info.txt logfile of random's system information tool 1.08 2011-02-08 22:02:11
======Uninstall list======
-->C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Program Files\Sony Ericsson\Update Engine\uninst.exe
-->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
µTorrent-->"C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
Adobe Reader X-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-AA0000000001}
AntikVirtualSTB 10.1.7-->"C:\Program Files\AntikVirtualSTB\unins000.exe"
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
avast! Free Antivirus-->C:\Program Files\Alwil Software\Avast5\aswRunDll.exe "C:\Program Files\Alwil Software\Avast5\Setup\setiface.dll" RunSetup
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Java(TM) 6 Update 23-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216023FF}
Media Go-->MsiExec.exe /X{C6AC04F5-5916-4A02-BC36-AF5BC0A3CBD4}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2007-->MsiExec.exe /X{90120000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2007-->MsiExec.exe /X{90120000-0044-0405-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2007-->MsiExec.exe /X{90120000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft WorldWide Telescope-->MsiExec.exe /I{DD0B14CB-028C-4FCC-97C4-011D0EC14DCA}
Nero 7 Ultra Edition-->MsiExec.exe /I{4908C75E-E5E2-43F7-B1DF-023CBA831051}
PlayStation(R)Network Downloader-->MsiExec.exe /X{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}
PlayStation(R)Store-->MsiExec.exe /X{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Skype Toolbars-->MsiExec.exe /I{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
Skype™ 5.0-->MsiExec.exe /X{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}
Sony Ericsson PC Companion 2.01.110-->"C:\Program Files\InstallShield Installation Information\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}\setup.exe" -runfromtemp -l0x0009 -removeonly
Sony Ericsson Update Engine-->C:\Program Files\Sony Ericsson\Update Engine\uninst.exe
Sony Ericsson Update Service-->C:\Program Files\Sony Ericsson\Update Service\uninst.exe
Total Commander (Remove or Repair)-->c:\program files\totalcmd\tcuninst.exe
VLC media player 1.1.5-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
WinRAR archivátor-->C:\Program Files\WinRAR\uninstall.exe
X-Lite 3.0-->"C:\Program Files\CounterPath\X-Lite\unins000.exe"
======System event log======
Computer Name: Zizko-PC
Event Code: 20
Message: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070003: Aktualizácia zabezpečenia systému Windows 7 (KB975560).
Record Number: 1061
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20101210200015.767662-000
Event Type: Error
User: NT AUTHORITY\SYSTEM
Computer Name: Zizko-PC
Event Code: 20
Message: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070003: Aktualizácia zabezpečenia systému Windows 7 (KB981852).
Record Number: 1060
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20101210200015.767662-000
Event Type: Error
User: NT AUTHORITY\SYSTEM
Computer Name: Zizko-PC
Event Code: 20
Message: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070003: Aktualizácia zabezpečenia systému Windows 7 (KB2286198).
Record Number: 1059
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20101210200015.767662-000
Event Type: Error
User: NT AUTHORITY\SYSTEM
Computer Name: Zizko-PC
Event Code: 20
Message: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070003: Aktualizácia obrazovky výberu prehľadávača od spoločnosti Microsoft pre používateľov systému Windows 7 v krajinách EHP (KB976002).
Record Number: 1058
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20101210200015.767662-000
Event Type: Error
User: NT AUTHORITY\SYSTEM
Computer Name: Zizko-PC
Event Code: 7030
Message: Služba ESET Service je označená ako interaktívna služba. Systém je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne nebude pracovať správne.
Record Number: 579
Source Name: Service Control Manager
Time Written: 20101210165456.160422-000
Event Type: Error
User:
=====Application event log=====
Computer Name: Zizko-PC
Event Code: 1000
Message:
Record Number: 172
Source Name: Microsoft-Windows-User Profiles General
Time Written: 20101210161805.000000-000
Event Type: Error
User:
Computer Name: Zizko-PC
Event Code: 1000
Message:
Record Number: 171
Source Name: Microsoft-Windows-User Profiles General
Time Written: 20101210161805.000000-000
Event Type: Error
User:
Computer Name: Zizko-PC
Event Code: 1000
Message:
Record Number: 170
Source Name: Microsoft-Windows-User Profiles General
Time Written: 20101210161805.000000-000
Event Type: Error
User:
Computer Name: Zizko-PC
Event Code: 3006
Message: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.
Record Number: 164
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20101210161431.202892-000
Event Type: Error
User: NT AUTHORITY\SYSTEM
Computer Name: Zizko-PC
Event Code: 1008
Message: Služba Windows Search sa spúšťa a pokúša sa odstrániť starý index hľadania. {Dôvod: Full Index Reset}.
Record Number: 94
Source Name: Microsoft-Windows-Search
Time Written: 20101210161204.000000-000
Event Type: Warning
User:
=====Security event log=====
Computer Name: 37L4247D28-05
Event Code: 4735
Message: A security-enabled local group was changed.
Subject:
Security ID: S-1-5-18
Account Name: 37L4247D28-05$
Account Domain: WORKGROUP
Logon ID: 0x3e7
Group:
Security ID: S-1-5-32-551
Group Name: Backup Operators
Group Domain: Builtin
Changed Attributes:
SAM Account Name: -
SID History: -
Additional Information:
Privileges: -
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20101210160056.985650-000
Event Type: Audit Success
User:
Computer Name: 37L4247D28-05
Event Code: 4731
Message: A security-enabled local group was created.
Subject:
Security ID: S-1-5-18
Account Name: 37L4247D28-05$
Account Domain: WORKGROUP
Logon ID: 0x3e7
New Group:
Security ID: S-1-5-32-551
Group Name: Backup Operators
Group Domain: Builtin
Attributes:
SAM Account Name: Backup Operators
SID History: -
Additional Information:
Privileges: -
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20101210160056.985650-000
Event Type: Audit Success
User:
Computer Name: 37L4247D28-05
Event Code: 4902
Message: The Per-user audit policy table was created.
Number of Elements: 0
Policy ID: 0x234bd
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20101210160056.814049-000
Event Type: Audit Success
User:
Computer Name: 37L4247D28-05
Event Code: 4624
Message: An account was successfully logged on.
Subject:
Security ID: S-1-0-0
Account Name: -
Account Domain: -
Logon ID: 0x0
Logon Type: 0
New Logon:
Security ID: S-1-5-18
Account Name: SYSTEM
Account Domain: NT AUTHORITY
Logon ID: 0x3e7
Logon GUID: {00000000-0000-0000-0000-000000000000}
Process Information:
Process ID: 0x4
Process Name:
Network Information:
Workstation Name: -
Source Network Address: -
Source Port: -
Detailed Authentication Information:
Logon Process: -
Authentication Package: -
Transited Services: -
Package Name (NTLM only): -
Key Length: 0
This event is generated when a logon session is created. It is generated on the computer that was accessed.
The subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.
The logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).
The New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.
The network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.
The authentication information fields provide detailed information about this specific logon request.
- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.
- Transited services indicate which intermediate services have participated in this logon request.
- Package name indicates which sub-protocol was used among the NTLM protocols.
- Key length indicates the length of the generated session key. This will be 0 if no session key was requested.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20101210160055.581647-000
Event Type: Audit Success
User:
Computer Name: 37L4247D28-05
Event Code: 4608
Message: Windows is starting up.
This event is logged when LSASS.EXE starts and the auditing subsystem is initialized.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20101210160055.503647-000
Event Type: Audit Success
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\QuickTime\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 10, GenuineIntel
"PROCESSOR_REVISION"=170a
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Zizko at 2011-02-08 22:02:07
Microsoft Windows 7 Ultimate
System drive C: has 21 GB (43%) free of 50 GB
Total RAM: 3070 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:02:09, on 8. 2. 2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\totalcmd\TOTALCMD.EXE
C:\Windows\system32\taskmgr.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Zizko\Downloads\RSIT (2).exe
C:\Program Files\trend micro\Zizko.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - {381FFDE8-2394-4F90-B10D-FC6124A40F8C} - (no file)
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [Google Update] "C:\Users\Zizko\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
O23 - Service: BitDefender Update Server v2 (Update Server) - Unknown owner - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe (file missing)
--
End of file - 6605 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3813502773-2544309892-3725276685-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3813502773-2544309892-3725276685-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-10 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-12-19 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{381FFDE8-2394-4F90-B10D-FC6124A40F8C}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-11-30 9914984]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe [2010-11-10 35736]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-11-10 932288]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-01-13 3396624]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Zizko\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2010-12-10 395128]
"Sony Ericsson PC Companion"=C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-05 424448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files\DAEMON Tools Pro\DTAgent.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files\uTorrent\uTorrent.exe [2010-12-10 395128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 2 months======
2011-02-08 22:02:07 ----D---- C:\rsit
2011-02-08 21:38:00 ----D---- C:\Program Files\trend micro
2011-02-08 19:49:09 ----D---- C:\ATF
2011-02-02 19:46:00 ----D---- C:\Program Files\Common Files\Sony Shared
2011-02-02 19:45:47 ----D---- C:\ProgramData\Sony Corporation
2011-02-02 19:45:47 ----D---- C:\Program Files\Sony
2011-02-02 19:43:19 ----D---- C:\Program Files\Common Files\Apple
2011-02-02 19:43:18 ----D---- C:\ProgramData\Apple Computer
2011-02-02 19:43:18 ----D---- C:\Program Files\QuickTime
2011-02-02 19:43:05 ----D---- C:\ProgramData\Apple
2011-02-02 19:43:05 ----D---- C:\Program Files\Apple Software Update
2011-02-02 19:42:39 ----D---- C:\Program Files\Sony Media Go Install
2011-01-21 17:44:39 ----A---- C:\Windows\system32\drivers\aswSP.sys
2011-01-21 17:44:39 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2011-01-21 17:44:38 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2011-01-21 17:44:37 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2011-01-21 17:44:36 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2011-01-21 17:44:29 ----A---- C:\Windows\system32\aswBoot.exe
2011-01-21 17:44:28 ----D---- C:\ProgramData\Alwil Software
2011-01-21 17:44:28 ----D---- C:\Program Files\Alwil Software
2011-01-21 10:32:56 ----D---- C:\Users\Zizko\AppData\Roaming\Ahead
2011-01-21 10:32:28 ----D---- C:\ProgramData\Nero
2011-01-21 10:32:28 ----D---- C:\Program Files\Nero
2011-01-21 10:32:28 ----D---- C:\Program Files\Common Files\Ahead
2011-01-21 10:32:08 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-01-16 14:32:35 ----D---- C:\Users\Zizko\AppData\Roaming\Malwarebytes
2011-01-16 14:21:16 ----D---- C:\ProgramData\Malwarebytes
2011-01-16 14:21:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-01-14 22:23:39 ----D---- C:\Windows\Sun
2010-12-29 17:29:56 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-12-29 17:20:17 ----D---- C:\Program Files\Microsoft Research
2010-12-25 15:38:22 ----D---- C:\ProgramData\bdch
2010-12-21 22:36:05 ----A---- C:\bdlog.txt
2010-12-21 20:32:29 ----D---- C:\Users\Zizko\AppData\Roaming\QuickScan
2010-12-21 20:32:13 ----D---- C:\Program Files\Common Files\BitDefender
2010-12-21 01:16:35 ----D---- C:\ProgramData\FileCure
2010-12-19 18:28:55 ----D---- C:\Users\Zizko\AppData\Roaming\Sony
2010-12-19 09:12:09 ----A---- C:\Windows\system32\drivers\seehcri.sys
2010-12-19 09:12:08 ----D---- C:\ProgramData\Sun
2010-12-19 09:12:08 ----D---- C:\Program Files\Common Files\Java
2010-12-19 09:11:59 ----A---- C:\Windows\system32\javaws.exe
2010-12-19 09:11:59 ----A---- C:\Windows\system32\deployJava1.dll
2010-12-19 09:11:58 ----A---- C:\Windows\system32\javaw.exe
2010-12-19 09:11:58 ----A---- C:\Windows\system32\java.exe
2010-12-19 09:11:47 ----D---- C:\Program Files\Java
2010-12-19 09:11:39 ----A---- C:\Windows\system32\WdfCoInstaller01007.dll
2010-12-19 09:11:39 ----A---- C:\Windows\system32\drivers\ggsemc.sys
2010-12-19 09:11:39 ----A---- C:\Windows\system32\drivers\ggflt.sys
2010-12-19 09:08:51 ----D---- C:\ProgramData\Sony Ericsson
2010-12-19 09:08:51 ----D---- C:\Program Files\Sony Ericsson
2010-12-18 22:05:46 ----D---- C:\Users\Zizko\AppData\Roaming\AVG
2010-12-18 22:02:36 ----AD---- C:\ProgramData\TEMP
2010-12-18 21:07:55 ----A---- C:\Windows\system32\msonpmon.dll
2010-12-18 21:07:07 ----D---- C:\Program Files\Microsoft Works
2010-12-18 21:06:49 ----D---- C:\Program Files\Microsoft Visual Studio
2010-12-18 21:06:48 ----D---- C:\Program Files\Common Files\DESIGNER
2010-12-18 21:06:35 ----D---- C:\Windows\PCHEALTH
2010-12-18 21:05:28 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-12-18 21:05:05 ----D---- C:\ProgramData\Microsoft Help
2010-12-18 21:05:05 ----D---- C:\Program Files\Microsoft Office
2010-12-18 21:04:43 ----RHD---- C:\MSOCache
2010-12-13 13:27:20 ----D---- C:\Program Files\AntikVirtualSTB
2010-12-13 11:10:13 ----D---- C:\Users\Zizko\AppData\Roaming\AVG10
2010-12-13 11:09:03 ----HD---- C:\ProgramData\Common Files
2010-12-13 11:08:16 ----D---- C:\ProgramData\AVG10
2010-12-13 11:05:57 ----D---- C:\ProgramData\MFAData
2010-12-13 11:04:02 ----D---- C:\Windows\system32\Macromed
2010-12-12 19:52:01 ----D---- C:\Program Files\Activision
2010-12-11 21:10:40 ----D---- C:\Users\Zizko\AppData\Roaming\dvdcss
2010-12-11 09:10:24 ----D---- C:\Program Files\Common Files\Adobe
2010-12-11 09:10:24 ----D---- C:\Program Files\Adobe
2010-12-11 09:09:52 ----D---- C:\ProgramData\Adobe
2010-12-11 00:06:23 ----D---- C:\Users\Zizko\AppData\Roaming\vlc
2010-12-11 00:06:09 ----D---- C:\Program Files\VideoLAN
2010-12-11 00:01:50 ----A---- C:\Windows\system32\wmploc.DLL
2010-12-11 00:01:50 ----A---- C:\Windows\system32\wmp.dll
2010-12-10 23:46:47 ----D---- C:\Windows\Minidump
2010-12-10 23:45:48 ----D---- C:\Users\Zizko\AppData\Roaming\Mozilla
2010-12-10 23:45:43 ----D---- C:\Program Files\Mozilla Firefox
2010-12-10 23:22:01 ----D---- C:\Program Files\uTorrent
2010-12-10 23:20:40 ----D---- C:\Users\Zizko\AppData\Roaming\uTorrent
2010-12-10 22:57:49 ----D---- C:\Users\Zizko\AppData\Roaming\DAEMON Tools Pro
2010-12-10 22:57:49 ----D---- C:\ProgramData\DAEMON Tools Pro
2010-12-10 22:49:48 ----A---- C:\Windows\system32\drivers\sptd.sys
2010-12-10 22:48:28 ----D---- C:\Users\Zizko\AppData\Roaming\DAEMON Tools Lite
2010-12-10 22:48:23 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-12-10 22:35:56 ----D---- C:\Users\Zizko\AppData\Roaming\GHISLER
2010-12-10 22:35:56 ----D---- C:\Program Files\totalcmd
2010-12-10 22:35:56 ----A---- C:\Windows\UC.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\RAR.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\PKZIP.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\PKUNZIP.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\NOCLOSE.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\LHA.PIF
2010-12-10 22:35:56 ----A---- C:\Windows\ARJ.PIF
2010-12-10 22:24:01 ----D---- C:\Program Files\CCleaner
2010-12-10 22:05:26 ----A---- C:\Windows\system32\msv1_0.dll
2010-12-10 22:04:36 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-12-10 22:04:36 ----A---- C:\Windows\system32\PresentationHost.exe
2010-12-10 22:04:36 ----A---- C:\Windows\system32\netfxperf.dll
2010-12-10 22:04:36 ----A---- C:\Windows\system32\mscoree.dll
2010-12-10 22:04:35 ----A---- C:\Windows\system32\dfshim.dll
2010-12-10 22:02:41 ----A---- C:\Windows\system32\MRT.exe
2010-12-10 22:01:43 ----A---- C:\Windows\system32\browserchoice.exe
2010-12-10 22:01:21 ----A---- C:\Windows\system32\drivers\ks.sys
2010-12-10 22:00:57 ----A---- C:\Windows\system32\wmpmde.dll
2010-12-10 22:00:57 ----A---- C:\Windows\system32\win32k.sys
2010-12-10 22:00:56 ----A---- C:\Windows\system32\srvsvc.dll
2010-12-10 22:00:56 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-12-10 22:00:56 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-12-10 22:00:56 ----A---- C:\Windows\system32\drivers\srv.sys
2010-12-10 22:00:53 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-12-10 22:00:53 ----A---- C:\Windows\system32\secproc_isv.dll
2010-12-10 22:00:53 ----A---- C:\Windows\system32\secproc.dll
2010-12-10 22:00:53 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-12-10 22:00:53 ----A---- C:\Windows\system32\RMActivate.exe
2010-12-10 22:00:52 ----A---- C:\Windows\system32\vbscript.dll
2010-12-10 22:00:52 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-12-10 22:00:52 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-12-10 22:00:52 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-12-10 22:00:51 ----A---- C:\Windows\system32\cabview.dll
2010-12-10 21:58:59 ----A---- C:\Windows\system32\StructuredQuery.dll
2010-12-10 21:58:56 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2010-12-10 21:58:56 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2010-12-10 21:58:56 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2010-12-10 21:58:50 ----A---- C:\Windows\system32\fontsub.dll
2010-12-10 21:58:50 ----A---- C:\Windows\system32\atmlib.dll
2010-12-10 21:58:50 ----A---- C:\Windows\system32\atmfd.dll
2010-12-10 21:03:53 ----D---- C:\ProgramData\NVIDIA
2010-12-10 21:03:18 ----D---- C:\ProgramData\NVIDIA Corporation
2010-12-10 21:02:23 ----D---- C:\Program Files\NVIDIA Corporation
2010-12-10 21:02:08 ----D---- C:\NVIDIA
2010-12-10 20:59:29 ----D---- C:\Program Files\Microsoft.NET
2010-12-10 20:58:13 ----A---- C:\Windows\system32\winlogon.exe
2010-12-10 20:58:13 ----A---- C:\Windows\explorer.exe
2010-12-10 20:09:56 ----D---- C:\Users\Zizko\AppData\Roaming\skypePM
2010-12-10 20:05:54 ----RD---- C:\Program Files\Skype
2010-12-10 20:05:54 ----D---- C:\Users\Zizko\AppData\Roaming\Skype
2010-12-10 20:05:54 ----D---- C:\Program Files\Common Files\Skype
2010-12-10 20:05:52 ----D---- C:\ProgramData\Skype
2010-12-10 20:05:40 ----D---- C:\Windows\system32\RTCOM
2010-12-10 20:05:20 ----A---- C:\Windows\system32\WavesLib.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\WavesGUILib.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SRSWOW.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SRSTSXT.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SRSTSHD.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SRSHP360.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SFNHK.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SFCOM.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\SFAPO.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RtkPgExt.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RtkCoInst.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RtkApoApi.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RtkAPO.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RTEEP32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RTEEL32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RTEEG32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RTEED32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RP3DHT32.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\RP3DAA32.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\R4EEP32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\R4EEL32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\R4EEG32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\R4EED32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\R4EEA32A.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2010-12-10 20:05:20 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2010-12-10 20:05:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-12-10 20:05:19 ----D---- C:\Program Files\Realtek
2010-12-10 20:05:19 ----A---- C:\Windows\system32\FMAPO.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\AERTARen.dll
2010-12-10 20:05:19 ----A---- C:\Windows\system32\AERTACap.dll
2010-12-10 20:05:09 ----HD---- C:\Program Files\Temp
2010-12-10 20:05:09 ----A---- C:\Windows\RtlExUpd.dll
2010-12-10 20:05:07 ----D---- C:\Program Files\Common Files\InstallShield
2010-12-10 19:52:35 ----A---- C:\Windows\isRS-000.tmp
2010-12-10 19:52:34 ----D---- C:\Program Files\Common Files\Intel
2010-12-10 19:52:33 ----D---- C:\Program Files\CounterPath
2010-12-10 19:52:13 ----D---- C:\Windows\system32\appmgmt
2010-12-10 18:42:58 ----D---- C:\Users\Zizko\AppData\Roaming\WinRAR
2010-12-10 18:42:26 ----D---- C:\Program Files\WinRAR
2010-12-10 18:31:37 ----D---- C:\Users\Zizko\AppData\Roaming\Macromedia
2010-12-10 18:31:37 ----D---- C:\Users\Zizko\AppData\Roaming\Adobe
2010-12-10 18:12:35 ----A---- C:\Windows\system32\ole32.dll
2010-12-10 18:12:31 ----A---- C:\Windows\system32\msxml3.dll
2010-12-10 18:12:26 ----A---- C:\Windows\system32\CPFilters.dll
2010-12-10 18:12:25 ----A---- C:\Windows\system32\psisdecd.dll
2010-12-10 18:12:25 ----A---- C:\Windows\system32\msdri.dll
2010-12-10 18:12:23 ----A---- C:\Windows\system32\tzres.dll
2010-12-10 18:12:15 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2010-12-10 18:12:15 ----A---- C:\Windows\system32\CertEnroll.dll
2010-12-10 18:12:14 ----A---- C:\Windows\system32\winresume.exe
2010-12-10 18:12:14 ----A---- C:\Windows\system32\winload.exe
2010-12-10 18:12:04 ----A---- C:\Windows\system32\lsasrv.dll
2010-12-10 18:12:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2010-12-10 18:11:59 ----A---- C:\Windows\system32\mshtml.dll
2010-12-10 18:11:57 ----A---- C:\Windows\system32\iertutil.dll
2010-12-10 18:11:57 ----A---- C:\Windows\system32\ieframe.dll
2010-12-10 18:11:56 ----A---- C:\Windows\system32\wininet.dll
2010-12-10 18:11:56 ----A---- C:\Windows\system32\urlmon.dll
2010-12-10 18:11:56 ----A---- C:\Windows\system32\mstime.dll
2010-12-10 18:11:56 ----A---- C:\Windows\system32\msfeeds.dll
2010-12-10 18:11:56 ----A---- C:\Windows\system32\iedkcs32.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\mshtmled.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\msfeedssync.exe
2010-12-10 18:11:55 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\licmgr10.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\jsproxy.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\ieui.dll
2010-12-10 18:11:55 ----A---- C:\Windows\system32\iepeers.dll
2010-12-10 18:11:52 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-12-10 18:11:52 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-12-10 18:11:51 ----A---- C:\Windows\system32\spoolsv.exe
2010-12-10 18:11:51 ----A---- C:\Windows\system32\rtutils.dll
2010-12-10 18:11:50 ----A---- C:\Windows\system32\wintrust.dll
2010-12-10 18:11:49 ----A---- C:\Windows\system32\drivers\tcpip.sys
2010-12-10 18:11:48 ----A---- C:\Windows\system32\ir32_32.dll
2010-12-10 18:11:48 ----A---- C:\Windows\system32\iccvid.dll
2010-12-10 18:11:47 ----A---- C:\Windows\system32\schannel.dll
2010-12-10 18:11:47 ----A---- C:\Windows\system32\jscript.dll
2010-12-10 18:11:47 ----A---- C:\Windows\system32\drivers\fvevol.sys
2010-12-10 18:11:45 ----A---- C:\Windows\system32\t2embed.dll
2010-12-10 18:11:45 ----A---- C:\Windows\system32\mfc40u.dll
2010-12-10 18:11:45 ----A---- C:\Windows\system32\mfc40.dll
2010-12-10 18:11:43 ----A---- C:\Windows\system32\inetcomm.dll
2010-12-10 18:11:37 ----A---- C:\Windows\system32\msasn1.dll
2010-12-10 18:11:37 ----A---- C:\Windows\system32\comctl32.dll
2010-12-10 18:11:36 ----A---- C:\Windows\system32\ntdll.dll
2010-12-10 18:11:35 ----A---- C:\Windows\system32\asycfilt.dll
2010-12-10 18:11:31 ----A---- C:\Windows\system32\shell32.dll
2010-12-10 18:11:30 ----A---- C:\Windows\system32\kernel32.dll
2010-12-10 18:11:30 ----A---- C:\Windows\system32\apphelp.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\tsbyuv.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\quartz.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\msyuv.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\msvidc32.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\msrle32.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\mciavi32.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\iyuv_32.dll
2010-12-10 18:11:29 ----A---- C:\Windows\system32\avifil32.dll
2010-12-10 18:11:28 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2010-12-10 17:54:09 ----SHD---- C:\Windows\Installer
2010-12-10 17:36:16 ----N---- C:\Windows\system32\MpSigStub.exe
2010-12-10 17:14:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-12-10 17:13:41 ----D---- C:\Windows\SoftwareDistribution
2010-12-10 17:12:47 ----D---- C:\Users\Zizko\AppData\Roaming\Identities
2010-12-10 17:12:40 ----SD---- C:\Users\Zizko\AppData\Roaming\Microsoft
2010-12-10 17:12:40 ----D---- C:\Users\Zizko\AppData\Roaming\Media Center Programs
2010-12-10 17:12:30 ----SHD---- C:\Recovery
2010-12-10 17:00:55 ----D---- C:\Windows\Prefetch
2010-12-10 17:00:43 ----ASH---- C:\pagefile.sys
2010-12-10 17:00:43 ----ASH---- C:\hiberfil.sys
2010-12-10 16:59:26 ----SHD---- C:\System Volume Information
2010-12-10 16:54:18 ----D---- C:\Windows\Panther
2010-12-10 16:54:06 ----RASH---- C:\BOOTSECT.BAK
2010-12-10 16:54:05 ----SHD---- C:\Boot
======List of files/folders modified in the last 2 months======
2011-02-08 22:02:07 ----D---- C:\Windows\Temp
2011-02-08 21:38:00 ----RD---- C:\Program Files
2011-02-08 12:15:39 ----D---- C:\Windows\System32
2011-02-08 12:15:39 ----D---- C:\Windows\inf
2011-02-08 11:44:12 ----D---- C:\Windows\system32\config
2011-02-05 10:17:17 ----D---- C:\Windows\system32\DriverStore
2011-02-05 10:17:17 ----D---- C:\Windows\system32\catroot
2011-02-05 10:17:14 ----D---- C:\Windows
2011-02-02 19:46:00 ----D---- C:\Program Files\Common Files
2011-02-02 19:45:53 ----RSD---- C:\Windows\assembly
2011-02-02 19:45:47 ----HD---- C:\ProgramData
2011-02-02 19:43:29 ----D---- C:\Program Files\Internet Explorer
2011-02-02 19:43:06 ----D---- C:\Windows\system32\Tasks
2011-01-27 00:15:36 ----D---- C:\Windows\system32\wdi
2011-01-26 10:10:32 ----D---- C:\Windows\system32\catroot2
2011-01-21 20:07:31 ----D---- C:\Windows\system32\NDF
2011-01-21 18:15:08 ----D---- C:\Windows\system32\drivers
2011-01-21 10:32:45 ----D---- C:\Windows\ehome
2010-12-29 17:29:56 ----D---- C:\Windows\Microsoft.NET
2010-12-21 20:33:00 ----D---- C:\Windows\winsxs
2010-12-21 01:35:42 ----D---- C:\Windows\Tasks
2010-12-18 22:07:29 ----D---- C:\Windows\Downloaded Program Files
2010-12-18 21:46:56 ----SD---- C:\ProgramData\Microsoft
2010-12-18 21:07:06 ----D---- C:\Program Files\Common Files\microsoft shared
2010-12-18 21:06:58 ----D---- C:\Program Files\MSBuild
2010-12-18 21:06:48 ----D---- C:\Windows\ShellNew
2010-12-18 21:06:39 ----RSD---- C:\Windows\Fonts
2010-12-18 21:05:18 ----A---- C:\Windows\win.ini
2010-12-18 21:05:17 ----D---- C:\Program Files\Common Files\System
2010-12-12 19:46:52 ----D---- C:\Windows\system32\drivers\UMDF
2010-12-12 16:24:31 ----D---- C:\Windows\rescache
2010-12-11 00:16:56 ----D---- C:\Program Files\Windows Media Player
2010-12-11 00:02:35 ----D---- C:\Windows\system32\en-US
2010-12-10 22:24:44 ----D---- C:\Windows\debug
2010-12-10 22:16:39 ----D---- C:\Windows\system32\migration
2010-12-10 22:16:36 ----D---- C:\Windows\system32\sk-SK
2010-12-10 22:16:36 ----D---- C:\Windows\system32\Boot
2010-12-10 22:16:36 ----D---- C:\Program Files\Windows Mail
2010-12-10 22:16:35 ----D---- C:\Windows\AppPatch
2010-12-10 21:14:32 ----D---- C:\Windows\system32\wfp
2010-12-10 21:14:30 ----D---- C:\Windows\system32\wbem
2010-12-10 21:13:40 ----D---- C:\Windows\system32\MUI
2010-12-10 21:13:39 ----D---- C:\Windows\security
2010-12-10 21:13:34 ----D---- C:\Windows\registration
2010-12-10 21:12:23 ----D---- C:\Windows\Logs
2010-12-10 17:36:08 ----D---- C:\Windows\system32\restore
2010-12-10 17:28:49 ----D---- C:\Windows\system32\CodeIntegrity
2010-12-10 17:12:46 ----SHD---- C:\$Recycle.Bin
2010-12-10 17:12:38 ----RD---- C:\Users
2010-12-10 17:03:14 ----D---- C:\Windows\system32\sysprep
2010-12-10 17:01:15 ----D---- C:\Windows\CSC
2010-12-10 16:53:55 ----D---- C:\Windows\system32\oobe
2010-12-10 16:53:55 ----D---- C:\Windows\Setup
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-12-10 420920]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-01-13 23632]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-01-13 294608]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-01-13 47440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-01-13 17744]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-01-13 51280]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-11-30 3317800]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2010-12-19 27632]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2010-12-19 13224]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2010-12-19 25512]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-01-13 40384]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Update Server;BitDefender Update Server v2; C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe []
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
zda se mi ze mne dostal vir z facebooku kuknete se na to,dik
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 41
- Registrován: 27 říj 2010 12:10
Re: zda se mi ze mne dostal vir z facebooku kuknete se na to
Zdravim
Nezakladejte zbytecne duplicitni temata, pokracujeme zde http://www.viry.cz/forum/viewtopic.php?f=30&t=109265
Tady prosim kolegy moderatory o 




-
- Návštěvník
- Příspěvky: 41
- Registrován: 27 říj 2010 12:10
Re: zda se mi ze mne dostal vir z facebooku kuknete se na to
AHA pardoon , ja tu temu muzu klidne zmazat ak trebe 

Re: zda se mi ze mne dostal vir z facebooku kuknete se na to
V pohode, nechte to tak, kolegove moderatori se o to postaraji 

-
- Návštěvník
- Příspěvky: 41
- Registrován: 27 říj 2010 12:10
Re: zda se mi ze mne dostal vir z facebooku kuknete se na to
dekuju a jeste jednou se omlouvaam
hezkyy zvysek vecera preju
a jeste jodno diik ze tu pro naas ste

hezkyy zvysek vecera preju

a jeste jodno diik ze tu pro naas ste

Re: zda se mi ze mne dostal vir z facebooku kuknete se na to
Neni zac, pokracujem v uvedenem threadu, zde 
