
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
kontrola logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
kontrola logu
Dobrý den,
mám podezření na vir,tak sem vkládam tento log z rsit:
Logfile of random's system information tool 1.08 (written by random/random)
Run by matmik at 2011-01-10 15:54:33
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 2 GB (11%) free of 20 GB
Total RAM: 3070 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:54:42, on 10.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
D:\Program Files\D-Tools\daemon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\qttask.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\uTorrent\uTorrent.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
D:\program files\steam\steam.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
c:\windows\nvsvc32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\audio svms\RSIT.exe
C:\Program Files\trend micro\matmik.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
R3 - URLSearchHook: ToggleEN Toolbar - {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files\Softonic_VLC_EN\tbSof2.dll
R3 - URLSearchHook: (no name) - {8567a644-e36c-470c-86cf-9c5b4f37db81} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: ToggleEN Toolbar - {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files\Softonic_VLC_EN\tbSof2.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [PC Auto Shutdown] "D:\Program Files\PC Auto Shutdown\AutoShutdown.exe"
O4 - HKLM\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [uTorrent] "D:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [BitTorrent] "D:\Documents and Settings\matmik\Plocha\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-73586283-115176313-725345543-1006\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Mich.Mik')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: toolbarchrome - {718733BC-AD64-4E5F-AC18-A85FBD75D54D} - (no file)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccessU - Unknown owner - D:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PCAutoShutdown_Service - GoldSolution Software, Inc. - D:\Program Files\PC Auto Shutdown\ShutdownService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 11619 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003UA.job
C:\WINDOWS\tasks\Norton Security Scan for matmik.job
C:\WINDOWS\tasks\SLOW-PCfighter-matmik-Startup.job
C:\WINDOWS\tasks\WGASetup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
ToggleEN Toolbar - C:\Program Files\ToggleEN\tbTog1.dll [2010-10-16 2735200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-09-23 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-23 297648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-10-23 843832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
ToggleEN Toolbar - C:\Program Files\Softonic_VLC_EN\tbSof2.dll [2010-10-18 3908192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-11 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools-1033"=D:\Program Files\D-Tools\daemon.exe [2004-08-22 81920]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-10-14 49152]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"QuickTime Task"=C:\WINDOWS\system32\qttask.exe [2008-06-29 98304]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"PC Auto Shutdown"=D:\Program Files\PC Auto Shutdown\AutoShutdown.exe [2010-12-01 1387520]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe [2011-01-10 86016]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-04-16 68856]
"uTorrent"=D:\Program Files\uTorrent\uTorrent.exe [2011-01-03 395640]
"BitTorrent"=D:\Documents and Settings\matmik\Plocha\bittorrent.exe [2007-09-08 43008]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe [2011-01-10 86016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Updater]
D:\Program Files\Carambis\Driver Updater\dupdater.exe [2010-05-25 4963840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-17 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files\Zrychleni Pocitace\PCSpeedUp.exe [2010-10-22 940792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\WINDOWS\system32\qttask.exe [2008-06-29 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2010-10-05 19580520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-04-16 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateMyDrivers]
D:\Program Files\SmartTweak Software\UpdateMyDrivers\UpdateMyDrivers.exe [2010-05-28 4376456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-12-03 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2007-10-14 214360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
D:\PROGRA~1\PIXELA\IMAGEM~1\CAMERA~1.EXE [2010-03-30 253952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Adobe Gamma.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-12-03 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
D:\PROGRA~1\BLUETO~1\BLUETO~1.EXE [2005-11-29 266240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
C:\PROGRA~1\OPENOF~1.3\program\QUICKS~1.EXE [2007-09-11 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
D:\PROGRA~1\Xfire\xfire.exe [2010-07-09 3493776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="wbsys.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-11-26 159744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MCPClient]
C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll [2005-01-31 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB]
D:\Program Files\Stardock\Object Desktop\ThemeManager\fastload.dll [2001-12-20 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 312112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
0aMCPClient - {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC} - C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll [2005-05-10 86016]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\Documents and Settings\matmik\Plocha\bittorrent.exe"="D:\Documents and Settings\matmik\Plocha\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Documents and Settings\matmik\Local Settings\Temp\71253.exe"="C:\Documents and Settings\matmik\Local Settings\Temp\71253.exe:*:Enabled:µTorrent"
"D:\Program Files\LucasArts\Star Wars JK II Jedi Outcast\GameData\jk2mp.exe"="D:\Program Files\LucasArts\Star Wars JK II Jedi Outcast\GameData\jk2mp.exe:*:Disabled:jk2mp"
"D:\Program Files\BitTorrent\bittorrent.exe"="D:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe"="D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe:*:Enabled:Dracula: Origin Demo"
"D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe"="D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe:*:Enabled:Football Manager 2010 Demo"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe"="D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe:*:Enabled:Crysis_32_sp_demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club"
"D:\Program Files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe"="D:\Program Files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe:*:Enabled:Mirror's Edge™"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe"="D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe:*:Enabled:Spider-Man(R) - Web of Shadows(TM) "
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe"="D:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"D:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe"="D:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe"="D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe:*:Enabled:Aliens vs Predator Dedicated Server"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe"="D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe:*:Enabled:Star Wars The Force Unleashed 2"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\audio svms\facebook-pic000934519.exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2011-01-10 15:39:38 ----RSH---- C:\WINDOWS\nvsvc32.exe
2011-01-10 06:51:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 16:21:07 ----D---- C:\WINDOWS\Sun
2011-01-07 18:20:39 ----D---- C:\WINDOWS\LastGood
2011-01-07 18:20:13 ----D---- C:\Program Files\OpenAL
2011-01-03 18:40:39 ----D---- C:\WINDOWS\system32\Lang
2010-12-24 19:43:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-12-24 19:42:48 ----D---- C:\Program Files\ATI Stream
2010-12-24 19:39:17 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2010-12-24 19:19:58 ----A---- C:\cmdlog.txt
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files\DESIGNER
2010-12-18 14:27:48 ----D---- C:\Program Files\Common Files\ODBC
2010-12-17 06:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-17 06:30:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-17 06:30:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-17 06:30:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-17 06:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-17 06:29:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-17 06:29:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-17 06:29:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-15 15:28:58 ----D---- C:\Program Files\ICQ6.5
2010-12-15 06:26:00 ----A---- C:\WINDOWS\imsins.BAK
2010-12-15 06:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
======List of files/folders modified in the last 1 months======
2011-01-10 15:54:42 ----D---- C:\WINDOWS\Prefetch
2011-01-10 15:54:36 ----D---- C:\Program Files\trend micro
2011-01-10 15:54:16 ----D---- C:\Documents and Settings\matmik\Data aplikací\uTorrent
2011-01-10 15:41:39 ----D---- C:\WINDOWS\Temp
2011-01-10 15:39:38 ----D---- C:\WINDOWS
2011-01-10 15:31:44 ----D---- C:\Documents and Settings\matmik\Data aplikací\Skype
2011-01-10 14:37:28 ----D---- C:\Documents and Settings\matmik\Data aplikací\skypePM
2011-01-09 18:45:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Adobe
2011-01-09 18:45:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-01-09 17:24:55 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-01-09 12:32:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-08 17:46:54 ----SHD---- C:\WINDOWS\Installer
2011-01-07 18:20:47 ----D---- C:\WINDOWS\system32\DirectX
2011-01-07 18:20:46 ----D---- C:\WINDOWS\inf
2011-01-07 18:20:20 ----D---- C:\WINDOWS\WinSxS
2011-01-07 18:20:13 ----D---- C:\WINDOWS\system32
2011-01-07 18:20:13 ----D---- C:\Program Files
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-01-07 10:41:06 ----D---- C:\Documents and Settings\matmik\Data aplikací\Vso
2011-01-06 18:38:14 ----D---- C:\WINDOWS\system32\config
2011-01-06 16:12:57 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-05 18:48:53 ----DC---- C:\WINDOWS\system32\dllcache
2011-01-05 18:48:52 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-05 14:38:58 ----D---- C:\Documents and Settings\matmik\Data aplikací\ICQ
2011-01-03 13:52:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\BitTorrent
2011-01-02 16:08:19 ----RSD---- C:\WINDOWS\assembly
2010-12-24 19:48:58 ----D---- C:\WINDOWS\system32\drivers
2010-12-24 19:48:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-24 19:42:46 ----D---- C:\Program Files\ATI
2010-12-24 19:42:10 ----D---- C:\Program Files\ATI Technologies
2010-12-24 19:39:17 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-12-18 14:30:00 ----AC---- C:\WINDOWS\ODBC.INI
2010-12-18 14:29:34 ----A---- C:\WINDOWS\win.ini
2010-12-18 14:29:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-18 14:29:24 ----D---- C:\WINDOWS\Fonts
2010-12-18 14:29:13 ----D---- C:\WINDOWS\SHELLNEW
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files
2010-12-18 14:27:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-12-17 16:06:35 ----D---- C:\Program Files\ICQ6Toolbar
2010-12-17 06:30:07 ----D---- C:\WINDOWS\$hf_mig$
2010-12-17 06:29:32 ----D---- C:\Program Files\Outlook Express
2010-12-15 15:29:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-12-14 16:18:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\DivX
2010-12-12 16:22:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Xfire
2010-12-12 16:10:14 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 d347bus;d347bus; C:\WINDOWS\system32\DRIVERS\d347bus.sys [2004-08-22 155136]
R0 d347prt;d347prt; C:\WINDOWS\System32\Drivers\d347prt.sys [2004-08-22 5248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\system32\DRIVERS\PxHelp20.sys [2007-03-08 43528]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 HWiNFO32;HWiNFO32 Kernel Driver; \??\D:\Program Files\HWiNFO32\HWiNFO32.SYS []
R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-11-26 5555712]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-11-18 95232]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-10-05 6164584]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-03-13 47360]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-08-15 83200]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 cpuz132;cpuz132; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\cpuz132\cpuz132_x32.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\D:\Program Files\MediaCoder\SysInfo.sys []
S3 GMSIPCI;GMSIPCI; C:\WINDOWS\system32\drivers\GMSIPCI.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-02-07 17480]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-11-01 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-11-01 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-11-26 614400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-11 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 NMSAccessU;NMSAccessU; D:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-05-04 75064]
R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7.exe [2008-05-02 126976]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-25 135664]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 PCAutoShutdown_Service;PCAutoShutdown_Service; D:\Program Files\PC Auto Shutdown\ShutdownService.exe [2010-04-19 441624]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-12-15 72704]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-02-13 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-03-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-05-03 74656]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\wmpnetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
mám podezření na vir,tak sem vkládam tento log z rsit:
Logfile of random's system information tool 1.08 (written by random/random)
Run by matmik at 2011-01-10 15:54:33
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 2 GB (11%) free of 20 GB
Total RAM: 3070 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:54:42, on 10.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
D:\Program Files\D-Tools\daemon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\system32\qttask.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\uTorrent\uTorrent.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
D:\program files\steam\steam.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
c:\windows\nvsvc32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\audio svms\RSIT.exe
C:\Program Files\trend micro\matmik.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
R3 - URLSearchHook: ToggleEN Toolbar - {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files\Softonic_VLC_EN\tbSof2.dll
R3 - URLSearchHook: (no name) - {8567a644-e36c-470c-86cf-9c5b4f37db81} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: ToggleEN Toolbar - {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files\Softonic_VLC_EN\tbSof2.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [PC Auto Shutdown] "D:\Program Files\PC Auto Shutdown\AutoShutdown.exe"
O4 - HKLM\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [uTorrent] "D:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [BitTorrent] "D:\Documents and Settings\matmik\Plocha\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-73586283-115176313-725345543-1006\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Mich.Mik')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: toolbarchrome - {718733BC-AD64-4E5F-AC18-A85FBD75D54D} - (no file)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccessU - Unknown owner - D:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PCAutoShutdown_Service - GoldSolution Software, Inc. - D:\Program Files\PC Auto Shutdown\ShutdownService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 11619 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003UA.job
C:\WINDOWS\tasks\Norton Security Scan for matmik.job
C:\WINDOWS\tasks\SLOW-PCfighter-matmik-Startup.job
C:\WINDOWS\tasks\WGASetup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
ToggleEN Toolbar - C:\Program Files\ToggleEN\tbTog1.dll [2010-10-16 2735200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-09-23 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-23 297648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-10-23 843832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
ToggleEN Toolbar - C:\Program Files\Softonic_VLC_EN\tbSof2.dll [2010-10-18 3908192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-11 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools-1033"=D:\Program Files\D-Tools\daemon.exe [2004-08-22 81920]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-10-14 49152]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"QuickTime Task"=C:\WINDOWS\system32\qttask.exe [2008-06-29 98304]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"PC Auto Shutdown"=D:\Program Files\PC Auto Shutdown\AutoShutdown.exe [2010-12-01 1387520]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe [2011-01-10 86016]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-04-16 68856]
"uTorrent"=D:\Program Files\uTorrent\uTorrent.exe [2011-01-03 395640]
"BitTorrent"=D:\Documents and Settings\matmik\Plocha\bittorrent.exe [2007-09-08 43008]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe [2011-01-10 86016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Updater]
D:\Program Files\Carambis\Driver Updater\dupdater.exe [2010-05-25 4963840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-17 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files\Zrychleni Pocitace\PCSpeedUp.exe [2010-10-22 940792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\WINDOWS\system32\qttask.exe [2008-06-29 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2010-10-05 19580520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-04-16 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateMyDrivers]
D:\Program Files\SmartTweak Software\UpdateMyDrivers\UpdateMyDrivers.exe [2010-05-28 4376456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-12-03 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2007-10-14 214360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
D:\PROGRA~1\PIXELA\IMAGEM~1\CAMERA~1.EXE [2010-03-30 253952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Adobe Gamma.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-12-03 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
D:\PROGRA~1\BLUETO~1\BLUETO~1.EXE [2005-11-29 266240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
C:\PROGRA~1\OPENOF~1.3\program\QUICKS~1.EXE [2007-09-11 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
D:\PROGRA~1\Xfire\xfire.exe [2010-07-09 3493776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="wbsys.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-11-26 159744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MCPClient]
C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll [2005-01-31 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB]
D:\Program Files\Stardock\Object Desktop\ThemeManager\fastload.dll [2001-12-20 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 312112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
0aMCPClient - {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC} - C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll [2005-05-10 86016]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\Documents and Settings\matmik\Plocha\bittorrent.exe"="D:\Documents and Settings\matmik\Plocha\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Documents and Settings\matmik\Local Settings\Temp\71253.exe"="C:\Documents and Settings\matmik\Local Settings\Temp\71253.exe:*:Enabled:µTorrent"
"D:\Program Files\LucasArts\Star Wars JK II Jedi Outcast\GameData\jk2mp.exe"="D:\Program Files\LucasArts\Star Wars JK II Jedi Outcast\GameData\jk2mp.exe:*:Disabled:jk2mp"
"D:\Program Files\BitTorrent\bittorrent.exe"="D:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe"="D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe:*:Enabled:Dracula: Origin Demo"
"D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe"="D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe:*:Enabled:Football Manager 2010 Demo"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe"="D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe:*:Enabled:Crysis_32_sp_demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club"
"D:\Program Files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe"="D:\Program Files\EA GAMES\Mirror's Edge\Binaries\MirrorsEdge.exe:*:Enabled:Mirror's Edge™"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe"="D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe:*:Enabled:Spider-Man(R) - Web of Shadows(TM) "
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe"="D:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"D:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe"="D:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe"="D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe:*:Enabled:Aliens vs Predator Dedicated Server"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe"="D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe:*:Enabled:Star Wars The Force Unleashed 2"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\audio svms\facebook-pic000934519.exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2011-01-10 15:39:38 ----RSH---- C:\WINDOWS\nvsvc32.exe
2011-01-10 06:51:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 16:21:07 ----D---- C:\WINDOWS\Sun
2011-01-07 18:20:39 ----D---- C:\WINDOWS\LastGood
2011-01-07 18:20:13 ----D---- C:\Program Files\OpenAL
2011-01-03 18:40:39 ----D---- C:\WINDOWS\system32\Lang
2010-12-24 19:43:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-12-24 19:42:48 ----D---- C:\Program Files\ATI Stream
2010-12-24 19:39:17 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2010-12-24 19:19:58 ----A---- C:\cmdlog.txt
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files\DESIGNER
2010-12-18 14:27:48 ----D---- C:\Program Files\Common Files\ODBC
2010-12-17 06:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-17 06:30:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-17 06:30:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-17 06:30:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-17 06:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-17 06:29:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-17 06:29:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-17 06:29:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-15 15:28:58 ----D---- C:\Program Files\ICQ6.5
2010-12-15 06:26:00 ----A---- C:\WINDOWS\imsins.BAK
2010-12-15 06:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
======List of files/folders modified in the last 1 months======
2011-01-10 15:54:42 ----D---- C:\WINDOWS\Prefetch
2011-01-10 15:54:36 ----D---- C:\Program Files\trend micro
2011-01-10 15:54:16 ----D---- C:\Documents and Settings\matmik\Data aplikací\uTorrent
2011-01-10 15:41:39 ----D---- C:\WINDOWS\Temp
2011-01-10 15:39:38 ----D---- C:\WINDOWS
2011-01-10 15:31:44 ----D---- C:\Documents and Settings\matmik\Data aplikací\Skype
2011-01-10 14:37:28 ----D---- C:\Documents and Settings\matmik\Data aplikací\skypePM
2011-01-09 18:45:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Adobe
2011-01-09 18:45:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-01-09 17:24:55 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-01-09 12:32:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-08 17:46:54 ----SHD---- C:\WINDOWS\Installer
2011-01-07 18:20:47 ----D---- C:\WINDOWS\system32\DirectX
2011-01-07 18:20:46 ----D---- C:\WINDOWS\inf
2011-01-07 18:20:20 ----D---- C:\WINDOWS\WinSxS
2011-01-07 18:20:13 ----D---- C:\WINDOWS\system32
2011-01-07 18:20:13 ----D---- C:\Program Files
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-01-07 10:41:06 ----D---- C:\Documents and Settings\matmik\Data aplikací\Vso
2011-01-06 18:38:14 ----D---- C:\WINDOWS\system32\config
2011-01-06 16:12:57 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-05 18:48:53 ----DC---- C:\WINDOWS\system32\dllcache
2011-01-05 18:48:52 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-05 14:38:58 ----D---- C:\Documents and Settings\matmik\Data aplikací\ICQ
2011-01-03 13:52:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\BitTorrent
2011-01-02 16:08:19 ----RSD---- C:\WINDOWS\assembly
2010-12-24 19:48:58 ----D---- C:\WINDOWS\system32\drivers
2010-12-24 19:48:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-24 19:42:46 ----D---- C:\Program Files\ATI
2010-12-24 19:42:10 ----D---- C:\Program Files\ATI Technologies
2010-12-24 19:39:17 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-12-18 14:30:00 ----AC---- C:\WINDOWS\ODBC.INI
2010-12-18 14:29:34 ----A---- C:\WINDOWS\win.ini
2010-12-18 14:29:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-18 14:29:24 ----D---- C:\WINDOWS\Fonts
2010-12-18 14:29:13 ----D---- C:\WINDOWS\SHELLNEW
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files
2010-12-18 14:27:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-12-17 16:06:35 ----D---- C:\Program Files\ICQ6Toolbar
2010-12-17 06:30:07 ----D---- C:\WINDOWS\$hf_mig$
2010-12-17 06:29:32 ----D---- C:\Program Files\Outlook Express
2010-12-15 15:29:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-12-14 16:18:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\DivX
2010-12-12 16:22:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Xfire
2010-12-12 16:10:14 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 d347bus;d347bus; C:\WINDOWS\system32\DRIVERS\d347bus.sys [2004-08-22 155136]
R0 d347prt;d347prt; C:\WINDOWS\System32\Drivers\d347prt.sys [2004-08-22 5248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\system32\DRIVERS\PxHelp20.sys [2007-03-08 43528]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 HWiNFO32;HWiNFO32 Kernel Driver; \??\D:\Program Files\HWiNFO32\HWiNFO32.SYS []
R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-11-26 5555712]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-11-18 95232]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-10-05 6164584]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-03-13 47360]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-08-15 83200]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 cpuz132;cpuz132; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\cpuz132\cpuz132_x32.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\D:\Program Files\MediaCoder\SysInfo.sys []
S3 GMSIPCI;GMSIPCI; C:\WINDOWS\system32\drivers\GMSIPCI.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-02-07 17480]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-11-01 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-11-01 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-11-26 614400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-11 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 NMSAccessU;NMSAccessU; D:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-05-04 75064]
R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7.exe [2008-05-02 126976]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-25 135664]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 PCAutoShutdown_Service;PCAutoShutdown_Service; D:\Program Files\PC Auto Shutdown\ShutdownService.exe [2010-04-19 441624]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-12-15 72704]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-02-13 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-03-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-05-03 74656]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\wmpnetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Re: kontrola logu
Zdravim a pekny den preji
Hadam ze si Vam FaceBook povida sam od sebe a posila Vam odkazy ostatnim pratelum
Tak mu to zatrhnem
Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com
Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe





- Pokud ho havet blokuje, pouzijte jeden z nasledujicich
motji píše: Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif - Ulozte nejlepena plochu a ukoncete vsechny aplikace (jinak to udela RKill za Vas)
- Spustte tradicne dvojklikem - program probehne temer okamzite a ukonci i svou cinnost
- RKill ukonci vsechny ne-systemove procesy - tedy i procesy, pod kterymi bezi havet
- V zadnem pripade ted nerestartujte PC - prisli byste o ucinek RKillu

- Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
- Pokud mate Win XP spustte pod uctem Spravce\Administratora
- Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
- Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
- Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
- Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
- Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
- Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
- Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
vyosek píše:Zdravim a pekny den preji![]()
Hadam ze si Vam FaceBook povida sam od sebe a posila Vam odkazy ostatnim pratelum
Tak mu to zatrhnem
![]()
Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com
PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
- Pokud ho havet blokuje, pouzijte jeden z nasledujicich
motji píše: Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill SCR:
http://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif- Ulozte nejlepena plochu a ukoncete vsechny aplikace (jinak to udela RKill za Vas)
- Spustte tradicne dvojklikem - program probehne temer okamzite a ukonci i svou cinnost
- RKill ukonci vsechny ne-systemove procesy - tedy i procesy, pod kterymi bezi havet
- V zadnem pripade ted nerestartujte PC - prisli byste o ucinek RKillu
Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
- Pokud mate Win XP spustte pod uctem Spravce\Administratora
- Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
- Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
- Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
- Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
- Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
- Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
- Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
Přesně tak...

Re: kontrola logu
Fajn, takze provedte kroky co jsem psal a necitujte prosim mou odpoved, je to zbytecne, staci klik na odpovedet...
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
Nějak mi nejde vypnout avast...Ikonka dole mi zmizela ale combofix furt hlásí že je zapnutý...A i v těch rezidenčních nvm co se moc neviznam :S poradíte jak to všechno vypnout ?
Re: kontrola logu
Nechte tedy Avast bezet a spustte ComboFix...
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
Tady je log z combofixu:
ComboFix 11-01-09.03 - matmik 10.01.2011 16:17:43.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2154 [GMT 1:00]
Spuštěný z: d:\audio svms\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
ADS - WINDOWS: deleted 24 bytes in 1 streams.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
c:\documents and settings\matmik\Data aplikací\Desktopicon
c:\documents and settings\matmik\Data aplikací\Desktopicon\config.ini
c:\documents and settings\matmik\Local Settings\Tempdfxg1999DF.exe
c:\documents and settings\matmik\Local Settings\Tempgkvt6396QC.exe
c:\documents and settings\matmik\Local Settings\Temppgga6339PG.exe
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\1.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\a.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\b.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\c.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\d.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\e.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\f.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\g.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\h.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\i.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\J.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\k.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\l.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\m.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\mru.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\n.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\o.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\p.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\q.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\r.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\s.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\t.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\u.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\v.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\w.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\x.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\y.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\z.xml
c:\program files\filesubmit
c:\program files\filesubmit\184691\184691.zip
c:\program files\filesubmit\184691\internal-flame-ws.zip
c:\program files\filesubmit\1989\1989.zip
c:\program files\filesubmit\1989\internal-flame-ws.zip
c:\program files\filesubmit\black12\black12.zip
c:\program files\filesubmit\black12\internal-flame-ws.zip
c:\program files\filesubmit\venomspiderman\venomspiderman.zip
c:\program files\ICQ6.5\ICQLRun.exe
c:\program files\SpeedBit Toolbar\Toolbar\tbhelper.dll
C:\test.txt
c:\windows\daemon.dll
c:\windows\nvsvc32.exe
D:\Autorun.inf
D:\install.exe
D:\Uninstall.exe
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SSHNAS
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.
2011-01-10 05:51 . 2011-01-10 05:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 15:21 . 2011-01-09 15:21 -------- d-----w- c:\windows\Sun
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\windows\LastGood.Tmp
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\program files\OpenAL
2011-01-03 17:40 . 2011-01-03 17:40 -------- d-----w- c:\windows\system32\Lang
2010-12-24 18:43 . 2010-12-24 18:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2010-12-24 18:42 . 2010-12-24 18:42 -------- d-----w- c:\program files\ATI Stream
2010-12-24 18:39 . 2010-11-26 02:30 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-12-24 18:19 . 2010-12-24 18:19 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\LucasArts
2010-12-20 11:50 . 2010-12-21 12:19 -------- d-----w- c:\documents and settings\Mich.Mik\Data aplikací\HPAppData
2010-12-16 05:34 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2010-12-16 05:34 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2010-12-15 14:28 . 2011-01-10 15:21 -------- d-----w- c:\program files\ICQ6.5
2010-12-12 16:48 . 2010-12-12 16:48 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\MF Software
2010-12-12 09:11 . 2010-12-12 09:11 -------- d-----w- c:\documents and settings\NetworkService\Data aplikací\Xfire
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-07 17:20 . 2008-08-18 09:21 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-01-07 17:20 . 2008-08-18 09:21 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2010-12-12 15:10 . 2009-03-15 16:08 138376 -c--a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-12-12 15:10 . 2009-03-15 16:08 202448 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-12-07 11:14 . 2010-12-07 11:14 51200 ----a-w- c:\windows\system32\OpenCL.dll
2010-11-29 16:42 . 2010-12-05 09:59 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-29 16:42 . 2010-12-05 09:59 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-29 10:06 . 2008-05-02 08:19 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-26 04:17 . 2007-03-15 01:57 5555712 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-11-26 03:57 . 2007-03-15 01:19 16748544 ----a-w- c:\windows\system32\atioglxx.dll
2010-11-26 03:23 . 2010-02-11 04:37 471040 ----a-w- c:\windows\system32\atiok3x2.dll
2010-11-26 03:12 . 2008-02-06 17:06 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-11-26 03:07 . 2010-02-11 04:23 57344 ----a-w- c:\windows\system32\aticalrt.dll
2010-11-26 03:07 . 2010-02-11 04:22 53248 ----a-w- c:\windows\system32\aticalcl.dll
2010-11-26 03:06 . 2010-02-11 04:21 4489216 ----a-w- c:\windows\system32\aticaldd.dll
2010-11-26 02:55 . 2008-02-06 17:06 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-11-26 02:54 . 2007-03-15 01:57 302080 ----a-w- c:\windows\system32\ati2dvag.dll
2010-11-26 02:48 . 2007-03-15 01:40 3984864 ----a-w- c:\windows\system32\ati3duag.dll
2010-11-26 02:39 . 2007-03-15 01:14 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-11-26 02:34 . 2007-03-15 01:50 212992 ----a-w- c:\windows\system32\atipdlxx.dll
2010-11-26 02:34 . 2007-03-15 01:50 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-11-26 02:34 . 2007-03-15 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-11-26 02:34 . 2007-03-15 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-11-26 02:34 . 2007-03-15 01:49 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-11-26 02:32 . 2007-03-15 01:48 614400 ----a-w- c:\windows\system32\ati2evxx.exe
2010-11-26 02:32 . 2007-03-15 01:29 2669696 ----a-w- c:\windows\system32\ativvaxx.dll
2010-11-26 02:31 . 2007-03-15 01:47 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-11-26 02:26 . 2007-03-15 01:16 651264 ----a-w- c:\windows\system32\atikvmag.dll
2010-11-26 02:24 . 2010-02-11 03:54 196608 ----a-w- c:\windows\system32\atiadlxx.dll
2010-11-26 02:24 . 2007-03-15 01:14 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-11-26 02:18 . 2007-03-15 01:10 765952 ----a-w- c:\windows\system32\ati2cqag.dll
2010-11-26 02:16 . 2010-02-11 03:59 64512 ----a-w- c:\windows\system32\amdpcom32.dll
2010-11-26 02:16 . 2009-11-24 13:26 64512 ----a-w- c:\windows\system32\atimpc32.dll
2010-11-18 18:15 . 2008-01-26 14:19 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-05 05:02 . 2004-08-17 13:49 668160 ----a-w- c:\windows\system32\wininet.dll
2010-11-05 05:02 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-11-05 05:02 . 2004-08-03 20:59 61952 ----a-w- c:\windows\system32\tdc.ocx
2010-11-05 04:59 . 2004-08-17 13:44 370176 ----a-w- c:\windows\system32\html.iec
2010-11-02 15:17 . 2001-10-25 14:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2010-10-28 13:09 . 2004-08-17 13:48 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:58 . 2004-08-17 13:44 1853312 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2008-10-08 173368]
"{038cb5c7-48ea-4af9-94e0-a1646542e62b}"= "c:\program files\ToggleEN\tbTog1.dll" [2010-10-16 2735200]
"{e6570cd8-9978-4621-b1f9-6a62436f0466}"= "c:\program files\Softonic_VLC_EN\tbSof2.dll" [2010-10-18 3908192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_CLASSES_ROOT\clsid\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
[HKEY_CLASSES_ROOT\clsid\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
2010-10-16 09:29 2735200 -c--a-w- c:\program files\ToggleEN\tbTog1.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
2010-10-18 10:26 3908192 ----a-w- c:\program files\Softonic_VLC_EN\tbSof2.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2008-10-08 1172792]
"{038CB5C7-48EA-4AF9-94E0-A1646542E62B}"= "c:\program files\ToggleEN\tbTog1.dll" [2010-10-16 2735200]
"{E6570CD8-9978-4621-B1F9-6A62436F0466}"= "c:\program files\Softonic_VLC_EN\tbSof2.dll" [2010-10-18 3908192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.SWEETIE.3]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.SWEETIE]
[HKEY_CLASSES_ROOT\clsid\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
[HKEY_CLASSES_ROOT\clsid\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-04-16 68856]
"uTorrent"="d:\program files\uTorrent\uTorrent.exe" [2011-01-03 395640]
"BitTorrent"="d:\documents and settings\matmik\Plocha\bittorrent.exe" [2007-09-07 43008]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools-1033"="d:\program files\D-Tools\daemon.exe" [2004-08-22 81920]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2008-06-29 98304]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-11-25 98304]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-05-04 311296]
"PC Auto Shutdown"="d:\program files\PC Auto Shutdown\AutoShutdown.exe" [2010-12-01 1387520]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="c:\windows\system32\logonuiX.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\MCPClient]
2005-01-31 13:13 49152 ----a-w- c:\progra~1\COMMON~1\Stardock\MCPStub.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 21:34 24576 ----a-w- d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\wbsys.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk]
backup=c:\windows\pss\Adobe Gamma Loader.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
backup=c:\windows\pss\ImageMixer 3 SE Camera Monitor for SD.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Adobe Gamma.lnk]
backup=c:\windows\pss\Adobe Gamma.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
backup=c:\windows\pss\BluetoothPCDialer.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\matmik\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
backup=c:\windows\pss\Xfire.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-20 22:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-09-23 03:47 35760 ----a-w- d:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
2009-11-13 05:30 323392 ----a-w- c:\program files\DNA\btdna.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Updater]
2010-05-25 14:29 4963840 ----a-w- d:\program files\Carambis\Driver Updater\dupdater.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2010-10-17 11:51 136176 ----atw- c:\documents and settings\matmik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
2010-10-22 13:27 940792 ----a-w- c:\program files\Zrychleni Pocitace\PCSpeedUp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2008-06-29 14:17 98304 ----a-w- c:\windows\system32\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2010-10-05 16:11 19580520 ----a-w- c:\windows\RTHDCPL.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2008-04-16 05:00 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateMyDrivers]
2010-05-28 08:15 4376456 ----a-w- d:\program files\SmartTweak Software\UpdateMyDrivers\UpdateMyDrivers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"d:\\Documents and Settings\\matmik\\Plocha\\bittorrent.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dracula origin demo\\demo.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\football manager 2010 demo\\fm.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis SP Demo\\Bin32\\Crysis.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Team JPN\\SpiderMan Web of Shadows\\image\\pc\\Spider-Man Web of Shadows.exe"=
"d:\\Program Files\\ICQ7.2\\ICQ.exe"=
"d:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator dedicated server\\AvP_CLI.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\LucasArts\\Star Wars The Force Unleashed 2\\SWTFU2.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\DAOriginsLauncher.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"d:\\Program Files\\Steam\\steamapps\\common\\zero gear\\ZeroGear.bat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"d:\\audio svms\\facebook-pic000934519.exe"= c:\\windows\\nvsvc32.exe
R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [28.5.2008 9:13 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [28.5.2008 9:13 5248]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [20.10.2010 14:07 165584]
R1 HWiNFO32;HWiNFO32 Kernel Driver;d:\program files\HWiNFO32\HWiNFO32.SYS [2.5.2010 9:12 19064]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [20.10.2010 14:07 17744]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [14.7.2009 19:08 222968]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service;d:\program files\PC Auto Shutdown\ShutdownService.exe [10.1.2011 6:51 441624]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [25.3.2010 16:27 135664]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2.5.2010 9:27 1691480]
--- Ostatní služby/ovladače v paměti ---
*NewlyCreated* - PCAUTOSHUTDOWN_SERVICE
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Obsah adresáře 'Naplánované úlohy'
2011-01-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-25 15:27]
2011-01-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-25 15:27]
2011-01-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-09-14 20:18]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uSearch Page = hxxp://www.google.com
uLocal Page = hxxp://www.google.com/
uSearch Bar = hxxp://www.google.com/ie
mDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://www.google.com
mLocal Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www3.iamwired.net/websearch.php?src=tops&search=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - google.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - d:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: LoudMo Contextual Ad Assistant: {37b1d48c-6e0a-dfe8-8a74-05116b74c806} - d:\program files\Mozilla Firefox\extensions\{37b1d48c-6e0a-dfe8-8a74-05116b74c806}
FF - Ext: Jookz Toolbar: jookztoolbar2@jookz.com - d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com
FF - Ext: ResultUrl: {C8431CD2-C25A-45F3-BEA9-A9103C31409A} - d:\program files\Mozilla Firefox\extensions\{C8431CD2-C25A-45F3-BEA9-A9103C31409A}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: SweetIM Toolbar for Firefox: {EEE6C361-6118-11DC-9C72-001320C79847} - %profile%\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
FF - Ext: Illimitux: illimitux@illimitux.net - %profile%\extensions\illimitux@illimitux.net
FF - Ext: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - %profile%\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}
FF - Ext: Ask Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: SpeedBit Toolbar: {EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - c:\program files\SpeedBit Toolbar\SPFireFox
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-{2bae58c2-79f9-45d1-a286-81f911301c3a} - (no file)
URLSearchHooks-{8567a644-e36c-470c-86cf-9c5b4f37db81} - (no file)
WebBrowser-{2BAE58C2-79F9-45D1-A286-81F911301C3A} - (no file)
WebBrowser-{5B291E6C-9A74-4034-971B-A4B007A0B315} - (no file)
WebBrowser-{8567A644-E36C-470C-86CF-9C5B4F37DB81} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
WebBrowser-{EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - (no file)
AddRemove-Aliens Vs Predator MultiPlayer 1.1 - d:\program files\Steam\steamapps\common\zero gear\Server\Uninstall.exe
AddRemove-Drawing Hand Screen Saver - D:\Uninstall.exe
AddRemove-GameParkClient_is1 - d:\program files\GamePark\unins000.exe
AddRemove-Hamachi - d:\\uninstall.exe
AddRemove-InstallShield_{990166FA-1ACB-4AA7-B592-4D370C7CDD1A} - c:\program files\InstallShield Installation Information\{990166FA-1ACB-4AA7-B592-4D370C7CDD1A}\setup.exe
AddRemove-InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F} - c:\program files\InstallShield Installation Information\{D80A6A73-E58A-4673-AFF5-F12D7110661F}\setup.exe
AddRemove-Worms2 Demo - d:\program files\Uninst.isu
AddRemove-{B69F28DF-CBB1-41B7-008A-210E4D0518FC} - d:\program files\Electronic Arts\Harry Potter a Fénixův řád\EAUninstall.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-01-10 16:26
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DAEMON Tools-1033 = "d:\program files\D-Tools\daemon.exe" -lang 1033??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
HP Software Update = c:\program files\HP\HP Software Update\HPWuSchd2.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
hpqSRMon = c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
NeroFilterCheck = c:\windows\system32\NeroCheck.exe??CloneCDTray.exe" /s?L /WAITFORSW????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
SunJavaUpdateSched = "c:\program files\Common Files\Java\Java Update\jusched.exe"??FORSW????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:c9,0f,8c,a9,08,b0,de,8d,38,f3,ff,29,76,d6,7f,58,27,8e,71,e0,ac,72,81,
d1,9b,16,1b,79,d8,aa,7a,33,a8,21,ff,8f,89,2b,c6,85,bf,d6,80,ae,26,18,b4,56,\
"??"=hex:92,b0,92,2a,dc,c2,cb,71,6f,15,f8,be,4d,6c,5a,9d
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:5c,72,30,61,d5,0b,f0,c1,66,92,d1,fc,14,44,fd,3b,70,9a,55,b7,04,
45,1f,31,94,fe,2e,95,03,29,b9,0b,64,5d,2f,2f,9c,3a,fd,ca,bc,26,df,88,1c,75,\
"rkeysecu"=hex:7b,17,6d,19,7c,cb,66,2f,76,6d,17,9c,f2,ea,05,dd
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(776)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
c:\progra~1\COMMON~1\Stardock\mcpstub.dll
d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
- - - - - - - > 'explorer.exe'(3572)
c:\progra~1\COMMON~1\Stardock\MCPCore.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\progra~1\COMMON~1\Stardock\SDMCP.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\UAService7.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\windows\system32\wbem\wmiapsrv.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\windows\system32\WgaTray.exe
.
**************************************************************************
.
Celkový čas: 2011-01-10 16:29:28 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-01-10 15:29
Před spuštěním: 2 542 641 152
Po spuštění: 2 454 970 368
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - 609F69EEAD7AB65027F9F62E4EDED909
ComboFix 11-01-09.03 - matmik 10.01.2011 16:17:43.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2154 [GMT 1:00]
Spuštěný z: d:\audio svms\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
ADS - WINDOWS: deleted 24 bytes in 1 streams.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
c:\documents and settings\matmik\Data aplikací\Desktopicon
c:\documents and settings\matmik\Data aplikací\Desktopicon\config.ini
c:\documents and settings\matmik\Local Settings\Tempdfxg1999DF.exe
c:\documents and settings\matmik\Local Settings\Tempgkvt6396QC.exe
c:\documents and settings\matmik\Local Settings\Temppgga6339PG.exe
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\1.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\a.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\b.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\c.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\d.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\e.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\f.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\g.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\h.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\i.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\J.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\k.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\l.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\m.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\mru.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\n.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\o.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\p.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\q.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\r.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\s.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\t.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\u.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\v.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\w.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\x.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\y.xml
c:\documents and settings\Mich.Mik\Data aplikací\PriceGong\Data\z.xml
c:\program files\filesubmit
c:\program files\filesubmit\184691\184691.zip
c:\program files\filesubmit\184691\internal-flame-ws.zip
c:\program files\filesubmit\1989\1989.zip
c:\program files\filesubmit\1989\internal-flame-ws.zip
c:\program files\filesubmit\black12\black12.zip
c:\program files\filesubmit\black12\internal-flame-ws.zip
c:\program files\filesubmit\venomspiderman\venomspiderman.zip
c:\program files\ICQ6.5\ICQLRun.exe
c:\program files\SpeedBit Toolbar\Toolbar\tbhelper.dll
C:\test.txt
c:\windows\daemon.dll
c:\windows\nvsvc32.exe
D:\Autorun.inf
D:\install.exe
D:\Uninstall.exe
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_SSHNAS
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.
2011-01-10 05:51 . 2011-01-10 05:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 15:21 . 2011-01-09 15:21 -------- d-----w- c:\windows\Sun
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\windows\LastGood.Tmp
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\program files\OpenAL
2011-01-03 17:40 . 2011-01-03 17:40 -------- d-----w- c:\windows\system32\Lang
2010-12-24 18:43 . 2010-12-24 18:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2010-12-24 18:42 . 2010-12-24 18:42 -------- d-----w- c:\program files\ATI Stream
2010-12-24 18:39 . 2010-11-26 02:30 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-12-24 18:19 . 2010-12-24 18:19 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\LucasArts
2010-12-20 11:50 . 2010-12-21 12:19 -------- d-----w- c:\documents and settings\Mich.Mik\Data aplikací\HPAppData
2010-12-16 05:34 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2010-12-16 05:34 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2010-12-15 14:28 . 2011-01-10 15:21 -------- d-----w- c:\program files\ICQ6.5
2010-12-12 16:48 . 2010-12-12 16:48 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\MF Software
2010-12-12 09:11 . 2010-12-12 09:11 -------- d-----w- c:\documents and settings\NetworkService\Data aplikací\Xfire
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-07 17:20 . 2008-08-18 09:21 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-01-07 17:20 . 2008-08-18 09:21 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2010-12-12 15:10 . 2009-03-15 16:08 138376 -c--a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-12-12 15:10 . 2009-03-15 16:08 202448 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-12-07 11:14 . 2010-12-07 11:14 51200 ----a-w- c:\windows\system32\OpenCL.dll
2010-11-29 16:42 . 2010-12-05 09:59 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-29 16:42 . 2010-12-05 09:59 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-29 10:06 . 2008-05-02 08:19 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-26 04:17 . 2007-03-15 01:57 5555712 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-11-26 03:57 . 2007-03-15 01:19 16748544 ----a-w- c:\windows\system32\atioglxx.dll
2010-11-26 03:23 . 2010-02-11 04:37 471040 ----a-w- c:\windows\system32\atiok3x2.dll
2010-11-26 03:12 . 2008-02-06 17:06 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-11-26 03:07 . 2010-02-11 04:23 57344 ----a-w- c:\windows\system32\aticalrt.dll
2010-11-26 03:07 . 2010-02-11 04:22 53248 ----a-w- c:\windows\system32\aticalcl.dll
2010-11-26 03:06 . 2010-02-11 04:21 4489216 ----a-w- c:\windows\system32\aticaldd.dll
2010-11-26 02:55 . 2008-02-06 17:06 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-11-26 02:54 . 2007-03-15 01:57 302080 ----a-w- c:\windows\system32\ati2dvag.dll
2010-11-26 02:48 . 2007-03-15 01:40 3984864 ----a-w- c:\windows\system32\ati3duag.dll
2010-11-26 02:39 . 2007-03-15 01:14 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-11-26 02:34 . 2007-03-15 01:50 212992 ----a-w- c:\windows\system32\atipdlxx.dll
2010-11-26 02:34 . 2007-03-15 01:50 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-11-26 02:34 . 2007-03-15 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-11-26 02:34 . 2007-03-15 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-11-26 02:34 . 2007-03-15 01:49 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-11-26 02:32 . 2007-03-15 01:48 614400 ----a-w- c:\windows\system32\ati2evxx.exe
2010-11-26 02:32 . 2007-03-15 01:29 2669696 ----a-w- c:\windows\system32\ativvaxx.dll
2010-11-26 02:31 . 2007-03-15 01:47 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-11-26 02:26 . 2007-03-15 01:16 651264 ----a-w- c:\windows\system32\atikvmag.dll
2010-11-26 02:24 . 2010-02-11 03:54 196608 ----a-w- c:\windows\system32\atiadlxx.dll
2010-11-26 02:24 . 2007-03-15 01:14 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-11-26 02:18 . 2007-03-15 01:10 765952 ----a-w- c:\windows\system32\ati2cqag.dll
2010-11-26 02:16 . 2010-02-11 03:59 64512 ----a-w- c:\windows\system32\amdpcom32.dll
2010-11-26 02:16 . 2009-11-24 13:26 64512 ----a-w- c:\windows\system32\atimpc32.dll
2010-11-18 18:15 . 2008-01-26 14:19 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-05 05:02 . 2004-08-17 13:49 668160 ----a-w- c:\windows\system32\wininet.dll
2010-11-05 05:02 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-11-05 05:02 . 2004-08-03 20:59 61952 ----a-w- c:\windows\system32\tdc.ocx
2010-11-05 04:59 . 2004-08-17 13:44 370176 ----a-w- c:\windows\system32\html.iec
2010-11-02 15:17 . 2001-10-25 14:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2010-10-28 13:09 . 2004-08-17 13:48 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:58 . 2004-08-17 13:44 1853312 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EEE6C35D-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll" [2008-10-08 173368]
"{038cb5c7-48ea-4af9-94e0-a1646542e62b}"= "c:\program files\ToggleEN\tbTog1.dll" [2010-10-16 2735200]
"{e6570cd8-9978-4621-b1f9-6a62436f0466}"= "c:\program files\Softonic_VLC_EN\tbSof2.dll" [2010-10-18 3908192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35d-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SweetIM_URLSearchHook.ToolbarURLSearchHook]
[HKEY_CLASSES_ROOT\clsid\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
[HKEY_CLASSES_ROOT\clsid\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
2010-10-16 09:29 2735200 -c--a-w- c:\program files\ToggleEN\tbTog1.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
2010-10-18 10:26 3908192 ----a-w- c:\program files\Softonic_VLC_EN\tbSof2.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2008-10-08 1172792]
"{038CB5C7-48EA-4AF9-94E0-A1646542E62B}"= "c:\program files\ToggleEN\tbTog1.dll" [2010-10-16 2735200]
"{E6570CD8-9978-4621-B1F9-6A62436F0466}"= "c:\program files\Softonic_VLC_EN\tbSof2.dll" [2010-10-18 3908192]
[HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKEY_CLASSES_ROOT\SWEETIE.SWEETIE.3]
[HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}]
[HKEY_CLASSES_ROOT\SWEETIE.SWEETIE]
[HKEY_CLASSES_ROOT\clsid\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
[HKEY_CLASSES_ROOT\clsid\{e6570cd8-9978-4621-b1f9-6a62436f0466}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-04-16 68856]
"uTorrent"="d:\program files\uTorrent\uTorrent.exe" [2011-01-03 395640]
"BitTorrent"="d:\documents and settings\matmik\Plocha\bittorrent.exe" [2007-09-07 43008]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools-1033"="d:\program files\D-Tools\daemon.exe" [2004-08-22 81920]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
"QuickTime Task"="c:\windows\system32\qttask.exe" [2008-06-29 98304]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-11-25 98304]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-05-04 311296]
"PC Auto Shutdown"="d:\program files\PC Auto Shutdown\AutoShutdown.exe" [2010-12-01 1387520]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="c:\windows\system32\logonuiX.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\MCPClient]
2005-01-31 13:13 49152 ----a-w- c:\progra~1\COMMON~1\Stardock\MCPStub.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 21:34 24576 ----a-w- d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\wbsys.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk]
backup=c:\windows\pss\Adobe Gamma Loader.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
backup=c:\windows\pss\ImageMixer 3 SE Camera Monitor for SD.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Adobe Gamma.lnk]
backup=c:\windows\pss\Adobe Gamma.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
backup=c:\windows\pss\BluetoothPCDialer.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\matmik\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
backup=c:\windows\pss\Xfire.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-20 22:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-09-23 03:47 35760 ----a-w- d:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
2009-11-13 05:30 323392 ----a-w- c:\program files\DNA\btdna.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Updater]
2010-05-25 14:29 4963840 ----a-w- d:\program files\Carambis\Driver Updater\dupdater.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2010-10-17 11:51 136176 ----atw- c:\documents and settings\matmik\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
2010-10-22 13:27 940792 ----a-w- c:\program files\Zrychleni Pocitace\PCSpeedUp.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2008-06-29 14:17 98304 ----a-w- c:\windows\system32\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2010-10-05 16:11 19580520 ----a-w- c:\windows\RTHDCPL.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2008-04-16 05:00 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateMyDrivers]
2010-05-28 08:15 4376456 ----a-w- d:\program files\SmartTweak Software\UpdateMyDrivers\UpdateMyDrivers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"d:\\Documents and Settings\\matmik\\Plocha\\bittorrent.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dracula origin demo\\demo.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\football manager 2010 demo\\fm.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis SP Demo\\Bin32\\Crysis.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Team JPN\\SpiderMan Web of Shadows\\image\\pc\\Spider-Man Web of Shadows.exe"=
"d:\\Program Files\\ICQ7.2\\ICQ.exe"=
"d:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator dedicated server\\AvP_CLI.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\LucasArts\\Star Wars The Force Unleashed 2\\SWTFU2.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\DAOriginsLauncher.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"d:\\Program Files\\Steam\\steamapps\\common\\zero gear\\ZeroGear.bat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"d:\\audio svms\\facebook-pic000934519.exe"= c:\\windows\\nvsvc32.exe
R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [28.5.2008 9:13 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [28.5.2008 9:13 5248]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [20.10.2010 14:07 165584]
R1 HWiNFO32;HWiNFO32 Kernel Driver;d:\program files\HWiNFO32\HWiNFO32.SYS [2.5.2010 9:12 19064]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [20.10.2010 14:07 17744]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [14.7.2009 19:08 222968]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service;d:\program files\PC Auto Shutdown\ShutdownService.exe [10.1.2011 6:51 441624]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [25.3.2010 16:27 135664]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2.5.2010 9:27 1691480]
--- Ostatní služby/ovladače v paměti ---
*NewlyCreated* - PCAUTOSHUTDOWN_SERVICE
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Obsah adresáře 'Naplánované úlohy'
2011-01-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-25 15:27]
2011-01-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-25 15:27]
2011-01-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-09-14 20:18]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uSearch Page = hxxp://www.google.com
uLocal Page = hxxp://www.google.com/
uSearch Bar = hxxp://www.google.com/ie
mDefault_Search_URL = hxxp://www.google.com/ie
mStart Page = hxxp://www.google.com
mLocal Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www3.iamwired.net/websearch.php?src=tops&search=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - google.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - d:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: LoudMo Contextual Ad Assistant: {37b1d48c-6e0a-dfe8-8a74-05116b74c806} - d:\program files\Mozilla Firefox\extensions\{37b1d48c-6e0a-dfe8-8a74-05116b74c806}
FF - Ext: Jookz Toolbar: jookztoolbar2@jookz.com - d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com
FF - Ext: ResultUrl: {C8431CD2-C25A-45F3-BEA9-A9103C31409A} - d:\program files\Mozilla Firefox\extensions\{C8431CD2-C25A-45F3-BEA9-A9103C31409A}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: SweetIM Toolbar for Firefox: {EEE6C361-6118-11DC-9C72-001320C79847} - %profile%\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
FF - Ext: Illimitux: illimitux@illimitux.net - %profile%\extensions\illimitux@illimitux.net
FF - Ext: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - %profile%\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}
FF - Ext: Ask Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: SpeedBit Toolbar: {EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - c:\program files\SpeedBit Toolbar\SPFireFox
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-{2bae58c2-79f9-45d1-a286-81f911301c3a} - (no file)
URLSearchHooks-{8567a644-e36c-470c-86cf-9c5b4f37db81} - (no file)
WebBrowser-{2BAE58C2-79F9-45D1-A286-81F911301C3A} - (no file)
WebBrowser-{5B291E6C-9A74-4034-971B-A4B007A0B315} - (no file)
WebBrowser-{8567A644-E36C-470C-86CF-9C5B4F37DB81} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
WebBrowser-{EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - (no file)
AddRemove-Aliens Vs Predator MultiPlayer 1.1 - d:\program files\Steam\steamapps\common\zero gear\Server\Uninstall.exe
AddRemove-Drawing Hand Screen Saver - D:\Uninstall.exe
AddRemove-GameParkClient_is1 - d:\program files\GamePark\unins000.exe
AddRemove-Hamachi - d:\\uninstall.exe
AddRemove-InstallShield_{990166FA-1ACB-4AA7-B592-4D370C7CDD1A} - c:\program files\InstallShield Installation Information\{990166FA-1ACB-4AA7-B592-4D370C7CDD1A}\setup.exe
AddRemove-InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F} - c:\program files\InstallShield Installation Information\{D80A6A73-E58A-4673-AFF5-F12D7110661F}\setup.exe
AddRemove-Worms2 Demo - d:\program files\Uninst.isu
AddRemove-{B69F28DF-CBB1-41B7-008A-210E4D0518FC} - d:\program files\Electronic Arts\Harry Potter a Fénixův řád\EAUninstall.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-01-10 16:26
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
DAEMON Tools-1033 = "d:\program files\D-Tools\daemon.exe" -lang 1033??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
HP Software Update = c:\program files\HP\HP Software Update\HPWuSchd2.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
hpqSRMon = c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
NeroFilterCheck = c:\windows\system32\NeroCheck.exe??CloneCDTray.exe" /s?L /WAITFORSW????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
SunJavaUpdateSched = "c:\program files\Common Files\Java\Java Update\jusched.exe"??FORSW????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:c9,0f,8c,a9,08,b0,de,8d,38,f3,ff,29,76,d6,7f,58,27,8e,71,e0,ac,72,81,
d1,9b,16,1b,79,d8,aa,7a,33,a8,21,ff,8f,89,2b,c6,85,bf,d6,80,ae,26,18,b4,56,\
"??"=hex:92,b0,92,2a,dc,c2,cb,71,6f,15,f8,be,4d,6c,5a,9d
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:5c,72,30,61,d5,0b,f0,c1,66,92,d1,fc,14,44,fd,3b,70,9a,55,b7,04,
45,1f,31,94,fe,2e,95,03,29,b9,0b,64,5d,2f,2f,9c,3a,fd,ca,bc,26,df,88,1c,75,\
"rkeysecu"=hex:7b,17,6d,19,7c,cb,66,2f,76,6d,17,9c,f2,ea,05,dd
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(776)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
c:\progra~1\COMMON~1\Stardock\mcpstub.dll
d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
- - - - - - - > 'explorer.exe'(3572)
c:\progra~1\COMMON~1\Stardock\MCPCore.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\progra~1\COMMON~1\Stardock\SDMCP.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\UAService7.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\windows\system32\wbem\wmiapsrv.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\windows\system32\WgaTray.exe
.
**************************************************************************
.
Celkový čas: 2011-01-10 16:29:28 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-01-10 15:29
Před spuštěním: 2 542 641 152
Po spuštění: 2 454 970 368
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - 609F69EEAD7AB65027F9F62E4EDED909
Re: kontrola logu

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Folder:: c:\program files\SweetIM c:\program files\ICQ6Toolbar Registry:: [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] D:\audio svms\facebook-pic000934519.exe"=- [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{EEE6C35D-6118-11DC-9C72-001320C79847}"=- "{038cb5c7-48ea-4af9-94e0-a1646542e62b}"=- "{e6570cd8-9978-4621-b1f9-6a62436f0466}"=- [-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}] [-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{e6570cd8-9978-4621-b1f9-6a62436f0466}] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{EEE6C35B-6118-11DC-9C72-001320C79847}"=- "{038CB5C7-48EA-4AF9-94E0-A1646542E62B}"=- "{E6570CD8-9978-4621-B1F9-6A62436F0466}"=- [-HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}] [-HKEY_CLASSES_ROOT\SWEETIE.SWEETIE.3] [-HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}] [-HKEY_CLASSES_ROOT\SWEETIE.SWEETIE] [-HKEY_CLASSES_ROOT\clsid\{038cb5c7-48ea-4af9-94e0-a1646542e62b}] [-HKEY_CLASSES_ROOT\clsid\{e6570cd8-9978-4621-b1f9-6a62436f0466}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "swg"=- "uTorrent"=- "BitTorrent"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools-1033"=- "HP Software Update"=- "NeroFilterCheck"=- "SunJavaUpdateSched"=- "QuickTime Task"=- [-HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk] [-HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Adobe Gamma.lnk] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Driver Updater] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateMyDrivers] [HKEY_LOCAL_MACHINE\software\microsoft\security center] "FirewallOverride"=dword:00000000 Driver:: ICQ Service File:: D:\audio svms\facebook-pic000934519.exe C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003Core.job C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003UA.job C:\WINDOWS\tasks\Norton Security Scan for matmik.job C:\WINDOWS\tasks\SLOW-PCfighter-matmik-Startup.job c:\program files\ToggleEN\tbTog1.dll c:\program files\Softonic_VLC_EN\tbSof2.dll DDS:: uSearchURL,(Default) = hxxp://www.google.com/search?q=%s Firefox:: FF - ProfilePath - c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\ FF - prefs.js: browser.search.defaulturl - hxxp://www3.iamwired.net/websearch.php?src=tops&search= FF - prefs.js: browser.search.selectedEngine - ICQ Search FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... id=afex&q= FF - Ext: Jookz Toolbar: jookztoolbar2@jookz.com - d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} FF - Ext: SweetIM Toolbar for Firefox: {EEE6C361-6118-11DC-9C72-001320C79847} - %profile%\extensions\{EEE6C361-6118-11DC-9C72-001320C79847} FF - Ext: Illimitux: illimitux@illimitux.net - %profile%\extensions\illimitux@illimitux.net FF - Ext: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - %profile%\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466} FF - Ext: Ask Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com RegLock:: [HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID] [HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] [HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\License information*] [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
- Ulozte vytvoreny TXT jako CFScript.txt
- Pretahnete vytvoreny CFScript.txt nad Combofix a pustte (viz obrazek nize)
- Po aplikaci skriptu (a pripadnem restartu) na Vas vypadne log, jeho obsah sem vlozte

-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
Chtělo to po mě odeslání vzorků na nějaký server dal jsem ano a server byl prý nedostupny tak jsem dal ok a vypadl mi tento log.Snad je to on:
ps:nevejde se mi sem celý tak ho rozdělím na 2 části...
1. část:
ComboFix 11-01-09.03 - matmik 10.01.2011 16:49:42.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2371 [GMT 1:00]
Spuštěný z: d:\audio svms\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\matmik\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\program files\Softonic_VLC_EN\tbSof2.dll"
"c:\program files\ToggleEN\tbTog1.dll"
"c:\windows\tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003Core.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003UA.job"
"c:\windows\tasks\Norton Security Scan for matmik.job"
"c:\windows\tasks\SLOW-PCfighter-matmik-Startup.job"
"d:\audio svms\facebook-pic000934519.exe"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitAutoCompleteSearch.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitAutoCompleteSearch.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.idl
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\FFExternalAlert.dll
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\FFExternalAlert.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\npmozax.dll
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\nsAxSecurityPolicy.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\nsIMozAxPlugin.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\defaults\default_radio_skin.xml
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\chrome\softonic_vlc_en.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\lib\xpcom.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\manifest.mf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\zigbert.rsa
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\zigbert.sf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.gif
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.ico
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.PNG
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.src
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.xml
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\setup.ini
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\version.txt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\components\SIMAutoCompleteSearch.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome\sweetim-toolbar.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\manifest.mf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\zigbert.rsa
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\zigbert.sf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\chrome\illimitux.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\defaults\preferences\defaults.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\about.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\json.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\options.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\options.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\toolbar.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_16x16.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_32x32.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_browser_ff_chrome.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\asklogo.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\blogs.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\dictionary.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\gripper.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\highlighter_off.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\highlighter_on.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\chevron.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\images.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-de.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-en.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-es.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-fr.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-it.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-nl.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-pt.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-ru.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-BR.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-DE.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-ES.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-EU.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-FR.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-IT.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-NL.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-RU.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-UK.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-US.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\maps.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\news.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\preferences.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_de.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_es.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_fr.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_it.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_nl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pt.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_ru.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_cobrand.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_current_site.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_de.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_es.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_fr.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_it.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_nl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_pl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_pt.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ru.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\shopping.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\stocks.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\toolbar.css
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\toolbar.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\weather.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\web.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\zoomall.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Thu-18-Mar-2010-07-10-32-GMT\ff-config.zip
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1291708603931.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1291744328335.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1292247401535.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1294072903332.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1294074505144.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\searchplugins\askcom.xml
c:\program files\ICQ6Toolbar
c:\program files\ICQ6Toolbar\config.xml
c:\program files\ICQ6Toolbar\Icons.bmp
c:\program files\ICQ6Toolbar\ICQ Service.exe
c:\program files\ICQ6Toolbar\icq6Toolbar.ico
c:\program files\ICQ6Toolbar\ICQToolBar.dll
c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
c:\program files\ICQ6Toolbar\logo_small.gif
c:\program files\ICQ6Toolbar\ServiceStarter.exe
c:\program files\ICQ6Toolbar\short.wav
c:\program files\ICQ6Toolbar\Version.txt
c:\program files\ICQ6Toolbar\voucher.bmp
c:\program files\ICQ6Toolbar\voucher2.bmp
c:\program files\Softonic_VLC_EN\tbSof2.dll
c:\program files\SweetIM
c:\program files\SweetIM\Messenger\default.xml
c:\program files\SweetIM\Messenger\mgAdaptersProxy.dll
c:\program files\SweetIM\Messenger\mgAIMAuto.dll
c:\program files\SweetIM\Messenger\mgAIMMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgArchive.dll
c:\program files\SweetIM\Messenger\mgcommon.dll
c:\program files\SweetIM\Messenger\mgcommunication.dll
c:\program files\SweetIM\Messenger\mgconfig.dll
c:\program files\SweetIM\Messenger\mgFlashPlayer.dll
c:\program files\SweetIM\Messenger\mghooking.dll
c:\program files\SweetIM\Messenger\mgICQAuto.dll
c:\program files\SweetIM\Messenger\mgICQMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgIEPlayer.dll
c:\program files\SweetIM\Messenger\mglogger.dll
c:\program files\SweetIM\Messenger\mgMediaPlayer.dll
c:\program files\SweetIM\Messenger\mgMsnAuto.dll
c:\program files\SweetIM\Messenger\mgMsnMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgsimcommon.dll
c:\program files\SweetIM\Messenger\mgSweetIM.dll
c:\program files\SweetIM\Messenger\mgUpdateSupport.dll
c:\program files\SweetIM\Messenger\mgxml_wrapper.dll
c:\program files\SweetIM\Messenger\mgYahooAuto.dll
c:\program files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
c:\program files\SweetIM\Messenger\msvcp71.dll
c:\program files\SweetIM\Messenger\msvcr71.dll
c:\program files\SweetIM\Messenger\resources\images\AudibleButton.png
c:\program files\SweetIM\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\SweetIM\Messenger\resources\images\EmoticonButton.png
c:\program files\SweetIM\Messenger\resources\images\NudgeButton.png
c:\program files\SweetIM\Messenger\resources\images\SoundFxButton.png
c:\program files\SweetIM\Messenger\resources\images\WinksButton.png
c:\program files\SweetIM\Messenger\SweetIM.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\conf\logger.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\default.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mglogger.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\msvcp71.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\msvcr71.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\affid.dat
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\basis.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Bookmarks_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Email_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Games_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Greetingcards_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Logo.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Mobile_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Music_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\News_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Shoping_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\sweetimicons.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\version.txt
c:\program files\ToggleEN\tbTog1.dll
c:\windows\tasks\GoogleUpdateTaskMachineCore.job
c:\windows\tasks\GoogleUpdateTaskMachineUA.job
d:\audio svms\facebook-pic000934519.exe
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components\ITB_History.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences\prefs.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences\user.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome.manifest
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\icqtoolbar.jar
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\install.rdf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\manifest.mf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\zigbert.rsa
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\zigbert.sf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.gif
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.src
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.xml
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\text-base\chrome.manifest.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\text-base\install.rdf.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome.manifest
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\constants.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\events.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\tbcore.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\toolbar.xul.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weather.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weatherLoc.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weatherLoc.xul.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\constants.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\events.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\tbcore.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\toolbar.xul
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weather.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weatherLoc.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weatherLoc.xul
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_partner.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_small.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_small_org.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\btn_68x30_hover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\btn_68x30_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_rollover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\combined.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\feeditem.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\full_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\gripper.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\images.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\main.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\news_refresh.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\partner_item_icon.ico.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\search_watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\web.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_partner.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_small.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_small_org.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\btn_68x30_hover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\btn_68x30_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_rollover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\combined.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\feeditem.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\full_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\gripper.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\images.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\main.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\news_refresh.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\partner_item_icon.ico.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\search_watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\toolbar.css.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\web.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_partner.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_small.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_small_org.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\btn_68x30_hover.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\btn_68x30_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_bg_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_rollover.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow_bg_hot.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\edge.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\games.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\highlight.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\news.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\privacy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\searchbar_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\separator_line.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\shopping.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\stocks.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\submit.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow_bg_hot.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\edge.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\games.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\highlight.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\news.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\privacy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\searchbar_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\separator_line.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\shopping.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\stocks.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\submit.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow_bg_hot.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow_bg_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\edge.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\games.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\highlight.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\logo.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\logo_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\news.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\privacy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\searchbar_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\separator_line.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\shopping.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\stocks.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\submit.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\combined.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\feeditem.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\full_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\gripper.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\images.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\logo.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\logo_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\main.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\news_refresh.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\partner_item_icon.ico
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\search_watermark.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\toolbar.css
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\watermark.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\flurries.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\hazy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_tstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mist.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mostly_cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mostly_sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\sleet.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\thunderstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\weatherbug.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\windy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\flurries.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\hazy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_tstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mist.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mostly_cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mostly_sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\sleet.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\thunderstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\weatherbug.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\windy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\cloudy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\flurries.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\hazy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_rain.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_snow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_storm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_tstorm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mist.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mostly_cloudy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mostly_sunny.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\rain.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\sleet.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\snow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\storm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\sunny.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\thunderstorm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\weatherbug.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\windy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\web.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\install.rdf
ps:nevejde se mi sem celý tak ho rozdělím na 2 části...
1. část:
ComboFix 11-01-09.03 - matmik 10.01.2011 16:49:42.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2371 [GMT 1:00]
Spuštěný z: d:\audio svms\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\matmik\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\program files\Softonic_VLC_EN\tbSof2.dll"
"c:\program files\ToggleEN\tbTog1.dll"
"c:\windows\tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003Core.job"
"c:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-73586283-115176313-725345543-1003UA.job"
"c:\windows\tasks\Norton Security Scan for matmik.job"
"c:\windows\tasks\SLOW-PCfighter-matmik-Startup.job"
"d:\audio svms\facebook-pic000934519.exe"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitAutoCompleteSearch.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitAutoCompleteSearch.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.idl
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\ConduitToolbar.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\FFExternalAlert.dll
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\FFExternalAlert.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\npmozax.dll
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\nsAxSecurityPolicy.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\components\nsIMozAxPlugin.xpt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\defaults\default_radio_skin.xml
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\chrome\softonic_vlc_en.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\lib\xpcom.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\manifest.mf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\zigbert.rsa
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\META-INF\zigbert.sf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.gif
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.ico
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.PNG
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.src
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\searchplugin\conduit.xml
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\setup.ini
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\version.txt
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\components\SIMAutoCompleteSearch.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\chrome\sweetim-toolbar.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\manifest.mf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\zigbert.rsa
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}\META-INF\zigbert.sf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\chrome\illimitux.jar
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\illimitux@illimitux.net\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\defaults\preferences\defaults.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome.manifest
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\about.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\json.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\options.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\options.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\content\toolbar.js
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_16x16.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_32x32.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\ask_browser_ff_chrome.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\asklogo.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\blogs.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\dictionary.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\gripper.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\highlighter_off.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\highlighter_on.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\chevron.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\images.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-de.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-en.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-es.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-fr.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-it.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-nl.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-pt.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\labels-ru.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-BR.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-DE.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-ES.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-EU.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-FR.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-IT.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-NL.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-RU.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-UK.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\links-US.properties
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\maps.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\news.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\preferences.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_de.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_es.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_fr.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_it.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_nl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pt.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ask_ru.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_cobrand.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_current_site.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_de.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_es.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_fr.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_it.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_nl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_pl.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_pt.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\search_ru.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\shopping.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\stocks.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\toolbar.css
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\toolbar.xul
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\weather.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\web.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\skin\zoomall.png
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Thu-18-Mar-2010-07-10-32-GMT\ff-config.zip
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\install.rdf
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1291708603931.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1291744328335.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1292247401535.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1294072903332.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\logs\asktb-log-1294074505144.html
c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\extensions\toolbar@ask.com\searchplugins\askcom.xml
c:\program files\ICQ6Toolbar
c:\program files\ICQ6Toolbar\config.xml
c:\program files\ICQ6Toolbar\Icons.bmp
c:\program files\ICQ6Toolbar\ICQ Service.exe
c:\program files\ICQ6Toolbar\icq6Toolbar.ico
c:\program files\ICQ6Toolbar\ICQToolBar.dll
c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
c:\program files\ICQ6Toolbar\logo_small.gif
c:\program files\ICQ6Toolbar\ServiceStarter.exe
c:\program files\ICQ6Toolbar\short.wav
c:\program files\ICQ6Toolbar\Version.txt
c:\program files\ICQ6Toolbar\voucher.bmp
c:\program files\ICQ6Toolbar\voucher2.bmp
c:\program files\Softonic_VLC_EN\tbSof2.dll
c:\program files\SweetIM
c:\program files\SweetIM\Messenger\default.xml
c:\program files\SweetIM\Messenger\mgAdaptersProxy.dll
c:\program files\SweetIM\Messenger\mgAIMAuto.dll
c:\program files\SweetIM\Messenger\mgAIMMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgArchive.dll
c:\program files\SweetIM\Messenger\mgcommon.dll
c:\program files\SweetIM\Messenger\mgcommunication.dll
c:\program files\SweetIM\Messenger\mgconfig.dll
c:\program files\SweetIM\Messenger\mgFlashPlayer.dll
c:\program files\SweetIM\Messenger\mghooking.dll
c:\program files\SweetIM\Messenger\mgICQAuto.dll
c:\program files\SweetIM\Messenger\mgICQMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgIEPlayer.dll
c:\program files\SweetIM\Messenger\mglogger.dll
c:\program files\SweetIM\Messenger\mgMediaPlayer.dll
c:\program files\SweetIM\Messenger\mgMsnAuto.dll
c:\program files\SweetIM\Messenger\mgMsnMessengerAdapter.dll
c:\program files\SweetIM\Messenger\mgsimcommon.dll
c:\program files\SweetIM\Messenger\mgSweetIM.dll
c:\program files\SweetIM\Messenger\mgUpdateSupport.dll
c:\program files\SweetIM\Messenger\mgxml_wrapper.dll
c:\program files\SweetIM\Messenger\mgYahooAuto.dll
c:\program files\SweetIM\Messenger\mgYahooMessengerAdapter.dll
c:\program files\SweetIM\Messenger\msvcp71.dll
c:\program files\SweetIM\Messenger\msvcr71.dll
c:\program files\SweetIM\Messenger\resources\images\AudibleButton.png
c:\program files\SweetIM\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\SweetIM\Messenger\resources\images\EmoticonButton.png
c:\program files\SweetIM\Messenger\resources\images\NudgeButton.png
c:\program files\SweetIM\Messenger\resources\images\SoundFxButton.png
c:\program files\SweetIM\Messenger\resources\images\WinksButton.png
c:\program files\SweetIM\Messenger\SweetIM.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe
c:\program files\SweetIM\Toolbars\Internet Explorer\conf\logger.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\default.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\mgcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgconfig.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mglogger.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\msvcp71.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\msvcr71.dll
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\affid.dat
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\basis.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Bookmarks_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Email_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Games_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Greetingcards_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Logo.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Mobile_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Music_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\News_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\Shoping_23x18.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\sweetimicons.bmp
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml
c:\program files\SweetIM\Toolbars\Internet Explorer\resources\version.txt
c:\program files\ToggleEN\tbTog1.dll
c:\windows\tasks\GoogleUpdateTaskMachineCore.job
c:\windows\tasks\GoogleUpdateTaskMachineUA.job
d:\audio svms\facebook-pic000934519.exe
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components\ITB_History.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences\prefs.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences\user.js
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome.manifest
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\icqtoolbar.jar
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\install.rdf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\manifest.mf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\zigbert.rsa
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF\zigbert.sf
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.gif
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.src
d:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine\icqplugin.xml
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\text-base\chrome.manifest.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\.svn\text-base\install.rdf.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome.manifest
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\constants.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\events.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\tbcore.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\toolbar.xul.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weather.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weatherLoc.js.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\.svn\text-base\weatherLoc.xul.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\constants.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\events.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\tbcore.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\toolbar.xul
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weather.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weatherLoc.js
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\content\weatherLoc.xul
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_partner.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_small.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\arrow_small_org.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\btn_68x30_hover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\btn_68x30_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\button_rollover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\combined.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\feeditem.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\full_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\gripper.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\images.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\main.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\news_refresh.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\partner_item_icon.ico.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\search_watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\prop-base\web.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_partner.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_small.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\arrow_small_org.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\btn_68x30_hover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\btn_68x30_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\button_rollover.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\combined.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\feeditem.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\full_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\gripper.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\images.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\main.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\news_refresh.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\partner_item_icon.ico.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\search_watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\toolbar.css.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\watermark.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\.svn\text-base\web.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_partner.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_small.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\arrow_small_org.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\btn_68x30_hover.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\btn_68x30_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_bg_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\button_rollover.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow_bg_hot.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\arrow_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\edge.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\games.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\highlight.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\news.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\privacy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\searchbar_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\separator_line.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\shopping.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\stocks.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\prop-base\submit.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow_bg_hot.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\arrow_bg_normal.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\edge.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\games.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\highlight.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\logo.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\logo_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\news.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\privacy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\searchbar_bg.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\separator_line.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\shopping.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\stocks.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\.svn\text-base\submit.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow_bg_hot.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\arrow_bg_normal.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\edge.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\games.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\highlight.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\logo.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\logo_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\news.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\privacy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\searchbar_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\separator_line.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\shopping.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\stocks.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\buttons\submit.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\combined.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\feeditem.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\full_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\gripper.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\images.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\logo.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\logo_bg.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\main.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\news_refresh.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\partner_item_icon.ico
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\search_watermark.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\toolbar.css
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\watermark.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\all-wcprops
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\entries
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\flurries.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\hazy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\chance_of_tstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mist.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mostly_cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\mostly_sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\sleet.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\thunderstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\weatherbug.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\prop-base\windy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\flurries.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\hazy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\chance_of_tstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mist.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mostly_cloudy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\mostly_sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\rain.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\sleet.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\snow.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\storm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\sunny.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\thunderstorm.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\weatherbug.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\.svn\text-base\windy.png.svn-base
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\cloudy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\flurries.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\hazy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_rain.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_snow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_storm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\chance_of_tstorm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mist.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mostly_cloudy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\mostly_sunny.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\rain.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\sleet.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\snow.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\storm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\sunny.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\thunderstorm.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\weatherbug.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\weather\windy.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\chrome\skin\web.png
d:\program files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com\install.rdf
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
2. část:
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ICQ_SERVICE
-------\Service_ICQ Service
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.
2011-01-10 05:51 . 2011-01-10 05:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 15:21 . 2011-01-09 15:21 -------- d-----w- c:\windows\Sun
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\program files\OpenAL
2011-01-03 17:40 . 2011-01-03 17:40 -------- d-----w- c:\windows\system32\Lang
2010-12-24 18:43 . 2010-12-24 18:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2010-12-24 18:42 . 2010-12-24 18:42 -------- d-----w- c:\program files\ATI Stream
2010-12-24 18:39 . 2010-11-26 02:30 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-12-24 18:19 . 2010-12-24 18:19 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\LucasArts
2010-12-20 11:50 . 2010-12-21 12:19 -------- d-----w- c:\documents and settings\Mich.Mik\Data aplikací\HPAppData
2010-12-16 05:34 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2010-12-16 05:34 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2010-12-15 14:28 . 2011-01-10 15:21 -------- d-----w- c:\program files\ICQ6.5
2010-12-12 16:48 . 2010-12-12 16:48 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\MF Software
2010-12-12 09:11 . 2010-12-12 09:11 -------- d-----w- c:\documents and settings\NetworkService\Data aplikací\Xfire
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-07 17:20 . 2008-08-18 09:21 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-01-07 17:20 . 2008-08-18 09:21 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2010-12-12 15:10 . 2009-03-15 16:08 138376 -c--a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-12-12 15:10 . 2009-03-15 16:08 202448 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-12-07 11:14 . 2010-12-07 11:14 51200 ----a-w- c:\windows\system32\OpenCL.dll
2010-11-29 16:42 . 2010-12-05 09:59 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-29 16:42 . 2010-12-05 09:59 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-29 10:06 . 2008-05-02 08:19 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-26 04:17 . 2007-03-15 01:57 5555712 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-11-26 03:57 . 2007-03-15 01:19 16748544 ----a-w- c:\windows\system32\atioglxx.dll
2010-11-26 03:23 . 2010-02-11 04:37 471040 ----a-w- c:\windows\system32\atiok3x2.dll
2010-11-26 03:12 . 2008-02-06 17:06 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-11-26 03:07 . 2010-02-11 04:23 57344 ----a-w- c:\windows\system32\aticalrt.dll
2010-11-26 03:07 . 2010-02-11 04:22 53248 ----a-w- c:\windows\system32\aticalcl.dll
2010-11-26 03:06 . 2010-02-11 04:21 4489216 ----a-w- c:\windows\system32\aticaldd.dll
2010-11-26 02:55 . 2008-02-06 17:06 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-11-26 02:54 . 2007-03-15 01:57 302080 ----a-w- c:\windows\system32\ati2dvag.dll
2010-11-26 02:48 . 2007-03-15 01:40 3984864 ----a-w- c:\windows\system32\ati3duag.dll
2010-11-26 02:39 . 2007-03-15 01:14 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-11-26 02:34 . 2007-03-15 01:50 212992 ----a-w- c:\windows\system32\atipdlxx.dll
2010-11-26 02:34 . 2007-03-15 01:50 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-11-26 02:34 . 2007-03-15 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-11-26 02:34 . 2007-03-15 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-11-26 02:34 . 2007-03-15 01:49 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-11-26 02:32 . 2007-03-15 01:48 614400 ----a-w- c:\windows\system32\ati2evxx.exe
2010-11-26 02:32 . 2007-03-15 01:29 2669696 ----a-w- c:\windows\system32\ativvaxx.dll
2010-11-26 02:31 . 2007-03-15 01:47 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-11-26 02:26 . 2007-03-15 01:16 651264 ----a-w- c:\windows\system32\atikvmag.dll
2010-11-26 02:24 . 2010-02-11 03:54 196608 ----a-w- c:\windows\system32\atiadlxx.dll
2010-11-26 02:24 . 2007-03-15 01:14 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-11-26 02:18 . 2007-03-15 01:10 765952 ----a-w- c:\windows\system32\ati2cqag.dll
2010-11-26 02:16 . 2010-02-11 03:59 64512 ----a-w- c:\windows\system32\amdpcom32.dll
2010-11-26 02:16 . 2009-11-24 13:26 64512 ----a-w- c:\windows\system32\atimpc32.dll
2010-11-18 18:15 . 2008-01-26 14:19 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-05 05:02 . 2004-08-17 13:49 668160 ----a-w- c:\windows\system32\wininet.dll
2010-11-05 05:02 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-11-05 05:02 . 2004-08-03 20:59 61952 ----a-w- c:\windows\system32\tdc.ocx
2010-11-05 04:59 . 2004-08-17 13:44 370176 ----a-w- c:\windows\system32\html.iec
2010-11-02 15:17 . 2001-10-25 14:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2010-10-28 13:09 . 2004-08-17 13:48 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:58 . 2004-08-17 13:44 1853312 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-11-25 98304]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-05-04 311296]
"PC Auto Shutdown"="d:\program files\PC Auto Shutdown\AutoShutdown.exe" [2010-12-01 1387520]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="c:\windows\system32\logonuiX.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\MCPClient]
2005-01-31 13:13 49152 ----a-w- c:\progra~1\COMMON~1\Stardock\MCPStub.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 21:34 24576 ----a-w- d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\wbsys.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
backup=c:\windows\pss\ImageMixer 3 SE Camera Monitor for SD.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
backup=c:\windows\pss\BluetoothPCDialer.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\matmik\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
backup=c:\windows\pss\Xfire.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2010-10-05 16:11 19580520 ----a-w- c:\windows\RTHDCPL.EXE
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"d:\\Documents and Settings\\matmik\\Plocha\\bittorrent.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dracula origin demo\\demo.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\football manager 2010 demo\\fm.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis SP Demo\\Bin32\\Crysis.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Team JPN\\SpiderMan Web of Shadows\\image\\pc\\Spider-Man Web of Shadows.exe"=
"d:\\Program Files\\ICQ7.2\\ICQ.exe"=
"d:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator dedicated server\\AvP_CLI.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\LucasArts\\Star Wars The Force Unleashed 2\\SWTFU2.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\DAOriginsLauncher.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"d:\\Program Files\\Steam\\steamapps\\common\\zero gear\\ZeroGear.bat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [28.5.2008 9:13 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [28.5.2008 9:13 5248]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [20.10.2010 14:07 165584]
R1 HWiNFO32;HWiNFO32 Kernel Driver;d:\program files\HWiNFO32\HWiNFO32.SYS [2.5.2010 9:12 19064]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [20.10.2010 14:07 17744]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service;d:\program files\PC Auto Shutdown\ShutdownService.exe [10.1.2011 6:51 441624]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [25.3.2010 16:27 135664]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2.5.2010 9:27 1691480]
S3 CFcatchme;CFcatchme;\??\c:\docume~1\matmik\LOCALS~1\Temp\CFcatchme.sys --> c:\docume~1\matmik\LOCALS~1\Temp\CFcatchme.sys [?]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Obsah adresáře 'Naplánované úlohy'
2011-01-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-09-14 20:18]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uLocal Page = hxxp://www.google.com/
mStart Page = hxxp://www.google.com
mLocal Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\
FF - prefs.js: browser.startup.homepage - google.cz
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - d:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: LoudMo Contextual Ad Assistant: {37b1d48c-6e0a-dfe8-8a74-05116b74c806} - d:\program files\Mozilla Firefox\extensions\{37b1d48c-6e0a-dfe8-8a74-05116b74c806}
FF - Ext: ResultUrl: {C8431CD2-C25A-45F3-BEA9-A9103C31409A} - d:\program files\Mozilla Firefox\extensions\{C8431CD2-C25A-45F3-BEA9-A9103C31409A}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: SpeedBit Toolbar: {EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - c:\program files\SpeedBit Toolbar\SPFireFox
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-ICQToolbar - c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-01-10 16:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
hpqSRMon = c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:c9,0f,8c,a9,08,b0,de,8d,38,f3,ff,29,76,d6,7f,58,27,8e,71,e0,ac,72,81,
d1,9b,16,1b,79,d8,aa,7a,33,a8,21,ff,8f,89,2b,c6,85,bf,d6,80,ae,26,18,b4,56,\
"??"=hex:92,b0,92,2a,dc,c2,cb,71,6f,15,f8,be,4d,6c,5a,9d
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:5c,72,30,61,d5,0b,f0,c1,66,92,d1,fc,14,44,fd,3b,70,9a,55,b7,04,
45,1f,31,94,fe,2e,95,03,29,b9,0b,64,5d,2f,2f,9c,3a,fd,ca,bc,26,df,88,1c,75,\
"rkeysecu"=hex:7b,17,6d,19,7c,cb,66,2f,76,6d,17,9c,f2,ea,05,dd
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(776)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
c:\progra~1\COMMON~1\Stardock\mcpstub.dll
d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
- - - - - - - > 'explorer.exe'(2440)
c:\progra~1\COMMON~1\Stardock\MCPCore.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\Ati2evxx.exe
c:\progra~1\COMMON~1\Stardock\SDMCP.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\UAService7.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\WgaTray.exe
.
**************************************************************************
.
Celkový čas: 2011-01-10 16:59:12 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-01-10 15:59
ComboFix2.txt 2011-01-10 15:29
Před spuštěním: 2 318 921 728
Po spuštění: 2 307 686 400
- - End Of File - - 16E9B83622E5543A11C44D2FB767CCB2
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ICQ_SERVICE
-------\Service_ICQ Service
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.
2011-01-10 05:51 . 2011-01-10 05:51 -------- d-----w- c:\documents and settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 15:21 . 2011-01-09 15:21 -------- d-----w- c:\windows\Sun
2011-01-07 17:20 . 2011-01-07 17:20 -------- d-----w- c:\program files\OpenAL
2011-01-03 17:40 . 2011-01-03 17:40 -------- d-----w- c:\windows\system32\Lang
2010-12-24 18:43 . 2010-12-24 18:43 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ATI
2010-12-24 18:42 . 2010-12-24 18:42 -------- d-----w- c:\program files\ATI Stream
2010-12-24 18:39 . 2010-11-26 02:30 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-12-24 18:19 . 2010-12-24 18:19 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\LucasArts
2010-12-20 11:50 . 2010-12-21 12:19 -------- d-----w- c:\documents and settings\Mich.Mik\Data aplikací\HPAppData
2010-12-16 05:34 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2010-12-16 05:34 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2010-12-15 14:28 . 2011-01-10 15:21 -------- d-----w- c:\program files\ICQ6.5
2010-12-12 16:48 . 2010-12-12 16:48 -------- d-----w- c:\documents and settings\matmik\Local Settings\Data aplikací\MF Software
2010-12-12 09:11 . 2010-12-12 09:11 -------- d-----w- c:\documents and settings\NetworkService\Data aplikací\Xfire
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-07 17:20 . 2008-08-18 09:21 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-01-07 17:20 . 2008-08-18 09:21 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2010-12-12 15:10 . 2009-03-15 16:08 138376 -c--a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-12-12 15:10 . 2009-03-15 16:08 202448 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-12-07 11:14 . 2010-12-07 11:14 51200 ----a-w- c:\windows\system32\OpenCL.dll
2010-11-29 16:42 . 2010-12-05 09:59 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-29 16:42 . 2010-12-05 09:59 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-11-29 10:06 . 2008-05-02 08:19 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-11-26 04:17 . 2007-03-15 01:57 5555712 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-11-26 03:57 . 2007-03-15 01:19 16748544 ----a-w- c:\windows\system32\atioglxx.dll
2010-11-26 03:23 . 2010-02-11 04:37 471040 ----a-w- c:\windows\system32\atiok3x2.dll
2010-11-26 03:12 . 2008-02-06 17:06 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-11-26 03:07 . 2010-02-11 04:23 57344 ----a-w- c:\windows\system32\aticalrt.dll
2010-11-26 03:07 . 2010-02-11 04:22 53248 ----a-w- c:\windows\system32\aticalcl.dll
2010-11-26 03:06 . 2010-02-11 04:21 4489216 ----a-w- c:\windows\system32\aticaldd.dll
2010-11-26 02:55 . 2008-02-06 17:06 462848 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-11-26 02:54 . 2007-03-15 01:57 302080 ----a-w- c:\windows\system32\ati2dvag.dll
2010-11-26 02:48 . 2007-03-15 01:40 3984864 ----a-w- c:\windows\system32\ati3duag.dll
2010-11-26 02:39 . 2007-03-15 01:14 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-11-26 02:34 . 2007-03-15 01:50 212992 ----a-w- c:\windows\system32\atipdlxx.dll
2010-11-26 02:34 . 2007-03-15 01:50 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-11-26 02:34 . 2007-03-15 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-11-26 02:34 . 2007-03-15 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-11-26 02:34 . 2007-03-15 01:49 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-11-26 02:32 . 2007-03-15 01:48 614400 ----a-w- c:\windows\system32\ati2evxx.exe
2010-11-26 02:32 . 2007-03-15 01:29 2669696 ----a-w- c:\windows\system32\ativvaxx.dll
2010-11-26 02:31 . 2007-03-15 01:47 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-11-26 02:26 . 2007-03-15 01:16 651264 ----a-w- c:\windows\system32\atikvmag.dll
2010-11-26 02:24 . 2010-02-11 03:54 196608 ----a-w- c:\windows\system32\atiadlxx.dll
2010-11-26 02:24 . 2007-03-15 01:14 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-11-26 02:18 . 2007-03-15 01:10 765952 ----a-w- c:\windows\system32\ati2cqag.dll
2010-11-26 02:16 . 2010-02-11 03:59 64512 ----a-w- c:\windows\system32\amdpcom32.dll
2010-11-26 02:16 . 2009-11-24 13:26 64512 ----a-w- c:\windows\system32\atimpc32.dll
2010-11-18 18:15 . 2008-01-26 14:19 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-05 05:02 . 2004-08-17 13:49 668160 ----a-w- c:\windows\system32\wininet.dll
2010-11-05 05:02 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-11-05 05:02 . 2004-08-03 20:59 61952 ----a-w- c:\windows\system32\tdc.ocx
2010-11-05 04:59 . 2004-08-17 13:44 370176 ----a-w- c:\windows\system32\html.iec
2010-11-02 15:17 . 2001-10-25 14:00 40960 ----a-w- c:\windows\system32\drivers\ndproxy.sys
2010-10-28 13:09 . 2004-08-17 13:48 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:58 . 2004-08-17 13:44 1853312 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-11-25 98304]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-05-04 311296]
"PC Auto Shutdown"="d:\program files\PC Auto Shutdown\AutoShutdown.exe" [2010-12-01 1387520]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="c:\windows\system32\logonuiX.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\MCPClient]
2005-01-31 13:13 49152 ----a-w- c:\progra~1\COMMON~1\Stardock\MCPStub.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 21:34 24576 ----a-w- d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\wbsys.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
backup=c:\windows\pss\ImageMixer 3 SE Camera Monitor for SD.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
backup=c:\windows\pss\BluetoothPCDialer.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
path=c:\documents and settings\matmik\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.3.lnk
backup=c:\windows\pss\OpenOffice.org 2.3.lnkStartup
[HKLM\~\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
backup=c:\windows\pss\Xfire.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2010-10-05 16:11 19580520 ----a-w- c:\windows\RTHDCPL.EXE
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"d:\\Documents and Settings\\matmik\\Plocha\\bittorrent.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"d:\\Program Files\\Steam\\Steam.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dracula origin demo\\demo.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\football manager 2010 demo\\fm.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis SP Demo\\Bin32\\Crysis.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Team JPN\\SpiderMan Web of Shadows\\image\\pc\\Spider-Man Web of Shadows.exe"=
"d:\\Program Files\\ICQ7.2\\ICQ.exe"=
"d:\\Program Files\\ICQ7.2\\aolload.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator dedicated server\\AvP_CLI.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\LucasArts\\Star Wars The Force Unleashed 2\\SWTFU2.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\DAOriginsLauncher.exe"=
"d:\\Program Files\\Steam\\steamapps\\common\\dragon age orgins character creator\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"d:\\Program Files\\Steam\\steamapps\\common\\zero gear\\ZeroGear.bat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [28.5.2008 9:13 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [28.5.2008 9:13 5248]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [20.10.2010 14:07 165584]
R1 HWiNFO32;HWiNFO32 Kernel Driver;d:\program files\HWiNFO32\HWiNFO32.SYS [2.5.2010 9:12 19064]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [20.10.2010 14:07 17744]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service;d:\program files\PC Auto Shutdown\ShutdownService.exe [10.1.2011 6:51 441624]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [25.3.2010 16:27 135664]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2.5.2010 9:27 1691480]
S3 CFcatchme;CFcatchme;\??\c:\docume~1\matmik\LOCALS~1\Temp\CFcatchme.sys --> c:\docume~1\matmik\LOCALS~1\Temp\CFcatchme.sys [?]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
getPlusHelper REG_MULTI_SZ getPlusHelper
.
Obsah adresáře 'Naplánované úlohy'
2011-01-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-09-14 20:18]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
uLocal Page = hxxp://www.google.com/
mStart Page = hxxp://www.google.com
mLocal Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\matmik\Data aplikací\Mozilla\Firefox\Profiles\iciim6xk.default\
FF - prefs.js: browser.startup.homepage - google.cz
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - d:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: LoudMo Contextual Ad Assistant: {37b1d48c-6e0a-dfe8-8a74-05116b74c806} - d:\program files\Mozilla Firefox\extensions\{37b1d48c-6e0a-dfe8-8a74-05116b74c806}
FF - Ext: ResultUrl: {C8431CD2-C25A-45F3-BEA9-A9103C31409A} - d:\program files\Mozilla Firefox\extensions\{C8431CD2-C25A-45F3-BEA9-A9103C31409A}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Java Quick Starter: jqs@sun.com - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: SpeedBit Toolbar: {EBFCD017-BCAD-42C3-9ED5-89DBDFC59171} - c:\program files\SpeedBit Toolbar\SPFireFox
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
AddRemove-ICQToolbar - c:\program files\ICQ6Toolbar\ICQUnToolbar.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-01-10 16:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
hpqSRMon = c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:c9,0f,8c,a9,08,b0,de,8d,38,f3,ff,29,76,d6,7f,58,27,8e,71,e0,ac,72,81,
d1,9b,16,1b,79,d8,aa,7a,33,a8,21,ff,8f,89,2b,c6,85,bf,d6,80,ae,26,18,b4,56,\
"??"=hex:92,b0,92,2a,dc,c2,cb,71,6f,15,f8,be,4d,6c,5a,9d
[HKEY_USERS\S-1-5-21-73586283-115176313-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:5c,72,30,61,d5,0b,f0,c1,66,92,d1,fc,14,44,fd,3b,70,9a,55,b7,04,
45,1f,31,94,fe,2e,95,03,29,b9,0b,64,5d,2f,2f,9c,3a,fd,ca,bc,26,df,88,1c,75,\
"rkeysecu"=hex:7b,17,6d,19,7c,cb,66,2f,76,6d,17,9c,f2,ea,05,dd
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(776)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
c:\progra~1\COMMON~1\Stardock\mcpstub.dll
d:\program files\Stardock\Object Desktop\ThemeManager\fastload.dll
- - - - - - - > 'explorer.exe'(2440)
c:\progra~1\COMMON~1\Stardock\MCPCore.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\Ati2evxx.exe
c:\progra~1\COMMON~1\Stardock\SDMCP.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
d:\program files\CDBurnerXP\NMSAccessU.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\UAService7.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\WgaTray.exe
.
**************************************************************************
.
Celkový čas: 2011-01-10 16:59:12 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-01-10 15:59
ComboFix2.txt 2011-01-10 15:29
Před spuštěním: 2 318 921 728
Po spuštění: 2 307 686 400
- - End Of File - - 16E9B83622E5543A11C44D2FB767CCB2
Re: kontrola logu
Log jiz vypada cisty, jak se chova PC - stale si chce samo povidat po FB
To odeslani vzorku, nevadi ze sesrevr byl nedostupny, slouzi to jen k dalsimu vyvoji ComboFixu - vzorky by se poslali k sUBSovi - autorovi CF - na server - ma smulu ze mu nefunguje 


-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
Zatim sem nic nepostřehl... 
Mockrát děkuji.

Mockrát děkuji.
Re: kontrola logu
Tak jeste uklidime
Odinstalujte Combofix
T-Cleaner http://sweb.cz/Marinus/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner (viz muj podpis)
Panel čistič
Dejte novy log z RSIT


- Start - Spustit (nebo pouzijte klavesobou zkratku Win+R)
- Napiste ComboFix /Uninstall
- Stisknete Enter
- Tohle smaze Combofix a jeho slozky

- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy

-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
Mám pocit že vir přetrvává měl jsem na disku D mista něco kolem 42 gb a ted mam 47gb.Nemůže se stát že je to tím virem?že přetrvává i po vyčištění a furt maže?pro jistotu vkládám ještě jeden log z rsit děkuji
1. část:
Logfile of random's system information tool 1.08 (written by random/random)
Run by matmik at 2011-01-11 17:06:12
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (19%) free of 20 GB
Total RAM: 3070 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:06:16, on 11.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\CDBurnerXP\NMSAccessU.exe
D:\Program Files\PC Auto Shutdown\ShutdownService.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\WgaTray.exe
D:\Program Files\Steam\Steam.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Program Files\ICQ7.2\ICQ.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\audio svms\RSIT.exe
C:\Program Files\trend micro\matmik.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [PC Auto Shutdown] "D:\Program Files\PC Auto Shutdown\AutoShutdown.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: toolbarchrome - {718733BC-AD64-4E5F-AC18-A85FBD75D54D} - (no file)
O20 - AppInit_DLLs: C:\WINDOWS\system32\wbsys.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccessU - Unknown owner - D:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PCAutoShutdown_Service - GoldSolution Software, Inc. - D:\Program Files\PC Auto Shutdown\ShutdownService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 8991 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\WGASetup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-09-23 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-23 297648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-10-23 843832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-11 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"PC Auto Shutdown"=D:\Program Files\PC Auto Shutdown\AutoShutdown.exe [2010-12-01 1387520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2010-10-05 19580520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2007-10-14 214360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
D:\PROGRA~1\PIXELA\IMAGEM~1\CAMERA~1.EXE [2010-03-30 253952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
D:\PROGRA~1\BLUETO~1\BLUETO~1.EXE [2005-11-29 266240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
C:\PROGRA~1\OPENOF~1.3\program\QUICKS~1.EXE [2007-09-11 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
D:\PROGRA~1\Xfire\xfire.exe [2010-07-09 3493776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\wbsys.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-11-26 159744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MCPClient]
C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll [2005-01-31 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB]
D:\Program Files\Stardock\Object Desktop\ThemeManager\fastload.dll [2001-12-20 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 312112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
0aMCPClient - {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC} - C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll [2005-05-10 86016]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\Documents and Settings\matmik\Plocha\bittorrent.exe"="D:\Documents and Settings\matmik\Plocha\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe"="D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe:*:Enabled:Dracula: Origin Demo"
"D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe"="D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe:*:Enabled:Football Manager 2010 Demo"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe:*:Enabled:Crysis_32_sp_demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe"="D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe:*:Enabled:Spider-Man(R) - Web of Shadows(TM) "
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe"="D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe:*:Enabled:Aliens vs Predator Dedicated Server"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe"="D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe:*:Enabled:Star Wars The Force Unleashed 2"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
======List of files/folders created in the last 1 months======
2011-01-11 17:06:12 ----D---- C:\rsit
2011-01-10 17:38:55 ----SHD---- C:\RECYCLER
2011-01-10 16:16:31 ----A---- C:\Boot.bak
2011-01-10 16:16:28 ----RASHD---- C:\cmdcons
2011-01-10 16:08:26 ----D---- C:\WINDOWS\ERDNT
2011-01-10 06:51:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 16:21:07 ----D---- C:\WINDOWS\Sun
2011-01-07 18:20:13 ----D---- C:\Program Files\OpenAL
2011-01-03 18:40:39 ----D---- C:\WINDOWS\system32\Lang
2010-12-24 19:43:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-12-24 19:42:48 ----D---- C:\Program Files\ATI Stream
2010-12-24 19:39:17 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2010-12-24 19:19:58 ----A---- C:\cmdlog.txt
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files\DESIGNER
2010-12-18 14:27:48 ----D---- C:\Program Files\Common Files\ODBC
2010-12-17 06:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-17 06:30:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-17 06:30:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-17 06:30:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-17 06:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-17 06:29:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-17 06:29:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-17 06:29:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-15 15:28:58 ----D---- C:\Program Files\ICQ6.5
2010-12-15 06:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
======List of files/folders modified in the last 1 months======
2011-01-11 17:06:14 ----D---- C:\Program Files\trend micro
2011-01-11 16:18:55 ----D---- C:\Documents and Settings\matmik\Data aplikací\ICQ
2011-01-11 15:05:41 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-01-11 14:10:38 ----D---- C:\WINDOWS\Temp
2011-01-11 06:54:19 ----D---- C:\Documents and Settings\matmik\Data aplikací\Adobe
2011-01-11 06:54:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-01-10 17:56:50 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-10 17:55:15 ----AD---- C:\WINDOWS
2011-01-10 17:50:36 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-01-10 17:38:45 ----SHD---- C:\System Volume Information
2011-01-10 17:01:41 ----D---- C:\WINDOWS\system32\drivers
2011-01-10 16:55:12 ----A---- C:\WINDOWS\system.ini
2011-01-10 16:54:42 ----D---- C:\WINDOWS\system32\drivers\etc
2011-01-10 16:53:12 ----D---- C:\Documents and Settings\matmik\Data aplikací\uTorrent
2011-01-10 16:53:10 ----D---- C:\WINDOWS\system32\config
2011-01-10 16:52:43 ----D---- C:\Program Files
2011-01-10 16:52:26 ----D---- C:\WINDOWS\Tasks
2011-01-10 16:52:26 ----D---- C:\Program Files\ToggleEN
2011-01-10 16:52:20 ----D---- C:\Program Files\Softonic_VLC_EN
2011-01-10 16:51:02 ----D---- C:\WINDOWS\system32
2011-01-10 16:51:02 ----D---- C:\WINDOWS\AppPatch
2011-01-10 16:51:00 ----D---- C:\Program Files\Common Files
2011-01-10 16:16:32 ----RASH---- C:\boot.ini
2011-01-10 16:07:50 ----D---- C:\WINDOWS\Prefetch
2011-01-10 16:07:28 ----D---- C:\Documents and Settings\matmik\Data aplikací\skypePM
2011-01-10 15:31:44 ----D---- C:\Documents and Settings\matmik\Data aplikací\Skype
2011-01-08 17:46:54 ----SHD---- C:\WINDOWS\Installer
2011-01-07 18:20:47 ----D---- C:\WINDOWS\system32\DirectX
2011-01-07 18:20:46 ----D---- C:\WINDOWS\inf
2011-01-07 18:20:20 ----D---- C:\WINDOWS\WinSxS
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-01-07 10:41:06 ----D---- C:\Documents and Settings\matmik\Data aplikací\Vso
2011-01-05 18:48:53 ----DC---- C:\WINDOWS\system32\dllcache
2011-01-05 18:48:52 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-03 13:52:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\BitTorrent
2011-01-02 16:08:19 ----RSD---- C:\WINDOWS\assembly
2010-12-24 19:48:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-24 19:42:46 ----D---- C:\Program Files\ATI
2010-12-24 19:42:10 ----D---- C:\Program Files\ATI Technologies
2010-12-24 19:39:17 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-12-18 14:30:00 ----AC---- C:\WINDOWS\ODBC.INI
2010-12-18 14:29:34 ----A---- C:\WINDOWS\win.ini
2010-12-18 14:29:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-18 14:29:24 ----D---- C:\WINDOWS\Fonts
2010-12-18 14:29:13 ----D---- C:\WINDOWS\SHELLNEW
2010-12-18 14:27:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-12-17 06:30:07 ----D---- C:\WINDOWS\$hf_mig$
2010-12-17 06:29:32 ----D---- C:\Program Files\Outlook Express
2010-12-15 15:29:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-12-14 16:18:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\DivX
2010-12-12 16:22:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Xfire
2010-12-12 16:10:14 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 d347bus;d347bus; C:\WINDOWS\system32\DRIVERS\d347bus.sys [2004-08-22 155136]
R0 d347prt;d347prt; C:\WINDOWS\System32\Drivers\d347prt.sys [2004-08-22 5248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\system32\DRIVERS\PxHelp20.sys [2007-03-08 43528]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 HWiNFO32;HWiNFO32 Kernel Driver; \??\D:\Program Files\HWiNFO32\HWiNFO32.SYS []
R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-11-26 5555712]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-11-18 95232]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-10-05 6164584]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-03-13 47360]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-08-15 83200]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 CFcatchme;CFcatchme; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\CFcatchme.sys []
S3 cpuz132;cpuz132; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\cpuz132\cpuz132_x32.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\D:\Program Files\MediaCoder\SysInfo.sys []
S3 GMSIPCI;GMSIPCI; C:\WINDOWS\system32\drivers\GMSIPCI.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-02-07 17480]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-11-01 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-11-01 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-11-26 614400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-11 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 NMSAccessU;NMSAccessU; D:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service; D:\Program Files\PC Auto Shutdown\ShutdownService.exe [2010-04-19 441624]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-05-04 75064]
R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7.exe [2008-05-02 126976]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-25 135664]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-12-15 72704]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-02-13 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-03-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-05-03 74656]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\wmpnetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
1. část:
Logfile of random's system information tool 1.08 (written by random/random)
Run by matmik at 2011-01-11 17:06:12
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (19%) free of 20 GB
Total RAM: 3070 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:06:16, on 11.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
D:\Program Files\CDBurnerXP\NMSAccessU.exe
D:\Program Files\PC Auto Shutdown\ShutdownService.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\WgaTray.exe
D:\Program Files\Steam\Steam.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Program Files\ICQ7.2\ICQ.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\matmik\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\audio svms\RSIT.exe
C:\Program Files\trend micro\matmik.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [PC Auto Shutdown] "D:\Program Files\PC Auto Shutdown\AutoShutdown.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - D:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: toolbarchrome - {718733BC-AD64-4E5F-AC18-A85FBD75D54D} - (no file)
O20 - AppInit_DLLs: C:\WINDOWS\system32\wbsys.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccessU - Unknown owner - D:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: PCAutoShutdown_Service - GoldSolution Software, Inc. - D:\Program Files\PC Auto Shutdown\ShutdownService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
--
End of file - 8991 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\WGASetup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-09-23 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-23 297648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-10-23 843832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-11 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"PC Auto Shutdown"=D:\Program Files\PC Auto Shutdown\AutoShutdown.exe [2010-12-01 1387520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2010-10-05 19580520]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2007-10-14 214360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^ImageMixer 3 SE Camera Monitor for SD.lnk]
D:\PROGRA~1\PIXELA\IMAGEM~1\CAMERA~1.EXE [2010-03-30 253952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^BluetoothPCDialer.lnk]
D:\PROGRA~1\BLUETO~1\BLUETO~1.EXE [2005-11-29 266240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^OpenOffice.org 2.3.lnk]
C:\PROGRA~1\OPENOF~1.3\program\QUICKS~1.EXE [2007-09-11 393216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^matmik^Nabídka Start^Programy^Po spuštění^Xfire.lnk]
D:\PROGRA~1\Xfire\xfire.exe [2010-07-09 3493776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\wbsys.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-11-26 159744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\MCPClient]
C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll [2005-01-31 49152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB]
D:\Program Files\Stardock\Object Desktop\ThemeManager\fastload.dll [2001-12-20 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 312112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
0aMCPClient - {F5DF91F9-15E9-416B-A7C3-7519B11ECBFC} - C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll [2005-05-10 86016]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\Documents and Settings\matmik\Plocha\bittorrent.exe"="D:\Documents and Settings\matmik\Plocha\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe"="D:\Program Files\Steam\steamapps\common\dracula origin demo\demo.exe:*:Enabled:Dracula: Origin Demo"
"D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe"="D:\Program Files\Steam\steamapps\common\football manager 2010 demo\fm.exe:*:Enabled:Football Manager 2010 Demo"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe:*:Enabled:Crysis_32_sp_demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="D:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe"="D:\Program Files\Team JPN\SpiderMan Web of Shadows\image\pc\Spider-Man Web of Shadows.exe:*:Enabled:Spider-Man(R) - Web of Shadows(TM) "
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe"="D:\Program Files\Steam\steamapps\common\aliens vs predator dedicated server\AvP_CLI.exe:*:Enabled:Aliens vs Predator Dedicated Server"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe"="D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe:*:Enabled:Star Wars The Force Unleashed 2"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\DAOriginsLauncher.exe:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm"="D:\Program Files\Steam\steamapps\common\dragon age orgins character creator\Support\EA Help\Electronic_Arts_Technical_Support.htm:*:Enabled:Dragon Age: Origins Character Creator"
"D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="D:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\Program Files\ICQ7.2\ICQ.exe"="D:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"D:\Program Files\ICQ7.2\aolload.exe"="D:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
======List of files/folders created in the last 1 months======
2011-01-11 17:06:12 ----D---- C:\rsit
2011-01-10 17:38:55 ----SHD---- C:\RECYCLER
2011-01-10 16:16:31 ----A---- C:\Boot.bak
2011-01-10 16:16:28 ----RASHD---- C:\cmdcons
2011-01-10 16:08:26 ----D---- C:\WINDOWS\ERDNT
2011-01-10 06:51:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\PC Auto Shutdown
2011-01-09 16:21:07 ----D---- C:\WINDOWS\Sun
2011-01-07 18:20:13 ----D---- C:\Program Files\OpenAL
2011-01-03 18:40:39 ----D---- C:\WINDOWS\system32\Lang
2010-12-24 19:43:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\ATI
2010-12-24 19:42:48 ----D---- C:\Program Files\ATI Stream
2010-12-24 19:39:17 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2010-12-24 19:19:58 ----A---- C:\cmdlog.txt
2010-12-18 14:28:25 ----D---- C:\Program Files\Common Files\DESIGNER
2010-12-18 14:27:48 ----D---- C:\Program Files\Common Files\ODBC
2010-12-17 06:30:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-17 06:30:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-17 06:30:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-17 06:30:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-17 06:29:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-17 06:29:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-17 06:29:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-17 06:29:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-15 15:28:58 ----D---- C:\Program Files\ICQ6.5
2010-12-15 06:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
======List of files/folders modified in the last 1 months======
2011-01-11 17:06:14 ----D---- C:\Program Files\trend micro
2011-01-11 16:18:55 ----D---- C:\Documents and Settings\matmik\Data aplikací\ICQ
2011-01-11 15:05:41 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-01-11 14:10:38 ----D---- C:\WINDOWS\Temp
2011-01-11 06:54:19 ----D---- C:\Documents and Settings\matmik\Data aplikací\Adobe
2011-01-11 06:54:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-01-10 17:56:50 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-10 17:55:15 ----AD---- C:\WINDOWS
2011-01-10 17:50:36 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-01-10 17:38:45 ----SHD---- C:\System Volume Information
2011-01-10 17:01:41 ----D---- C:\WINDOWS\system32\drivers
2011-01-10 16:55:12 ----A---- C:\WINDOWS\system.ini
2011-01-10 16:54:42 ----D---- C:\WINDOWS\system32\drivers\etc
2011-01-10 16:53:12 ----D---- C:\Documents and Settings\matmik\Data aplikací\uTorrent
2011-01-10 16:53:10 ----D---- C:\WINDOWS\system32\config
2011-01-10 16:52:43 ----D---- C:\Program Files
2011-01-10 16:52:26 ----D---- C:\WINDOWS\Tasks
2011-01-10 16:52:26 ----D---- C:\Program Files\ToggleEN
2011-01-10 16:52:20 ----D---- C:\Program Files\Softonic_VLC_EN
2011-01-10 16:51:02 ----D---- C:\WINDOWS\system32
2011-01-10 16:51:02 ----D---- C:\WINDOWS\AppPatch
2011-01-10 16:51:00 ----D---- C:\Program Files\Common Files
2011-01-10 16:16:32 ----RASH---- C:\boot.ini
2011-01-10 16:07:50 ----D---- C:\WINDOWS\Prefetch
2011-01-10 16:07:28 ----D---- C:\Documents and Settings\matmik\Data aplikací\skypePM
2011-01-10 15:31:44 ----D---- C:\Documents and Settings\matmik\Data aplikací\Skype
2011-01-08 17:46:54 ----SHD---- C:\WINDOWS\Installer
2011-01-07 18:20:47 ----D---- C:\WINDOWS\system32\DirectX
2011-01-07 18:20:46 ----D---- C:\WINDOWS\inf
2011-01-07 18:20:20 ----D---- C:\WINDOWS\WinSxS
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2011-01-07 18:20:12 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-01-07 10:41:06 ----D---- C:\Documents and Settings\matmik\Data aplikací\Vso
2011-01-05 18:48:53 ----DC---- C:\WINDOWS\system32\dllcache
2011-01-05 18:48:52 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-03 13:52:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\BitTorrent
2011-01-02 16:08:19 ----RSD---- C:\WINDOWS\assembly
2010-12-24 19:48:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-24 19:42:46 ----D---- C:\Program Files\ATI
2010-12-24 19:42:10 ----D---- C:\Program Files\ATI Technologies
2010-12-24 19:39:17 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-12-18 14:30:00 ----AC---- C:\WINDOWS\ODBC.INI
2010-12-18 14:29:34 ----A---- C:\WINDOWS\win.ini
2010-12-18 14:29:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-18 14:29:24 ----D---- C:\WINDOWS\Fonts
2010-12-18 14:29:13 ----D---- C:\WINDOWS\SHELLNEW
2010-12-18 14:27:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-12-17 06:30:07 ----D---- C:\WINDOWS\$hf_mig$
2010-12-17 06:29:32 ----D---- C:\Program Files\Outlook Express
2010-12-15 15:29:54 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-12-14 16:18:46 ----D---- C:\Documents and Settings\matmik\Data aplikací\DivX
2010-12-12 16:22:59 ----D---- C:\Documents and Settings\matmik\Data aplikací\Xfire
2010-12-12 16:10:14 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 d347bus;d347bus; C:\WINDOWS\system32\DRIVERS\d347bus.sys [2004-08-22 155136]
R0 d347prt;d347prt; C:\WINDOWS\System32\Drivers\d347prt.sys [2004-08-22 5248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\system32\DRIVERS\PxHelp20.sys [2007-03-08 43528]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 HWiNFO32;HWiNFO32 Kernel Driver; \??\D:\Program Files\HWiNFO32\HWiNFO32.SYS []
R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-11-26 5555712]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-11-18 95232]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-10-05 6164584]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-03-13 47360]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-08-15 83200]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 CFcatchme;CFcatchme; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\CFcatchme.sys []
S3 cpuz132;cpuz132; \??\C:\DOCUME~1\matmik\LOCALS~1\Temp\cpuz132\cpuz132_x32.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\D:\Program Files\MediaCoder\SysInfo.sys []
S3 GMSIPCI;GMSIPCI; C:\WINDOWS\system32\drivers\GMSIPCI.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-02-07 17480]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-11-01 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-11-01 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-11-26 614400]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-04-11 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 NMSAccessU;NMSAccessU; D:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 PCAutoShutdown_Service;PCAutoShutdown_Service; D:\Program Files\PC Auto Shutdown\ShutdownService.exe [2010-04-19 441624]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-05-04 75064]
R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7.exe [2008-05-02 126976]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-25 135664]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-12-15 72704]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-02-13 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-03-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-05-03 74656]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\wmpnetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
-
- Návštěvník
- Příspěvky: 206
- Registrován: 01 pro 2010 16:41
Re: kontrola logu
2. část:
info.txt logfile of random's system information tool 1.08 2011-01-11 17:06:18
======Uninstall list======
-->D:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->MsiExec /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
µTorrent-->"D:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
184691-->MsiExec.exe /X{79D085FB-2960-47A3-BDA0-321F22A43989}
1989-->MsiExec.exe /X{AF05C9CC-A32A-484A-AF4D-AD5CAFEA34DE}
32 Bit HP CIO Components Installer-->MsiExec.exe /I{09BDEEF0-5590-457D-89A9-5DB2742F9BBF}
Adobe After Effects 7.0-->msiexec /I {DD362256-A7A2-4524-9457-213DDC2AFC2A}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge 1.0-->MsiExec.exe /I{AE3D38A6-13B1-40B3-9423-D1FA9982FB6A}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5102}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 1.0-->MsiExec.exe /I{B74D4E10-0000-0000-0000-EDED00000102}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Center 2.0-->MsiExec.exe /I{8FFC924C-ED06-44CB-8867-3CA778ECE903}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe Photoshop CS3-->MsiExec.exe /I{0046FA01-C5B9-4985-BACB-398DC480FC05}
Adobe Reader 9.4.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Stock Photos 1.0-->MsiExec.exe /I{786C5747-1437-443D-B06E-79A00FE45110}
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
Aktualizace systému Windows XP (KB2141007)-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2345886)-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2467659)-->"C:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2079403)-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2115168)-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2121546)-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2160329)-->"C:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2183461)-->"C:\WINDOWS\$NtUninstallKB2183461$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2259922)-->"C:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2279986)-->"C:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2286198)-->"C:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296011)-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296199)-->"C:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2347290)-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360131)-->"C:\WINDOWS\$NtUninstallKB2360131$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360937)-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2387149)-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2416400)-->"C:\WINDOWS\$NtUninstallKB2416400$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2423089)-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2436673)-->"C:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2440591)-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2443105)-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950759)-->"C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956390)-->"C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979687)-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980436)-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981322)-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981349)-->"C:\WINDOWS\$NtUninstallKB981349$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981852)-->"C:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981957)-->"C:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981997)-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982132)-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982214)-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982665)-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982802)-->"C:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe"
Aliens vs Predator Dedicated Server-->"D:\Program Files\Steam\steam.exe" steam://uninstall/34120
Amazon MP3 Downloader 1.0.3-->D:\Program Files\Amazon\MP3 Downloader\Uninstall.exe
AMD Fusion for Gaming 1.0-->MsiExec.exe /I{83F81F91-7BE9-44D1-98AF-2B87E0B8710C}
AML Free Registry Cleaner 4.21-->"D:\Program Files\AML Products\Registry Cleaner\unins000.exe"
ASIO4ALL-->D:\Program Files\ASIO4ALL v2\uninstall.exe
Ask Toolbar-->MsiExec.exe /I{86D4B82A-ABED-442A-BE86-96357B70F4FE}
ATI Catalyst Registration-->MsiExec.exe /X{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}
ATI HYDRAVISION-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
ATI Problem Report Wizard-->MsiExec.exe /X{5DA6F06A-B389-407B-BF8C-1548767914D8}
ATI Stream SDK v2 Developer-->MsiExec.exe /I{0ED98038-0885-F902-C419-669ADE471A46}
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
AVI ReComp 1.2.3-->D:\Program Files\AVI ReComp\uninst.exe
AviSynth 2.5-->"D:\Program Files\AviSynth 2.5\Uninstall.exe"
Balíček ovladače systému Windows - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /d /u C:\WINDOWS\system32\DRVSTORE\amdk8_E04BFC62AB75C18018CA32A469FC44BA0E376B83\amdk8.inf
BATMAN VENGEANCE-->C:\WINDOWS\UbiSoft\SetupUbi.exe -uninstall BATMAN VENGEANCE
Batman: Arkham Asylum - Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/35020
Battlefield: Bad Company™ 2-->MsiExec.exe /X{3AC8457C-0385-4BEA-A959-E095F05D6D67}
Battlefront Extreme 2.2-->"D:\Program Files\LucasArts\Star Wars Battlefront II\GameData\ADDON\BFX\unins000.exe"
BFSimulator-->MsiExec.exe /I{313D3F56-93B7-4148-9435-F8FC660F81AD}
BitTorrent Acceleration Patch-->C:\Program Files\BitTorrent Acceleration Patch\uninstall.exe
black12-->MsiExec.exe /X{29FDDE76-CFDA-4891-BEEB-3AB04AB52841}
Bluetooth PC Dialer-->MsiExec.exe /I{4E526F25-8B1F-46AA-B50C-BBDA00EDFF66}
Brick Breaker Revolution-->"D:\Program Files\Digital Chocolate\Brick Breaker Revolution\Uninstall.exe" "D:\Program Files\Digital Chocolate\Brick Breaker Revolution\install.log" -u
BS.Player ControlBar-->C:\Program Files\BS.Player ControlBar\uninst.exe
Call of Duty(R) 2 Demo-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{FB9CDF41-F0B9-4F31-9230-7DF0D6637270}
Call of Duty(R) 4 - Modern Warfare(TM) Demo-->C:\Program Files\InstallShield Installation Information\{6734CA10-8FB8-4C7F-B8C7-75317C617DC5}\setup.exe -runfromtemp -l0x0409
Call of Duty-->D:\PROGRA~1\CALLOF~1\Uninstall\Unwise.exe /u D:\PROGRA~1\CALLOF~1\Uninstall\Install.log
Call of Juarez: Bound in Blood Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/33290
Carambis Driver Updater-->MsiExec.exe /X{542068F1-9AAE-4E1B-8ACA-094FE03728BE}
Catalyst Control Center - Branding-->MsiExec.exe /I{6AB57823-3580-4CE0-9CF0-072E2A39460C}
CCleaner-->"D:\Program Files\CCleaner\uninst.exe"
CDBurnerXP-->"D:\Program Files\CDBurnerXP\unins000.exe"
CDex extraction audio-->"C:\Program Files\CDex_170b2\uninstall.exe"
CloneCD-->"D:\Program Files\SlySoft\CloneCD\ccd-uninst.exe" /D="D:\Program Files\SlySoft\CloneCD"
ConvertXtoDVD 3.5.1.135-->"D:\Program Files\VSO\ConvertX\3\unins000.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13B792AA-C078-43A4-8A3A-8B12D629940D}\Setup.exe" -l0x19
Crysis WARHEAD(R) Patch-->"C:\Documents and Settings\All Users\Data aplikací\{7451F7D5-591C-4490-8D3B-C73A69A0E782}\setup.exe" REMOVE=TRUE MODIFY=FALSE
Crysis WARHEAD(R) Patch-->C:\Documents and Settings\All Users\Data aplikací\{7451F7D5-591C-4490-8D3B-C73A69A0E782}\setup.exe
Crysis(R) SP Demo-->MsiExec.exe /I{92AF2F5A-4407-4A03-A80A-5A2582264746}
DAEMON Tools-->MsiExec.exe /I{3DED3A72-61A8-4B87-98A5-EF0BC8038AA0}
DesktopX-->D:\PROGRA~1\Stardock\OBJECT~1\DesktopX\UNWISE.EXE D:\PROGRA~1\Stardock\OBJECT~1\DesktopX\INSTALL.LOG
DiskCheckerXP 6.1-->D:\Program Files\DiskCheckerXP\uninst.exe
Diver - Deep Water Adventures-->"D:\Program Files\Diver\unins000.exe"
DivX Codec-->D:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter-->D:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->D:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Plus DirectShow Filters-->D:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS
DivX Web Player-->D:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Doom Shareware for Windows 95-->D:\Program Files\Doom Shareware for Windows 95\uninstl.exe /S D:\Program Files\Doom Shareware for Windows 95
Dracula: Origin Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/11090
Dragon Age: Origins - Character Creator-->"D:\Program Files\Steam\steam.exe" steam://uninstall/24920
Eusing Free Registry Cleaner-->D:\PROGRA~1\EUSING~1\UNWISE.EXE D:\PROGRA~1\EUSING~1\INSTALL.LOG
EVEREST Home Edition v2.20-->"D:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe"
FL Studio 9-->D:\Program Files\Image-Line\FL Studio 9\uninstall.exe
Football Manager 2010 Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/34110
Fraps (remove only)-->"D:\Program Files\fraps\uninstall.exe"
Free Create-Burn ISO Image v2.0-->"D:\Program Files\Free Create-Burn ISO Image\unins000.exe"
GameSpy Arcade-->D:\PROGRA~1\GAMESP~1\UNWISE.EXE D:\PROGRA~1\GAMESP~1\INSTALL.LOG
Google Earth-->MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_AC0049E063DE2AEA.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Graffiti Studio 2.0-->"D:\Program Files\Graffiti Studio 2.0\unins000.exe"
Grand Theft Auto IV-->MsiExec.exe /I{5454083B-1308-4485-BF17-1110000D8301}
Hardcore-->C:\Program Files\Image-Line\Hardcore\uninstall.exe
Harry Potter and the Half-Blood Prince™ Demo-->MsiExec.exe /X{20EA84D4-6CB0-4FEA-8B6C-DC816CA7385F}
Harry Potter and the Order of the Phoenix™ Demo-->D:\Documents and Settings\matmik\Plocha\EAUninstall.exe
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Customer Participation Program 10.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Imaging Device Functions 10.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart All-In-One Driver Software 10.0 Rel .2-->C:\Program Files\HP\Digital Imaging\{20B30DC1-E423-4939-B51D-05C58B0F9BBB}\setup\hpzscr01.exe -datfile hposcr21.dat -onestop
HP Photosmart Essential 2.5-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Smart Web Printing-->C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
HP Solution Center 10.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{11B83AD3-7A46-4C2E-A568-9505981D4C6F}
HWiNFO32 Version 3.35-->"D:\Program Files\HWiNFO32\unins000.exe"
Cheat Engine 5.3-->"D:\Program Files\Cheat Engine\unins001.exe"
Cheat Engine 5.5-->"D:\Program Files\Cheat Engine\unins000.exe"
ICQ Password-->D:\Program Files\ICQ Password\unsetup.exe /u
ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
ICQ7.2-->"C:\Program Files\InstallShield Installation Information\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}\ICQ7.exe" -runfromtemp -l0x0009 -removeonly
ijji Auto Installer-->"C:\Program Files\InstallShield Installation Information\{1DCC7418-2089-4BDD-B321-3771956160FC}\setup.exe" -runfromtemp -l0x0009 -removeonly
IL Download Manager-->C:\Program Files\Image-Line\Downloader\uninstall.exe
Java(TM) 6 Update 19-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216019FF}
Knights of the Force 2.0-->D:\Program Files\LucasArts\KotF Jedi Academy Expansion Pack\..\uninstall.exe
Left 4 Dead 2 Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/590
LEGO Star Wars-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "D:\Program Files\Giant\LEGO Star Wars\Uninstall\setup.exe" -l0x5
Lingea Lexicon 2002-->C:\WINDOWS\LgUninst.exe d:\Setup.exe
Liveupdate4-->"C:\Program Files\MSI\Live Update 4\unins000.exe"
Malwarebytes' Anti-Malware-->"D:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Medal of Honor Pacific Assault(tm) Demo-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8F2F6F0B-B43B-4A64-B137-8E0CE3F76F5F}\setup.exe" -l0x9 -removeonly
MediaCoder 0.7.3.4666-->D:\Program Files\MediaCoder\uninst.exe
Microsoft .NET Framework 1.1 Security Update (KB2416447)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2416447\M2416447Uninstall.msp"
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{A2C9CD1B-2551-3AED-B244-6698FB929FA6}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{546C143E-68DC-314D-97BC-1E454E3BA429}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{59E4543A-D49D-4489-B445-473D763C79AF}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110405-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Miranda IM 0.8.1-->D:\Program Files\Miranda IM\Uninstall.exe
Mirror's Edge™-->MsiExec.exe /X{AEDBD563-24BB-4EE3-8366-A654DAC2D988}
MOV to AVI MPEG WMV Converter 1.7.4-->"D:\Program Files\MOV to AVI MPEG WMV Converter\unins000.exe"
Mozilla Firefox (3.5.15)-->D:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
Multi Virus Cleaner 2007-->"D:\Program Files\AxBx\Multi Virus Cleaner 2007\unins000.exe"
Nero 6 Ultra Edition-->D:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Nero Media Player-->C:\WINDOWS\UNNMP.exe /UNINSTALL
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NVIDIA PhysX-->MsiExec.exe /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
OCR Software by I.R.I.S. 10.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
Online_Sharing Toolbar-->C:\PROGRA~1\ONLINE~2\UNWISE.EXE /U C:\PROGRA~1\ONLINE~2\INSTALL.LOG
OpenAL-->"C:\Program Files\OpenAL\oalinst.exe" /U
OpenOffice.org 2.3-->MsiExec.exe /I{519556CC-4382-4B35-80F5-DD8E9460EEAC}
Oprava hotfix aplikace Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB2158563)-->"C:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB2443685)-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
P2P Energy Toolbar-->C:\PROGRA~1\P2P_EN~1\UNWISE.EXE C:\PROGRA~1\P2P_EN~1\INSTALL.LOG
PC Auto Shutdown 4.5-->"D:\Program Files\PC Auto Shutdown\unins000.exe"
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
PoiZone-->C:\Program Files\Image-Line\PoiZone\uninstall.exe
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
RAD Video Tools-->"D:\Program Files\RADVideo\uninstall.exe"
RadioBar Toolbar-->C:\Program Files\RadioBar\UNINSTALL.exe
Renegade Paintball Demo-->MsiExec.exe /I{02C3757A-B63E-4BDA-AD0C-052A087353DC}
Rockstar Games Social Club-->"C:\Program Files\InstallShield Installation Information\{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe" -runfromtemp -l0x0009 -removeonly
Roxio Express Labeler 3-->MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Sada Compatibility Pack pro systém Office 2007-->MsiExec.exe /X{90120000-0020-0405-0000-0000000FF1CE}
Sakura-->C:\Program Files\Image-Line\Sakura\uninstall.exe
San Andreas Mod Installer-->"C:\WINDOWS\San Andreas Mod Installer\uninstall.exe" "/U:D:\Program Files\San Andreas Mod Installer\Uninstall\uninstall.xml"
Sanny Builder 3.04-->"D:\Program Files\Sanny Builder 3\unins000.exe"
Sawer-->C:\Program Files\Image-Line\Sawer\uninstall.exe
Shockwave-->C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.log
Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
SLOW-PCfighter-->D:\Program Files\Fighters\SLOW-PCfighter\Uninstall.exe
SLOW-PCfighter-->MsiExec.exe /X{BDE0CF4C-8DE2-41DB-A845-78D48874E2C6}
Softonic_VLC_EN Toolbar-->C:\PROGRA~1\SOFTON~1\UNWISE.EXE /U C:\PROGRA~1\SOFTON~1\INSTALL.LOG
Sony Vegas Pro 8.0-->MsiExec.exe /X{1246FF64-3035-4A92-8FE6-A968275495EB}
SpeedBit Toolbar-->"C:\Program Files\SpeedBit Toolbar\TRRemove.exe" temp
SpiderMan Web of Shadows-->"D:\Program Files\Team JPN\SpiderMan Web of Shadows\unins000.exe"
Spider-Man(R) - Web of Shadows(TM) 1.1 Patch-->C:\Program Files\InstallShield Installation Information\{9208F706-6528-4591-A997-F41395FBD8A7}\setup.exe -runfromtemp -l0x0409
Star Wars Battlefront II-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3D374523-CFDE-461A-827E-2A102E2AB365}\Setup.exe" -l0x9 -removeonly
Star Wars Jedi Knight Jedi Academy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0D994CC5-819F-4657-84DD-397B8FE1EA80}\Setup.exe" -l0x9
Star Wars JK II Jedi Outcast-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{576E71DA-3000-48F6-9B21-B9A70D47DFCF}\Setup.exe"
Star Wars Republic Commando Demo-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A4F9E9FE-A9C7-43FC-8AB7-06A87C3CE368}\Setup.exe" -l0x9
Star Wars: The Force Unleashed 2-->"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\unins000.exe"
Star Wars: The Force Unleashed-->"D:\Program Files\Activision\Star Wars The Force Unleashed\unins000.exe"
STARWARS: The Battle of Endor version 2.1-->D:\STARWARS_TheBattleOfEndor_v21\unins000.exe
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
StubbsDemo-->MsiExec.exe /I{2BA4670A-B3DD-45FA-AB4D-F98497F8E831}
SweetIM Toolbar for Internet Explorer 3.3-->MsiExec.exe /X{266C7330-C0F4-49E5-8F20-A56F9F822875}
TeamSpeak 2 RC2-->D:\Teamspeak2_RC2\unins000.exe
TeamViewer 5-->C:\Program Files\TeamViewer\Version5\uninstall.exe
The Lord of the Rings FREE Trial -->MsiExec.exe /X{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
Theme Manager-->D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\thememgr.exe /uninstallwise
ToggleEN Toolbar-->C:\PROGRA~1\ToggleEN\UNWISE.EXE /U C:\PROGRA~1\ToggleEN\INSTALL.LOG
Tornado Jockey-->"D:\Program Files\WildGames\Tornado Jockey\Uninstall.exe"
Toxic Biohazard-->C:\Program Files\Image-Line\Toxic Biohazard\uninstall.exe
Transformers(TM) - Le Jeu Demo-->C:\Program Files\InstallShield Installation Information\{52AC37AD-2435-4BD8-A28A-5AF1306EF69B}\setup.exe -runfromtemp -l0x040c
Transformers(TM) - Revenge of the Fallen(TM)-->C:\Program Files\InstallShield Installation Information\{08F173A8-AB81-4760-AEB0-CE91F3B05AEF}\setup.exe -runfromtemp -l0x0409
TubeSucker-->MsiExec.exe /X{4E906533-F57F-45BD-A837-FCF24A2C243E}
Ultimate Spider-Man (TM)-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{CC35B08B-4EC1-4759-B159-0EC4E69C3E7C} /l2057
UpdateMyDrivers-->"C:\Documents and Settings\All Users\Data aplikací\{5E98E5C2-0C82-4AE9-AED4-E6D1EDB6EFF2}\UpdateMyDrivers.exe" REMOVE=TRUE MODIFY=FALSE
VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
VDownloader 2.5-->"D:\Program Files\VDownloader\unins001.exe"
Vegas Movie Studio Platinum 9.0-->MsiExec.exe /X{97E038E1-41AD-4C93-BCDC-6A2394AEE352}
venomspiderman-->MsiExec.exe /X{7396ED28-EFCC-41F1-B267-9E1E73CC9AF3}
Vietcong 2 - public MP test-->D:\Program Files\Vietcong2-MP-test\uninstall.exe
Virtual DJ - Atomix Productions-->D:\PROGRA~1\VIRTUA~1\UNWISE.EXE D:\PROGRA~1\VIRTUA~1\INSTALL.LOG
Virtual Dj Studio 5.3-->"D:\Program Files\VDJ5\unins000.exe"
VLC media player 1.0.2-->C:\Program Files\VideoLAN\VLC\uninstall.exe
VobSub v2.23 (Remove Only)-->"D:\Program Files\Gabest\VobSub\uninstall.exe"
WildTangent Web Driver-->C:\Program Files\WildTangent\Apps\CDA\CDAUninstall.exe
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
WinASO Registry Optimizer 4.5.5-->"D:\Program Files\WinASO\Registry Optimizer\unins000.exe"
WinAVI VideoConverter-->"D:\WinAVI VideoConverter\unins000.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$ntservicepackuninstall$\spuninst\spuninst.exe"
WinRAR-->D:\Program Files\WinRAR\uninstall.exe
WinRez LT Studio-->MsiExec.exe /I{1A621A2F-98F6-4373-89A2-8ED16076990A}
World of Warcraft Desktop-->D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\UNWISE.EXE D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\INSTALL.LOG
World of Warcraft FREE Trial-->MsiExec.exe /X{02EBDBB9-4600-41D3-B566-40CB861511D2}
Worms 2-->C:\PROGRA~1\Team17\WORMS2~1\unwise.exe C:\PROGRA~1\Team17\WORMS2~1\INSTALL.LOG
Xfire (remove only)-->"D:\Program Files\Xfire\uninst.exe"
X-Men(TM) Legends 2 Demo-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{8662F390-6B44-4BB8-909A-F6EBC94D1722}
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
XnView 1.82.3-->"C:\Program Files\XnView\unins000.exe"
Xvid 1.1.2 final uninstall-->"D:\Program Files\Xvid\unins000.exe"
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
ZBrush3-->MsiExec.exe /I{6084D038-3401-4C9D-A216-86E6EEA25AFB}
Zeměpisná encyklopedie-->MsiExec.exe /I{51D3882B-D811-4ACB-89E6-02704E7D2B90}
Zero Gear Demo-->"D:\program files\steam\steam.exe" steam://uninstall/18800
Zrychleni Pocitace-->"C:\Program Files\Zrychleni Pocitace\unins000.exe"
======Security center information======
AV: avast! Antivirus
======System event log======
Computer Name: MATMIK-D179D564
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě avast! Web Scanner úspěšně odeslán.
Record Number: 10816
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: MATMIK-D179D564
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě avast! Mail Scanner úspěšně odeslán.
Record Number: 10815
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: MATMIK-D179D564
Event Code: 7022
Message: Služba Služba HP CUE DeviceDiscovery přestala během spouštění reagovat.
Record Number: 10814
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Chyba
User:
Computer Name: MATMIK-D179D564
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 10813
Source Name: EventLog
Time Written: 20110106132042.000000+060
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.
Record Number: 10812
Source Name: EventLog
Time Written: 20110106132042.000000+060
Event Type: Informace
User:
=====Application event log=====
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3647
Source Name: hpqddsvc
Time Written: 20100901061629.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3646
Source Name: hpqcxs08
Time Written: 20100901061629.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3645
Source Name: gupdate
Time Written: 20100901061534.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3644
Source Name: ICQ Service
Time Written: 20100901061458.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3643
Source Name: gupdate
Time Written: 20100901061458.000000+120
Event Type: Informace
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\ATI Stream\bin\x86;C:\Program Files\NVIDIA Corporation\PhysX\Common;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\Common Files\Adobe\AGL;D:\Program Files\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 75 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=4b02
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"RGSCLauncher"=D:\Program Files\Rockstar Games\Rockstar Games Social Club
"RGSC"=D:\Program Files\Rockstar Games\Rockstar Games Social Club\1_0_0_0
"ATISTREAMSDKROOT"=C:\Program Files\ATI Stream\
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.08 2011-01-11 17:06:18
======Uninstall list======
-->D:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->MsiExec /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
µTorrent-->"D:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
184691-->MsiExec.exe /X{79D085FB-2960-47A3-BDA0-321F22A43989}
1989-->MsiExec.exe /X{AF05C9CC-A32A-484A-AF4D-AD5CAFEA34DE}
32 Bit HP CIO Components Installer-->MsiExec.exe /I{09BDEEF0-5590-457D-89A9-5DB2742F9BBF}
Adobe After Effects 7.0-->msiexec /I {DD362256-A7A2-4524-9457-213DDC2AFC2A}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge 1.0-->MsiExec.exe /I{AE3D38A6-13B1-40B3-9423-D1FA9982FB6A}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5102}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 1.0-->MsiExec.exe /I{B74D4E10-0000-0000-0000-EDED00000102}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Center 2.0-->MsiExec.exe /I{8FFC924C-ED06-44CB-8867-3CA778ECE903}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe Photoshop CS3-->MsiExec.exe /I{0046FA01-C5B9-4985-BACB-398DC480FC05}
Adobe Reader 9.4.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Stock Photos 1.0-->MsiExec.exe /I{786C5747-1437-443D-B06E-79A00FE45110}
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
Aktualizace systému Windows XP (KB2141007)-->"C:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2345886)-->"C:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB2467659)-->"C:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB2378111)-->"C:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB975558)-->"C:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2079403)-->"C:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2115168)-->"C:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2121546)-->"C:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2160329)-->"C:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2183461)-->"C:\WINDOWS\$NtUninstallKB2183461$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2259922)-->"C:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2279986)-->"C:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2286198)-->"C:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296011)-->"C:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2296199)-->"C:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2347290)-->"C:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360131)-->"C:\WINDOWS\$NtUninstallKB2360131$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2360937)-->"C:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2387149)-->"C:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2416400)-->"C:\WINDOWS\$NtUninstallKB2416400$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2423089)-->"C:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2436673)-->"C:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2440591)-->"C:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB2443105)-->"C:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950759)-->"C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956390)-->"C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB979687)-->"C:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB980436)-->"C:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981322)-->"C:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981349)-->"C:\WINDOWS\$NtUninstallKB981349$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981852)-->"C:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981957)-->"C:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB981997)-->"C:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982132)-->"C:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982214)-->"C:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982665)-->"C:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB982802)-->"C:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe"
Aliens vs Predator Dedicated Server-->"D:\Program Files\Steam\steam.exe" steam://uninstall/34120
Amazon MP3 Downloader 1.0.3-->D:\Program Files\Amazon\MP3 Downloader\Uninstall.exe
AMD Fusion for Gaming 1.0-->MsiExec.exe /I{83F81F91-7BE9-44D1-98AF-2B87E0B8710C}
AML Free Registry Cleaner 4.21-->"D:\Program Files\AML Products\Registry Cleaner\unins000.exe"
ASIO4ALL-->D:\Program Files\ASIO4ALL v2\uninstall.exe
Ask Toolbar-->MsiExec.exe /I{86D4B82A-ABED-442A-BE86-96357B70F4FE}
ATI Catalyst Registration-->MsiExec.exe /X{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}
ATI HYDRAVISION-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
ATI Problem Report Wizard-->MsiExec.exe /X{5DA6F06A-B389-407B-BF8C-1548767914D8}
ATI Stream SDK v2 Developer-->MsiExec.exe /I{0ED98038-0885-F902-C419-669ADE471A46}
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
AVI ReComp 1.2.3-->D:\Program Files\AVI ReComp\uninst.exe
AviSynth 2.5-->"D:\Program Files\AviSynth 2.5\Uninstall.exe"
Balíček ovladače systému Windows - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /d /u C:\WINDOWS\system32\DRVSTORE\amdk8_E04BFC62AB75C18018CA32A469FC44BA0E376B83\amdk8.inf
BATMAN VENGEANCE-->C:\WINDOWS\UbiSoft\SetupUbi.exe -uninstall BATMAN VENGEANCE
Batman: Arkham Asylum - Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/35020
Battlefield: Bad Company™ 2-->MsiExec.exe /X{3AC8457C-0385-4BEA-A959-E095F05D6D67}
Battlefront Extreme 2.2-->"D:\Program Files\LucasArts\Star Wars Battlefront II\GameData\ADDON\BFX\unins000.exe"
BFSimulator-->MsiExec.exe /I{313D3F56-93B7-4148-9435-F8FC660F81AD}
BitTorrent Acceleration Patch-->C:\Program Files\BitTorrent Acceleration Patch\uninstall.exe
black12-->MsiExec.exe /X{29FDDE76-CFDA-4891-BEEB-3AB04AB52841}
Bluetooth PC Dialer-->MsiExec.exe /I{4E526F25-8B1F-46AA-B50C-BBDA00EDFF66}
Brick Breaker Revolution-->"D:\Program Files\Digital Chocolate\Brick Breaker Revolution\Uninstall.exe" "D:\Program Files\Digital Chocolate\Brick Breaker Revolution\install.log" -u
BS.Player ControlBar-->C:\Program Files\BS.Player ControlBar\uninst.exe
Call of Duty(R) 2 Demo-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{FB9CDF41-F0B9-4F31-9230-7DF0D6637270}
Call of Duty(R) 4 - Modern Warfare(TM) Demo-->C:\Program Files\InstallShield Installation Information\{6734CA10-8FB8-4C7F-B8C7-75317C617DC5}\setup.exe -runfromtemp -l0x0409
Call of Duty-->D:\PROGRA~1\CALLOF~1\Uninstall\Unwise.exe /u D:\PROGRA~1\CALLOF~1\Uninstall\Install.log
Call of Juarez: Bound in Blood Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/33290
Carambis Driver Updater-->MsiExec.exe /X{542068F1-9AAE-4E1B-8ACA-094FE03728BE}
Catalyst Control Center - Branding-->MsiExec.exe /I{6AB57823-3580-4CE0-9CF0-072E2A39460C}
CCleaner-->"D:\Program Files\CCleaner\uninst.exe"
CDBurnerXP-->"D:\Program Files\CDBurnerXP\unins000.exe"
CDex extraction audio-->"C:\Program Files\CDex_170b2\uninstall.exe"
CloneCD-->"D:\Program Files\SlySoft\CloneCD\ccd-uninst.exe" /D="D:\Program Files\SlySoft\CloneCD"
ConvertXtoDVD 3.5.1.135-->"D:\Program Files\VSO\ConvertX\3\unins000.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13B792AA-C078-43A4-8A3A-8B12D629940D}\Setup.exe" -l0x19
Crysis WARHEAD(R) Patch-->"C:\Documents and Settings\All Users\Data aplikací\{7451F7D5-591C-4490-8D3B-C73A69A0E782}\setup.exe" REMOVE=TRUE MODIFY=FALSE
Crysis WARHEAD(R) Patch-->C:\Documents and Settings\All Users\Data aplikací\{7451F7D5-591C-4490-8D3B-C73A69A0E782}\setup.exe
Crysis(R) SP Demo-->MsiExec.exe /I{92AF2F5A-4407-4A03-A80A-5A2582264746}
DAEMON Tools-->MsiExec.exe /I{3DED3A72-61A8-4B87-98A5-EF0BC8038AA0}
DesktopX-->D:\PROGRA~1\Stardock\OBJECT~1\DesktopX\UNWISE.EXE D:\PROGRA~1\Stardock\OBJECT~1\DesktopX\INSTALL.LOG
DiskCheckerXP 6.1-->D:\Program Files\DiskCheckerXP\uninst.exe
Diver - Deep Water Adventures-->"D:\Program Files\Diver\unins000.exe"
DivX Codec-->D:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter-->D:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->D:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Plus DirectShow Filters-->D:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS
DivX Web Player-->D:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Doom Shareware for Windows 95-->D:\Program Files\Doom Shareware for Windows 95\uninstl.exe /S D:\Program Files\Doom Shareware for Windows 95
Dracula: Origin Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/11090
Dragon Age: Origins - Character Creator-->"D:\Program Files\Steam\steam.exe" steam://uninstall/24920
Eusing Free Registry Cleaner-->D:\PROGRA~1\EUSING~1\UNWISE.EXE D:\PROGRA~1\EUSING~1\INSTALL.LOG
EVEREST Home Edition v2.20-->"D:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe"
FL Studio 9-->D:\Program Files\Image-Line\FL Studio 9\uninstall.exe
Football Manager 2010 Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/34110
Fraps (remove only)-->"D:\Program Files\fraps\uninstall.exe"
Free Create-Burn ISO Image v2.0-->"D:\Program Files\Free Create-Burn ISO Image\unins000.exe"
GameSpy Arcade-->D:\PROGRA~1\GAMESP~1\UNWISE.EXE D:\PROGRA~1\GAMESP~1\INSTALL.LOG
Google Earth-->MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_AC0049E063DE2AEA.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Graffiti Studio 2.0-->"D:\Program Files\Graffiti Studio 2.0\unins000.exe"
Grand Theft Auto IV-->MsiExec.exe /I{5454083B-1308-4485-BF17-1110000D8301}
Hardcore-->C:\Program Files\Image-Line\Hardcore\uninstall.exe
Harry Potter and the Half-Blood Prince™ Demo-->MsiExec.exe /X{20EA84D4-6CB0-4FEA-8B6C-DC816CA7385F}
Harry Potter and the Order of the Phoenix™ Demo-->D:\Documents and Settings\matmik\Plocha\EAUninstall.exe
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Customer Participation Program 10.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Imaging Device Functions 10.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart All-In-One Driver Software 10.0 Rel .2-->C:\Program Files\HP\Digital Imaging\{20B30DC1-E423-4939-B51D-05C58B0F9BBB}\setup\hpzscr01.exe -datfile hposcr21.dat -onestop
HP Photosmart Essential 2.5-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Smart Web Printing-->C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
HP Solution Center 10.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{11B83AD3-7A46-4C2E-A568-9505981D4C6F}
HWiNFO32 Version 3.35-->"D:\Program Files\HWiNFO32\unins000.exe"
Cheat Engine 5.3-->"D:\Program Files\Cheat Engine\unins001.exe"
Cheat Engine 5.5-->"D:\Program Files\Cheat Engine\unins000.exe"
ICQ Password-->D:\Program Files\ICQ Password\unsetup.exe /u
ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
ICQ7.2-->"C:\Program Files\InstallShield Installation Information\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}\ICQ7.exe" -runfromtemp -l0x0009 -removeonly
ijji Auto Installer-->"C:\Program Files\InstallShield Installation Information\{1DCC7418-2089-4BDD-B321-3771956160FC}\setup.exe" -runfromtemp -l0x0009 -removeonly
IL Download Manager-->C:\Program Files\Image-Line\Downloader\uninstall.exe
Java(TM) 6 Update 19-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216019FF}
Knights of the Force 2.0-->D:\Program Files\LucasArts\KotF Jedi Academy Expansion Pack\..\uninstall.exe
Left 4 Dead 2 Demo-->"D:\Program Files\Steam\steam.exe" steam://uninstall/590
LEGO Star Wars-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "D:\Program Files\Giant\LEGO Star Wars\Uninstall\setup.exe" -l0x5
Lingea Lexicon 2002-->C:\WINDOWS\LgUninst.exe d:\Setup.exe
Liveupdate4-->"C:\Program Files\MSI\Live Update 4\unins000.exe"
Malwarebytes' Anti-Malware-->"D:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Medal of Honor Pacific Assault(tm) Demo-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8F2F6F0B-B43B-4A64-B137-8E0CE3F76F5F}\setup.exe" -l0x9 -removeonly
MediaCoder 0.7.3.4666-->D:\Program Files\MediaCoder\uninst.exe
Microsoft .NET Framework 1.1 Security Update (KB2416447)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M2416447\M2416447Uninstall.msp"
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{A2C9CD1B-2551-3AED-B244-6698FB929FA6}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{546C143E-68DC-314D-97BC-1E454E3BA429}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{59E4543A-D49D-4489-B445-473D763C79AF}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110405-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Miranda IM 0.8.1-->D:\Program Files\Miranda IM\Uninstall.exe
Mirror's Edge™-->MsiExec.exe /X{AEDBD563-24BB-4EE3-8366-A654DAC2D988}
MOV to AVI MPEG WMV Converter 1.7.4-->"D:\Program Files\MOV to AVI MPEG WMV Converter\unins000.exe"
Mozilla Firefox (3.5.15)-->D:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
Multi Virus Cleaner 2007-->"D:\Program Files\AxBx\Multi Virus Cleaner 2007\unins000.exe"
Nero 6 Ultra Edition-->D:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Nero Media Player-->C:\WINDOWS\UNNMP.exe /UNINSTALL
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NVIDIA PhysX-->MsiExec.exe /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
OCR Software by I.R.I.S. 10.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
Online_Sharing Toolbar-->C:\PROGRA~1\ONLINE~2\UNWISE.EXE /U C:\PROGRA~1\ONLINE~2\INSTALL.LOG
OpenAL-->"C:\Program Files\OpenAL\oalinst.exe" /U
OpenOffice.org 2.3-->MsiExec.exe /I{519556CC-4382-4B35-80F5-DD8E9460EEAC}
Oprava hotfix aplikace Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB2158563)-->"C:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB2443685)-->"C:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
P2P Energy Toolbar-->C:\PROGRA~1\P2P_EN~1\UNWISE.EXE C:\PROGRA~1\P2P_EN~1\INSTALL.LOG
PC Auto Shutdown 4.5-->"D:\Program Files\PC Auto Shutdown\unins000.exe"
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
PoiZone-->C:\Program Files\Image-Line\PoiZone\uninstall.exe
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
RAD Video Tools-->"D:\Program Files\RADVideo\uninstall.exe"
RadioBar Toolbar-->C:\Program Files\RadioBar\UNINSTALL.exe
Renegade Paintball Demo-->MsiExec.exe /I{02C3757A-B63E-4BDA-AD0C-052A087353DC}
Rockstar Games Social Club-->"C:\Program Files\InstallShield Installation Information\{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe" -runfromtemp -l0x0009 -removeonly
Roxio Express Labeler 3-->MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Sada Compatibility Pack pro systém Office 2007-->MsiExec.exe /X{90120000-0020-0405-0000-0000000FF1CE}
Sakura-->C:\Program Files\Image-Line\Sakura\uninstall.exe
San Andreas Mod Installer-->"C:\WINDOWS\San Andreas Mod Installer\uninstall.exe" "/U:D:\Program Files\San Andreas Mod Installer\Uninstall\uninstall.xml"
Sanny Builder 3.04-->"D:\Program Files\Sanny Builder 3\unins000.exe"
Sawer-->C:\Program Files\Image-Line\Sawer\uninstall.exe
Shockwave-->C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.log
Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
SLOW-PCfighter-->D:\Program Files\Fighters\SLOW-PCfighter\Uninstall.exe
SLOW-PCfighter-->MsiExec.exe /X{BDE0CF4C-8DE2-41DB-A845-78D48874E2C6}
Softonic_VLC_EN Toolbar-->C:\PROGRA~1\SOFTON~1\UNWISE.EXE /U C:\PROGRA~1\SOFTON~1\INSTALL.LOG
Sony Vegas Pro 8.0-->MsiExec.exe /X{1246FF64-3035-4A92-8FE6-A968275495EB}
SpeedBit Toolbar-->"C:\Program Files\SpeedBit Toolbar\TRRemove.exe" temp
SpiderMan Web of Shadows-->"D:\Program Files\Team JPN\SpiderMan Web of Shadows\unins000.exe"
Spider-Man(R) - Web of Shadows(TM) 1.1 Patch-->C:\Program Files\InstallShield Installation Information\{9208F706-6528-4591-A997-F41395FBD8A7}\setup.exe -runfromtemp -l0x0409
Star Wars Battlefront II-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3D374523-CFDE-461A-827E-2A102E2AB365}\Setup.exe" -l0x9 -removeonly
Star Wars Jedi Knight Jedi Academy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0D994CC5-819F-4657-84DD-397B8FE1EA80}\Setup.exe" -l0x9
Star Wars JK II Jedi Outcast-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{576E71DA-3000-48F6-9B21-B9A70D47DFCF}\Setup.exe"
Star Wars Republic Commando Demo-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A4F9E9FE-A9C7-43FC-8AB7-06A87C3CE368}\Setup.exe" -l0x9
Star Wars: The Force Unleashed 2-->"D:\Program Files\LucasArts\Star Wars The Force Unleashed 2\unins000.exe"
Star Wars: The Force Unleashed-->"D:\Program Files\Activision\Star Wars The Force Unleashed\unins000.exe"
STARWARS: The Battle of Endor version 2.1-->D:\STARWARS_TheBattleOfEndor_v21\unins000.exe
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
StubbsDemo-->MsiExec.exe /I{2BA4670A-B3DD-45FA-AB4D-F98497F8E831}
SweetIM Toolbar for Internet Explorer 3.3-->MsiExec.exe /X{266C7330-C0F4-49E5-8F20-A56F9F822875}
TeamSpeak 2 RC2-->D:\Teamspeak2_RC2\unins000.exe
TeamViewer 5-->C:\Program Files\TeamViewer\Version5\uninstall.exe
The Lord of the Rings FREE Trial -->MsiExec.exe /X{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
Theme Manager-->D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\thememgr.exe /uninstallwise
ToggleEN Toolbar-->C:\PROGRA~1\ToggleEN\UNWISE.EXE /U C:\PROGRA~1\ToggleEN\INSTALL.LOG
Tornado Jockey-->"D:\Program Files\WildGames\Tornado Jockey\Uninstall.exe"
Toxic Biohazard-->C:\Program Files\Image-Line\Toxic Biohazard\uninstall.exe
Transformers(TM) - Le Jeu Demo-->C:\Program Files\InstallShield Installation Information\{52AC37AD-2435-4BD8-A28A-5AF1306EF69B}\setup.exe -runfromtemp -l0x040c
Transformers(TM) - Revenge of the Fallen(TM)-->C:\Program Files\InstallShield Installation Information\{08F173A8-AB81-4760-AEB0-CE91F3B05AEF}\setup.exe -runfromtemp -l0x0409
TubeSucker-->MsiExec.exe /X{4E906533-F57F-45BD-A837-FCF24A2C243E}
Ultimate Spider-Man (TM)-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{CC35B08B-4EC1-4759-B159-0EC4E69C3E7C} /l2057
UpdateMyDrivers-->"C:\Documents and Settings\All Users\Data aplikací\{5E98E5C2-0C82-4AE9-AED4-E6D1EDB6EFF2}\UpdateMyDrivers.exe" REMOVE=TRUE MODIFY=FALSE
VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
VDownloader 2.5-->"D:\Program Files\VDownloader\unins001.exe"
Vegas Movie Studio Platinum 9.0-->MsiExec.exe /X{97E038E1-41AD-4C93-BCDC-6A2394AEE352}
venomspiderman-->MsiExec.exe /X{7396ED28-EFCC-41F1-B267-9E1E73CC9AF3}
Vietcong 2 - public MP test-->D:\Program Files\Vietcong2-MP-test\uninstall.exe
Virtual DJ - Atomix Productions-->D:\PROGRA~1\VIRTUA~1\UNWISE.EXE D:\PROGRA~1\VIRTUA~1\INSTALL.LOG
Virtual Dj Studio 5.3-->"D:\Program Files\VDJ5\unins000.exe"
VLC media player 1.0.2-->C:\Program Files\VideoLAN\VLC\uninstall.exe
VobSub v2.23 (Remove Only)-->"D:\Program Files\Gabest\VobSub\uninstall.exe"
WildTangent Web Driver-->C:\Program Files\WildTangent\Apps\CDA\CDAUninstall.exe
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
WinASO Registry Optimizer 4.5.5-->"D:\Program Files\WinASO\Registry Optimizer\unins000.exe"
WinAVI VideoConverter-->"D:\WinAVI VideoConverter\unins000.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$ntservicepackuninstall$\spuninst\spuninst.exe"
WinRAR-->D:\Program Files\WinRAR\uninstall.exe
WinRez LT Studio-->MsiExec.exe /I{1A621A2F-98F6-4373-89A2-8ED16076990A}
World of Warcraft Desktop-->D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\UNWISE.EXE D:\PROGRA~1\Stardock\OBJECT~1\THEMEM~1\INSTALL.LOG
World of Warcraft FREE Trial-->MsiExec.exe /X{02EBDBB9-4600-41D3-B566-40CB861511D2}
Worms 2-->C:\PROGRA~1\Team17\WORMS2~1\unwise.exe C:\PROGRA~1\Team17\WORMS2~1\INSTALL.LOG
Xfire (remove only)-->"D:\Program Files\Xfire\uninst.exe"
X-Men(TM) Legends 2 Demo-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{8662F390-6B44-4BB8-909A-F6EBC94D1722}
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
XnView 1.82.3-->"C:\Program Files\XnView\unins000.exe"
Xvid 1.1.2 final uninstall-->"D:\Program Files\Xvid\unins000.exe"
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
ZBrush3-->MsiExec.exe /I{6084D038-3401-4C9D-A216-86E6EEA25AFB}
Zeměpisná encyklopedie-->MsiExec.exe /I{51D3882B-D811-4ACB-89E6-02704E7D2B90}
Zero Gear Demo-->"D:\program files\steam\steam.exe" steam://uninstall/18800
Zrychleni Pocitace-->"C:\Program Files\Zrychleni Pocitace\unins000.exe"
======Security center information======
AV: avast! Antivirus
======System event log======
Computer Name: MATMIK-D179D564
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě avast! Web Scanner úspěšně odeslán.
Record Number: 10816
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: MATMIK-D179D564
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě avast! Mail Scanner úspěšně odeslán.
Record Number: 10815
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: MATMIK-D179D564
Event Code: 7022
Message: Služba Služba HP CUE DeviceDiscovery přestala během spouštění reagovat.
Record Number: 10814
Source Name: Service Control Manager
Time Written: 20110106132225.000000+060
Event Type: Chyba
User:
Computer Name: MATMIK-D179D564
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 10813
Source Name: EventLog
Time Written: 20110106132042.000000+060
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.
Record Number: 10812
Source Name: EventLog
Time Written: 20110106132042.000000+060
Event Type: Informace
User:
=====Application event log=====
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3647
Source Name: hpqddsvc
Time Written: 20100901061629.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3646
Source Name: hpqcxs08
Time Written: 20100901061629.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3645
Source Name: gupdate
Time Written: 20100901061534.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3644
Source Name: ICQ Service
Time Written: 20100901061458.000000+120
Event Type: Informace
User:
Computer Name: MATMIK-D179D564
Event Code: 0
Message:
Record Number: 3643
Source Name: gupdate
Time Written: 20100901061458.000000+120
Event Type: Informace
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\ATI Stream\bin\x86;C:\Program Files\NVIDIA Corporation\PhysX\Common;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\Common Files\Adobe\AGL;D:\Program Files\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 75 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=4b02
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"RGSCLauncher"=D:\Program Files\Rockstar Games\Rockstar Games Social Club
"RGSC"=D:\Program Files\Rockstar Games\Rockstar Games Social Club\1_0_0_0
"ATISTREAMSDKROOT"=C:\Program Files\ATI Stream\
-----------------EOF-----------------