![2 :)](./images/smilies/2.gif)
![](https://neslape.cz/images/banner.png)
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vir?Laguje a blbne
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
No pc vyzera bez zmeny ![2 :)](./images/smilies/2.gif)
![2 :)](./images/smilies/2.gif)
Re: Vir?Laguje a blbne
A to znamená co? Kromě těch lagů ve hře to je už lepší?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
No myslim, ze sa javi trosku rychlejsie, sice pri zapinani nie, ale pri otvarani priecinkov a aplikacii
Re: Vir?Laguje a blbne
Ještě poprosím o nový log ze Rsitu.
Já nikde nic nevidím, odkdy počítač zlobí, neinstaloval jste něco?
Jak dlouho je počítač bez přeinstalování?
Já nikde nic nevidím, odkdy počítač zlobí, neinstaloval jste něco?
Jak dlouho je počítač bez přeinstalování?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
No pc jeduje asi pol roka
, a vobec si nepamatam, kedy bol naposledy preinstalovavany, ale myslim, ze nejak pred rokom cca
. Najskor jedoval na cs lagmi, a potom bol spomaleny cely pc. Tu je log z RSItu :
Logfile of random's system information tool 1.06 (written by random/random)
Run by PC at 2009-12-26 23:34:47
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 8 GB (38%) free of 20 GB
Total RAM: 1023 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:35:12, on 26.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Documents and Settings\PC\Desktop\RSIT.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.azet.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\ctbr.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Steam] "d:\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: setup_9.0.0.722_23.12.2009_23-02.lnk = C:\Documents and Settings\PC\Desktop\Virus Removal Tool\setup_9.0.0.722_23.12.2009_23-02\startup.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [java_sun] Java (Sun)
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\ctbr.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ESET HTTP Server (ehttpsrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate1c9bd152a60a) (gupdate1c9bd152a60a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (javaquickstarterservice) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer (servicelayer) - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 7392 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\ctbr.dll [2008-12-03 1194496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2008-12-22 2133056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-12-23 737776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dbc80044-a445-435b-bc74-9c25c1c588a9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-14 41368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e6f031-17ce-4c07-bc86-eabfe594f69c}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-14 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2008-12-22 2133056]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler Toolbar - C:\PROGRA~1\Crawler\ctbr.dll [2008-12-03 1194496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-06-18 67584]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-05-11 40048]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd.exe [2003-08-04 49152]
"HP Component Manager"=C:\Program Files\HP\hpcoretech\hpcmpmgr.exe [2003-12-22 241664]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-05-14 2029640]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-14 148888]
"NSLauncher"=C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe [2007-11-06 3096576]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-23 68856]
"Steam"=d:\steam\steam.exe [2009-10-24 1217808]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk]
D:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [2005-06-06 1183744]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\PC\Start Menu\Programs\Startup
setup_9.0.0.722_23.12.2009_23-02.lnk - C:\Documents and Settings\PC\Desktop\Virus Removal Tool\setup_9.0.0.722_23.12.2009_23-02\startup.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\CS 1.6 verzia 32 NonSteam\hl.exe"="D:\CS 1.6 verzia 32 NonSteam\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Steam\steamapps\masakerko_1337\counter-strike\hl.exe"="D:\Steam\steamapps\masakerko_1337\counter-strike\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Steam\steamapps\masakerko_1337\dedicated server\hlds.exe"="D:\Steam\steamapps\masakerko_1337\dedicated server\hlds.exe:*:Enabled:HLDS Launcher"
"C:\WINDOWS\system32\Ati2evxx.exe"="C:\WINDOWS\system32\Ati2evxx.exe:*:Enabled:ENABLE"
"D:\Steam\steamapps\masakerko_1337\condition zero deleted scenes\hl.exe"="D:\Steam\steamapps\masakerko_1337\condition zero deleted scenes\hl.exe:*:Enabled:Half-Life Launcher"
"D:\battlefield 1942\BF1942.exe"="D:\battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\FlashAD2706\flashAD2706.exe"="C:\Program Files\FlashAD2706\flashAD2706.exe:*:Enabled:flash AD2706"
"D:\Steam\steamapps\common\left 4 dead\left4dead.exe"="D:\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\VDLL.DLL
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\system32\runouce.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\rundll16.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\RUNDL132.EXE
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\logo1_.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\logo_1.exe
2009-12-22 20:42:48 ----A---- C:\WINDOWS\system32\msvcr80.dll
2009-12-22 20:42:47 ----A---- C:\WINDOWS\system32\msvcp80.dll
2009-12-22 20:42:46 ----A---- C:\WINDOWS\system32\eEmpty.exe
2009-12-22 20:42:42 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\system32\T.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\REGEDIT.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\R.COM
2009-12-22 20:42:37 ----D---- C:\Program Files\Common Files\MicroWorld
2009-12-22 20:42:31 ----D---- C:\Documents and Settings\All Users\Application Data\MicroWorld
2009-12-22 14:04:19 ----SHD---- C:\Config.Msi
2009-12-22 14:02:46 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2009-12-22 09:38:45 ----D---- C:\rsit
2009-12-21 11:52:45 ----SHD---- C:\RECYCLER
2009-12-19 22:01:33 ----D---- C:\Program Files\VirusTotalUploader2
2009-12-19 13:27:03 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2009-12-19 13:26:51 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-12-19 13:26:39 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-12-19 13:26:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2009-12-19 10:11:20 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-12-19 10:11:06 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-12-19 10:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-12-19 10:10:36 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2009-12-19 10:10:20 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-12-19 10:10:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-12-19 10:09:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-12-19 10:09:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-12-19 10:09:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2009-12-19 10:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-12-19 10:08:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-12-19 10:08:35 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-12-19 10:08:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-12-19 10:08:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-12-19 10:07:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-12-19 10:07:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-12-19 10:07:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2009-12-19 10:06:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-12-19 10:06:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2009-12-19 10:04:47 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-12-19 10:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-12-19 10:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2009-12-19 10:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-12-19 10:00:35 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-12-19 10:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-12-19 10:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2009-12-19 09:09:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-12-19 09:09:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-12-19 00:57:37 ----A---- C:\WINDOWS\imsins.BAK
2009-12-19 00:57:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2009-12-19 00:18:32 ----A---- C:\Boot.bak
2009-12-19 00:18:25 ----RASHD---- C:\cmdcons
2009-12-18 17:54:17 ----D---- C:\Program Files\trend micro
2009-11-28 12:19:41 ----D---- C:\Documents and Settings\All Users\Application Data\Nokia
2009-11-28 12:19:36 ----D---- C:\Program Files\Common Files\Nokia
2009-11-28 12:18:44 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2009-11-28 12:18:28 ----D---- C:\Documents and Settings\PC\Application Data\Nokia
2009-11-28 12:17:53 ----D---- C:\Program Files\Common Files\PCSuite
2009-11-28 12:17:47 ----D---- C:\Program Files\DIFX
2009-11-28 12:17:44 ----D---- C:\Documents and Settings\PC\Application Data\PC Suite
2009-11-28 12:17:39 ----D---- C:\Program Files\PC Connectivity Solution
2009-11-28 12:16:59 ----D---- C:\Program Files\Nokia
2009-11-28 12:16:59 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
======List of files/folders modified in the last 1 months======
2009-12-26 23:35:07 ----D---- C:\WINDOWS\Temp
2009-12-26 23:33:07 ----D---- C:\WINDOWS\Prefetch
2009-12-26 23:32:46 ----D---- C:\WINDOWS
2009-12-26 20:37:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-12-26 20:37:16 ----D---- C:\Program Files\Crawler
2009-12-26 17:05:20 ----D---- C:\WINDOWS\system32\CatRoot2
2009-12-23 22:30:27 ----SHD---- C:\System Volume Information
2009-12-23 22:22:27 ----D---- C:\WINDOWS\system32\drivers
2009-12-23 22:22:26 ----HD---- C:\WINDOWS\inf
2009-12-23 22:12:47 ----D---- C:\Program Files\Mozilla Firefox
2009-12-22 20:46:59 ----D---- C:\WINDOWS\system32
2009-12-22 20:42:37 ----D---- C:\Program Files\Common Files
2009-12-22 20:35:13 ----D---- C:\WINDOWS\system32\Restore
2009-12-22 20:31:29 ----D---- C:\Program Files\ICQ6Toolbar
2009-12-22 18:20:32 ----D---- C:\WINDOWS\Microsoft.NET
2009-12-22 18:18:14 ----RSD---- C:\WINDOWS\assembly
2009-12-22 14:05:22 ----SHD---- C:\WINDOWS\Installer
2009-12-22 14:05:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-12-22 14:04:57 ----D---- C:\WINDOWS\WinSxS
2009-12-22 14:03:01 ----D---- C:\WINDOWS\system32\CatRoot
2009-12-22 14:02:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-12-22 09:22:10 ----D---- C:\WINDOWS\Minidump
2009-12-21 21:43:04 ----D---- C:\WINDOWS\system32\XPSViewer
2009-12-21 21:42:58 ----D---- C:\WINDOWS\system32\en-us
2009-12-21 21:42:46 ----RSD---- C:\WINDOWS\Fonts
2009-12-19 23:21:32 ----A---- C:\WINDOWS\system.ini
2009-12-19 23:18:49 ----D---- C:\WINDOWS\system32\config
2009-12-19 23:15:00 ----D---- C:\WINDOWS\AppPatch
2009-12-19 22:01:33 ----RD---- C:\Program Files
2009-12-19 12:53:03 ----HD---- C:\WINDOWS\$hf_mig$
2009-12-19 10:06:51 ----D---- C:\Program Files\Outlook Express
2009-12-19 10:05:35 ----D---- C:\Program Files\Internet Explorer
2009-12-19 00:46:03 ----D---- C:\WINDOWS\Help
2009-12-19 00:18:33 ----RASH---- C:\boot.ini
2009-12-12 18:33:56 ----D---- C:\Program Files\FlashAD2706
2009-12-01 12:06:20 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-28 12:17:45 ----DC---- C:\WINDOWS\system32\DRVSTORE
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 09448041;09448041; C:\WINDOWS\system32\DRIVERS\09448041.sys [2009-09-25 128016]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2004-10-08 35840]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-05-14 107256]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-05-14 55768]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-10-07 80576]
R1 setup_9.0.0.722_23.12.2009_23-02drv;setup_9.0.0.722_23.12.2009_23-02drv; C:\WINDOWS\system32\DRIVERS\0944804.sys [2009-10-09 315408]
R2 Angelnt;Angelnt; C:\WINDOWS\System32\Drivers\ANGELNT.SYS [2009-04-27 51072]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-05-14 114472]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-05-14 133000]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-06-21 626204]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
R3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
R3 epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-05-14 33096]
R3 HidBatt;HID UPS Battery Driver; C:\WINDOWS\system32\DRIVERS\HidBatt.sys [2008-04-14 20352]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-01-05 51056]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-01-05 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-01-05 21488]
R3 ltmodem5;LT Modem Driver; C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys [2008-04-13 606684]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-03-31 12160]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2003-03-31 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-08-20 25280]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NTACCESS;NTACCESS; \??\E:\NTACCESS.sys []
S3 SetupNTGLM7X;SetupNTGLM7X; \??\E:\NTGLM7X.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys []
S4 sr;System Restore Filter Driver; C:\WINDOWS\System32\DRIVERS\sr.sys [2008-04-14 73472]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-05-03 413696]
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-05-14 731840]
R2 javaquickstarterservice;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-14 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-01-05 65795]
R3 servicelayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-02-08 212480]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S2 gupdate1c9bd152a60a;Služba Google Update (gupdate1c9bd152a60a); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-14 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 ehttpsrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-05-14 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
![23 :o](./images/smilies/23.gif)
![Caroprd111 :happy:](./images/smilies/44.gif)
Logfile of random's system information tool 1.06 (written by random/random)
Run by PC at 2009-12-26 23:34:47
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 8 GB (38%) free of 20 GB
Total RAM: 1023 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:35:12, on 26.12.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Documents and Settings\PC\Desktop\RSIT.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.azet.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60076
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\ctbr.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Crawler Toolbar - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\ctbr.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [NSLauncher] C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe /startup
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Steam] "d:\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: setup_9.0.0.722_23.12.2009_23-02.lnk = C:\Documents and Settings\PC\Desktop\Virus Removal Tool\setup_9.0.0.722_23.12.2009_23-02\startup.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [java_sun] Java (Sun)
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\ctbr.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ESET HTTP Server (ehttpsrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate1c9bd152a60a) (gupdate1c9bd152a60a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (javaquickstarterservice) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ServiceLayer (servicelayer) - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 7392 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\ctbr.dll [2008-12-03 1194496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2008-12-22 2133056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-12-23 737776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dbc80044-a445-435b-bc74-9c25c1c588a9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-14 41368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e7e6f031-17ce-4c07-bc86-eabfe594f69c}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-14 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2008-12-22 2133056]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler Toolbar - C:\PROGRA~1\Crawler\ctbr.dll [2008-12-03 1194496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-06-18 67584]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-05-11 40048]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd.exe [2003-08-04 49152]
"HP Component Manager"=C:\Program Files\HP\hpcoretech\hpcmpmgr.exe [2003-12-22 241664]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-05-14 2029640]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-14 148888]
"NSLauncher"=C:\Program Files\Nokia\Nokia Software Launcher\NSLauncher.exe [2007-11-06 3096576]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-23 68856]
"Steam"=d:\steam\steam.exe [2009-10-24 1217808]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk]
D:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [2005-06-06 1183744]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Documents and Settings\PC\Start Menu\Programs\Startup
setup_9.0.0.722_23.12.2009_23-02.lnk - C:\Documents and Settings\PC\Desktop\Virus Removal Tool\setup_9.0.0.722_23.12.2009_23-02\startup.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\CS 1.6 verzia 32 NonSteam\hl.exe"="D:\CS 1.6 verzia 32 NonSteam\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Steam\steamapps\masakerko_1337\counter-strike\hl.exe"="D:\Steam\steamapps\masakerko_1337\counter-strike\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Steam\steamapps\masakerko_1337\dedicated server\hlds.exe"="D:\Steam\steamapps\masakerko_1337\dedicated server\hlds.exe:*:Enabled:HLDS Launcher"
"C:\WINDOWS\system32\Ati2evxx.exe"="C:\WINDOWS\system32\Ati2evxx.exe:*:Enabled:ENABLE"
"D:\Steam\steamapps\masakerko_1337\condition zero deleted scenes\hl.exe"="D:\Steam\steamapps\masakerko_1337\condition zero deleted scenes\hl.exe:*:Enabled:Half-Life Launcher"
"D:\battlefield 1942\BF1942.exe"="D:\battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\FlashAD2706\flashAD2706.exe"="C:\Program Files\FlashAD2706\flashAD2706.exe:*:Enabled:flash AD2706"
"D:\Steam\steamapps\common\left 4 dead\left4dead.exe"="D:\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\VDLL.DLL
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\system32\runouce.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\rundll16.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\RUNDL132.EXE
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\logo1_.exe
2009-12-22 20:46:59 ----AD---- C:\WINDOWS\logo_1.exe
2009-12-22 20:42:48 ----A---- C:\WINDOWS\system32\msvcr80.dll
2009-12-22 20:42:47 ----A---- C:\WINDOWS\system32\msvcp80.dll
2009-12-22 20:42:46 ----A---- C:\WINDOWS\system32\eEmpty.exe
2009-12-22 20:42:42 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\system32\T.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\REGEDIT.COM
2009-12-22 20:42:42 ----A---- C:\WINDOWS\R.COM
2009-12-22 20:42:37 ----D---- C:\Program Files\Common Files\MicroWorld
2009-12-22 20:42:31 ----D---- C:\Documents and Settings\All Users\Application Data\MicroWorld
2009-12-22 14:04:19 ----SHD---- C:\Config.Msi
2009-12-22 14:02:46 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2009-12-22 09:38:45 ----D---- C:\rsit
2009-12-21 11:52:45 ----SHD---- C:\RECYCLER
2009-12-19 22:01:33 ----D---- C:\Program Files\VirusTotalUploader2
2009-12-19 13:27:03 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2009-12-19 13:26:51 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-12-19 13:26:39 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-12-19 13:26:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2009-12-19 10:11:20 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-12-19 10:11:06 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-12-19 10:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-12-19 10:10:36 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2009-12-19 10:10:20 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-12-19 10:10:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-12-19 10:09:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-12-19 10:09:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-12-19 10:09:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2009-12-19 10:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-12-19 10:08:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-12-19 10:08:35 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-12-19 10:08:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-12-19 10:08:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-12-19 10:07:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-12-19 10:07:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-12-19 10:07:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2009-12-19 10:06:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-12-19 10:06:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2009-12-19 10:04:47 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-12-19 10:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-12-19 10:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2009-12-19 10:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-12-19 10:00:35 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-12-19 10:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-12-19 10:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2009-12-19 09:09:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-12-19 09:09:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-12-19 00:57:37 ----A---- C:\WINDOWS\imsins.BAK
2009-12-19 00:57:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2009-12-19 00:18:32 ----A---- C:\Boot.bak
2009-12-19 00:18:25 ----RASHD---- C:\cmdcons
2009-12-18 17:54:17 ----D---- C:\Program Files\trend micro
2009-11-28 12:19:41 ----D---- C:\Documents and Settings\All Users\Application Data\Nokia
2009-11-28 12:19:36 ----D---- C:\Program Files\Common Files\Nokia
2009-11-28 12:18:44 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2009-11-28 12:18:28 ----D---- C:\Documents and Settings\PC\Application Data\Nokia
2009-11-28 12:17:53 ----D---- C:\Program Files\Common Files\PCSuite
2009-11-28 12:17:47 ----D---- C:\Program Files\DIFX
2009-11-28 12:17:44 ----D---- C:\Documents and Settings\PC\Application Data\PC Suite
2009-11-28 12:17:39 ----D---- C:\Program Files\PC Connectivity Solution
2009-11-28 12:16:59 ----D---- C:\Program Files\Nokia
2009-11-28 12:16:59 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
======List of files/folders modified in the last 1 months======
2009-12-26 23:35:07 ----D---- C:\WINDOWS\Temp
2009-12-26 23:33:07 ----D---- C:\WINDOWS\Prefetch
2009-12-26 23:32:46 ----D---- C:\WINDOWS
2009-12-26 20:37:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-12-26 20:37:16 ----D---- C:\Program Files\Crawler
2009-12-26 17:05:20 ----D---- C:\WINDOWS\system32\CatRoot2
2009-12-23 22:30:27 ----SHD---- C:\System Volume Information
2009-12-23 22:22:27 ----D---- C:\WINDOWS\system32\drivers
2009-12-23 22:22:26 ----HD---- C:\WINDOWS\inf
2009-12-23 22:12:47 ----D---- C:\Program Files\Mozilla Firefox
2009-12-22 20:46:59 ----D---- C:\WINDOWS\system32
2009-12-22 20:42:37 ----D---- C:\Program Files\Common Files
2009-12-22 20:35:13 ----D---- C:\WINDOWS\system32\Restore
2009-12-22 20:31:29 ----D---- C:\Program Files\ICQ6Toolbar
2009-12-22 18:20:32 ----D---- C:\WINDOWS\Microsoft.NET
2009-12-22 18:18:14 ----RSD---- C:\WINDOWS\assembly
2009-12-22 14:05:22 ----SHD---- C:\WINDOWS\Installer
2009-12-22 14:05:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-12-22 14:04:57 ----D---- C:\WINDOWS\WinSxS
2009-12-22 14:03:01 ----D---- C:\WINDOWS\system32\CatRoot
2009-12-22 14:02:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-12-22 09:22:10 ----D---- C:\WINDOWS\Minidump
2009-12-21 21:43:04 ----D---- C:\WINDOWS\system32\XPSViewer
2009-12-21 21:42:58 ----D---- C:\WINDOWS\system32\en-us
2009-12-21 21:42:46 ----RSD---- C:\WINDOWS\Fonts
2009-12-19 23:21:32 ----A---- C:\WINDOWS\system.ini
2009-12-19 23:18:49 ----D---- C:\WINDOWS\system32\config
2009-12-19 23:15:00 ----D---- C:\WINDOWS\AppPatch
2009-12-19 22:01:33 ----RD---- C:\Program Files
2009-12-19 12:53:03 ----HD---- C:\WINDOWS\$hf_mig$
2009-12-19 10:06:51 ----D---- C:\Program Files\Outlook Express
2009-12-19 10:05:35 ----D---- C:\Program Files\Internet Explorer
2009-12-19 00:46:03 ----D---- C:\WINDOWS\Help
2009-12-19 00:18:33 ----RASH---- C:\boot.ini
2009-12-12 18:33:56 ----D---- C:\Program Files\FlashAD2706
2009-12-01 12:06:20 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-28 12:17:45 ----DC---- C:\WINDOWS\system32\DRVSTORE
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 09448041;09448041; C:\WINDOWS\system32\DRIVERS\09448041.sys [2009-09-25 128016]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2004-10-08 35840]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-05-14 107256]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-05-14 55768]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-10-07 80576]
R1 setup_9.0.0.722_23.12.2009_23-02drv;setup_9.0.0.722_23.12.2009_23-02drv; C:\WINDOWS\system32\DRIVERS\0944804.sys [2009-10-09 315408]
R2 Angelnt;Angelnt; C:\WINDOWS\System32\Drivers\ANGELNT.SYS [2009-04-27 51072]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-05-14 114472]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-05-14 133000]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-06-21 626204]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
R3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
R3 epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-05-14 33096]
R3 HidBatt;HID UPS Battery Driver; C:\WINDOWS\system32\DRIVERS\HidBatt.sys [2008-04-14 20352]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-01-05 51056]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-01-05 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-01-05 21488]
R3 ltmodem5;LT Modem Driver; C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys [2008-04-13 606684]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-03-31 12160]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2003-03-31 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-08-20 25280]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NTACCESS;NTACCESS; \??\E:\NTACCESS.sys []
S3 SetupNTGLM7X;SetupNTGLM7X; \??\E:\NTGLM7X.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys []
S4 sr;System Restore Filter Driver; C:\WINDOWS\System32\DRIVERS\sr.sys [2008-04-14 73472]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-05-03 413696]
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; D:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-05-14 731840]
R2 javaquickstarterservice;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-14 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-01-05 65795]
R3 servicelayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-02-08 212480]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S2 gupdate1c9bd152a60a;Služba Google Update (gupdate1c9bd152a60a); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-04-14 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 ehttpsrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-05-14 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Re: Vir?Laguje a blbne
ještě otestujte na www.virustotal.com
C:\WINDOWS\system32\DRIVERS\09448041.sys
C:\WINDOWS\system32\DRIVERS\09448041.sys
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: Vir?Laguje a blbne
Tak ještě zkuste opravu winxp managerem, nechte opravit vše co se dá
http://www.viry.cz/forum/viewtopic.php?f=46&t=17549
http://www.viry.cz/forum/viewtopic.php?f=46&t=17549
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
Cize to len stiahnem, dam system repair, a nejak start?Ja tam ten start nemozem nejak najst ![23 :o](./images/smilies/23.gif)
![23 :o](./images/smilies/23.gif)
Re: Vir?Laguje a blbne
Jak to myslíte start?
, uděláte opravu a normálně restartujete počítač
![23 :o](./images/smilies/23.gif)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
No tak som tam poklikal na to Fix, a neskor odomna vyziadalo reset, cize by to malo asi byt hotovo ![2 :)](./images/smilies/2.gif)
![2 :)](./images/smilies/2.gif)
Re: Vir?Laguje a blbne
A pomohlo to aspon trošku?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
Vsimol som si, ze ked zapinam pc, uz nieje cierna obrazovka ale hned ho zapne
. Niekedy hlavne po restarte bola cierna obrazovka a ja aby som ho zapol som musel vypinat natvrdo a znova zapinat...
![6 ;)](./images/smilies/6.gif)
Re: Vir?Laguje a blbne
Kromě system repair si s tím podle Jamesova návodu můžete pohrát trošku.
Ted jsou jaké problémy?
Ted jsou jaké problémy?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data
![Exclamation :!:](./images/smilies/icon_exclaim.gif)
Chcete podpořit naše forum? Informace zde
![Obrázek](http://vyosek.ic.cz/pro_usery/asap1.jpg)
K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 46
- Registrován: 18 pro 2009 18:00
- Bydliště: Dechtice, TT
- Kontaktovat uživatele:
Re: Vir?Laguje a blbne
Problemy su s tym fps na hre, a este trosku v spomaleni pc, pri nacitavani aplikacii, programov... ![23 :o](./images/smilies/23.gif)
![23 :o](./images/smilies/23.gif)