prosím o preventivní kotrolu, děkuji
Napsal: 22 čer 2010 10:43
Logfile of random's system information tool 1.07 (written by random/random)
Run by klára at 2010-06-22 11:16:58
Microsoft® Windows Vista™ Home Basic Service Pack 1
System drive C: has 12 GB (37%) free of 33 GB
Total RAM: 501 MB (20% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:17:29, on 22.6.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Acer\Empowering Technology\eDSMSNfix.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\uTorrent\utorrent.exe
C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterRuntime.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Users\KLRA~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\PROGRA~1\Symbian\Shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\Symbian\Shared\SYMBIA~1\SCBAL.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\klára\Desktop\RSIT.exe
C:\Program Files\trend micro\klára.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Windows\WebIE.dll
O2 - BHO: (no name) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - (no file)
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [eDSMSNfix] C:\Acer\Empowering Technology\eDSMSNfix.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [PC Suite for Smartphones] "C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\uTorrent\utorrent.exe"
O4 - HKCU\..\Run: [mRouterConfig] "C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 7749 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Windows\WebIE.dll [2007-08-09 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Windows\WebIE.dll [2007-08-09 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2006-11-06 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2006-11-06 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2006-11-06 81920]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-03-01 4390912]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-23 815104]
"eDSMSNfix"=C:\Acer\Empowering Technology\eDSMSNfix.exe [2007-02-09 13312]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2006-12-09 614400]
"eRecoveryService"= []
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2007-05-28 528384]
"PC Suite for Smartphones"=C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe [2007-12-25 548864]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-06 2815192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"= []
"WEBTRAN"= []
"µTorrent"=C:\Program Files\uTorrent\utorrent.exe [2007-02-15 177152]
"mRouterConfig"=C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe [2006-03-02 290816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-02-07 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2007-03-14 71216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
C:\Acer\WR_PopUp\WarReg_PopUp.exe [2006-11-05 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2006-11-06 212992]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{97486e7a-489f-11df-b871-0016d4d8000d}]
shell\AutoRun\command - F:\USBAutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e00e15f4-f3b4-11dd-92c2-0016d4d8000d}]
shell\AutoRun\command - F:\StartPortableApps.exe
======List of files/folders created in the last 1 months======
2010-06-22 11:17:01 ----D---- C:\Program Files\trend micro
2010-06-22 11:16:58 ----D---- C:\rsit
2010-06-22 03:59:26 ----D---- C:\Windows\pss
2010-06-22 02:51:00 ----D---- C:\PerfLogs
2010-06-21 23:05:22 ----A---- C:\Windows\system32\browserchoice.exe
2010-06-21 22:46:20 ----A---- C:\Windows\system32\infocardapi.dll
2010-06-21 22:46:19 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\icardres.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\icardagt.exe
2010-06-21 22:46:09 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-06-21 22:45:57 ----A---- C:\Windows\system32\PresentationHost.exe
2010-06-21 22:34:51 ----A---- C:\Windows\system32\dfshim.dll
2010-06-21 22:34:48 ----A---- C:\Windows\system32\mscoree.dll
2010-06-21 22:34:47 ----A---- C:\Windows\system32\netfxperf.dll
2010-06-21 22:34:34 ----A---- C:\Windows\system32\mscorier.dll
2010-06-21 22:34:26 ----A---- C:\Windows\system32\mscories.dll
2010-06-21 22:13:53 ----A---- C:\Windows\system32\kernel32.dll
2010-06-21 22:13:50 ----A---- C:\Windows\system32\apilogen.dll
2010-06-21 22:13:50 ----A---- C:\Windows\system32\amxread.dll
2010-06-21 22:13:38 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-06-21 22:13:33 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-06-21 22:13:19 ----A---- C:\Windows\system32\t2embed.dll
2010-06-21 22:13:19 ----A---- C:\Windows\system32\atmfd.dll
2010-06-21 22:13:18 ----A---- C:\Windows\system32\fontsub.dll
2010-06-21 22:13:17 ----A---- C:\Windows\system32\lpk.dll
2010-06-21 22:13:17 ----A---- C:\Windows\system32\dciman32.dll
2010-06-21 22:13:01 ----A---- C:\Windows\system32\mshtml.dll
2010-06-21 22:13:00 ----A---- C:\Windows\system32\wininet.dll
2010-06-21 22:13:00 ----A---- C:\Windows\system32\occache.dll
2010-06-21 22:12:59 ----A---- C:\Windows\system32\urlmon.dll
2010-06-21 22:12:56 ----A---- C:\Windows\system32\ieframe.dll
2010-06-21 22:12:55 ----A---- C:\Windows\system32\ieapfltr.dll
2010-06-21 22:12:54 ----A---- C:\Windows\system32\msfeeds.dll
2010-06-21 22:12:54 ----A---- C:\Windows\system32\iedkcs32.dll
2010-06-21 22:12:53 ----A---- C:\Windows\system32\iertutil.dll
2010-06-21 22:12:52 ----A---- C:\Windows\system32\iepeers.dll
2010-06-21 22:12:51 ----A---- C:\Windows\system32\ieaksie.dll
2010-06-21 22:12:51 ----A---- C:\Windows\system32\admparse.dll
2010-06-21 22:12:50 ----A---- C:\Windows\system32\ieUnatt.exe
2010-06-21 22:12:50 ----A---- C:\Windows\system32\ieencode.dll
2010-06-21 22:12:49 ----A---- C:\Windows\system32\mstime.dll
2010-06-21 22:12:47 ----A---- C:\Windows\system32\jsproxy.dll
2010-06-21 22:12:14 ----A---- C:\Windows\system32\netiohlp.dll
2010-06-21 22:12:13 ----A---- C:\Windows\system32\netevent.dll
2010-06-21 22:12:11 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\ROUTE.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\ARP.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\MRINFO.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\finger.exe
2010-06-21 22:11:29 ----A---- C:\Windows\system32\wlansvc.dll
2010-06-21 22:11:29 ----A---- C:\Windows\system32\wlansec.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanmsm.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanhlp.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanapi.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\L2SecHC.dll
2010-06-21 22:11:27 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
2010-06-21 22:11:21 ----A---- C:\Windows\system32\msxml6.dll
2010-06-21 22:11:20 ----A---- C:\Windows\system32\msxml3.dll
2010-06-21 22:11:14 ----A---- C:\Windows\system32\msv1_0.dll
2010-06-21 22:11:14 ----A---- C:\Windows\system32\lsasrv.dll
2010-06-21 22:11:13 ----A---- C:\Windows\system32\wdigest.dll
2010-06-21 22:11:12 ----A---- C:\Windows\system32\secur32.dll
2010-06-21 22:11:12 ----A---- C:\Windows\system32\lsass.exe
2010-06-21 22:11:02 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-06-21 22:11:00 ----A---- C:\Windows\system32\mf.dll
2010-06-21 22:10:58 ----A---- C:\Windows\system32\rrinstaller.exe
2010-06-21 22:10:58 ----A---- C:\Windows\system32\mfps.dll
2010-06-21 22:10:58 ----A---- C:\Windows\system32\mfpmp.exe
2010-06-21 22:10:54 ----A---- C:\Windows\system32\vbscript.dll
2010-06-21 22:10:50 ----A---- C:\Windows\system32\winhttp.dll
2010-06-21 22:10:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-06-21 22:10:42 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-06-21 22:10:35 ----A---- C:\Windows\system32\atl.dll
2010-06-21 22:10:32 ----A---- C:\Windows\system32\gdi32.dll
2010-06-21 22:10:29 ----A---- C:\Windows\system32\xolehlp.dll
2010-06-21 22:10:28 ----A---- C:\Windows\system32\msdtcprx.dll
2010-06-21 22:10:25 ----A---- C:\Windows\system32\wkssvc.dll
2010-06-21 22:10:21 ----A---- C:\Windows\system32\mstscax.dll
2010-06-21 22:10:20 ----A---- C:\Windows\system32\tsgqec.dll
2010-06-21 22:10:20 ----A---- C:\Windows\system32\aaclient.dll
2010-06-21 22:09:51 ----A---- C:\Windows\system32\shell32.dll
2010-06-21 22:09:33 ----A---- C:\Windows\system32\tzres.dll
2010-06-21 22:08:45 ----A---- C:\Windows\system32\localspl.dll
2010-06-21 22:08:40 ----A---- C:\Windows\explorer.exe
2010-06-21 22:08:29 ----A---- C:\Windows\system32\iashost.exe
2010-06-21 22:08:28 ----A---- C:\Windows\system32\sdohlp.dll
2010-06-21 22:08:28 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-06-21 22:08:26 ----A---- C:\Windows\system32\rpcss.dll
2010-06-21 22:08:23 ----A---- C:\Windows\system32\iasrecst.dll
2010-06-21 22:08:23 ----A---- C:\Windows\system32\iasdatastore.dll
2010-06-21 22:08:22 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-06-21 22:08:22 ----A---- C:\Windows\system32\iasads.dll
2010-06-21 22:08:07 ----A---- C:\Windows\system32\jscript.dll
2010-06-21 22:08:02 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-06-21 22:07:32 ----A---- C:\Windows\system32\wmpdxm.dll
2010-06-21 22:07:05 ----A---- C:\Windows\system32\RMActivate.exe
2010-06-21 22:07:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-06-21 22:07:03 ----A---- C:\Windows\system32\secproc.dll
2010-06-21 22:07:01 ----A---- C:\Windows\system32\secproc_isv.dll
2010-06-21 22:07:00 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-06-21 22:06:59 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-06-21 22:06:56 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-06-21 22:06:56 ----A---- C:\Windows\system32\msdrm.dll
2010-06-21 22:06:55 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-06-21 22:06:38 ----A---- C:\Windows\system32\schannel.dll
2010-06-21 22:06:25 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-06-21 22:06:25 ----A---- C:\Windows\system32\logagent.exe
2010-06-21 22:06:19 ----A---- C:\Windows\system32\msasn1.dll
2010-06-21 22:06:13 ----A---- C:\Windows\system32\rpcrt4.dll
2010-06-21 22:05:54 ----A---- C:\Windows\system32\rastls.dll
2010-06-21 22:05:54 ----A---- C:\Windows\system32\raschap.dll
2010-06-21 22:05:48 ----A---- C:\Windows\system32\WSDApi.dll
2010-06-21 22:05:41 ----A---- C:\Windows\system32\quartz.dll
2010-06-21 22:05:41 ----A---- C:\Windows\system32\avifil32.dll
2010-06-21 22:05:40 ----A---- C:\Windows\system32\msvidc32.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\msyuv.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\msrle32.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\iyuv_32.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\tsbyuv.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\msvfw32.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\mciavi32.dll
2010-06-21 22:05:37 ----A---- C:\Windows\system32\avicap32.dll
2010-06-21 22:03:32 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-06-21 21:46:08 ----A---- C:\Windows\system32\wmp.dll
2010-06-21 21:46:02 ----A---- C:\Windows\system32\unregmp2.exe
2010-06-21 21:45:55 ----A---- C:\Windows\system32\wmploc.DLL
2010-06-21 21:45:54 ----A---- C:\Windows\system32\spwmp.dll
2010-06-21 21:45:54 ----A---- C:\Windows\system32\dxmasf.dll
2010-06-21 21:44:42 ----N---- C:\Windows\system32\MpSigStub.exe
2010-06-21 21:44:04 ----A---- C:\Windows\system32\cabview.dll
2010-06-21 21:43:53 ----A---- C:\Windows\system32\wintrust.dll
2010-06-21 20:58:13 ----A---- C:\Windows\system32\wups2.dll
2010-06-21 20:58:12 ----A---- C:\Windows\system32\wucltux.dll
2010-06-21 20:58:12 ----A---- C:\Windows\system32\wuauclt.exe
2010-06-21 20:58:11 ----A---- C:\Windows\system32\wuaueng.dll
2010-06-21 20:57:38 ----A---- C:\Windows\system32\wups.dll
2010-06-21 20:57:38 ----A---- C:\Windows\system32\wudriver.dll
2010-06-21 20:57:37 ----A---- C:\Windows\system32\wuapi.dll
2010-06-21 20:57:22 ----A---- C:\Windows\system32\wuwebv.dll
2010-06-21 20:57:22 ----A---- C:\Windows\system32\wuapp.exe
2010-06-21 19:32:55 ----D---- C:\ProgramData\Alwil Software
======List of files/folders modified in the last 1 months======
2010-06-22 11:17:01 ----RD---- C:\Program Files
2010-06-22 11:16:54 ----D---- C:\Windows\Temp
2010-06-22 11:15:02 ----D---- C:\Windows\System32
2010-06-22 11:15:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-06-22 11:14:56 ----D---- C:\Windows\inf
2010-06-22 11:07:37 ----D---- C:\Windows\system32\WDI
2010-06-22 05:14:04 ----D---- C:\Windows
2010-06-22 04:01:28 ----D---- C:\Users\klára\AppData\Roaming\uTorrent
2010-06-22 03:59:06 ----HD---- C:\ProgramData
2010-06-22 03:59:06 ----D---- C:\Windows\system32\drivers
2010-06-22 03:58:49 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-06-22 03:58:31 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-06-22 03:54:30 ----D---- C:\Windows\Debug
2010-06-22 03:24:49 ----D---- C:\Windows\winsxs
2010-06-22 03:21:16 ----D---- C:\Windows\rescache
2010-06-22 03:17:34 ----D---- C:\Windows\Microsoft.NET
2010-06-22 03:16:40 ----RSD---- C:\Windows\assembly
2010-06-22 03:11:44 ----D---- C:\Windows\system32\catroot
2010-06-22 03:10:39 ----D---- C:\Windows\system32\catroot2
2010-06-22 03:10:22 ----SHD---- C:\Boot
2010-06-22 03:09:54 ----ASH---- C:\Program Files\desktop.ini
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Sidebar
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Mail
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Calendar
2010-06-22 02:53:13 ----D---- C:\Program Files\Movie Maker
2010-06-22 02:53:12 ----D---- C:\Program Files\Windows Media Player
2010-06-22 02:53:12 ----D---- C:\Program Files\Internet Explorer
2010-06-22 02:53:11 ----D---- C:\Program Files\Windows Collaboration
2010-06-22 02:53:10 ----D---- C:\Program Files\Windows Photo Gallery
2010-06-22 02:53:08 ----D---- C:\Program Files\Common Files\System
2010-06-22 02:53:07 ----D---- C:\Windows\servicing
2010-06-22 02:53:07 ----D---- C:\Windows\MSAgent
2010-06-22 02:53:07 ----D---- C:\Program Files\Windows Defender
2010-06-22 02:53:06 ----D---- C:\Windows\IME
2010-06-22 02:53:06 ----D---- C:\Windows\DigitalLocker
2010-06-22 02:53:05 ----D---- C:\Windows\system32\com
2010-06-22 02:53:05 ----D---- C:\Windows\PolicyDefinitions
2010-06-22 02:53:05 ----D---- C:\Windows\L2Schemas
2010-06-22 02:53:04 ----D---- C:\Windows\system32\ko-KR
2010-06-22 02:53:04 ----D---- C:\Windows\system32\da-DK
2010-06-22 02:53:03 ----D---- C:\Windows\system32\sysprep
2010-06-22 02:53:03 ----D---- C:\Windows\system32\oobe
2010-06-22 02:53:03 ----D---- C:\Windows\system32\migration
2010-06-22 02:53:03 ----D---- C:\Windows\system32\it-IT
2010-06-22 02:53:03 ----D---- C:\Windows\system32\en-US
2010-06-22 02:53:03 ----D---- C:\Windows\system32\el-GR
2010-06-22 02:53:03 ----D---- C:\Windows\system32\de-DE
2010-06-22 02:53:00 ----D---- C:\Windows\system32\AdvancedInstallers
2010-06-22 02:52:59 ----D---- C:\Windows\system32\sv-SE
2010-06-22 02:52:59 ----D---- C:\Windows\system32\setup
2010-06-22 02:52:59 ----D---- C:\Windows\system32\ru-RU
2010-06-22 02:52:59 ----D---- C:\Windows\system32\ias
2010-06-22 02:52:59 ----D---- C:\Windows\system32\he-IL
2010-06-22 02:52:59 ----D---- C:\Windows\system32\fr-FR
2010-06-22 02:52:59 ----D---- C:\Windows\system32\fi-FI
2010-06-22 02:52:59 ----D---- C:\Windows\system32\cs
2010-06-22 02:52:58 ----D---- C:\Windows\system32\cs-CZ
2010-06-22 02:52:49 ----D---- C:\Windows\system32\SLUI
2010-06-22 02:52:49 ----D---- C:\Windows\system32\pt-PT
2010-06-22 02:52:49 ----D---- C:\Windows\system32\hu-HU
2010-06-22 02:52:47 ----D---- C:\Windows\system32\zh-TW
2010-06-22 02:52:47 ----D---- C:\Windows\system32\zh-CN
2010-06-22 02:52:47 ----D---- C:\Windows\system32\ro-RO
2010-06-22 02:52:47 ----D---- C:\Windows\system32\pl-PL
2010-06-22 02:52:47 ----D---- C:\Windows\system32\manifeststore
2010-06-22 02:52:47 ----D---- C:\Windows\system32\ja-JP
2010-06-22 02:52:47 ----D---- C:\Windows\system32\es-ES
2010-06-22 02:52:43 ----D---- C:\Windows\system32\wbem
2010-06-22 02:52:43 ----D---- C:\Windows\system32\tr-TR
2010-06-22 02:52:41 ----D---- C:\Windows\system32\nl-NL
2010-06-22 02:52:41 ----D---- C:\Windows\system32\nb-NO
2010-06-22 02:52:41 ----D---- C:\Windows\system32\ar-SA
2010-06-22 02:52:39 ----D---- C:\Windows\system32\pt-BR
2010-06-22 02:52:39 ----D---- C:\Windows\system32\migwiz
2010-06-22 02:51:30 ----D---- C:\Windows\AppPatch
2010-06-22 02:51:12 ----D---- C:\Windows\Boot
2010-06-22 02:51:06 ----D---- C:\Windows\system32\Boot
2010-06-22 02:43:44 ----D---- C:\Windows\system32\RTCOM
2010-06-22 01:51:20 ----A---- C:\Windows\system32\ifxcardm.dll
2010-06-22 01:50:59 ----A---- C:\Windows\system32\axaltocm.dll
2010-06-22 01:26:08 ----D---- C:\Windows\Prefetch
2010-06-22 01:00:47 ----D---- C:\Program Files\Alwil Software
2010-06-22 00:49:31 ----SHD---- C:\Windows\Installer
2010-06-22 00:36:58 ----D---- C:\Program Files\CCleaner
2010-06-22 00:28:05 ----A---- C:\Windows\MAILTRAN.INI
2010-06-21 23:41:03 ----D---- C:\Windows\system32\XPSViewer
2010-06-21 23:40:26 ----RSD---- C:\Windows\Fonts
2010-05-28 12:37:36 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-05-06 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-05-06 164048]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-05-06 46672]
R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-03 20112]
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B}; \??\C:\Program Files\CyberLink\PowerDVD\000.fcl [2006-11-02 13560]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-05-06 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-05-06 51792]
R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2006-12-07 76584]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-12-19 534016]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\Windows\system32\DRIVERS\bcm4sbxp.sys [2006-11-02 45056]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]
R3 EMSCR;EMSCR; C:\Windows\system32\DRIVERS\EMS7SK.sys [2006-10-25 62208]
R3 ESDCR;ESDCR; C:\Windows\system32\DRIVERS\ESD7SK.sys [2006-10-25 42240]
R3 ESMCR;ESMCR; C:\Windows\system32\DRIVERS\ESM7SK.sys [2006-10-25 76928]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648]
R3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-11-06 1473024]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-03-01 1744928]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2007-05-01 6144]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-23 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
R3 zebrceb;Sony Ericsson Cable Emulation Bus (WDM); C:\Windows\system32\DRIVERS\zebrceb.sys [2008-01-15 63360]
S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys []
S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys []
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-11-06 1473024]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\Windows\system32\DRIVERS\k750bus.sys [2005-02-11 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\k750mdfl.sys [2005-07-07 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\Windows\system32\DRIVERS\k750mdm.sys [2005-07-07 89872]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 s115bus;Sony Ericsson Device 115 driver (WDM); C:\Windows\system32\DRIVERS\s115bus.sys [2007-04-23 83208]
S3 s115mdfl;Sony Ericsson Device 115 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s115mdfl.sys [2007-04-23 15112]
S3 s115mdm;Sony Ericsson Device 115 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s115mdm.sys [2007-04-23 108680]
S3 s115mgmt;Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s115mgmt.sys [2007-04-23 100488]
S3 s115obex;Sony Ericsson Device 115 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s115obex.sys [2007-04-23 98568]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\Windows\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2008-11-11 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2008-11-11 19968]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2008-11-11 24832]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 zebrbus;Sony Ericsson Composite Device driver; C:\Windows\system32\DRIVERS\zebrbus.sys [2008-01-15 83200]
S3 zebrmdfl;Sony Ericsson Modem Filter; C:\Windows\system32\DRIVERS\zebrmdfl.sys [2008-01-15 14848]
S3 zebrmdm;Sony Ericsson Port (WDM); C:\Windows\system32\DRIVERS\zebrmdm.sys [2008-01-15 109568]
S3 zebrmdmc;Sony Ericsson mRouter Port (WDM); C:\Windows\system32\DRIVERS\zebrmdmc.sys [2008-01-15 109568]
S3 zebrsce;Sony Ericsson PC-Connect Port; C:\Windows\system32\DRIVERS\zebrsce.sys [2008-01-15 91264]
S4 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-01-31 53248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2006-11-24 107008]
R2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2006-04-14 28933976]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-02-07 266343]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-05 386560]
S3 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2006-04-14 240416]
-----------------EOF-----------------
Run by klára at 2010-06-22 11:16:58
Microsoft® Windows Vista™ Home Basic Service Pack 1
System drive C: has 12 GB (37%) free of 33 GB
Total RAM: 501 MB (20% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:17:29, on 22.6.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Acer\Empowering Technology\eDSMSNfix.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\uTorrent\utorrent.exe
C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterRuntime.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Users\KLRA~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\PROGRA~1\Symbian\Shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\Symbian\Shared\SYMBIA~1\SCBAL.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\klára\Desktop\RSIT.exe
C:\Program Files\trend micro\klára.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://cs.intl.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://cs.intl.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/ ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Windows\WebIE.dll
O2 - BHO: (no name) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - (no file)
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [eDSMSNfix] C:\Acer\Empowering Technology\eDSMSNfix.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [PC Suite for Smartphones] "C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\uTorrent\utorrent.exe"
O4 - HKCU\..\Run: [mRouterConfig] "C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Windows\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Windows\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 7749 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\Windows\WebIE.dll [2007-08-09 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Windows\WebIE.dll [2007-08-09 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2006-11-06 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2006-11-06 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2006-11-06 81920]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-03-01 4390912]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-23 815104]
"eDSMSNfix"=C:\Acer\Empowering Technology\eDSMSNfix.exe [2007-02-09 13312]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2006-12-09 614400]
"eRecoveryService"= []
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2007-05-28 528384]
"PC Suite for Smartphones"=C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe [2007-12-25 548864]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-06 2815192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OEXPRESS"= []
"WEBTRAN"= []
"µTorrent"=C:\Program Files\uTorrent\utorrent.exe [2007-02-15 177152]
"mRouterConfig"=C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterConfig.exe [2006-03-02 290816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-02-07 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2007-03-14 71216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WarReg_PopUp]
C:\Acer\WR_PopUp\WarReg_PopUp.exe [2006-11-05 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2006-11-06 212992]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{97486e7a-489f-11df-b871-0016d4d8000d}]
shell\AutoRun\command - F:\USBAutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e00e15f4-f3b4-11dd-92c2-0016d4d8000d}]
shell\AutoRun\command - F:\StartPortableApps.exe
======List of files/folders created in the last 1 months======
2010-06-22 11:17:01 ----D---- C:\Program Files\trend micro
2010-06-22 11:16:58 ----D---- C:\rsit
2010-06-22 03:59:26 ----D---- C:\Windows\pss
2010-06-22 02:51:00 ----D---- C:\PerfLogs
2010-06-21 23:05:22 ----A---- C:\Windows\system32\browserchoice.exe
2010-06-21 22:46:20 ----A---- C:\Windows\system32\infocardapi.dll
2010-06-21 22:46:19 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\icardres.dll
2010-06-21 22:46:15 ----A---- C:\Windows\system32\icardagt.exe
2010-06-21 22:46:09 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-06-21 22:45:57 ----A---- C:\Windows\system32\PresentationHost.exe
2010-06-21 22:34:51 ----A---- C:\Windows\system32\dfshim.dll
2010-06-21 22:34:48 ----A---- C:\Windows\system32\mscoree.dll
2010-06-21 22:34:47 ----A---- C:\Windows\system32\netfxperf.dll
2010-06-21 22:34:34 ----A---- C:\Windows\system32\mscorier.dll
2010-06-21 22:34:26 ----A---- C:\Windows\system32\mscories.dll
2010-06-21 22:13:53 ----A---- C:\Windows\system32\kernel32.dll
2010-06-21 22:13:50 ----A---- C:\Windows\system32\apilogen.dll
2010-06-21 22:13:50 ----A---- C:\Windows\system32\amxread.dll
2010-06-21 22:13:38 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-06-21 22:13:33 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-06-21 22:13:19 ----A---- C:\Windows\system32\t2embed.dll
2010-06-21 22:13:19 ----A---- C:\Windows\system32\atmfd.dll
2010-06-21 22:13:18 ----A---- C:\Windows\system32\fontsub.dll
2010-06-21 22:13:17 ----A---- C:\Windows\system32\lpk.dll
2010-06-21 22:13:17 ----A---- C:\Windows\system32\dciman32.dll
2010-06-21 22:13:01 ----A---- C:\Windows\system32\mshtml.dll
2010-06-21 22:13:00 ----A---- C:\Windows\system32\wininet.dll
2010-06-21 22:13:00 ----A---- C:\Windows\system32\occache.dll
2010-06-21 22:12:59 ----A---- C:\Windows\system32\urlmon.dll
2010-06-21 22:12:56 ----A---- C:\Windows\system32\ieframe.dll
2010-06-21 22:12:55 ----A---- C:\Windows\system32\ieapfltr.dll
2010-06-21 22:12:54 ----A---- C:\Windows\system32\msfeeds.dll
2010-06-21 22:12:54 ----A---- C:\Windows\system32\iedkcs32.dll
2010-06-21 22:12:53 ----A---- C:\Windows\system32\iertutil.dll
2010-06-21 22:12:52 ----A---- C:\Windows\system32\iepeers.dll
2010-06-21 22:12:51 ----A---- C:\Windows\system32\ieaksie.dll
2010-06-21 22:12:51 ----A---- C:\Windows\system32\admparse.dll
2010-06-21 22:12:50 ----A---- C:\Windows\system32\ieUnatt.exe
2010-06-21 22:12:50 ----A---- C:\Windows\system32\ieencode.dll
2010-06-21 22:12:49 ----A---- C:\Windows\system32\mstime.dll
2010-06-21 22:12:47 ----A---- C:\Windows\system32\jsproxy.dll
2010-06-21 22:12:14 ----A---- C:\Windows\system32\netiohlp.dll
2010-06-21 22:12:13 ----A---- C:\Windows\system32\netevent.dll
2010-06-21 22:12:11 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\ROUTE.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-06-21 22:12:11 ----A---- C:\Windows\system32\ARP.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\MRINFO.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-06-21 22:12:10 ----A---- C:\Windows\system32\finger.exe
2010-06-21 22:11:29 ----A---- C:\Windows\system32\wlansvc.dll
2010-06-21 22:11:29 ----A---- C:\Windows\system32\wlansec.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanmsm.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanhlp.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\wlanapi.dll
2010-06-21 22:11:28 ----A---- C:\Windows\system32\L2SecHC.dll
2010-06-21 22:11:27 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
2010-06-21 22:11:21 ----A---- C:\Windows\system32\msxml6.dll
2010-06-21 22:11:20 ----A---- C:\Windows\system32\msxml3.dll
2010-06-21 22:11:14 ----A---- C:\Windows\system32\msv1_0.dll
2010-06-21 22:11:14 ----A---- C:\Windows\system32\lsasrv.dll
2010-06-21 22:11:13 ----A---- C:\Windows\system32\wdigest.dll
2010-06-21 22:11:12 ----A---- C:\Windows\system32\secur32.dll
2010-06-21 22:11:12 ----A---- C:\Windows\system32\lsass.exe
2010-06-21 22:11:02 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-06-21 22:11:00 ----A---- C:\Windows\system32\mf.dll
2010-06-21 22:10:58 ----A---- C:\Windows\system32\rrinstaller.exe
2010-06-21 22:10:58 ----A---- C:\Windows\system32\mfps.dll
2010-06-21 22:10:58 ----A---- C:\Windows\system32\mfpmp.exe
2010-06-21 22:10:54 ----A---- C:\Windows\system32\vbscript.dll
2010-06-21 22:10:50 ----A---- C:\Windows\system32\winhttp.dll
2010-06-21 22:10:42 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-06-21 22:10:42 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-06-21 22:10:35 ----A---- C:\Windows\system32\atl.dll
2010-06-21 22:10:32 ----A---- C:\Windows\system32\gdi32.dll
2010-06-21 22:10:29 ----A---- C:\Windows\system32\xolehlp.dll
2010-06-21 22:10:28 ----A---- C:\Windows\system32\msdtcprx.dll
2010-06-21 22:10:25 ----A---- C:\Windows\system32\wkssvc.dll
2010-06-21 22:10:21 ----A---- C:\Windows\system32\mstscax.dll
2010-06-21 22:10:20 ----A---- C:\Windows\system32\tsgqec.dll
2010-06-21 22:10:20 ----A---- C:\Windows\system32\aaclient.dll
2010-06-21 22:09:51 ----A---- C:\Windows\system32\shell32.dll
2010-06-21 22:09:33 ----A---- C:\Windows\system32\tzres.dll
2010-06-21 22:08:45 ----A---- C:\Windows\system32\localspl.dll
2010-06-21 22:08:40 ----A---- C:\Windows\explorer.exe
2010-06-21 22:08:29 ----A---- C:\Windows\system32\iashost.exe
2010-06-21 22:08:28 ----A---- C:\Windows\system32\sdohlp.dll
2010-06-21 22:08:28 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-06-21 22:08:26 ----A---- C:\Windows\system32\rpcss.dll
2010-06-21 22:08:23 ----A---- C:\Windows\system32\iasrecst.dll
2010-06-21 22:08:23 ----A---- C:\Windows\system32\iasdatastore.dll
2010-06-21 22:08:22 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-06-21 22:08:22 ----A---- C:\Windows\system32\iasads.dll
2010-06-21 22:08:07 ----A---- C:\Windows\system32\jscript.dll
2010-06-21 22:08:02 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-06-21 22:07:32 ----A---- C:\Windows\system32\wmpdxm.dll
2010-06-21 22:07:05 ----A---- C:\Windows\system32\RMActivate.exe
2010-06-21 22:07:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-06-21 22:07:03 ----A---- C:\Windows\system32\secproc.dll
2010-06-21 22:07:01 ----A---- C:\Windows\system32\secproc_isv.dll
2010-06-21 22:07:00 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-06-21 22:06:59 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-06-21 22:06:56 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-06-21 22:06:56 ----A---- C:\Windows\system32\msdrm.dll
2010-06-21 22:06:55 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-06-21 22:06:38 ----A---- C:\Windows\system32\schannel.dll
2010-06-21 22:06:25 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-06-21 22:06:25 ----A---- C:\Windows\system32\logagent.exe
2010-06-21 22:06:19 ----A---- C:\Windows\system32\msasn1.dll
2010-06-21 22:06:13 ----A---- C:\Windows\system32\rpcrt4.dll
2010-06-21 22:05:54 ----A---- C:\Windows\system32\rastls.dll
2010-06-21 22:05:54 ----A---- C:\Windows\system32\raschap.dll
2010-06-21 22:05:48 ----A---- C:\Windows\system32\WSDApi.dll
2010-06-21 22:05:41 ----A---- C:\Windows\system32\quartz.dll
2010-06-21 22:05:41 ----A---- C:\Windows\system32\avifil32.dll
2010-06-21 22:05:40 ----A---- C:\Windows\system32\msvidc32.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\msyuv.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\msrle32.dll
2010-06-21 22:05:39 ----A---- C:\Windows\system32\iyuv_32.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\tsbyuv.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\msvfw32.dll
2010-06-21 22:05:38 ----A---- C:\Windows\system32\mciavi32.dll
2010-06-21 22:05:37 ----A---- C:\Windows\system32\avicap32.dll
2010-06-21 22:03:32 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-06-21 21:46:08 ----A---- C:\Windows\system32\wmp.dll
2010-06-21 21:46:02 ----A---- C:\Windows\system32\unregmp2.exe
2010-06-21 21:45:55 ----A---- C:\Windows\system32\wmploc.DLL
2010-06-21 21:45:54 ----A---- C:\Windows\system32\spwmp.dll
2010-06-21 21:45:54 ----A---- C:\Windows\system32\dxmasf.dll
2010-06-21 21:44:42 ----N---- C:\Windows\system32\MpSigStub.exe
2010-06-21 21:44:04 ----A---- C:\Windows\system32\cabview.dll
2010-06-21 21:43:53 ----A---- C:\Windows\system32\wintrust.dll
2010-06-21 20:58:13 ----A---- C:\Windows\system32\wups2.dll
2010-06-21 20:58:12 ----A---- C:\Windows\system32\wucltux.dll
2010-06-21 20:58:12 ----A---- C:\Windows\system32\wuauclt.exe
2010-06-21 20:58:11 ----A---- C:\Windows\system32\wuaueng.dll
2010-06-21 20:57:38 ----A---- C:\Windows\system32\wups.dll
2010-06-21 20:57:38 ----A---- C:\Windows\system32\wudriver.dll
2010-06-21 20:57:37 ----A---- C:\Windows\system32\wuapi.dll
2010-06-21 20:57:22 ----A---- C:\Windows\system32\wuwebv.dll
2010-06-21 20:57:22 ----A---- C:\Windows\system32\wuapp.exe
2010-06-21 19:32:55 ----D---- C:\ProgramData\Alwil Software
======List of files/folders modified in the last 1 months======
2010-06-22 11:17:01 ----RD---- C:\Program Files
2010-06-22 11:16:54 ----D---- C:\Windows\Temp
2010-06-22 11:15:02 ----D---- C:\Windows\System32
2010-06-22 11:15:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-06-22 11:14:56 ----D---- C:\Windows\inf
2010-06-22 11:07:37 ----D---- C:\Windows\system32\WDI
2010-06-22 05:14:04 ----D---- C:\Windows
2010-06-22 04:01:28 ----D---- C:\Users\klára\AppData\Roaming\uTorrent
2010-06-22 03:59:06 ----HD---- C:\ProgramData
2010-06-22 03:59:06 ----D---- C:\Windows\system32\drivers
2010-06-22 03:58:49 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-06-22 03:58:31 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-06-22 03:54:30 ----D---- C:\Windows\Debug
2010-06-22 03:24:49 ----D---- C:\Windows\winsxs
2010-06-22 03:21:16 ----D---- C:\Windows\rescache
2010-06-22 03:17:34 ----D---- C:\Windows\Microsoft.NET
2010-06-22 03:16:40 ----RSD---- C:\Windows\assembly
2010-06-22 03:11:44 ----D---- C:\Windows\system32\catroot
2010-06-22 03:10:39 ----D---- C:\Windows\system32\catroot2
2010-06-22 03:10:22 ----SHD---- C:\Boot
2010-06-22 03:09:54 ----ASH---- C:\Program Files\desktop.ini
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Sidebar
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Mail
2010-06-22 02:53:13 ----D---- C:\Program Files\Windows Calendar
2010-06-22 02:53:13 ----D---- C:\Program Files\Movie Maker
2010-06-22 02:53:12 ----D---- C:\Program Files\Windows Media Player
2010-06-22 02:53:12 ----D---- C:\Program Files\Internet Explorer
2010-06-22 02:53:11 ----D---- C:\Program Files\Windows Collaboration
2010-06-22 02:53:10 ----D---- C:\Program Files\Windows Photo Gallery
2010-06-22 02:53:08 ----D---- C:\Program Files\Common Files\System
2010-06-22 02:53:07 ----D---- C:\Windows\servicing
2010-06-22 02:53:07 ----D---- C:\Windows\MSAgent
2010-06-22 02:53:07 ----D---- C:\Program Files\Windows Defender
2010-06-22 02:53:06 ----D---- C:\Windows\IME
2010-06-22 02:53:06 ----D---- C:\Windows\DigitalLocker
2010-06-22 02:53:05 ----D---- C:\Windows\system32\com
2010-06-22 02:53:05 ----D---- C:\Windows\PolicyDefinitions
2010-06-22 02:53:05 ----D---- C:\Windows\L2Schemas
2010-06-22 02:53:04 ----D---- C:\Windows\system32\ko-KR
2010-06-22 02:53:04 ----D---- C:\Windows\system32\da-DK
2010-06-22 02:53:03 ----D---- C:\Windows\system32\sysprep
2010-06-22 02:53:03 ----D---- C:\Windows\system32\oobe
2010-06-22 02:53:03 ----D---- C:\Windows\system32\migration
2010-06-22 02:53:03 ----D---- C:\Windows\system32\it-IT
2010-06-22 02:53:03 ----D---- C:\Windows\system32\en-US
2010-06-22 02:53:03 ----D---- C:\Windows\system32\el-GR
2010-06-22 02:53:03 ----D---- C:\Windows\system32\de-DE
2010-06-22 02:53:00 ----D---- C:\Windows\system32\AdvancedInstallers
2010-06-22 02:52:59 ----D---- C:\Windows\system32\sv-SE
2010-06-22 02:52:59 ----D---- C:\Windows\system32\setup
2010-06-22 02:52:59 ----D---- C:\Windows\system32\ru-RU
2010-06-22 02:52:59 ----D---- C:\Windows\system32\ias
2010-06-22 02:52:59 ----D---- C:\Windows\system32\he-IL
2010-06-22 02:52:59 ----D---- C:\Windows\system32\fr-FR
2010-06-22 02:52:59 ----D---- C:\Windows\system32\fi-FI
2010-06-22 02:52:59 ----D---- C:\Windows\system32\cs
2010-06-22 02:52:58 ----D---- C:\Windows\system32\cs-CZ
2010-06-22 02:52:49 ----D---- C:\Windows\system32\SLUI
2010-06-22 02:52:49 ----D---- C:\Windows\system32\pt-PT
2010-06-22 02:52:49 ----D---- C:\Windows\system32\hu-HU
2010-06-22 02:52:47 ----D---- C:\Windows\system32\zh-TW
2010-06-22 02:52:47 ----D---- C:\Windows\system32\zh-CN
2010-06-22 02:52:47 ----D---- C:\Windows\system32\ro-RO
2010-06-22 02:52:47 ----D---- C:\Windows\system32\pl-PL
2010-06-22 02:52:47 ----D---- C:\Windows\system32\manifeststore
2010-06-22 02:52:47 ----D---- C:\Windows\system32\ja-JP
2010-06-22 02:52:47 ----D---- C:\Windows\system32\es-ES
2010-06-22 02:52:43 ----D---- C:\Windows\system32\wbem
2010-06-22 02:52:43 ----D---- C:\Windows\system32\tr-TR
2010-06-22 02:52:41 ----D---- C:\Windows\system32\nl-NL
2010-06-22 02:52:41 ----D---- C:\Windows\system32\nb-NO
2010-06-22 02:52:41 ----D---- C:\Windows\system32\ar-SA
2010-06-22 02:52:39 ----D---- C:\Windows\system32\pt-BR
2010-06-22 02:52:39 ----D---- C:\Windows\system32\migwiz
2010-06-22 02:51:30 ----D---- C:\Windows\AppPatch
2010-06-22 02:51:12 ----D---- C:\Windows\Boot
2010-06-22 02:51:06 ----D---- C:\Windows\system32\Boot
2010-06-22 02:43:44 ----D---- C:\Windows\system32\RTCOM
2010-06-22 01:51:20 ----A---- C:\Windows\system32\ifxcardm.dll
2010-06-22 01:50:59 ----A---- C:\Windows\system32\axaltocm.dll
2010-06-22 01:26:08 ----D---- C:\Windows\Prefetch
2010-06-22 01:00:47 ----D---- C:\Program Files\Alwil Software
2010-06-22 00:49:31 ----SHD---- C:\Windows\Installer
2010-06-22 00:36:58 ----D---- C:\Program Files\CCleaner
2010-06-22 00:28:05 ----A---- C:\Windows\MAILTRAN.INI
2010-06-21 23:41:03 ----D---- C:\Windows\system32\XPSViewer
2010-06-21 23:40:26 ----RSD---- C:\Windows\Fonts
2010-05-28 12:37:36 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-05-06 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-05-06 164048]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-05-06 46672]
R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-03 20112]
R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B};{95808DC4-FA4A-4c74-92FE-5B863F82066B}; \??\C:\Program Files\CyberLink\PowerDVD\000.fcl [2006-11-02 13560]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-05-06 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-05-06 51792]
R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2006-12-07 76584]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-12-19 534016]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\Windows\system32\DRIVERS\bcm4sbxp.sys [2006-11-02 45056]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]
R3 EMSCR;EMSCR; C:\Windows\system32\DRIVERS\EMS7SK.sys [2006-10-25 62208]
R3 ESDCR;ESDCR; C:\Windows\system32\DRIVERS\ESD7SK.sys [2006-10-25 42240]
R3 ESMCR;ESMCR; C:\Windows\system32\DRIVERS\ESM7SK.sys [2006-10-25 76928]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648]
R3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-11-06 1473024]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-03-01 1744928]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2007-05-01 6144]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-23 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
R3 zebrceb;Sony Ericsson Cable Emulation Bus (WDM); C:\Windows\system32\DRIVERS\zebrceb.sys [2008-01-15 63360]
S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys []
S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys []
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-11-06 1473024]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\Windows\system32\DRIVERS\k750bus.sys [2005-02-11 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\k750mdfl.sys [2005-07-07 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\Windows\system32\DRIVERS\k750mdm.sys [2005-07-07 89872]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 s115bus;Sony Ericsson Device 115 driver (WDM); C:\Windows\system32\DRIVERS\s115bus.sys [2007-04-23 83208]
S3 s115mdfl;Sony Ericsson Device 115 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s115mdfl.sys [2007-04-23 15112]
S3 s115mdm;Sony Ericsson Device 115 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s115mdm.sys [2007-04-23 108680]
S3 s115mgmt;Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s115mgmt.sys [2007-04-23 100488]
S3 s115obex;Sony Ericsson Device 115 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s115obex.sys [2007-04-23 98568]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\Windows\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2008-11-11 13056]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2008-11-11 19968]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2008-11-11 24832]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 zebrbus;Sony Ericsson Composite Device driver; C:\Windows\system32\DRIVERS\zebrbus.sys [2008-01-15 83200]
S3 zebrmdfl;Sony Ericsson Modem Filter; C:\Windows\system32\DRIVERS\zebrmdfl.sys [2008-01-15 14848]
S3 zebrmdm;Sony Ericsson Port (WDM); C:\Windows\system32\DRIVERS\zebrmdm.sys [2008-01-15 109568]
S3 zebrmdmc;Sony Ericsson mRouter Port (WDM); C:\Windows\system32\DRIVERS\zebrmdmc.sys [2008-01-15 109568]
S3 zebrsce;Sony Ericsson PC-Connect Port; C:\Windows\system32\DRIVERS\zebrsce.sys [2008-01-15 91264]
S4 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-01-31 53248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2006-11-24 107008]
R2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2006-04-14 28933976]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-02-07 266343]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-06 40384]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-05 386560]
S3 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2006-04-14 240416]
-----------------EOF-----------------