Druhé PC pro Motji
Napsal: 18 kvě 2010 20:52
RSIT
Logfile of random's system information tool 1.07 (written by random/random)
Run by magdalena at 2010-05-18 21:47:38
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 2 GB (14%) free of 16 GB
Total RAM: 446 MB (24% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2007-08-31 1312040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\WINDOWS\WebIE.dll [2009-05-10 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2010-04-19 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\WINDOWS\WebIE.dll [2009-05-10 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2003-12-05 159744]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY []
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2005-04-07 544768]
"VTTimer"=C:\WINDOWS\system32\VTTimer.exe [2005-03-08 53248]
"VTTrayp"=C:\WINDOWS\system32\VTtrayp.exe [2005-11-01 163840]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2010-04-19 2046816]
"lcfep"=C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfep.exe [2005-11-15 270336]
"Microsoft Driver Setup"=C:\WINDOWS\wndrive32.exe [2010-05-18 94208]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Microsoft Driver Setup"=C:\WINDOWS\wndrive32.exe [2010-05-18 94208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"12CFG214-K641-12SF-N85P"=C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe [2010-05-18 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Easy-PrintToolBox]
C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE [2004-01-14 409600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2005-05-17 77824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-04-14 11952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
TivoliAP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"consentpromptbehavioradmin"=0
"enableinstallerdetection"=0
"enablelua"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe"="C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe:*:Enabled:lcfd"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe"="C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe:*:Enabled:Kalk_ziv"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\ICQ6\ICQ.exe"="D:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe"="C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe:*:Enabled:lcfd"
"C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe"="C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe:*:Enabled:Kalk_ziv"
"C:\Tivoli\lcf\inv\SCAN\wepmcoll.exe"="C:\Tivoli\lcf\inv\SCAN\wepmcoll.exe:*:Disabled:wepmcoll"
======List of files/folders created in the last 1 months======
2010-05-18 21:47:40 ----D---- C:\Program Files\trend micro
2010-05-18 21:47:38 ----D---- C:\rsit
2010-05-18 21:46:21 ----RSH---- C:\WINDOWS\wndrive32.exe
2010-05-18 19:35:29 ----D---- C:\Program Files\SpeedFan
2010-05-18 18:46:36 ----D---- C:\WINDOWS\pss
2010-05-18 18:23:41 ----D---- C:\Program Files\CCleaner
2010-05-18 18:08:04 ----D---- C:\Program Files\Common Files\CANON
2010-05-18 18:06:10 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
2010-05-18 18:05:51 ----A---- C:\WINDOWS\system32\CNMLM94.DLL
2010-05-18 18:05:46 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520O.DLL
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520L.DLL
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520I.DLL
2010-05-18 18:05:33 ----A---- C:\WINDOWS\system32\CNC520C.DLL
2010-05-18 18:05:19 ----HD---- C:\Program Files\CanonBJ
2010-04-20 22:16:21 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Mozilla
2010-04-20 12:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-20 12:19:30 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-20 12:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-04-20 12:10:23 ----SHD---- C:\Config.Msi
2010-04-20 12:08:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-20 12:08:28 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-20 12:08:06 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-20 12:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-20 10:20:23 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Macromedia
2010-04-20 10:20:21 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Adobe
======List of files/folders modified in the last 1 months======
2010-05-18 21:47:40 ----RD---- C:\Program Files
2010-05-18 21:46:52 ----D---- C:\WINDOWS\Prefetch
2010-05-18 21:46:36 ----D---- C:\Program Files\Mozilla Firefox
2010-05-18 21:46:21 ----RSHD---- C:\RECYCLER
2010-05-18 21:46:21 ----D---- C:\WINDOWS
2010-05-18 20:25:01 ----D---- C:\WINDOWS\TEMP
2010-05-18 20:00:40 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-05-18 19:38:55 ----SHD---- C:\WINDOWS\CSC
2010-05-18 19:35:28 ----D---- C:\WINDOWS\system32
2010-05-18 19:16:24 ----D---- C:\WINDOWS\system32\CatRoot2
2010-05-18 18:48:06 ----ASH---- C:\boot.ini
2010-05-18 18:48:06 ----A---- C:\WINDOWS\win.ini
2010-05-18 18:48:06 ----A---- C:\WINDOWS\system.ini
2010-05-18 18:40:46 ----D---- C:\WINDOWS\Debug
2010-05-18 18:40:40 ----D---- C:\WINDOWS\Minidump
2010-05-18 18:10:36 ----D---- C:\Program Files\Canon
2010-05-18 18:09:14 ----D---- C:\WINDOWS\Media
2010-05-18 18:09:13 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-05-18 18:09:05 ----D---- C:\WINDOWS\system32\drivers
2010-05-18 18:08:56 ----HD---- C:\WINDOWS\inf
2010-05-18 18:08:04 ----D---- C:\Program Files\Common Files
2010-05-18 13:25:01 ----A---- C:\fftrlog.txt
2010-05-18 12:01:06 ----D---- C:\WINDOWS\security
2010-05-13 10:08:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-05-04 08:59:05 ----D---- C:\Program Files\Kooperativa
2010-04-20 21:52:16 ----SD---- C:\Documents and Settings\magdalena\Data aplikací\Microsoft
2010-04-20 12:26:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-20 12:26:12 ----SHD---- C:\WINDOWS\Installer
2010-04-20 12:24:11 ----HD---- C:\$AVG8.VAULT$
2010-04-20 12:20:12 ----HD---- C:\WINDOWS\$hf_mig$
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-04-14 335240]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-04-14 27784]
R1 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2009-05-27 108552]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 TGrab;Tivoli Remote Control Text Grabber; C:\WINDOWS\system32\drivers\TGrab.sys [2009-04-22 8288]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-03-05 17801]
R2 CITMDRV;CITMDRV; \??\C:\WINDOWS\System32\drivers\CITMDRV.SYS []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-05-18 2319680]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2003-10-25 95970]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 BCM43XX;Broadcom 802.11 ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 Eqnmirdd;Eqnmirdd; C:\WINDOWS\system32\DRIVERS\Eqnmirdd.sys [2009-04-22 6107]
R3 FETND5BV;VIA Rhine-Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys [2005-03-18 42496]
R3 KeyEx2;Tivoli Remote Control Keyboard Filter; C:\WINDOWS\system32\drivers\KeyEx2.sys [2009-04-22 5837]
R3 MouEx2;Tivoli Remote Control Pointer Filter; C:\WINDOWS\system32\drivers\MouEx2.sys [2009-04-22 4638]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2005-04-07 923826]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2005-12-27 247040]
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2010-04-14 908056]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2010-04-19 297752]
R2 InvokerUpdateService;InvokerUpdateService; c:\ais\Tahiti4\bin\InvokerService.exe [2009-03-05 176128]
R2 KoopPdfService;KoopPdfService; C:\Program Files\Kooperativa\Services\KoopPDFServer.exe [2010-05-10 447488]
R2 lcfd;Tivoli Endpoint; C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe [2005-11-15 172032]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 TME10RC;Tivoli Remote Control Service; C:\WINDOWS\RCSERV.EXE [2009-04-22 77824]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\wltrysvc.exe [2005-02-17 65536]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.07 (written by random/random)
Run by magdalena at 2010-05-18 21:47:38
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 2 GB (14%) free of 16 GB
Total RAM: 446 MB (24% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2007-08-31 1312040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\WINDOWS\WebIE.dll [2009-05-10 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2010-04-19 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\WINDOWS\WebIE.dll [2009-05-10 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2003-12-05 159744]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY []
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2005-04-07 544768]
"VTTimer"=C:\WINDOWS\system32\VTTimer.exe [2005-03-08 53248]
"VTTrayp"=C:\WINDOWS\system32\VTtrayp.exe [2005-11-01 163840]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2010-04-19 2046816]
"lcfep"=C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfep.exe [2005-11-15 270336]
"Microsoft Driver Setup"=C:\WINDOWS\wndrive32.exe [2010-05-18 94208]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Microsoft Driver Setup"=C:\WINDOWS\wndrive32.exe [2010-05-18 94208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"12CFG214-K641-12SF-N85P"=C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe [2010-05-18 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Easy-PrintToolBox]
C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE [2004-01-14 409600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2005-05-17 77824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-04-14 11952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
TivoliAP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"consentpromptbehavioradmin"=0
"enableinstallerdetection"=0
"enablelua"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe"="C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe:*:Enabled:lcfd"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe"="C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe:*:Enabled:Kalk_ziv"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\ICQ6\ICQ.exe"="D:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe"="C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe:*:Enabled:lcfd"
"C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe"="C:\Program Files\Kooperativa\KalkZiv\Kalk_ziv.exe:*:Enabled:Kalk_ziv"
"C:\Tivoli\lcf\inv\SCAN\wepmcoll.exe"="C:\Tivoli\lcf\inv\SCAN\wepmcoll.exe:*:Disabled:wepmcoll"
======List of files/folders created in the last 1 months======
2010-05-18 21:47:40 ----D---- C:\Program Files\trend micro
2010-05-18 21:47:38 ----D---- C:\rsit
2010-05-18 21:46:21 ----RSH---- C:\WINDOWS\wndrive32.exe
2010-05-18 19:35:29 ----D---- C:\Program Files\SpeedFan
2010-05-18 18:46:36 ----D---- C:\WINDOWS\pss
2010-05-18 18:23:41 ----D---- C:\Program Files\CCleaner
2010-05-18 18:08:04 ----D---- C:\Program Files\Common Files\CANON
2010-05-18 18:06:10 ----HD---- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
2010-05-18 18:05:51 ----A---- C:\WINDOWS\system32\CNMLM94.DLL
2010-05-18 18:05:46 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520O.DLL
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520L.DLL
2010-05-18 18:05:34 ----A---- C:\WINDOWS\system32\CNC520I.DLL
2010-05-18 18:05:33 ----A---- C:\WINDOWS\system32\CNC520C.DLL
2010-05-18 18:05:19 ----HD---- C:\Program Files\CanonBJ
2010-04-20 22:16:21 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Mozilla
2010-04-20 12:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-20 12:19:30 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-20 12:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-04-20 12:10:23 ----SHD---- C:\Config.Msi
2010-04-20 12:08:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-20 12:08:28 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-20 12:08:06 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-20 12:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-20 10:20:23 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Macromedia
2010-04-20 10:20:21 ----D---- C:\Documents and Settings\magdalena\Data aplikací\Adobe
======List of files/folders modified in the last 1 months======
2010-05-18 21:47:40 ----RD---- C:\Program Files
2010-05-18 21:46:52 ----D---- C:\WINDOWS\Prefetch
2010-05-18 21:46:36 ----D---- C:\Program Files\Mozilla Firefox
2010-05-18 21:46:21 ----RSHD---- C:\RECYCLER
2010-05-18 21:46:21 ----D---- C:\WINDOWS
2010-05-18 20:25:01 ----D---- C:\WINDOWS\TEMP
2010-05-18 20:00:40 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-05-18 19:38:55 ----SHD---- C:\WINDOWS\CSC
2010-05-18 19:35:28 ----D---- C:\WINDOWS\system32
2010-05-18 19:16:24 ----D---- C:\WINDOWS\system32\CatRoot2
2010-05-18 18:48:06 ----ASH---- C:\boot.ini
2010-05-18 18:48:06 ----A---- C:\WINDOWS\win.ini
2010-05-18 18:48:06 ----A---- C:\WINDOWS\system.ini
2010-05-18 18:40:46 ----D---- C:\WINDOWS\Debug
2010-05-18 18:40:40 ----D---- C:\WINDOWS\Minidump
2010-05-18 18:10:36 ----D---- C:\Program Files\Canon
2010-05-18 18:09:14 ----D---- C:\WINDOWS\Media
2010-05-18 18:09:13 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-05-18 18:09:05 ----D---- C:\WINDOWS\system32\drivers
2010-05-18 18:08:56 ----HD---- C:\WINDOWS\inf
2010-05-18 18:08:04 ----D---- C:\Program Files\Common Files
2010-05-18 13:25:01 ----A---- C:\fftrlog.txt
2010-05-18 12:01:06 ----D---- C:\WINDOWS\security
2010-05-13 10:08:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-05-04 08:59:05 ----D---- C:\Program Files\Kooperativa
2010-04-20 21:52:16 ----SD---- C:\Documents and Settings\magdalena\Data aplikací\Microsoft
2010-04-20 12:26:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-04-20 12:26:12 ----SHD---- C:\WINDOWS\Installer
2010-04-20 12:24:11 ----HD---- C:\$AVG8.VAULT$
2010-04-20 12:20:12 ----HD---- C:\WINDOWS\$hf_mig$
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-04-14 335240]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-04-14 27784]
R1 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2009-05-27 108552]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 TGrab;Tivoli Remote Control Text Grabber; C:\WINDOWS\system32\drivers\TGrab.sys [2009-04-22 8288]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-03-05 17801]
R2 CITMDRV;CITMDRV; \??\C:\WINDOWS\System32\drivers\CITMDRV.SYS []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-05-18 2319680]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2003-10-25 95970]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 BCM43XX;Broadcom 802.11 ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 Eqnmirdd;Eqnmirdd; C:\WINDOWS\system32\DRIVERS\Eqnmirdd.sys [2009-04-22 6107]
R3 FETND5BV;VIA Rhine-Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys [2005-03-18 42496]
R3 KeyEx2;Tivoli Remote Control Keyboard Filter; C:\WINDOWS\system32\drivers\KeyEx2.sys [2009-04-22 5837]
R3 MouEx2;Tivoli Remote Control Pointer Filter; C:\WINDOWS\system32\drivers\MouEx2.sys [2009-04-22 4638]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2005-04-07 923826]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2005-12-27 247040]
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2010-04-14 908056]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2010-04-19 297752]
R2 InvokerUpdateService;InvokerUpdateService; c:\ais\Tahiti4\bin\InvokerService.exe [2009-03-05 176128]
R2 KoopPdfService;KoopPdfService; C:\Program Files\Kooperativa\Services\KoopPDFServer.exe [2010-05-10 447488]
R2 lcfd;Tivoli Endpoint; C:\Tivoli\lcf\bin\w32-ix86\mrt\lcfd.exe [2005-11-15 172032]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 TME10RC;Tivoli Remote Control Service; C:\WINDOWS\RCSERV.EXE [2009-04-22 77824]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\wltrysvc.exe [2005-02-17 65536]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------