
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Kontrola logu z HijackThi
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Kontrola logu z HijackThi
Prosím o kontrolu logu z HijackThi
.......
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:56:54, on 1.4.2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Martin\Dokumenty\Stažené soubory\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7217FEC7-B5A7-4669-A88E-4A5991E0EACC}: NameServer = 78.136.128.4 78.136.128.12
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 4198 bytes
.......
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:56:54, on 1.4.2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Martin\Dokumenty\Stažené soubory\hijackthis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7217FEC7-B5A7-4669-A88E-4A5991E0EACC}: NameServer = 78.136.128.4 78.136.128.12
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 4198 bytes
Re: Kontrola logu z HijackThi
Zdravím, tohle fixni v HJT :
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
Fix znamená že spustíš HJT
v okně které se ti otevře klikneš na Do a system scan only
v dalším okně najdeš řádky které jsem ti vypsal,
vedle nich je čtvereček do kterého uděláš zatržítko,
pak klikneš na Fix checked které je vlevo dole,
program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.
Přes Start >> Spustit >> napiš - services.msc >> OK. Najdi službu :
Nero BackItUp Scheduler 3
NMIndexingService
klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.
Pak mi sem vlož log z Rsit, je podrobnšjší než HJT.
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
Fix znamená že spustíš HJT

v okně které se ti otevře klikneš na Do a system scan only
v dalším okně najdeš řádky které jsem ti vypsal,
vedle nich je čtvereček do kterého uděláš zatržítko,
pak klikneš na Fix checked které je vlevo dole,
program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.
Přes Start >> Spustit >> napiš - services.msc >> OK. Najdi službu :
Nero BackItUp Scheduler 3
NMIndexingService
klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.
Pak mi sem vlož log z Rsit, je podrobnšjší než HJT.
Re: Kontrola logu z HijackThi
tady je log z Rsit
.....
Logfile of random's system information tool 1.08 (written by random/random)
Run by Martin at 2011-04-01 19:58:47
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 145 GB (95%) free of 153 GB
Total RAM: 2047 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:59:12, on 1.4.2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Ufonuv fofr internet\EASYWIRELESSNET.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Martin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Martin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7217FEC7-B5A7-4669-A88E-4A5991E0EACC}: NameServer = 78.136.128.4 78.136.128.12
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 3198 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-02-23 814160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-02-23 814160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-02-23 3451496]
"ACU"=C:\Program Files\Atheros\ACU.exe [2006-11-07 381020]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-03-31 16270848]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2011-03-31 2879488]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2011-03-31 69632]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-31 786521]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2011-04-01 19:53:08 ----D---- C:\rsit
2011-04-01 19:53:08 ----D---- C:\Program Files\trend micro
2011-04-01 19:04:34 ----D---- C:\ATI
2011-04-01 18:04:06 ----D---- C:\Program Files\CPUID
2011-04-01 18:04:06 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-04-01 17:37:48 ----D---- C:\Program Files\Driver-Soft
2011-04-01 13:29:32 ----D---- C:\Program Files\AMD APP
2011-04-01 13:29:11 ----D---- C:\Program Files\ATI Technologies
2011-04-01 13:24:54 ----RSD---- C:\WINDOWS\assembly
2011-04-01 13:23:08 ----D---- C:\WINDOWS\Microsoft.NET
2011-04-01 11:51:48 ----D---- C:\Program Files\MobilityDotNET
2011-04-01 11:49:13 ----D---- C:\Program Files\ATI
2011-04-01 11:39:43 ----A---- C:\WINDOWS\system32\drivers\DrvAgent32.sys
2011-04-01 11:21:56 ----D---- C:\Program Files\MSXML 6.0
2011-04-01 10:52:34 ----D---- C:\Program Files\Lavalys
2011-04-01 09:43:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-04-01 09:43:08 ----D---- C:\Program Files\Common Files\Adobe
2011-04-01 09:43:08 ----D---- C:\Program Files\Adobe
2011-03-31 20:11:03 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPFcs.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPCo2.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\drivers\SynTP.sys
2011-03-31 20:08:52 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2011-03-31 20:08:52 ----A---- C:\WINDOWS\system32\SynCOM.dll
2011-03-31 20:08:45 ----D---- C:\Program Files\Synaptics
2011-03-31 13:22:22 ----D---- C:\WINDOWS\system32\Lang
2011-03-31 11:40:05 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2011-03-31 11:40:01 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2011-03-31 11:40:00 ----A---- C:\WINDOWS\system32\ChCfg.exe
2011-03-31 11:39:59 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2011-03-31 11:39:57 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2011-03-31 11:39:55 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2011-03-31 11:39:53 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2011-03-31 11:39:52 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2011-03-31 11:39:50 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2011-03-31 11:39:47 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2011-03-31 11:39:46 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2011-03-31 11:39:43 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2011-03-31 11:39:35 ----D---- C:\WINDOWS\system32\RTCOM
2011-03-31 11:39:32 ----A---- C:\WINDOWS\system32\ksuser.dll
2011-03-31 11:39:31 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2011-03-31 11:39:27 ----A---- C:\WINDOWS\SoundMan.exe
2011-03-31 11:39:27 ----A---- C:\WINDOWS\SkyTel.exe
2011-03-31 11:39:26 ----A---- C:\WINDOWS\RtlUpd.exe
2011-03-31 11:39:26 ----A---- C:\WINDOWS\RTLCPL.exe
2011-03-31 11:39:24 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.Sys
2011-03-31 11:39:24 ----A---- C:\WINDOWS\RTHDCPL.exe
2011-03-31 11:39:24 ----A---- C:\WINDOWS\MicCal.exe
2011-03-31 11:39:22 ----D---- C:\Program Files\Realtek
2011-03-31 11:39:22 ----A---- C:\WINDOWS\alcwzrd.exe
2011-03-31 11:39:22 ----A---- C:\WINDOWS\Alcmtr.exe
2011-03-31 11:39:18 ----A---- C:\WINDOWS\RtlExUpd.dll
2011-03-31 11:10:26 ----A---- C:\WINDOWS\system32\drivers\RTSTOR.sys
2011-03-31 11:06:26 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-03-31 11:06:24 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2011-03-30 19:23:01 ----A---- C:\WINDOWS\system32\acs.exe
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsimd.sys
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsimd.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsfwDS.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wgapi.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wcapiU.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\dsaNac.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\dsa.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\drivers\wsimd.sys
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\wcapi.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20U.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20resU.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20res.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20.dll
2011-03-30 19:22:42 ----D---- C:\Program Files\Atheros
2011-03-30 19:22:38 ----A---- C:\WINDOWS\system32\ar5416.sys
2011-03-30 19:22:34 ----A---- C:\WINDOWS\system32\drivers\preparse.ini
2011-03-30 19:22:02 ----D---- C:\temp
2011-03-30 19:22:01 ----D---- C:\Documents and Settings\Martin\Data aplikací\InstallShield
2011-03-30 19:18:41 ----D---- C:\Program Files\MSECache
2011-03-30 12:19:07 ----A---- C:\WINDOWS\NeroDigital.ini
2011-03-30 07:39:25 ----D---- C:\Documents and Settings\Martin\Data aplikací\Macromedia
2011-03-30 07:39:25 ----D---- C:\Documents and Settings\Martin\Data aplikací\Adobe
2011-03-29 17:24:04 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-03-29 17:24:03 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-03-29 17:24:00 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-03-29 17:24:00 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-03-29 17:23:59 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-03-29 17:23:43 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-03-29 17:23:36 ----D---- C:\Program Files\AVAST Software
2011-03-29 17:23:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 17:04:24 ----A---- C:\Program Files\setup_av_free.exe
2011-03-29 16:35:18 ----A---- C:\WINDOWS\system32\h323log.txt
2011-03-29 16:32:32 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2011-03-29 16:31:57 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2011-03-29 16:31:02 ----A---- C:\WINDOWS\system32\usbui.dll
2011-03-29 16:30:57 ----A---- C:\WINDOWS\system32\drivers\RTL8139.sys
2011-03-29 16:30:56 ----A---- C:\WINDOWS\system32\drivers\compbatt.sys
2011-03-29 16:30:55 ----A---- C:\WINDOWS\system32\drivers\battc.sys
2011-03-29 16:30:54 ----A---- C:\WINDOWS\system32\drivers\CmBatt.sys
2011-03-29 16:29:51 ----A---- C:\WINDOWS\imsins.BAK
2011-03-29 16:29:48 ----SHD---- C:\WINDOWS\Installer
2011-03-29 16:29:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-29 16:29:47 ----D---- C:\Program Files\Common Files\ODBC
2011-03-29 16:29:47 ----A---- C:\WINDOWS\ODBCINST.INI
2011-03-29 16:29:44 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-03-29 16:29:40 ----RD---- C:\Program Files
2011-03-29 16:29:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:29:40 ----D---- C:\Program Files\Common Files
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdur.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdru.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2011-03-29 16:29:28 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdest.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdro.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2011-03-29 16:29:19 ----A---- C:\WINDOWS\system32\irclass.dll
2011-03-29 16:29:19 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\spxcoins.dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\dgsetup.dll
2011-03-29 16:29:16 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2011-03-29 16:29:16 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-03-29 16:29:16 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2011-03-29 16:29:16 ----A---- C:\WINDOWS\system32\batt.dll
2011-03-29 16:29:15 ----A---- C:\WINDOWS\NOTEPAD.EXE
2011-03-29 16:29:12 ----A---- C:\WINDOWS\system32\storprop.dll
2011-03-29 16:29:02 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-03-29 16:28:59 ----RA---- C:\WINDOWS\SET8.tmp
2011-03-29 16:28:56 ----RA---- C:\WINDOWS\SET4.tmp
2011-03-29 16:28:55 ----RA---- C:\WINDOWS\SET3.tmp
2011-03-29 16:28:47 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-29 16:28:47 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:28:41 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-03-29 16:28:20 ----A---- C:\WINDOWS\setuplog.txt
2011-03-29 16:28:16 ----D---- C:\Documents and Settings
2011-03-29 16:28:15 ----SHD---- C:\System Volume Information
2011-03-29 16:27:38 ----SH---- C:\boot.ini
2011-03-29 16:24:05 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-29 16:24:05 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 16:24:05 ----RD---- C:\WINDOWS\Web
2011-03-29 16:24:05 ----HD---- C:\WINDOWS\inf
2011-03-29 16:24:05 ----D---- C:\WINDOWS\WinSxS
2011-03-29 16:24:05 ----D---- C:\WINDOWS\twain_32
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Temp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\wins
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\spool
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ShellExt
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ras
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\mui
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\inetsrv
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\IME
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\icsxml
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ias
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\export
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers\etc
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers\disdn
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\dhcp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\config
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\3com_dmi
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\3076
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\2052
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1054
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1042
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1041
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1037
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1033
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1031
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1029
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1028
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1025
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system
2011-03-29 16:24:05 ----D---- C:\WINDOWS\security
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Resources
2011-03-29 16:24:05 ----D---- C:\WINDOWS\repair
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Provisioning
2011-03-29 16:24:05 ----D---- C:\WINDOWS\pchealth
2011-03-29 16:24:05 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:24:05 ----D---- C:\WINDOWS\NLDRV
2011-03-29 16:24:05 ----D---- C:\WINDOWS\mui
2011-03-29 16:24:05 ----D---- C:\WINDOWS\msapps
2011-03-29 16:24:05 ----D---- C:\WINDOWS\msagent
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Media
2011-03-29 16:24:05 ----D---- C:\WINDOWS\java
2011-03-29 16:24:05 ----D---- C:\WINDOWS\ime
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Help
2011-03-29 16:24:05 ----D---- C:\WINDOWS\ehome
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Driver Cache
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Debug
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Cursors
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Connection Wizard
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Config
2011-03-29 16:24:05 ----D---- C:\WINDOWS\AppPatch
2011-03-29 16:24:05 ----D---- C:\WINDOWS\addins
2011-03-29 16:24:05 ----D---- C:\WINDOWS
2011-03-29 16:24:05 ----ASH---- C:\pagefile.sys
2011-03-29 16:18:36 ----D---- C:\Documents and Settings\Martin\Data aplikací\Mozilla
2011-03-29 16:18:31 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 16:17:45 ----A---- C:\Program Files\seznam-firefox-win32-cs-4.0.0.exe
2011-03-29 16:01:22 ----A---- C:\WINDOWS\ModemLog_AnyDATA CDMA USB Modem (PID 6502).txt
2011-03-29 16:01:15 ----A---- C:\WINDOWS\red_dialer.ini
2011-03-29 16:00:46 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2011-03-29 15:57:16 ----D---- C:\Program Files\DIFX
2011-03-29 15:57:16 ----A---- C:\WINDOWS\system32\drivers\adusbser.sys
2011-03-29 15:57:14 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-03-29 15:57:09 ----D---- C:\Program Files\Ufonuv fofr internet
2011-03-29 15:53:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\CyberLink
2011-03-29 15:53:47 ----HD---- C:\Program Files\InstallShield Installation Information
2011-03-29 15:53:47 ----D---- C:\Program Files\CyberLink
2011-03-29 15:52:56 ----D---- C:\Program Files\Common Files\InstallShield
2011-03-29 15:04:14 ----D---- C:\Documents and Settings\Martin\Data aplikací\Nero
2011-03-29 15:03:56 ----A---- C:\WINDOWS\system32\MsiExec.exe.log
2011-03-29 15:02:22 ----D---- C:\Program Files\Nero
2011-03-29 15:02:22 ----D---- C:\Program Files\Common Files\Nero
2011-03-29 15:02:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2011-03-29 15:01:25 ----D---- C:\WINDOWS\RegisteredPackages
2011-03-29 14:59:55 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2011-03-29 14:59:54 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2011-03-29 14:50:09 ----A---- C:\WINDOWS\ODBC.INI
2011-03-29 14:49:12 ----D---- C:\Program Files\Microsoft Visual Studio
2011-03-29 14:49:11 ----D---- C:\Program Files\Common Files\Designer
2011-03-29 14:48:11 ----D---- C:\WINDOWS\ShellNew
2011-03-29 14:48:07 ----D---- C:\Program Files\Microsoft Office
2011-03-29 14:45:43 ----D---- C:\Documents and Settings\Martin\Data aplikací\Identities
2011-03-29 14:45:41 ----HD---- C:\Program Files\Uninstall Information
2011-03-29 14:45:35 ----ASH---- C:\Documents and Settings\Martin\Data aplikací\desktop.ini
2011-03-29 14:45:34 ----SD---- C:\Documents and Settings\Martin\Data aplikací\Microsoft
2011-03-29 14:44:34 ----D---- C:\WINDOWS\SoftwareDistribution
2011-03-29 14:44:32 ----D---- C:\WINDOWS\Prefetch
2011-03-29 14:44:31 ----SD---- C:\WINDOWS\system32\Microsoft
2011-03-29 14:44:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 14:41:33 ----D---- C:\WINDOWS\system32\xircom
2011-03-29 14:41:33 ----D---- C:\Program Files\xerox
2011-03-29 14:41:33 ----D---- C:\Program Files\microsoft frontpage
2011-03-29 14:41:16 ----RASH---- C:\MSDOS.SYS
2011-03-29 14:41:16 ----RASH---- C:\IO.SYS
2011-03-29 14:41:16 ----A---- C:\WINDOWS\control.ini
2011-03-29 14:41:16 ----A---- C:\CONFIG.SYS
2011-03-29 14:41:16 ----A---- C:\AUTOEXEC.BAT
2011-03-29 14:41:05 ----A---- C:\WINDOWS\OEWABLog.txt
2011-03-29 14:41:00 ----A---- C:\WINDOWS\system32\mapi32.dll
2011-03-29 14:40:07 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-03-29 14:40:07 ----RD---- C:\WINDOWS\Offline Web Pages
2011-03-29 14:40:07 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2011-03-29 14:40:01 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2011-03-29 14:39:56 ----HD---- C:\Program Files\WindowsUpdate
2011-03-29 14:39:51 ----D---- C:\Program Files\Online Services
2011-03-29 14:39:34 ----D---- C:\WINDOWS\system32\DirectX
2011-03-29 14:39:15 ----A---- C:\WINDOWS\system32\atrace.dll
2011-03-29 14:39:12 ----A---- C:\WINDOWS\system32\desktop.ini
2011-03-29 14:39:12 ----A---- C:\WINDOWS\desktop.ini
2011-03-29 14:39:05 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2011-03-29 14:39:04 ----A---- C:\WINDOWS\system32\acctres.dll
2011-03-29 14:39:03 ----D---- C:\Program Files\Common Files\Services
2011-03-29 14:39:00 ----SD---- C:\WINDOWS\Tasks
2011-03-29 14:39:00 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2011-03-29 14:38:59 ----D---- C:\Program Files\Common Files\MSSoap
2011-03-29 14:38:56 ----D---- C:\WINDOWS\srchasst
2011-03-29 14:38:55 ----D---- C:\WINDOWS\system32\Macromed
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuweb.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wucltui.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuauserv.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wups.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuauclt.exe
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuapi.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\qmgr.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2011-03-29 14:38:47 ----D---- C:\Program Files\Movie Maker
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrslv.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrdm.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\racpldlg.dll
2011-03-29 14:38:40 ----A---- C:\WINDOWS\system32\fltMc.exe
2011-03-29 14:38:40 ----A---- C:\WINDOWS\system32\fltlib.dll
2011-03-29 14:38:39 ----D---- C:\WINDOWS\system32\Restore
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srsvc.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srrstr.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srclient.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\mnmdd.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\ils.dll
2011-03-29 14:38:37 ----A---- C:\WINDOWS\system32\msconf.dll
2011-03-29 14:38:37 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2011-03-29 14:38:35 ----D---- C:\Program Files\NetMeeting
2011-03-29 14:38:35 ----A---- C:\WINDOWS\system32\msoert2.dll
2011-03-29 14:38:34 ----A---- C:\WINDOWS\system32\msoeacct.dll
2011-03-29 14:38:33 ----A---- C:\WINDOWS\system32\inetres.dll
2011-03-29 14:38:33 ----A---- C:\WINDOWS\system32\inetcomm.dll
2011-03-29 14:38:31 ----D---- C:\Program Files\Outlook Express
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\schedsvc.dll
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\mstinit.exe
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\mstask.dll
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\icwphbk.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\isign32.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\inetcfg.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\icwdial.dll
2011-03-29 14:38:25 ----D---- C:\Program Files\Common Files\System
2011-03-29 14:38:18 ----D---- C:\Program Files\Internet Explorer
2011-03-29 14:37:41 ----D---- C:\Program Files\ComPlus Applications
2011-03-29 14:37:39 ----A---- C:\WINDOWS\vbaddin.ini
2011-03-29 14:37:39 ----A---- C:\WINDOWS\vb.ini
2011-03-29 14:37:33 ----D---- C:\WINDOWS\Registration
2011-03-29 14:37:25 ----D---- C:\Program Files\Windows Media Player
2011-03-29 14:37:18 ----D---- C:\Program Files\Messenger
2011-03-29 14:37:14 ----D---- C:\Program Files\MSN Gaming Zone
2011-03-29 14:37:14 ----A---- C:\WINDOWS\system32\write.exe
2011-03-29 14:37:06 ----A---- C:\WINDOWS\system32\sndvol32.exe
2011-03-29 14:37:06 ----A---- C:\WINDOWS\system32\hticons.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\winchat.exe
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avwav.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avtapi.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avmeter.dll
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\charmap.exe
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\getuname.dll
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\calc.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\winmine.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\sol.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\mshearts.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tslabels.ini
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tskill.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tscon.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\shadow.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\rwinsta.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\reset.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\regini.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\qwinsta.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\freecell.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\qappsrv.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\msg.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\logoff.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\cdmodem.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxex.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxdm.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\comrepl.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\comaddin.dll
2011-03-29 14:36:53 ----A---- C:\WINDOWS\system32\stclient.dll
2011-03-29 14:36:53 ----A---- C:\WINDOWS\system32\comsnap.dll
2011-03-29 14:36:48 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\sndrec32.exe
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\mplay32.exe
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\hypertrm.dll
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\accwiz.exe
2011-03-29 14:36:46 ----D---- C:\Program Files\Windows NT
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\spider.exe
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\mspaint.exe
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\clipbrd.exe
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\remotepg.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\mstscax.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\mstsc.exe
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\termsrv.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\sessmgr.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdshost.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpclip.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdchost.dll
2011-03-29 14:36:43 ----D---- C:\WINDOWS\system32\MsDtc
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\qprocess.exe
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\mtxoci.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\icaapi.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\xolehlp.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtctm.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtclog.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtc.exe
2011-03-29 14:36:41 ----D---- C:\WINDOWS\system32\Com
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\colbact.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\catsrvut.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\catsrvps.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\comuid.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\catsrv.dll
2011-03-29 14:36:39 ----A---- C:\WINDOWS\system32\clbcatq.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\servdeps.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\mmfutil.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\licwmi.dll
2011-03-29 14:36:30 ----A---- C:\WINDOWS\system32\cmprops.dll
2011-03-29 14:36:27 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2011-03-29 14:36:26 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2011-03-21 19:56:22 ----A---- C:\WINDOWS\system32\OVDecode.dll
2011-03-21 19:56:06 ----A---- C:\WINDOWS\system32\OpenCL.dll
2011-03-21 19:55:46 ----A---- C:\WINDOWS\system32\amdocl.dll
======List of files/folders modified in the last 1 months======
2011-03-29 16:29:39 ----A---- C:\WINDOWS\system.ini
2011-03-29 14:49:59 ----A---- C:\WINDOWS\win.ini
2011-03-29 14:40:48 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-02-23 30680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-02-23 25432]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-02-23 371544]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-02-23 301528]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-02-23 49240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-02-23 19544]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-02-23 102232]
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys [2006-10-23 93440]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2011-03-31 4225920]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
R3 RTSTOR;USB Mass Stroage Device; C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 34816]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2011-03-31 193088]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
S3 DrvAgent32;DrvAgent32; \??\C:\WINDOWS\system32\Drivers\DrvAgent32.sys []
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2006-07-20 54432]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-02-23 42184]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S2 ACS;Atheros Configuration Service; C:\WINDOWS\system32\acs.exe [2006-11-03 360532]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
-----------------EOF-----------------
.....
Logfile of random's system information tool 1.08 (written by random/random)
Run by Martin at 2011-04-01 19:58:47
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 145 GB (95%) free of 153 GB
Total RAM: 2047 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:59:12, on 1.4.2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Ufonuv fofr internet\EASYWIRELESSNET.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Martin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Martin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{7217FEC7-B5A7-4669-A88E-4A5991E0EACC}: NameServer = 78.136.128.4 78.136.128.12
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
--
End of file - 3198 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-02-23 814160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-02-23 814160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-02-23 3451496]
"ACU"=C:\Program Files\Atheros\ACU.exe [2006-11-07 381020]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2011-03-31 16270848]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2011-03-31 2879488]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2011-03-31 69632]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-31 786521]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2011-04-01 19:53:08 ----D---- C:\rsit
2011-04-01 19:53:08 ----D---- C:\Program Files\trend micro
2011-04-01 19:04:34 ----D---- C:\ATI
2011-04-01 18:04:06 ----D---- C:\Program Files\CPUID
2011-04-01 18:04:06 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-04-01 17:37:48 ----D---- C:\Program Files\Driver-Soft
2011-04-01 13:29:32 ----D---- C:\Program Files\AMD APP
2011-04-01 13:29:11 ----D---- C:\Program Files\ATI Technologies
2011-04-01 13:24:54 ----RSD---- C:\WINDOWS\assembly
2011-04-01 13:23:08 ----D---- C:\WINDOWS\Microsoft.NET
2011-04-01 11:51:48 ----D---- C:\Program Files\MobilityDotNET
2011-04-01 11:49:13 ----D---- C:\Program Files\ATI
2011-04-01 11:39:43 ----A---- C:\WINDOWS\system32\drivers\DrvAgent32.sys
2011-04-01 11:21:56 ----D---- C:\Program Files\MSXML 6.0
2011-04-01 10:52:34 ----D---- C:\Program Files\Lavalys
2011-04-01 09:43:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-04-01 09:43:08 ----D---- C:\Program Files\Common Files\Adobe
2011-04-01 09:43:08 ----D---- C:\Program Files\Adobe
2011-03-31 20:11:03 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPFcs.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPCo2.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2011-03-31 20:08:53 ----A---- C:\WINDOWS\system32\drivers\SynTP.sys
2011-03-31 20:08:52 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2011-03-31 20:08:52 ----A---- C:\WINDOWS\system32\SynCOM.dll
2011-03-31 20:08:45 ----D---- C:\Program Files\Synaptics
2011-03-31 13:22:22 ----D---- C:\WINDOWS\system32\Lang
2011-03-31 11:40:05 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2011-03-31 11:40:01 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2011-03-31 11:40:00 ----A---- C:\WINDOWS\system32\ChCfg.exe
2011-03-31 11:39:59 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2011-03-31 11:39:57 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2011-03-31 11:39:55 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2011-03-31 11:39:53 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2011-03-31 11:39:52 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2011-03-31 11:39:50 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2011-03-31 11:39:47 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2011-03-31 11:39:46 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2011-03-31 11:39:43 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2011-03-31 11:39:35 ----D---- C:\WINDOWS\system32\RTCOM
2011-03-31 11:39:32 ----A---- C:\WINDOWS\system32\ksuser.dll
2011-03-31 11:39:31 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2011-03-31 11:39:27 ----A---- C:\WINDOWS\SoundMan.exe
2011-03-31 11:39:27 ----A---- C:\WINDOWS\SkyTel.exe
2011-03-31 11:39:26 ----A---- C:\WINDOWS\RtlUpd.exe
2011-03-31 11:39:26 ----A---- C:\WINDOWS\RTLCPL.exe
2011-03-31 11:39:24 ----A---- C:\WINDOWS\system32\drivers\RtkHDAud.Sys
2011-03-31 11:39:24 ----A---- C:\WINDOWS\RTHDCPL.exe
2011-03-31 11:39:24 ----A---- C:\WINDOWS\MicCal.exe
2011-03-31 11:39:22 ----D---- C:\Program Files\Realtek
2011-03-31 11:39:22 ----A---- C:\WINDOWS\alcwzrd.exe
2011-03-31 11:39:22 ----A---- C:\WINDOWS\Alcmtr.exe
2011-03-31 11:39:18 ----A---- C:\WINDOWS\RtlExUpd.dll
2011-03-31 11:10:26 ----A---- C:\WINDOWS\system32\drivers\RTSTOR.sys
2011-03-31 11:06:26 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-03-31 11:06:24 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2011-03-30 19:23:01 ----A---- C:\WINDOWS\system32\acs.exe
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsimd.sys
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsimd.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wsfwDS.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wgapi.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\wcapiU.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\dsaNac.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\dsa.dll
2011-03-30 19:22:46 ----A---- C:\WINDOWS\system32\drivers\wsimd.sys
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\wcapi.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20U.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20resU.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20res.dll
2011-03-30 19:22:45 ----A---- C:\WINDOWS\system32\athcfg20.dll
2011-03-30 19:22:42 ----D---- C:\Program Files\Atheros
2011-03-30 19:22:38 ----A---- C:\WINDOWS\system32\ar5416.sys
2011-03-30 19:22:34 ----A---- C:\WINDOWS\system32\drivers\preparse.ini
2011-03-30 19:22:02 ----D---- C:\temp
2011-03-30 19:22:01 ----D---- C:\Documents and Settings\Martin\Data aplikací\InstallShield
2011-03-30 19:18:41 ----D---- C:\Program Files\MSECache
2011-03-30 12:19:07 ----A---- C:\WINDOWS\NeroDigital.ini
2011-03-30 07:39:25 ----D---- C:\Documents and Settings\Martin\Data aplikací\Macromedia
2011-03-30 07:39:25 ----D---- C:\Documents and Settings\Martin\Data aplikací\Adobe
2011-03-29 17:24:04 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-03-29 17:24:03 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-03-29 17:24:01 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-03-29 17:24:00 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-03-29 17:24:00 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-03-29 17:23:59 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-03-29 17:23:43 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-03-29 17:23:36 ----D---- C:\Program Files\AVAST Software
2011-03-29 17:23:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 17:04:24 ----A---- C:\Program Files\setup_av_free.exe
2011-03-29 16:35:18 ----A---- C:\WINDOWS\system32\h323log.txt
2011-03-29 16:32:32 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2011-03-29 16:31:57 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2011-03-29 16:31:02 ----A---- C:\WINDOWS\system32\usbui.dll
2011-03-29 16:30:57 ----A---- C:\WINDOWS\system32\drivers\RTL8139.sys
2011-03-29 16:30:56 ----A---- C:\WINDOWS\system32\drivers\compbatt.sys
2011-03-29 16:30:55 ----A---- C:\WINDOWS\system32\drivers\battc.sys
2011-03-29 16:30:54 ----A---- C:\WINDOWS\system32\drivers\CmBatt.sys
2011-03-29 16:29:51 ----A---- C:\WINDOWS\imsins.BAK
2011-03-29 16:29:48 ----SHD---- C:\WINDOWS\Installer
2011-03-29 16:29:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-29 16:29:47 ----D---- C:\Program Files\Common Files\ODBC
2011-03-29 16:29:47 ----A---- C:\WINDOWS\ODBCINST.INI
2011-03-29 16:29:44 ----D---- C:\Program Files\Common Files\SpeechEngines
2011-03-29 16:29:40 ----RD---- C:\Program Files
2011-03-29 16:29:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:29:40 ----D---- C:\Program Files\Common Files
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2011-03-29 16:29:33 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2011-03-29 16:29:31 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdur.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdru.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2011-03-29 16:29:30 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2011-03-29 16:29:29 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2011-03-29 16:29:28 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2011-03-29 16:29:27 ----RA---- C:\WINDOWS\system32\kbdest.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdro.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2011-03-29 16:29:20 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2011-03-29 16:29:19 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2011-03-29 16:29:19 ----A---- C:\WINDOWS\system32\irclass.dll
2011-03-29 16:29:19 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\spxcoins.dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2011-03-29 16:29:18 ----A---- C:\WINDOWS\system32\dgsetup.dll
2011-03-29 16:29:16 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2011-03-29 16:29:16 ----A---- C:\WINDOWS\TASKMAN.EXE
2011-03-29 16:29:16 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2011-03-29 16:29:16 ----A---- C:\WINDOWS\system32\batt.dll
2011-03-29 16:29:15 ----A---- C:\WINDOWS\NOTEPAD.EXE
2011-03-29 16:29:12 ----A---- C:\WINDOWS\system32\storprop.dll
2011-03-29 16:29:02 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-03-29 16:28:59 ----RA---- C:\WINDOWS\SET8.tmp
2011-03-29 16:28:56 ----RA---- C:\WINDOWS\SET4.tmp
2011-03-29 16:28:55 ----RA---- C:\WINDOWS\SET3.tmp
2011-03-29 16:28:47 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-29 16:28:47 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:28:41 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-03-29 16:28:20 ----A---- C:\WINDOWS\setuplog.txt
2011-03-29 16:28:16 ----D---- C:\Documents and Settings
2011-03-29 16:28:15 ----SHD---- C:\System Volume Information
2011-03-29 16:27:38 ----SH---- C:\boot.ini
2011-03-29 16:24:05 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-29 16:24:05 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 16:24:05 ----RD---- C:\WINDOWS\Web
2011-03-29 16:24:05 ----HD---- C:\WINDOWS\inf
2011-03-29 16:24:05 ----D---- C:\WINDOWS\WinSxS
2011-03-29 16:24:05 ----D---- C:\WINDOWS\twain_32
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Temp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\wins
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\spool
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ShellExt
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ras
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\mui
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\inetsrv
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\IME
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\icsxml
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\ias
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\export
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers\etc
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers\disdn
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\drivers
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\dhcp
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\config
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\3com_dmi
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\3076
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\2052
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1054
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1042
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1041
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1037
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1033
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1031
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1029
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1028
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32\1025
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system32
2011-03-29 16:24:05 ----D---- C:\WINDOWS\system
2011-03-29 16:24:05 ----D---- C:\WINDOWS\security
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Resources
2011-03-29 16:24:05 ----D---- C:\WINDOWS\repair
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Provisioning
2011-03-29 16:24:05 ----D---- C:\WINDOWS\pchealth
2011-03-29 16:24:05 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:24:05 ----D---- C:\WINDOWS\NLDRV
2011-03-29 16:24:05 ----D---- C:\WINDOWS\mui
2011-03-29 16:24:05 ----D---- C:\WINDOWS\msapps
2011-03-29 16:24:05 ----D---- C:\WINDOWS\msagent
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Media
2011-03-29 16:24:05 ----D---- C:\WINDOWS\java
2011-03-29 16:24:05 ----D---- C:\WINDOWS\ime
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Help
2011-03-29 16:24:05 ----D---- C:\WINDOWS\ehome
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Driver Cache
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Debug
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Cursors
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Connection Wizard
2011-03-29 16:24:05 ----D---- C:\WINDOWS\Config
2011-03-29 16:24:05 ----D---- C:\WINDOWS\AppPatch
2011-03-29 16:24:05 ----D---- C:\WINDOWS\addins
2011-03-29 16:24:05 ----D---- C:\WINDOWS
2011-03-29 16:24:05 ----ASH---- C:\pagefile.sys
2011-03-29 16:18:36 ----D---- C:\Documents and Settings\Martin\Data aplikací\Mozilla
2011-03-29 16:18:31 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 16:17:45 ----A---- C:\Program Files\seznam-firefox-win32-cs-4.0.0.exe
2011-03-29 16:01:22 ----A---- C:\WINDOWS\ModemLog_AnyDATA CDMA USB Modem (PID 6502).txt
2011-03-29 16:01:15 ----A---- C:\WINDOWS\red_dialer.ini
2011-03-29 16:00:46 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys
2011-03-29 15:57:16 ----D---- C:\Program Files\DIFX
2011-03-29 15:57:16 ----A---- C:\WINDOWS\system32\drivers\adusbser.sys
2011-03-29 15:57:14 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-03-29 15:57:09 ----D---- C:\Program Files\Ufonuv fofr internet
2011-03-29 15:53:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\CyberLink
2011-03-29 15:53:47 ----HD---- C:\Program Files\InstallShield Installation Information
2011-03-29 15:53:47 ----D---- C:\Program Files\CyberLink
2011-03-29 15:52:56 ----D---- C:\Program Files\Common Files\InstallShield
2011-03-29 15:04:14 ----D---- C:\Documents and Settings\Martin\Data aplikací\Nero
2011-03-29 15:03:56 ----A---- C:\WINDOWS\system32\MsiExec.exe.log
2011-03-29 15:02:22 ----D---- C:\Program Files\Nero
2011-03-29 15:02:22 ----D---- C:\Program Files\Common Files\Nero
2011-03-29 15:02:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2011-03-29 15:01:25 ----D---- C:\WINDOWS\RegisteredPackages
2011-03-29 14:59:55 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2011-03-29 14:59:54 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2011-03-29 14:50:09 ----A---- C:\WINDOWS\ODBC.INI
2011-03-29 14:49:12 ----D---- C:\Program Files\Microsoft Visual Studio
2011-03-29 14:49:11 ----D---- C:\Program Files\Common Files\Designer
2011-03-29 14:48:11 ----D---- C:\WINDOWS\ShellNew
2011-03-29 14:48:07 ----D---- C:\Program Files\Microsoft Office
2011-03-29 14:45:43 ----D---- C:\Documents and Settings\Martin\Data aplikací\Identities
2011-03-29 14:45:41 ----HD---- C:\Program Files\Uninstall Information
2011-03-29 14:45:35 ----ASH---- C:\Documents and Settings\Martin\Data aplikací\desktop.ini
2011-03-29 14:45:34 ----SD---- C:\Documents and Settings\Martin\Data aplikací\Microsoft
2011-03-29 14:44:34 ----D---- C:\WINDOWS\SoftwareDistribution
2011-03-29 14:44:32 ----D---- C:\WINDOWS\Prefetch
2011-03-29 14:44:31 ----SD---- C:\WINDOWS\system32\Microsoft
2011-03-29 14:44:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 14:41:33 ----D---- C:\WINDOWS\system32\xircom
2011-03-29 14:41:33 ----D---- C:\Program Files\xerox
2011-03-29 14:41:33 ----D---- C:\Program Files\microsoft frontpage
2011-03-29 14:41:16 ----RASH---- C:\MSDOS.SYS
2011-03-29 14:41:16 ----RASH---- C:\IO.SYS
2011-03-29 14:41:16 ----A---- C:\WINDOWS\control.ini
2011-03-29 14:41:16 ----A---- C:\CONFIG.SYS
2011-03-29 14:41:16 ----A---- C:\AUTOEXEC.BAT
2011-03-29 14:41:05 ----A---- C:\WINDOWS\OEWABLog.txt
2011-03-29 14:41:00 ----A---- C:\WINDOWS\system32\mapi32.dll
2011-03-29 14:40:07 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-03-29 14:40:07 ----RD---- C:\WINDOWS\Offline Web Pages
2011-03-29 14:40:07 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2011-03-29 14:40:01 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2011-03-29 14:39:56 ----HD---- C:\Program Files\WindowsUpdate
2011-03-29 14:39:51 ----D---- C:\Program Files\Online Services
2011-03-29 14:39:34 ----D---- C:\WINDOWS\system32\DirectX
2011-03-29 14:39:15 ----A---- C:\WINDOWS\system32\atrace.dll
2011-03-29 14:39:12 ----A---- C:\WINDOWS\system32\desktop.ini
2011-03-29 14:39:12 ----A---- C:\WINDOWS\desktop.ini
2011-03-29 14:39:05 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2011-03-29 14:39:04 ----A---- C:\WINDOWS\system32\acctres.dll
2011-03-29 14:39:03 ----D---- C:\Program Files\Common Files\Services
2011-03-29 14:39:00 ----SD---- C:\WINDOWS\Tasks
2011-03-29 14:39:00 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2011-03-29 14:38:59 ----D---- C:\Program Files\Common Files\MSSoap
2011-03-29 14:38:56 ----D---- C:\WINDOWS\srchasst
2011-03-29 14:38:55 ----D---- C:\WINDOWS\system32\Macromed
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuweb.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wucltui.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuauserv.dll
2011-03-29 14:38:52 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wups.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuaueng.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuauclt.exe
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\wuapi.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\qmgr.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2011-03-29 14:38:51 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2011-03-29 14:38:47 ----D---- C:\Program Files\Movie Maker
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrslv.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrdm.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2011-03-29 14:38:43 ----A---- C:\WINDOWS\system32\racpldlg.dll
2011-03-29 14:38:40 ----A---- C:\WINDOWS\system32\fltMc.exe
2011-03-29 14:38:40 ----A---- C:\WINDOWS\system32\fltlib.dll
2011-03-29 14:38:39 ----D---- C:\WINDOWS\system32\Restore
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srsvc.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srrstr.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\srclient.dll
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2011-03-29 14:38:39 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\mnmdd.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2011-03-29 14:38:38 ----A---- C:\WINDOWS\system32\ils.dll
2011-03-29 14:38:37 ----A---- C:\WINDOWS\system32\msconf.dll
2011-03-29 14:38:37 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2011-03-29 14:38:35 ----D---- C:\Program Files\NetMeeting
2011-03-29 14:38:35 ----A---- C:\WINDOWS\system32\msoert2.dll
2011-03-29 14:38:34 ----A---- C:\WINDOWS\system32\msoeacct.dll
2011-03-29 14:38:33 ----A---- C:\WINDOWS\system32\inetres.dll
2011-03-29 14:38:33 ----A---- C:\WINDOWS\system32\inetcomm.dll
2011-03-29 14:38:31 ----D---- C:\Program Files\Outlook Express
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\schedsvc.dll
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\mstinit.exe
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\mstask.dll
2011-03-29 14:38:31 ----A---- C:\WINDOWS\system32\icwphbk.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\isign32.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\inetcfg.dll
2011-03-29 14:38:30 ----A---- C:\WINDOWS\system32\icwdial.dll
2011-03-29 14:38:25 ----D---- C:\Program Files\Common Files\System
2011-03-29 14:38:18 ----D---- C:\Program Files\Internet Explorer
2011-03-29 14:37:41 ----D---- C:\Program Files\ComPlus Applications
2011-03-29 14:37:39 ----A---- C:\WINDOWS\vbaddin.ini
2011-03-29 14:37:39 ----A---- C:\WINDOWS\vb.ini
2011-03-29 14:37:33 ----D---- C:\WINDOWS\Registration
2011-03-29 14:37:25 ----D---- C:\Program Files\Windows Media Player
2011-03-29 14:37:18 ----D---- C:\Program Files\Messenger
2011-03-29 14:37:14 ----D---- C:\Program Files\MSN Gaming Zone
2011-03-29 14:37:14 ----A---- C:\WINDOWS\system32\write.exe
2011-03-29 14:37:06 ----A---- C:\WINDOWS\system32\sndvol32.exe
2011-03-29 14:37:06 ----A---- C:\WINDOWS\system32\hticons.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\winchat.exe
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avwav.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avtapi.dll
2011-03-29 14:37:05 ----A---- C:\WINDOWS\system32\avmeter.dll
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\charmap.exe
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\getuname.dll
2011-03-29 14:36:58 ----A---- C:\WINDOWS\system32\calc.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\winmine.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\sol.exe
2011-03-29 14:36:57 ----A---- C:\WINDOWS\system32\mshearts.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tslabels.ini
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tskill.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\tscon.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\shadow.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\rwinsta.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\reset.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\regini.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\qwinsta.exe
2011-03-29 14:36:56 ----A---- C:\WINDOWS\system32\freecell.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\qappsrv.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\msg.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\logoff.exe
2011-03-29 14:36:55 ----A---- C:\WINDOWS\system32\cdmodem.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxex.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\mtxdm.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\comrepl.dll
2011-03-29 14:36:54 ----A---- C:\WINDOWS\system32\comaddin.dll
2011-03-29 14:36:53 ----A---- C:\WINDOWS\system32\stclient.dll
2011-03-29 14:36:53 ----A---- C:\WINDOWS\system32\comsnap.dll
2011-03-29 14:36:48 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\sndrec32.exe
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\mplay32.exe
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\hypertrm.dll
2011-03-29 14:36:47 ----A---- C:\WINDOWS\system32\accwiz.exe
2011-03-29 14:36:46 ----D---- C:\Program Files\Windows NT
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\spider.exe
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\mspaint.exe
2011-03-29 14:36:46 ----A---- C:\WINDOWS\system32\clipbrd.exe
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\remotepg.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\mstscax.dll
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\mstsc.exe
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2011-03-29 14:36:45 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\termsrv.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\sessmgr.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdshost.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdpclip.exe
2011-03-29 14:36:44 ----A---- C:\WINDOWS\system32\rdchost.dll
2011-03-29 14:36:43 ----D---- C:\WINDOWS\system32\MsDtc
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\qprocess.exe
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\mtxoci.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\icaapi.dll
2011-03-29 14:36:43 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\xolehlp.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtctm.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtclog.dll
2011-03-29 14:36:42 ----A---- C:\WINDOWS\system32\msdtc.exe
2011-03-29 14:36:41 ----D---- C:\WINDOWS\system32\Com
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\colbact.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\catsrvut.dll
2011-03-29 14:36:41 ----A---- C:\WINDOWS\system32\catsrvps.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\comuid.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2011-03-29 14:36:40 ----A---- C:\WINDOWS\system32\catsrv.dll
2011-03-29 14:36:39 ----A---- C:\WINDOWS\system32\clbcatq.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\servdeps.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\mmfutil.dll
2011-03-29 14:36:33 ----A---- C:\WINDOWS\system32\licwmi.dll
2011-03-29 14:36:30 ----A---- C:\WINDOWS\system32\cmprops.dll
2011-03-29 14:36:27 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2011-03-29 14:36:26 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
2011-03-21 19:56:22 ----A---- C:\WINDOWS\system32\OVDecode.dll
2011-03-21 19:56:06 ----A---- C:\WINDOWS\system32\OpenCL.dll
2011-03-21 19:55:46 ----A---- C:\WINDOWS\system32\amdocl.dll
======List of files/folders modified in the last 1 months======
2011-03-29 16:29:39 ----A---- C:\WINDOWS\system.ini
2011-03-29 14:49:59 ----A---- C:\WINDOWS\win.ini
2011-03-29 14:40:48 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-02-23 30680]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-02-23 25432]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-02-23 371544]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-02-23 301528]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-02-23 49240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-02-23 19544]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-02-23 102232]
R3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys [2006-10-23 93440]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2011-03-31 4225920]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
R3 RTSTOR;USB Mass Stroage Device; C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 34816]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2011-03-31 193088]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
S3 DrvAgent32;DrvAgent32; \??\C:\WINDOWS\system32\Drivers\DrvAgent32.sys []
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2006-07-20 54432]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-02-23 42184]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S2 ACS;Atheros Configuration Service; C:\WINDOWS\system32\acs.exe [2006-11-03 360532]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
-----------------EOF-----------------
Re: Kontrola logu z HijackThi
Trošku uklidíme
Stáhni a spusť OTMoveIt
do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:
klikni na MoveIt! a v pravém zeleném okně aplikace se Ti objeví info o provedene akci, obsah okna zkopíruj sem,
pokud aplikace bude požadovat restart, klikni na YES
v tom případě sem chci zkopírovat obsah logu uloženého na C:\_OTMoveIt\MovedFiles\

Stáhni a spusť OTMoveIt
do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:
Kód: Vybrat vše
:processes
explorer.exe
:files
C:\*.tmp
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
:commands
[purity]
[emptytemp]
[start explorer]
pokud aplikace bude požadovat restart, klikni na YES
v tom případě sem chci zkopírovat obsah logu uloženého na C:\_OTMoveIt\MovedFiles\
Re: Kontrola logu z HijackThi
Tady je log:
.......
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
File/Folder C:\*.tmp not found.
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Martin
->Temp folder emptied: 763283972 bytes
->Temporary Internet Files folder emptied: 17514127 bytes
->FireFox cache emptied: 120114280 bytes
->Flash cache emptied: 1099 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10494928 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 869,00 mb
OTM by OldTimer - Version 3.1.17.2 log created on 04022011_074854
Files moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
.......
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
File/Folder C:\*.tmp not found.
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Martin
->Temp folder emptied: 763283972 bytes
->Temporary Internet Files folder emptied: 17514127 bytes
->FireFox cache emptied: 120114280 bytes
->Flash cache emptied: 1099 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10494928 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 869,00 mb
OTM by OldTimer - Version 3.1.17.2 log created on 04022011_074854
Files moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Re: Kontrola logu z HijackThi
Měl jsem za to,že nějaký nepořádek v notebooku je a že to způsobuje sekání NB. Ovšem vše výše doporučené nepomohlo... navíc musím mít teď NB nakloněný směrem dopředu a držet ruku na šasi vedle Touchpadu... netuším,čím by se to mohlo dít, že se NB seká
Re: Kontrola logu z HijackThi
teď už mi je jasné taky,že je to hardware - rozdělal jsem NB a pod místem,kde musím mít položenou ruku je modem Motorola ML3054,... tak nevím,jestli ho odpojit, zda by to mohl způsobovat.... nebo jak přijít na to,co to může dělat?
Re: Kontrola logu z HijackThi
Takhle od boku si netroufnu říct co to může dělat, raději bych doporučil ten servis, protože ti jsou na to vybaveni.
Rozhodně sám nic neodpojuj.
Rozhodně sám nic neodpojuj.