows\system32\iernonce.dll
2010-07-17 23:31:53 ----D---- C:\ProgramData\HP
2010-07-17 23:28:50 ----A---- C:\Windows\system32\secproc_isv.dll
2010-07-17 23:28:38 ----A---- C:\Windows\system32\secproc.dll
2010-07-17 23:28:30 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-07-17 23:28:27 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-07-17 23:28:27 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-07-17 23:28:26 ----A---- C:\Windows\system32\RMActivate.exe
2010-07-17 23:28:25 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-07-17 23:28:25 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-07-17 23:28:25 ----A---- C:\Windows\system32\msdrm.dll
2010-07-17 23:15:58 ----A---- C:\Windows\system32\gameux.dll
2010-07-17 23:15:52 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-07-17 23:15:51 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-07-17 23:15:30 ----A---- C:\Windows\system32\tzres.dll
2010-07-17 23:14:41 ----A---- C:\Windows\system32\drivers\tcpip.sys
2010-07-17 23:14:39 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-07-17 23:14:39 ----A---- C:\Windows\system32\drivers\tunnel.sys
2010-07-17 23:14:38 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2010-07-17 23:10:55 ----A---- C:\Windows\system32\msv1_0.dll
2010-07-17 23:10:54 ----A---- C:\Windows\system32\wdigest.dll
2010-07-17 23:10:53 ----A---- C:\Windows\system32\lsasrv.dll
2010-07-17 23:10:53 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2010-07-17 23:10:52 ----A---- C:\Windows\system32\secur32.dll
2010-07-17 23:10:52 ----A---- C:\Windows\system32\lsass.exe
2010-07-17 23:10:43 ----A---- C:\Windows\system32\win32k.sys
2010-07-17 23:10:26 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-07-17 23:10:23 ----A---- C:\Windows\system32\mf.dll
2010-07-17 23:03:31 ----A---- C:\Windows\system32\msxml6.dll
2010-07-17 23:03:30 ----A---- C:\Windows\system32\msxml3.dll
2010-07-17 23:03:19 ----A---- C:\Windows\system32\drivers\srv.sys
2010-07-17 23:03:18 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-07-17 23:00:41 ----A---- C:\Windows\system32\asycfilt.dll
2010-07-17 23:00:06 ----A---- C:\Windows\system32\quartz.dll
2010-07-17 23:00:05 ----A---- C:\Windows\system32\msvidc32.dll
2010-07-17 23:00:04 ----A---- C:\Windows\system32\tsbyuv.dll
2010-07-17 23:00:04 ----A---- C:\Windows\system32\msrle32.dll
2010-07-17 23:00:03 ----A---- C:\Windows\system32\msyuv.dll
2010-07-17 23:00:02 ----A---- C:\Windows\system32\iyuv_32.dll
2010-07-17 22:59:59 ----A---- C:\Windows\system32\mciavi32.dll
2010-07-17 22:59:59 ----A---- C:\Windows\system32\avifil32.dll
2010-07-17 22:59:57 ----A---- C:\Windows\system32\msvfw32.dll
2010-07-17 22:59:46 ----A---- C:\Windows\system32\rpcrt4.dll
2010-07-17 22:59:40 ----A---- C:\Windows\system32\jscript.dll
2010-07-17 22:59:35 ----A---- C:\Windows\system32\mstscax.dll
2010-07-17 22:59:26 ----A---- C:\Windows\system32\wlanmsm.dll
2010-07-17 22:59:26 ----A---- C:\Windows\system32\L2SecHC.dll
2010-07-17 22:59:25 ----A---- C:\Windows\system32\wlansec.dll
2010-07-17 22:59:25 ----A---- C:\Windows\system32\wlanapi.dll
2010-07-17 22:59:24 ----A---- C:\Windows\system32\wlansvc.dll
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2010-07-17 22:56:16 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2010-07-17 22:55:49 ----A---- C:\Windows\system32\inetcomm.dll
2010-07-17 22:55:39 ----A---- C:\Windows\system32\atl.dll
2010-07-17 22:55:02 ----A---- C:\Windows\system32\rastls.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\lpk.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\fontsub.dll
2010-07-17 22:52:42 ----A---- C:\Windows\system32\atmfd.dll
2010-07-17 22:52:41 ----A---- C:\Windows\system32\dciman32.dll
2010-07-17 22:52:41 ----A---- C:\Windows\system32\atmlib.dll
2010-07-17 22:48:05 ----A---- C:\Windows\system32\localspl.dll
2010-07-17 22:46:48 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-07-17 22:45:49 ----A---- C:\Windows\system32\wkssvc.dll
2010-07-17 22:23:13 ----A---- C:\Windows\system32\WSDApi.dll
2010-07-17 22:16:24 ----A---- C:\Windows\system32\msasn1.dll
2010-07-17 22:09:38 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-07-17 22:00:23 ----A---- C:\Windows\system32\wintrust.dll
2010-07-17 22:00:16 ----A---- C:\Windows\system32\cabview.dll
2010-07-17 21:52:17 ----A---- C:\Windows\system32\avgrsstx.dll
2010-07-17 19:31:27 ----D---- C:\Users\vf1\AppData\Roaming\Opera
2010-07-17 19:30:41 ----D---- C:\Program Files\Opera
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wups2.dll
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wucltux.dll
2010-07-17 19:25:32 ----A---- C:\Windows\system32\wuauclt.exe
2010-07-17 19:25:31 ----A---- C:\Windows\system32\wuaueng.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wups.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wudriver.dll
2010-07-17 19:25:17 ----A---- C:\Windows\system32\wuapi.dll
2010-07-17 19:25:09 ----A---- C:\Windows\system32\wuwebv.dll
2010-07-17 19:25:09 ----A---- C:\Windows\system32\wuapp.exe
2010-07-17 19:05:52 ----D---- C:\Users\vf1\AppData\Roaming\ATI
2010-07-17 19:05:52 ----D---- C:\ProgramData\ATI
2010-07-17 18:59:04 ----D---- C:\Program Files\ATI Technologies
2010-07-17 18:59:01 ----D---- C:\Program Files\ATI
2010-07-17 18:58:26 ----D---- C:\ATI
2010-07-17 18:18:40 ----HD---- C:\$AVG
2010-07-17 18:18:38 ----A---- C:\Windows\system32\drivers\avgrkx86.sys
2010-07-17 18:18:37 ----A---- C:\Windows\system32\drivers\avgtdix.sys
2010-07-17 18:18:30 ----A---- C:\Windows\system32\drivers\avgldx86.sys
2010-07-17 18:18:28 ----A---- C:\Windows\system32\drivers\avgmfx86.sys
2010-07-17 18:18:27 ----D---- C:\Windows\system32\drivers\Avg
2010-07-17 18:18:26 ----D---- C:\ProgramData\AVG Security Toolbar
2010-07-17 18:18:19 ----A---- C:\Windows\system32\drivers\AVGIDSvx.sys
2010-07-17 18:17:54 ----A---- C:\Windows\system32\drivers\avgfwd6x.sys
2010-07-17 18:17:53 ----D---- C:\ProgramData\avg9
2010-07-17 18:17:53 ----D---- C:\Program Files\AVG
2010-07-17 17:58:12 ----D---- C:\ProgramData\Adobe
2010-07-17 17:58:08 ----D---- C:\Program Files\Common Files\Adobe
2010-07-17 17:58:08 ----D---- C:\Program Files\Adobe
2010-07-17 17:57:21 ----SHD---- C:\Windows\Installer
2010-07-17 17:38:42 ----D---- C:\Users\vf1\AppData\Roaming\Identities
2010-07-17 17:38:28 ----SD---- C:\Users\vf1\AppData\Roaming\Microsoft
2010-07-17 17:38:28 ----D---- C:\Users\vf1\AppData\Roaming\Media Center Programs
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Šablony
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Plocha
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Oblíbené položky
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Nabídka Start
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Dokumenty
2010-07-17 17:34:58 ----SHD---- C:\ProgramData\Data aplikací
2010-07-17 17:34:23 ----D---- C:\Windows\Debug
2010-07-17 17:22:37 ----D---- C:\Windows\SoftwareDistribution
2010-07-17 17:20:19 ----D---- C:\Windows\CSC
2010-07-17 17:18:08 ----ASH---- C:\pagefile.sys
2010-07-17 17:18:07 ----SHD---- C:\System Volume Information
======List of files/folders modified in the last 1 months======
2010-07-21 01:34:25 ----D---- C:\Windows\Temp
2010-07-20 22:58:13 ----D---- C:\Windows\Tasks
2010-07-20 22:58:13 ----D---- C:\Windows\system32\Tasks
2010-07-20 22:44:25 ----D---- C:\Windows\System32
2010-07-20 22:03:29 ----D---- C:\Windows
2010-07-20 22:03:12 ----D---- C:\Windows\system32\drivers
2010-07-20 22:03:10 ----D---- C:\Windows\twain_32
2010-07-20 22:02:21 ----D---- C:\Windows\system32\catroot
2010-07-20 22:02:20 ----D---- C:\Windows\inf
2010-07-20 21:55:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-07-20 21:13:32 ----D---- C:\Windows\rescache
2010-07-20 20:59:55 ----D---- C:\Windows\system32\inetsrv
2010-07-20 20:31:47 ----RD---- C:\Program Files
2010-07-20 20:31:47 ----D---- C:\Windows\winsxs
2010-07-20 20:31:44 ----D---- C:\Windows\system32\catroot2
2010-07-20 20:31:22 ----D---- C:\Windows\system32\en-US
2010-07-20 20:31:22 ----D---- C:\Windows\system32\cs-CZ
2010-07-20 20:29:23 ----D---- C:\Windows\system32\wbem
2010-07-20 19:15:30 ----HD---- C:\ProgramData
2010-07-20 16:56:45 ----D---- C:\Windows\Microsoft.NET
2010-07-20 16:52:21 ----RSD---- C:\Windows\assembly
2010-07-20 16:50:23 ----D---- C:\Windows\PolicyDefinitions
2010-07-19 09:20:30 ----D---- C:\Windows\Prefetch
2010-07-19 03:26:47 ----D---- C:\Windows\system32\NDF
2010-07-19 03:05:22 ----D---- C:\Windows\system32\migration
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\etc
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\en-US
2010-07-19 03:05:22 ----D---- C:\Windows\system32\drivers\cs-CZ
2010-07-19 03:05:22 ----D---- C:\Windows\system32\0409
2010-07-19 03:05:22 ----D---- C:\Windows\system32\0405
2010-07-19 03:05:22 ----D---- C:\Windows\en-US
2010-07-19 00:15:10 ----D---- C:\Windows\ModemLogs
2010-07-18 19:43:29 ----A---- C:\Windows\win.ini
2010-07-18 18:48:26 ----RSD---- C:\Windows\Fonts
2010-07-18 18:43:41 ----D---- C:\Program Files\Common Files
2010-07-18 14:41:16 ----D---- C:\Windows\system32\LogFiles
2010-07-18 14:29:25 ----D---- C:\Windows\system32\WDI
2010-07-18 14:19:42 ----D---- C:\Program Files\Windows Mail
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-TW
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-HK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\zh-CN
2010-07-18 14:19:37 ----D---- C:\Windows\system32\uk-UA
2010-07-18 14:19:37 ----D---- C:\Windows\system32\tr-TR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\th-TH
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sv-SE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sl-SI
2010-07-18 14:19:37 ----D---- C:\Windows\system32\sk-SK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ru-RU
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ro-RO
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pt-PT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pt-BR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\pl-PL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\nl-NL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\nb-NO
2010-07-18 14:19:37 ----D---- C:\Windows\system32\lv-LV
2010-07-18 14:19:37 ----D---- C:\Windows\system32\lt-LT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ko-KR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ja-JP
2010-07-18 14:19:37 ----D---- C:\Windows\system32\it-IT
2010-07-18 14:19:37 ----D---- C:\Windows\system32\hu-HU
2010-07-18 14:19:37 ----D---- C:\Windows\system32\hr-HR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\he-IL
2010-07-18 14:19:37 ----D---- C:\Windows\system32\fr-FR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\fi-FI
2010-07-18 14:19:37 ----D---- C:\Windows\system32\et-EE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\es-ES
2010-07-18 14:19:37 ----D---- C:\Windows\system32\el-GR
2010-07-18 14:19:37 ----D---- C:\Windows\system32\de-DE
2010-07-18 14:19:37 ----D---- C:\Windows\system32\da-DK
2010-07-18 14:19:37 ----D---- C:\Windows\system32\bg-BG
2010-07-18 14:19:37 ----D---- C:\Windows\system32\ar-SA
2010-07-18 14:13:15 ----D---- C:\Windows\system32\drivers\UMDF
2010-07-18 14:07:24 ----D---- C:\Program Files\Windows Media Player
2010-07-18 12:44:02 ----D---- C:\Windows\AppPatch
2010-07-18 12:44:00 ----D---- C:\Windows\ehome
2010-07-18 12:44:00 ----D---- C:\Program Files\Movie Maker
2010-07-18 12:43:59 ----D---- C:\Program Files\Internet Explorer
2010-07-17 22:26:01 ----SHD---- C:\$Recycle.Bin
2010-07-17 22:25:02 ----RD---- C:\Users
2010-07-17 21:59:09 ----D---- C:\Windows\Logs
2010-07-17 18:17:25 ----D---- C:\Program Files\Common Files\microsoft shared
2010-07-17 17:57:51 ----D---- C:\Windows\system32\restore
2010-07-17 17:34:58 ----D---- C:\Program Files\Windows NT
2010-07-17 17:25:20 ----D---- C:\Windows\system32\sysprep
2010-07-17 17:24:35 ----SD---- C:\ProgramData\Microsoft
2010-07-02 12:39:06 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSErHrvtx;AVG9IDSErHr; C:\Windows\System32\Drivers\AVGIDSvx.sys [2010-07-17 25168]
R0 AvgRkx86;avgrkx86.sys; C:\Windows\System32\Drivers\avgrkx86.sys [2010-07-17 52872]
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2009-04-11 143848]
R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2010-06-15 25656]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2010-07-17 24856]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2010-07-17 216400]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2010-07-17 29584]
R1 AvgTdiX;AVG Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2010-07-17 243024]
R2 RMCAST;Ovladač protokolu RMCAST (Pgm); C:\Windows\system32\DRIVERS\RMCAST.sys [2009-04-11 113664]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2010-06-15 33848]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-11-21 1204128]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-15 5068800]
R3 AVGIDSDrivervtx;AVG9IDSDriver; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSDriver.sys [2010-07-17 122448]
R3 AVGIDSFiltervtx;AVG9IDSFilter; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSFilter.sys [2010-07-17 30288]
R3 AVGIDSShimvtx;AVG9IDSShim; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSShim.sys [2010-07-17 27216]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 MQAC;@mqutil.dll,-6101; C:\Windows\system32\drivers\mqac.sys [2008-01-21 126976]
R3 NfsRdr;@%windir%\system32\nfsrc.dll,-5003; C:\Windows\system32\drivers\nfsrdr.sys [2009-04-11 195584]
R3 PsxDrv;PsxDrv; C:\Windows\system32\drivers\psxdrv.sys [2008-01-21 9216]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RpcXdr;@%windir%\system32\nfsrc.dll,-5011; C:\Windows\system32\drivers\rpcxdr.sys [2009-04-11 76800]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-03-27 1810992]
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2006-11-02 467456]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-21 179712]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-21 159744]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2009-07-17 80384]
S3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-05-27 245936]
S3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2008-01-21 45624]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2009-06-04 312832]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2008-08-26 14336]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-07-15 172032]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [2010-03-02 67312]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 avg9emc;AVG E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-07-17 921440]
R2 avg9wd;AVG WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-07-17 308136]
R2 avgfws9;AVG Firewall; C:\Program Files\AVG\AVG9\avgfws9.exe [2010-07-17 2331032]
R2 AVGIDSAgent;AVG9IDSAgent; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-07-17 5897808]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 CISVC;@%systemroot%\system32\CISVC.EXE,-1; C:\Windows\system32\CISVC.EXE [2008-01-21 11264]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2010-06-15 26168]
R2 IISADMIN;@%windir%\system32\inetsrv\iisres.dll,-30007; C:\Windows\system32\inetsrv\inetinfo.exe [2008-01-21 13824]
R2 iprip;@%Systemroot%\system32\iprip.dll,-200; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 LPDSVC;@%systemroot%\system32\lpdsvc.dll,-500; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 MSMQ;@mqutil.dll,-6102; C:\Windows\system32\mqsvc.exe [2006-11-02 8704]
R2 MSMQTriggers;@mqutil.dll,-6203; C:\Windows\system32\mqtgsvc.exe [2009-04-11 125952]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-04-11 129880]
R2 NfsClnt;@%windir%\system32\nfsrc.dll,-5001; C:\Windows\system32\nfsclnt.exe [2009-04-11 50688]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe [2009-08-14 9728]
R2 SNMP;@%SystemRoot%\system32\snmp.exe,-3; C:\Windows\System32\snmp.exe [2009-04-11 47616]
R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-07-20 136176]
S2 rpcnetp;rpcnetp; C:\Windows\System32\rpcnetp.exe []
S3 aspnet_state;@%windir%\system32\inetsrv\iisres.dll,-30009; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2009-04-11 31048]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 MSFTPSVC;@%windir%\system32\inetsrv\iisres.dll,-30005; C:\Windows\system32\inetsrv\inetinfo.exe [2008-01-21 13824]
S3 NtmsSvc;@%SystemRoot%\system32\ntmssvc.dll,-2; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 WMSvc;@%windir%\system32\inetsrv\iisres.dll,-20001; C:\Windows\system32\inetsrv\wmsvc.exe [2008-01-21 11264]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 TlntSvr;@%SystemRoot%\system32\tlntsvr.exe,-119; C:\Windows\System32\tlntsvr.exe [2009-04-11 71168]
-----------------EOF-----------------
VF1
Re: rpcnet.exe
Zamčené klíče v regisrech nám ukáže i combofix.
Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna
- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem

- ComboFix je třeba spustit pod účtem s právy administrátora
- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano
- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: rpcnet.exe
combofix žadny txt soubor neudelal ale při opětovnem zap. avg našel malware RPCNETp.exe a po restartu se na vteřinku objevilo okno neco jako combofix.bat neni nazvem a dal jsem to nestihl. Jo a ještě prosím o radu jak zamezit stínové kopie svazků? protože i přes to že tomu moc nerozumim tak si myslim že to je cesta kudy se mi to sem pořad vrací. nedavno jsem tu měl už čisto ale asi jen na 3hodiny po připojeni do sítě se mi začnou objevovat v pc soubory které tu byly před čištěnim a ruzne .LOG, .DAT atd. k kterym nemam přistup a nelze je mazat. Přemyšlým že přejdu zase k tužka, papír, televize. 

VF1
Re: rpcnet.exe
Tak jinak
Stahněte OTL http://oldtimer.geekstogo.com/OTL.exe
-uložte ho na plochu a spustte soubor OTL.exe.
-do bílého okna dole skopírujte tento skript:
- zaškrtněte okénko Pro všechny uživatele.
-označte okénka Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
- Klikněte na tlačítko Prohledat
-po dokončení skenu se objeví logy OTL.Txt a Extras.txt, vložte je zde
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.

-uložte ho na plochu a spustte soubor OTL.exe.
-do bílého okna dole skopírujte tento skript:
Kód: Vybrat vše
netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
adp3132.sys
mv61xx.sys
nvraid.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
tcpip.sys
cryptsvc.dll
Changer.sys
JakNDis.sys
isapnp.sys
cdrom.sys
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
CREATERESTOREPOINT
-označte okénka Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
- Klikněte na tlačítko Prohledat
-po dokončení skenu se objeví logy OTL.Txt a Extras.txt, vložte je zde


-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: rpcnet.exe
[?] hpzipr12.dll
|_ Cesta: C:\Windows\System32\HPZipr12.dll
|_ MD5: B1C979C02FE013B2B9C0717C26AE1485
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqgpb01.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqgpb01.dll
|_ MD5: 347A39B69AC03B8F56D8807B989F5CA8
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqstp08.rsc
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqstp08.rsc
|_ MD5: A516D2C3AD3837E0B3168C85F239E23D
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqssm08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqssm08.dll
|_ MD5: 9E438543222120696C04A39BFAC56FB6
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsplh08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\HpqSplh08.dll
|_ MD5: 55CF0A197DC8972AC829B30ACAE00E5E
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsem08.rsc
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqsem08.rsc
|_ MD5: CA7AC8091046956DF8510F5EABA6F9BE
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqwso08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqwso08.dll
|_ MD5: F0842CF3C0B33C07B2CA1692900F21B4
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsti08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqsti08.dll
|_ MD5: 9F6258F4166AB24B4B681EB1ED44534C
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqstp08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqstp08.dll
|_ MD5: 0EE03D901B5DCD3941686B95FCC98C89
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqgpreh.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqgpreh.dll
|_ MD5: CC190B07E357BCD40C2AFB57B9A67B7F
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqgpc01.exe (6100)
|_ hpqgpc01.exe (7736)
[?] hprbevst.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprbevst.dll
|_ MD5: CBBAF06C2AC8882D239C8DC5BFA197FD
|_ Výrobce: Hewlett Packard
|_ Procesy
|_ hpqgpc01.exe (6100)
|_ hpqgpc01.exe (7736)
[?] cli.aspect.powerxpress.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerXpress.Graphics.Shared\2.0.3462.24052__90ba9c70f846762e\CLI.Aspect.PowerXpress.Graphics.Shared.dll
|_ MD5: 2FF1D9F3831EA9C19F62AD99A6D5877B
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] cli.aspect.alicrossfire.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.ALICrossfire.Graphics.Shared\2.0.3462.24051__90ba9c70f846762e\CLI.Aspect.ALICrossfire.Graphics.Shared.dll
|_ MD5: 8B8D06AB2C8BBDD41EA25DAE58BF0701
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] cli.aspect.multivpu4.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MultiVPU4.Graphics.Shared\2.0.3462.24050__90ba9c70f846762e\CLI.Aspect.MultiVPU4.Graphics.Shared.dll
|_ MD5: 74A5DC7AEBB2022A8C64CE3E9167E19A
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] atiacmxx.dll
|_ Cesta: C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
|_ MD5: 399EA623AAAFB6DF73FD44234BDCC19D
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ explorer.exe (5320)
[
Výpis souborů
================================================================
\System32:
[?] hpbmiapi.dll 7 no vrfy, {3BF4E0F2}
[?] hpboid.dll 7 no vrfy, {5263A32D}
[?] hpboidps.dll 7 no vrfy, {178F49E8}
[?] hpbpro.dll 7 no vrfy, {E90C9B2E}
[?] hpbprops.dll 7 no vrfy, {CE10638C}
[?] hpf3l70w.dll 7 no vrfy, {5992825F}
[?] hplbdchn.dll 7 no vrfy, {D33FC3DA}
[?] HPZidr12.dll 7 no vrfy, {3EA6BDE3}
[?] HPZinw12.dll 7 no vrfy, {D09A6C11}
[?] HPZipm12.dll 7 no vrfy, {377721D4}
[?] HPZipr12.dll 7 no vrfy, {D88CFEC5}
[?] hpzipt12.dll 7 no vrfy, {D599556A}
[?] hpzisn12.dll 7 no vrfy, {AEDEE07E}
[?] SER9PL.sys 7 no vrfy, {98E52FC2}
|_ Cesta: C:\Windows\System32\HPZipr12.dll
|_ MD5: B1C979C02FE013B2B9C0717C26AE1485
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqgpb01.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqgpb01.dll
|_ MD5: 347A39B69AC03B8F56D8807B989F5CA8
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqstp08.rsc
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqstp08.rsc
|_ MD5: A516D2C3AD3837E0B3168C85F239E23D
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqssm08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqssm08.dll
|_ MD5: 9E438543222120696C04A39BFAC56FB6
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsplh08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\HpqSplh08.dll
|_ MD5: 55CF0A197DC8972AC829B30ACAE00E5E
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsem08.rsc
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqsem08.rsc
|_ MD5: CA7AC8091046956DF8510F5EABA6F9BE
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqwso08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqwso08.dll
|_ MD5: F0842CF3C0B33C07B2CA1692900F21B4
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqsti08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqsti08.dll
|_ MD5: 9F6258F4166AB24B4B681EB1ED44534C
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqstp08.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqstp08.dll
|_ MD5: 0EE03D901B5DCD3941686B95FCC98C89
|_ Výrobce: Hewlett-Packard Co.
|_ Procesy
|_ hpqste08.exe (5728)
|_ hpqste08.exe (7052)
[?] hpqgpreh.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\bin\hpqgpreh.dll
|_ MD5: CC190B07E357BCD40C2AFB57B9A67B7F
|_ Výrobce: Hewlett-Packard
|_ Procesy
|_ hpqgpc01.exe (6100)
|_ hpqgpc01.exe (7736)
[?] hprbevst.dll
|_ Cesta: C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprbevst.dll
|_ MD5: CBBAF06C2AC8882D239C8DC5BFA197FD
|_ Výrobce: Hewlett Packard
|_ Procesy
|_ hpqgpc01.exe (6100)
|_ hpqgpc01.exe (7736)
[?] cli.aspect.powerxpress.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.PowerXpress.Graphics.Shared\2.0.3462.24052__90ba9c70f846762e\CLI.Aspect.PowerXpress.Graphics.Shared.dll
|_ MD5: 2FF1D9F3831EA9C19F62AD99A6D5877B
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] cli.aspect.alicrossfire.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.ALICrossfire.Graphics.Shared\2.0.3462.24051__90ba9c70f846762e\CLI.Aspect.ALICrossfire.Graphics.Shared.dll
|_ MD5: 8B8D06AB2C8BBDD41EA25DAE58BF0701
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] cli.aspect.multivpu4.graphics.shared.dll
|_ Cesta: C:\Windows\assembly\GAC_MSIL\CLI.Aspect.MultiVPU4.Graphics.Shared\2.0.3462.24050__90ba9c70f846762e\CLI.Aspect.MultiVPU4.Graphics.Shared.dll
|_ MD5: 74A5DC7AEBB2022A8C64CE3E9167E19A
|_ Výrobce: Advanced Micro Devices Inc.
|_ Procesy
|_ CCC.exe (2060)
[?] atiacmxx.dll
|_ Cesta: C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
|_ MD5: 399EA623AAAFB6DF73FD44234BDCC19D
|_ Výrobce: Advanced Micro Devices, Inc.
|_ Procesy
|_ explorer.exe (5320)
[
Výpis souborů
================================================================
\System32:
[?] hpbmiapi.dll 7 no vrfy, {3BF4E0F2}
[?] hpboid.dll 7 no vrfy, {5263A32D}
[?] hpboidps.dll 7 no vrfy, {178F49E8}
[?] hpbpro.dll 7 no vrfy, {E90C9B2E}
[?] hpbprops.dll 7 no vrfy, {CE10638C}
[?] hpf3l70w.dll 7 no vrfy, {5992825F}
[?] hplbdchn.dll 7 no vrfy, {D33FC3DA}
[?] HPZidr12.dll 7 no vrfy, {3EA6BDE3}
[?] HPZinw12.dll 7 no vrfy, {D09A6C11}
[?] HPZipm12.dll 7 no vrfy, {377721D4}
[?] HPZipr12.dll 7 no vrfy, {D88CFEC5}
[?] hpzipt12.dll 7 no vrfy, {D599556A}
[?] hpzisn12.dll 7 no vrfy, {AEDEE07E}
[?] SER9PL.sys 7 no vrfy, {98E52FC2}
Naposledy upravil(a) vfvf21 dne 21 črc 2010 09:14, celkem upraveno 1 x.
VF1
Re: rpcnet.exe
Asi je link dočasně nedostupný, stahněte ho odtud
www.itxassociates.com/OT-Tools/OTL.exe
www.itxassociates.com/OT-Tools/OTL.exe
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.