
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Dobrý den,
prosím o pomoc. PC se velmi zpomalilo, odinstaloval jsem koupený NOD32 a bylo to výrazně lepší. Po čase se zase zpomalilo. Nainstaloval jsem zpět NOD32 a provedl test. Test běžel, ale po 2 dnech jsem se dostal jen na 24% a tam to jelo velmi pomalu. Nevydržel jsem čekat více než 3 dny. Pak jsem to vypnul, odinstaloval NOD32, použil jsem Combofix, nainstaloval Free AVG - ten také našel nějaké potvůrky. Už se zdálo, že je vše OK, ale dnes to opět běží velmi pomalu.
ComboFix 10-08-17.04 - Richard 24.08.2010 8:52.5.1 - x86
Spuštěný z: c:\docume~1\Richard\Plocha\ComboFix.exe
.
- REŽIM S OMEZENOU FUNKČNOSTÍ -
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-07-24 do 2010-08-24 )))))))))))))))))))))))))))))))
.
2010-08-20 06:12 . 2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
2010-08-20 02:56 . 2010-08-20 02:56 -------- d-----w- C:\$AVG
2010-08-20 02:33 . 2010-08-20 06:12 243024 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-08-20 02:33 . 2010-08-20 06:12 29584 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-08-20 02:33 . 2010-08-20 06:10 216400 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-08-20 02:33 . 2010-08-20 15:43 -------- d-----w- c:\windows\system32\drivers\Avg
2010-08-20 02:33 . 2010-08-20 02:33 -------- d-----w- c:\program files\AVG
2010-08-17 08:20 . 2010-08-17 08:20 390144 ----a-w- c:\windows\system32\CF10281.exe
2010-08-09 06:02 . 2010-08-09 06:02 -------- d-----w- C:\332d97db2a57536c3febfa53
2010-08-03 06:45 . 2010-08-03 06:45 -------- d-----w- C:\fc7d322ab63a425f02eb206f01
2010-08-03 06:44 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-20 05:11 . 2007-01-10 07:50 -------- d-----w- c:\program files\AEBPR
2010-08-13 09:59 . 2004-08-18 12:00 82828 ----a-w- c:\windows\system32\perfc005.dat
2010-08-13 09:59 . 2004-08-18 12:00 440774 ----a-w- c:\windows\system32\perfh005.dat
2010-08-09 13:05 . 2006-08-07 19:40 -------- d-----w- c:\program files\ESET
2010-08-09 08:36 . 2009-03-23 14:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-16 10:32 . 2010-07-16 10:29 -------- d-----w- c:\program files\Karaoke Editor
2010-07-01 13:33 . 2007-09-12 20:08 -------- d-----w- c:\program files\Google
2010-06-30 12:33 . 2004-08-18 12:00 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-24 12:27 . 2004-08-18 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 09:02 . 2004-08-18 12:00 1851904 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2004-08-18 12:00 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2004-08-18 12:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 14:31 . 2006-08-07 08:00 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-14 07:43 . 2004-08-18 12:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- c:\windows\system32\GPhotos.scr
2008-09-29 07:33 . 2008-09-29 05:50 1450245 --sha-w- c:\windows\system32\AdobePDFh.sys
2006-05-03 10:06 . 2007-02-21 14:41 163328 --sh--r- c:\windows\system32\flvDX.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"="c:\program files\T-Mobile\Web'n'walk Manager\Manager.exe" [2007-10-25 956296]
"Google Update"="c:\documents and settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-07-09 133104]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2007-01-05 204288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2005-12-28 569413]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-04-17 110592]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-11-28 98304]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-11-28 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-11-28 118784]
"RTHDCPL"="RTHDCPL.EXE" [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"="c:\program files\Netropa\Multimedia Keyboard\MMKeybd.exe" [2003-09-30 425984]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-12 282624]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-02-11 520192]
"ISUSScheduler"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" [2004-06-16 81920]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-08-20 2065760]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-1-5 618557]
Print Monitor.lnk - c:\program files\canon\PrintMonitor\CPUPVIEW.exe [2010-5-11 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
2004-03-25 10:35 1732608 ----a-w- c:\program files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-06-20 21:36 1207080 ----a-w- c:\progra~1\MICROS~2\wcescomm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2004-06-16 05:03 221184 ----a-w- c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2004-06-16 05:03 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2006-12-05 21:55 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
2008-11-06 17:23 772096 ----a-w- c:\program files\MP4 Player\Mp4Player.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
2008-12-03 09:33 2372840 ----a-w- c:\program files\Nokia\Nokia Music\NokiaMusic.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-09-12 06:40 282624 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2006-11-23 14:10 56928 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
2008-02-11 00:37 520192 ----a-w- c:\windows\Samsung\PanelMgr\SSMMgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
2006-05-19 16:40 884224 ----a-w- c:\program files\Visagesoft\eXPert PDF\vspdfprsrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2 (0x2)
"gusvcwinmgmt"=2 (0x2)
"gusvc"=3 (0x3)
"FLEXnet Licensing Service"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
R0 fsbts;fsbts;c:\windows\system32\Drivers\fsbts.sys [x]
R0 Winag16;Winag16;c:\windows\System32\Drivers\Winag16.sys [x]
R0 Winag30;Winag30;c:\windows\System32\Drivers\Winag30.sys [x]
R0 Winci74;Winci74;c:\windows\System32\Drivers\Winci74.sys [x]
R0 Winek84;Winek84;c:\windows\System32\Drivers\Winek84.sys [x]
R0 Winfk38;Winfk38;c:\windows\System32\Drivers\Winfk38.sys [x]
R0 Winfl63;Winfl63;c:\windows\System32\Drivers\Winfl63.sys [x]
R0 Wingm28;Wingm28;c:\windows\System32\Drivers\Wingm28.sys [x]
R0 Winlr41;Winlr41;c:\windows\System32\Drivers\Winlr41.sys [x]
R0 Winry41;Winry41;c:\windows\System32\Drivers\Winry41.sys [x]
R0 Winsy16;Winsy16;c:\windows\System32\Drivers\Winsy16.sys [x]
R0 Winub38;Winub38;c:\windows\System32\Drivers\Winub38.sys [x]
R0 Winyg74;Winyg74;c:\windows\System32\Drivers\Winyg74.sys [x]
R2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV;đ%€|x srv [x]
R2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV;đ%€|x srv [x]
R2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger;đ%€|x srv [x]
R2 DhcpRpcSs;Klient DHCP DhcpRpcSs;đ%€|x srv [x]
R2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state;đ%€|x srv [x]
R2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN;đ%€|x srv [x]
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
R2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer;đ%€|x srv [x]
R2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule;đ%€|x srv [x]
R2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay;đ%€|x srv [x]
R2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor;đ%€|x srv [x]
R2 nhksrv;Netropa NHK Server;c:\program files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
R2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch;đ%€|x srv [x]
R2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator;đ%€|x srv [x]
R2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr;đ%€|x srv [x]
R2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer;đ%€|x srv [x]
R2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem;đ%€|x srv [x]
R2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator;đ%€|x srv [x]
R2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer;đ%€|x srv [x]
R2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN;đ%€|x srv [x]
R2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService;đ%€|x srv [x]
R2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService;đ%€|x srv [x]
R2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc;đ%€|x srv [x]
R2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv;đ%€|x srv [x]
R2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [x]
R2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage;đ%€|x srv [x]
R2 TermServiceBrowser;Terminálová služba TermServiceBrowser;đ%€|x srv [x]
R2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc;đ%€|x srv [x]
R2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule;đ%€|x srv [x]
R2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon;đ%€|x srv [x]
R2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator;đ%€|x srv [x]
R3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter;c:\documents and settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys [x]
R3 FagorPcmcia;Description of FagorPcmcia NT service here;c:\windows\system32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
R3 FTCSER2K;FTDI USB Dual Serial Port Driver;c:\windows\system32\drivers\ftcser2k.sys [2004-03-23 56031]
R3 FTCUSB;FTCUSB.SYS FT2232C IO test driver;c:\windows\system32\drivers\ftcusb.sys [2004-05-05 43235]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
R3 lptwdmio;LPT port direct access service;c:\progra~1\HAM\UR5EQF~1\LPTWDMIO.SYS [x]
R3 memcard;Ovladač paměťových karet PCMCIA;c:\windows\system32\DRIVERS\memcard.sys [2001-08-17 8320]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
R3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-10-20 50704]
R3 packet_2.1;Packet Driver v2.1;c:\windows\system32\drivers\packet.sys [2000-10-24 10755]
R3 TVICHW32;TVICHW32;c:\windows\system32\DRIVERS\TVICHW32.SYS [2002-01-08 24576]
R4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt;đ%€|x srv [x]
R4 gusvcxmlprov;Google Updater Service gusvcxmlprov;đ%€|x srv [x]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2010-08-20 216400]
S1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2010-08-20 243024]
S1 hwinterface;hwinterface;c:\windows\system32\Drivers\hwinterface.sys [2006-12-04 3026]
S1 msikbd2k;Multimedia Keyboard Filter Driver;c:\windows\system32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
S2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\DRIVERS\DLPortIO.SYS [1999-01-10 3584]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2005-09-07 9728]
S2 hercul;hercul;c:\windows\system32\DRIVERS\HERCUL.SYS [2002-07-10 4640]
S3 SynMini;USB2.0 1.3M Web Cam;c:\windows\system32\Drivers\SynMini.sys [2005-10-03 720470]
S3 SynScan;USB2.0 1.3M Web Cam Still Image;c:\windows\system32\Drivers\SynScan.sys [2005-10-03 8278]
.
Obsah adresáře 'Naplánované úlohy'
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-22 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\program files\TRANSLATOR\WEBIE.DLL
TCP: {918D11F8-3B92-45F4-B7BB-51D21899DDE6} = 194.228.41.65,8.8.8.8
DPF: GEMINI IBS 32 GEMB Applet Security - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplsec-3.3.0.0.cab
DPF: GEMINI IBS 32 GEMB Applet Utilities - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplutil-99.99.99.99.cab
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} - hxxp://sberna7.ifoto.cz/snadno-vlozit-fotografie/ilt/ilikethisPhotoUploader2.dll
DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} - hxxp://www.visualradio.de/download/VRPCA.CAB
DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} - hxxp://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} - hxxp://asp05.photoprintit.de/microsite/4860/defaults/activex/IPSUploader.cab
FF - ProfilePath - c:\documents and settings\Richard\Data aplikací\Mozilla\Firefox\Profiles\xu5nzrbm.default\
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Opera\program\plugins\npdivx32.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-24 08:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aawserviceCiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v2.0.50727_32Messenger]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DhcpRpcSs]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminaspnet_state]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcwinmgmt]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcxmlprov]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverTServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeServiceTrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MicrosoftPlugPlay]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharingS24EventMonitor]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaDcomLaunch]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtmsSvcTlntSvr]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\odservMSIServer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAutoEventSystem]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDSessMgrNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RegSrvcServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessdmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiServiceRemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\S24EventMonitorCiSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENSAudioSrv]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\stisvcProtectedStorage]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermServiceBrowser]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksCryptSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmdmPmSNNetlogon]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(2776)
c:\program files\Netropa\Multimedia Keyboard\nhkdll.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Celkový čas: 2010-08-24 09:08:32
ComboFix-quarantined-files.txt 2010-08-24 07:08
ComboFix2.txt 2010-08-19 07:51
ComboFix3.txt 2010-08-18 09:54
ComboFix4.txt 2010-08-17 09:21
ComboFix5.txt 2010-08-24 06:50
Před spuštěním: Volných bajtů: 13 945 393 152
Po spuštění: Volných bajtů: 14 039 195 648
- - End Of File - - 3AA34C4F7041991E5AFC7D9EBCDC50F3
prosím o pomoc. PC se velmi zpomalilo, odinstaloval jsem koupený NOD32 a bylo to výrazně lepší. Po čase se zase zpomalilo. Nainstaloval jsem zpět NOD32 a provedl test. Test běžel, ale po 2 dnech jsem se dostal jen na 24% a tam to jelo velmi pomalu. Nevydržel jsem čekat více než 3 dny. Pak jsem to vypnul, odinstaloval NOD32, použil jsem Combofix, nainstaloval Free AVG - ten také našel nějaké potvůrky. Už se zdálo, že je vše OK, ale dnes to opět běží velmi pomalu.
ComboFix 10-08-17.04 - Richard 24.08.2010 8:52.5.1 - x86
Spuštěný z: c:\docume~1\Richard\Plocha\ComboFix.exe
.
- REŽIM S OMEZENOU FUNKČNOSTÍ -
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-07-24 do 2010-08-24 )))))))))))))))))))))))))))))))
.
2010-08-20 06:12 . 2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
2010-08-20 02:56 . 2010-08-20 02:56 -------- d-----w- C:\$AVG
2010-08-20 02:33 . 2010-08-20 06:12 243024 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-08-20 02:33 . 2010-08-20 06:12 29584 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-08-20 02:33 . 2010-08-20 06:10 216400 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-08-20 02:33 . 2010-08-20 15:43 -------- d-----w- c:\windows\system32\drivers\Avg
2010-08-20 02:33 . 2010-08-20 02:33 -------- d-----w- c:\program files\AVG
2010-08-17 08:20 . 2010-08-17 08:20 390144 ----a-w- c:\windows\system32\CF10281.exe
2010-08-09 06:02 . 2010-08-09 06:02 -------- d-----w- C:\332d97db2a57536c3febfa53
2010-08-03 06:45 . 2010-08-03 06:45 -------- d-----w- C:\fc7d322ab63a425f02eb206f01
2010-08-03 06:44 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-20 05:11 . 2007-01-10 07:50 -------- d-----w- c:\program files\AEBPR
2010-08-13 09:59 . 2004-08-18 12:00 82828 ----a-w- c:\windows\system32\perfc005.dat
2010-08-13 09:59 . 2004-08-18 12:00 440774 ----a-w- c:\windows\system32\perfh005.dat
2010-08-09 13:05 . 2006-08-07 19:40 -------- d-----w- c:\program files\ESET
2010-08-09 08:36 . 2009-03-23 14:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-16 10:32 . 2010-07-16 10:29 -------- d-----w- c:\program files\Karaoke Editor
2010-07-01 13:33 . 2007-09-12 20:08 -------- d-----w- c:\program files\Google
2010-06-30 12:33 . 2004-08-18 12:00 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-24 12:27 . 2004-08-18 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 09:02 . 2004-08-18 12:00 1851904 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2004-08-18 12:00 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2004-08-18 12:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 14:31 . 2006-08-07 08:00 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-14 07:43 . 2004-08-18 12:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- c:\windows\system32\GPhotos.scr
2008-09-29 07:33 . 2008-09-29 05:50 1450245 --sha-w- c:\windows\system32\AdobePDFh.sys
2006-05-03 10:06 . 2007-02-21 14:41 163328 --sh--r- c:\windows\system32\flvDX.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"="c:\program files\T-Mobile\Web'n'walk Manager\Manager.exe" [2007-10-25 956296]
"Google Update"="c:\documents and settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-07-09 133104]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2007-01-05 204288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2005-12-28 569413]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-04-17 110592]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-11-28 98304]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-11-28 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-11-28 118784]
"RTHDCPL"="RTHDCPL.EXE" [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"="c:\program files\Netropa\Multimedia Keyboard\MMKeybd.exe" [2003-09-30 425984]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-12 282624]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-02-11 520192]
"ISUSScheduler"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" [2004-06-16 81920]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-08-20 2065760]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-1-5 618557]
Print Monitor.lnk - c:\program files\canon\PrintMonitor\CPUPVIEW.exe [2010-5-11 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
2004-03-25 10:35 1732608 ----a-w- c:\program files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-06-20 21:36 1207080 ----a-w- c:\progra~1\MICROS~2\wcescomm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2004-06-16 05:03 221184 ----a-w- c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2004-06-16 05:03 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2006-12-05 21:55 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
2008-11-06 17:23 772096 ----a-w- c:\program files\MP4 Player\Mp4Player.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
2008-12-03 09:33 2372840 ----a-w- c:\program files\Nokia\Nokia Music\NokiaMusic.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-09-12 06:40 282624 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2006-11-23 14:10 56928 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
2008-02-11 00:37 520192 ----a-w- c:\windows\Samsung\PanelMgr\SSMMgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
2006-05-19 16:40 884224 ----a-w- c:\program files\Visagesoft\eXPert PDF\vspdfprsrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2 (0x2)
"gusvcwinmgmt"=2 (0x2)
"gusvc"=3 (0x3)
"FLEXnet Licensing Service"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
R0 fsbts;fsbts;c:\windows\system32\Drivers\fsbts.sys [x]
R0 Winag16;Winag16;c:\windows\System32\Drivers\Winag16.sys [x]
R0 Winag30;Winag30;c:\windows\System32\Drivers\Winag30.sys [x]
R0 Winci74;Winci74;c:\windows\System32\Drivers\Winci74.sys [x]
R0 Winek84;Winek84;c:\windows\System32\Drivers\Winek84.sys [x]
R0 Winfk38;Winfk38;c:\windows\System32\Drivers\Winfk38.sys [x]
R0 Winfl63;Winfl63;c:\windows\System32\Drivers\Winfl63.sys [x]
R0 Wingm28;Wingm28;c:\windows\System32\Drivers\Wingm28.sys [x]
R0 Winlr41;Winlr41;c:\windows\System32\Drivers\Winlr41.sys [x]
R0 Winry41;Winry41;c:\windows\System32\Drivers\Winry41.sys [x]
R0 Winsy16;Winsy16;c:\windows\System32\Drivers\Winsy16.sys [x]
R0 Winub38;Winub38;c:\windows\System32\Drivers\Winub38.sys [x]
R0 Winyg74;Winyg74;c:\windows\System32\Drivers\Winyg74.sys [x]
R2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV;đ%€|x srv [x]
R2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV;đ%€|x srv [x]
R2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger;đ%€|x srv [x]
R2 DhcpRpcSs;Klient DHCP DhcpRpcSs;đ%€|x srv [x]
R2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state;đ%€|x srv [x]
R2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN;đ%€|x srv [x]
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
R2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer;đ%€|x srv [x]
R2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule;đ%€|x srv [x]
R2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay;đ%€|x srv [x]
R2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor;đ%€|x srv [x]
R2 nhksrv;Netropa NHK Server;c:\program files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
R2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch;đ%€|x srv [x]
R2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator;đ%€|x srv [x]
R2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr;đ%€|x srv [x]
R2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer;đ%€|x srv [x]
R2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem;đ%€|x srv [x]
R2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator;đ%€|x srv [x]
R2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer;đ%€|x srv [x]
R2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN;đ%€|x srv [x]
R2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService;đ%€|x srv [x]
R2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService;đ%€|x srv [x]
R2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc;đ%€|x srv [x]
R2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv;đ%€|x srv [x]
R2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [x]
R2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage;đ%€|x srv [x]
R2 TermServiceBrowser;Terminálová služba TermServiceBrowser;đ%€|x srv [x]
R2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc;đ%€|x srv [x]
R2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule;đ%€|x srv [x]
R2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon;đ%€|x srv [x]
R2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator;đ%€|x srv [x]
R3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter;c:\documents and settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys [x]
R3 FagorPcmcia;Description of FagorPcmcia NT service here;c:\windows\system32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
R3 FTCSER2K;FTDI USB Dual Serial Port Driver;c:\windows\system32\drivers\ftcser2k.sys [2004-03-23 56031]
R3 FTCUSB;FTCUSB.SYS FT2232C IO test driver;c:\windows\system32\drivers\ftcusb.sys [2004-05-05 43235]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
R3 lptwdmio;LPT port direct access service;c:\progra~1\HAM\UR5EQF~1\LPTWDMIO.SYS [x]
R3 memcard;Ovladač paměťových karet PCMCIA;c:\windows\system32\DRIVERS\memcard.sys [2001-08-17 8320]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
R3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-10-20 50704]
R3 packet_2.1;Packet Driver v2.1;c:\windows\system32\drivers\packet.sys [2000-10-24 10755]
R3 TVICHW32;TVICHW32;c:\windows\system32\DRIVERS\TVICHW32.SYS [2002-01-08 24576]
R4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt;đ%€|x srv [x]
R4 gusvcxmlprov;Google Updater Service gusvcxmlprov;đ%€|x srv [x]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2010-08-20 216400]
S1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2010-08-20 243024]
S1 hwinterface;hwinterface;c:\windows\system32\Drivers\hwinterface.sys [2006-12-04 3026]
S1 msikbd2k;Multimedia Keyboard Filter Driver;c:\windows\system32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
S2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\DRIVERS\DLPortIO.SYS [1999-01-10 3584]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2005-09-07 9728]
S2 hercul;hercul;c:\windows\system32\DRIVERS\HERCUL.SYS [2002-07-10 4640]
S3 SynMini;USB2.0 1.3M Web Cam;c:\windows\system32\Drivers\SynMini.sys [2005-10-03 720470]
S3 SynScan;USB2.0 1.3M Web Cam Still Image;c:\windows\system32\Drivers\SynScan.sys [2005-10-03 8278]
.
Obsah adresáře 'Naplánované úlohy'
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-22 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\program files\TRANSLATOR\WEBIE.DLL
TCP: {918D11F8-3B92-45F4-B7BB-51D21899DDE6} = 194.228.41.65,8.8.8.8
DPF: GEMINI IBS 32 GEMB Applet Security - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplsec-3.3.0.0.cab
DPF: GEMINI IBS 32 GEMB Applet Utilities - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplutil-99.99.99.99.cab
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} - hxxp://sberna7.ifoto.cz/snadno-vlozit-fotografie/ilt/ilikethisPhotoUploader2.dll
DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} - hxxp://www.visualradio.de/download/VRPCA.CAB
DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} - hxxp://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} - hxxp://asp05.photoprintit.de/microsite/4860/defaults/activex/IPSUploader.cab
FF - ProfilePath - c:\documents and settings\Richard\Data aplikací\Mozilla\Firefox\Profiles\xu5nzrbm.default\
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Opera\program\plugins\npdivx32.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-24 08:56
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aawserviceCiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v2.0.50727_32Messenger]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DhcpRpcSs]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminaspnet_state]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcwinmgmt]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcxmlprov]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverTServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeServiceTrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MicrosoftPlugPlay]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharingS24EventMonitor]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaDcomLaunch]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtmsSvcTlntSvr]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\odservMSIServer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAutoEventSystem]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDSessMgrNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RegSrvcServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessdmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiServiceRemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\S24EventMonitorCiSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENSAudioSrv]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\stisvcProtectedStorage]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermServiceBrowser]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksCryptSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmdmPmSNNetlogon]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'explorer.exe'(2776)
c:\program files\Netropa\Multimedia Keyboard\nhkdll.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Celkový čas: 2010-08-24 09:08:32
ComboFix-quarantined-files.txt 2010-08-24 07:08
ComboFix2.txt 2010-08-19 07:51
ComboFix3.txt 2010-08-18 09:54
ComboFix4.txt 2010-08-17 09:21
ComboFix5.txt 2010-08-24 06:50
Před spuštěním: Volných bajtů: 13 945 393 152
Po spuštění: Volných bajtů: 14 039 195 648
- - End Of File - - 3AA34C4F7041991E5AFC7D9EBCDC50F3
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
nainstaluj SUPERAntiSpyware a vycisti nim PC
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Teď jsem nainstaloval RSIT a zde je log:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Richard at 2010-08-24 09:33:52
WIN_XP Service Pack 3
System drive C: has 13 GB (18%) free of 76 GB
Total RAM: 503 MB (21% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:34:33, on 24.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Lotus\Notes\ntmulti.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Plocha\RSIT.exe
C:\Program Files\trend micro\Richard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Print Monitor.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ib.internetbanka.cz/ibs31/bin/I ... .3.0.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ib.internetbanka.cz/ibs31/bin/I ... .99.99.cab
O16 - DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} (FotoStarUploader Control) - http://sberna7.ifoto.cz/snadno-vlozit-f ... oader2.dll
O16 - DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} (PCVRA.VRPCA) - http://www.visualradio.de/download/VRPCA.CAB
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} (RtspVaPgCtrlNew Class) - http://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://host13.nwt.cz/activex/AMC.cab
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://asp05.photoprintit.de/microsite/ ... loader.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = into.cz
O17 - HKLM\Software\..\Telephony: DomainName = into.cz
O17 - HKLM\System\CCS\Services\Tcpip\..\{918D11F8-3B92-45F4-B7BB-51D21899DDE6}: NameServer = 194.228.41.65,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = into.cz
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV (aawserviceCiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: AdobeVersionCue - Adobe Sytems - C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Indexing Service CiSvcSSDPSRV (CiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: .NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger (clr_optimization_v2.0.50727_32Messenger) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient DHCP DhcpRpcSs (DhcpRpcSs) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminaspnet_state (dmadminaspnet_state) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminWmdmPmSN (dmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InstallDriver Table Manager IDriverTServiceLayer (IDriverTServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule (LightScribeServiceTrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Groove Audit Service MicrosoftPlugPlay (MicrosoftPlugPlay) - Unknown owner - C:\WINDOWS\
O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\Lotus\Notes\ntmulti.exe
O23 - Service: Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor (NetTcpPortSharingS24EventMonitor) - Unknown owner - C:\WINDOWS\
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Sledování umístění v síti (NLA) NlaDcomLaunch (NlaDcomLaunch) - Unknown owner - C:\WINDOWS\
O23 - Service: NOD32 Kernel Service NOD32krnRpcLocator (NOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Vyměnitelné úložiště NtmsSvcTlntSvr (NtmsSvcTlntSvr) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Diagnostics Service odservMSIServer (odservMSIServer) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem (RasAutoEventSystem) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator (RDSessMgrNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer (RegSrvcServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN (RemoteAccessdmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService (RemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService (RemoteAccessImapiServiceRemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc (S24EventMonitorCiSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Oznamování systémových událostí SENSAudioSrv (SENSAudioSrv) - Unknown owner - C:\WINDOWS\
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Načítání obrázků (WIA) stisvcProtectedStorage (stisvcProtectedStorage) - Unknown owner - C:\WINDOWS\
O23 - Service: Terminálová služba TermServiceBrowser (TermServiceBrowser) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksCryptSvc (TrkWksCryptSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksSchedule (TrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon (WmdmPmSNNetlogon) - Unknown owner - C:\WINDOWS\
O23 - Service: Rozšíření ovladače WMI WmiNOD32krnRpcLocator (WmiNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
--
End of file - 17632 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-08-20 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-19 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-19 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Program Files\TRANSLATOR\WEBIE.DLL [2006-11-10 360448]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-15 147456]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-28 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-12-28 602182]
"EOUApp"=C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe [2005-12-28 569413]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-04-17 110592]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"=C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe [2003-09-30 425984]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
"ISUSScheduler"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe [2004-06-16 81920]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-20 2065760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2007-10-25 956296]
"Google Update"=C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-07-09 133104]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2007-01-05 204288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
C:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe [2004-03-25 1732608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
C:\PROGRA~1\MICROS~2\wcescomm.exe [2006-06-20 1207080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-05 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
C:\Program Files\MP4 Player\mp4Player.exe [2008-11-06 772096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe [2008-12-03 2372840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-11-23 56928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
C:\Program Files\Visagesoft\eXPert PDF\vspdfprsrv.exe [2006-05-19 884224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2
"gusvcwinmgmt"=2
"gusvc"=3
"FLEXnet Licensing Service"=3
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Print Monitor.lnk - C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-20 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-08-11 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-08-24 09:33:53 ----D---- C:\Program Files\trend micro
2010-08-24 09:33:52 ----D---- C:\rsit
2010-08-24 09:08:33 ----A---- C:\ComboFix.txt
2010-08-20 08:12:43 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2010-08-20 04:56:13 ----D---- C:\$AVG
2010-08-20 04:33:56 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2010-08-20 04:33:29 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-08-20 04:33:05 ----D---- C:\Program Files\AVG
2010-08-20 04:33:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2010-08-17 10:29:30 ----A---- C:\Boot.bak
2010-08-17 10:29:16 ----RASHD---- C:\cmdcons
2010-08-17 10:24:03 ----A---- C:\WINDOWS\MBR.exe
2010-08-17 10:24:02 ----A---- C:\WINDOWS\PEV.exe
2010-08-17 10:20:32 ----A---- C:\WINDOWS\system32\CF10281.exe
2010-08-13 12:10:15 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-13 12:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-13 12:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-13 12:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-13 11:53:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-13 11:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-13 11:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-08-13 11:46:27 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-13 11:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 08:34:01 ----ASH---- C:\hiberfil.sys
2010-08-09 08:02:26 ----D---- C:\332d97db2a57536c3febfa53
2010-08-03 12:38:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-03 08:45:28 ----D---- C:\fc7d322ab63a425f02eb206f01
======List of files/folders modified in the last 1 months======
2010-08-24 09:33:53 ----RD---- C:\Program Files
2010-08-24 09:08:36 ----A---- C:\WINDOWS\Msiosd.ini
2010-08-24 09:05:50 ----D---- C:\WINDOWS\temp
2010-08-24 09:04:46 ----D---- C:\QooBox
2010-08-24 08:56:16 ----D---- C:\WINDOWS
2010-08-24 08:56:15 ----A---- C:\WINDOWS\system.ini
2010-08-24 08:52:17 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-24 08:52:03 ----D---- C:\WINDOWS\system32\drivers
2010-08-24 08:51:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-24 08:47:07 ----SHD---- C:\System Volume Information
2010-08-24 08:47:07 ----D---- C:\WINDOWS\system32\Restore
2010-08-24 08:41:08 ----D---- C:\WINDOWS\Prefetch
2010-08-24 08:34:12 ----D---- C:\WINDOWS\system32\ias
2010-08-24 08:34:07 ----D---- C:\WINDOWS\system32\Lang
2010-08-22 07:35:50 ----D---- C:\Program Files\Mozilla Firefox
2010-08-20 16:12:47 ----D---- C:\WINDOWS\system32
2010-08-20 07:11:12 ----D---- C:\Program Files\AEBPR
2010-08-20 06:30:19 ----A---- C:\WINDOWS\wincmd.ini
2010-08-20 05:14:48 ----A---- C:\WINDOWS\wcx_ftp.ini
2010-08-20 04:33:01 ----SHD---- C:\WINDOWS\Installer
2010-08-20 04:32:24 ----D---- C:\Config.Msi
2010-08-20 04:29:36 ----SD---- C:\Documents and Settings\Richard\Data aplikací\Microsoft
2010-08-19 13:56:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2010-08-19 13:55:40 ----HD---- C:\WINDOWS\inf
2010-08-19 09:30:57 ----D---- C:\WINDOWS\AppPatch
2010-08-19 09:30:54 ----D---- C:\Program Files\Common Files
2010-08-17 11:18:17 ----SD---- C:\WINDOWS\Tasks
2010-08-17 11:17:31 ----D---- C:\WINDOWS\erdnt
2010-08-17 11:02:14 ----D---- C:\WINDOWS\system32\drivers\etc
2010-08-17 10:58:30 ----D---- C:\WINDOWS\system32\config
2010-08-17 10:29:30 ----RASH---- C:\boot.ini
2010-08-13 12:16:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-08-13 12:16:30 ----RSD---- C:\WINDOWS\assembly
2010-08-13 12:10:21 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-08-13 12:10:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-08-13 12:08:50 ----A---- C:\WINDOWS\imsins.BAK
2010-08-13 12:02:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-08-13 11:59:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-08-13 11:58:51 ----D---- C:\WINDOWS\WinSxS
2010-08-13 11:54:29 ----D---- C:\Program Files\Internet Explorer
2010-08-13 11:54:10 ----D---- C:\WINDOWS\ie8updates
2010-08-13 11:46:31 ----D---- C:\Program Files\Movie Maker
2010-08-11 14:46:46 ----D---- C:\Documents and Settings\Richard\Data aplikací\Skype
2010-08-10 08:26:21 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-08-10 08:11:15 ----A---- C:\WINDOWS\ntbtlog.txt
2010-08-09 15:05:17 ----D---- C:\Program Files\ESET
2010-08-09 10:38:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-08-09 10:36:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-09 08:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2010-08-04 15:47:25 ----D---- C:\Documents and Settings\Richard\Data aplikací\Adobe
2010-08-04 11:27:14 ----D---- C:\WINDOWS\Minidump
2010-08-03 20:09:31 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-02 14:27:34 ----D---- C:\Documents and Settings\Richard\Data aplikací\Happy Foto
2010-07-27 08:30:31 ----A---- C:\WINDOWS\system32\shell32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 risdptsk;risdptsk; C:\WINDOWS\system32\DRIVERS\risdptsk.sys [2005-07-14 27904]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-01-18 77696]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-20 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-20 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-20 243024]
R1 hwinterface;hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [2006-12-04 3026]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 msikbd2k;Multimedia Keyboard Filter Driver; C:\WINDOWS\System32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
R1 truecrypt;truecrypt; C:\WINDOWS\System32\drivers\truecrypt.sys [2008-11-15 215616]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-08-07 21275]
R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
R2 DLPortIO;DriverLINX Port I/O Driver; \??\C:\WINDOWS\system32\DRIVERS\DLPortIO.SYS []
R2 Ethpdrv;Ethernet Packet Driver; C:\WINDOWS\system32\DRIVERS\ethpdrv.sys [2005-09-08 9728]
R2 hercul;hercul; \??\C:\WINDOWS\system32\DRIVERS\HERCUL.SYS []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-02-16 13059]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-12-28 13568]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-05 65304]
R3 catchme;catchme; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\catchme.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-02-16 1036928]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-02-16 163328]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-02-16 4156416]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-18 5632]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-07-01 9856]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2004-08-09 70144]
R3 SynMini;USB2.0 1.3M Web Cam; C:\WINDOWS\System32\Drivers\SynMini.sys [2005-10-03 720470]
R3 SynScan;USB2.0 1.3M Web Cam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2005-10-03 8278]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-02-16 702592]
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys []
S0 Winag16;Winag16; C:\WINDOWS\System32\Drivers\Winag16.sys []
S0 Winag30;Winag30; C:\WINDOWS\System32\Drivers\Winag30.sys []
S0 Winci74;Winci74; C:\WINDOWS\System32\Drivers\Winci74.sys []
S0 Winek84;Winek84; C:\WINDOWS\System32\Drivers\Winek84.sys []
S0 Winfk38;Winfk38; C:\WINDOWS\System32\Drivers\Winfk38.sys []
S0 Winfl63;Winfl63; C:\WINDOWS\System32\Drivers\Winfl63.sys []
S0 Wingm28;Wingm28; C:\WINDOWS\System32\Drivers\Wingm28.sys []
S0 Winlr41;Winlr41; C:\WINDOWS\System32\Drivers\Winlr41.sys []
S0 Winry41;Winry41; C:\WINDOWS\System32\Drivers\Winry41.sys []
S0 Winsy16;Winsy16; C:\WINDOWS\System32\Drivers\Winsy16.sys []
S0 Winub38;Winub38; C:\WINDOWS\System32\Drivers\Winub38.sys []
S0 Winyg74;Winyg74; C:\WINDOWS\System32\Drivers\Winyg74.sys []
S2 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys []
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys []
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-05 30459]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys []
S3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-05 148900]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2006-01-05 45507]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FagorPcmcia;Description of FagorPcmcia NT service here; C:\WINDOWS\System32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
S3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter; \??\C:\Documents and Settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys []
S3 FTCSER2K;FTDI USB Dual Serial Port Driver; C:\WINDOWS\system32\drivers\ftcser2k.sys [2004-03-23 56031]
S3 FTCUSB;FTCUSB.SYS FT2232C IO test driver; C:\WINDOWS\system32\drivers\ftcusb.sys [2004-05-05 43235]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2006-05-18 47249]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2006-05-18 61067]
S3 IpwP;IPWireless 3G Network Adapter; C:\WINDOWS\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
S3 lptwdmio;LPT port direct access service; \??\C:\PROGRA~1\HAM\UR5EQF~1\LPTWDMIO.SYS []
S3 mbr;mbr; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\mbr.sys []
S3 memcard;Ovladač paměťových karet PCMCIA; C:\WINDOWS\system32\DRIVERS\memcard.sys [2001-08-17 8320]
S3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-20 50704]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\NSNDIS5.SYS []
S3 packet_2.1;Packet Driver v2.1; \??\C:\WINDOWS\system32\drivers\packet.sys []
S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys [2007-03-11 16694]
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys [2005-07-11 17664]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 wlluc48;Wireless LAN PC Card Driver; C:\WINDOWS\system32\DRIVERS\wlluc48.sys [2004-08-03 154624]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-05 266295]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-12-28 114753]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-12-17 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-06-20 53248]
R2 Multi-user Cleanup Service;Multi-user Cleanup Service; C:\Lotus\Notes\ntmulti.exe [2006-09-27 53248]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-12-28 217164]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2005-08-08 167936]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-12-28 540745]
R2 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV; đ%€|x srv []
S2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV; đ%€|x srv []
S2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger; đ%€|x srv []
S2 DhcpRpcSs;Klient DHCP DhcpRpcSs; đ%€|x srv []
S2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state; đ%€|x srv []
S2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN; đ%€|x srv []
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
S2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer; đ%€|x srv []
S2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule; đ%€|x srv []
S2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay; đ%€|x srv []
S2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor; đ%€|x srv []
S2 nhksrv;Netropa NHK Server; C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
S2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch; đ%€|x srv []
S2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator; đ%€|x srv []
S2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr; đ%€|x srv []
S2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer; đ%€|x srv []
S2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem; đ%€|x srv []
S2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator; đ%€|x srv []
S2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer; đ%€|x srv []
S2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN; đ%€|x srv []
S2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService; đ%€|x srv []
S2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService; đ%€|x srv []
S2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc; đ%€|x srv []
S2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv; đ%€|x srv []
S2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage; đ%€|x srv []
S2 TermServiceBrowser;Terminálová služba TermServiceBrowser; đ%€|x srv []
S2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc; đ%€|x srv []
S2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule; đ%€|x srv []
S2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon; đ%€|x srv []
S2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator; đ%€|x srv []
S3 AdobeVersionCue;AdobeVersionCue; C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe [2004-03-25 61440]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2009-02-17 85184]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-02-26 652800]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-17 654848]
S4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt; đ%€|x srv []
S4 gusvcxmlprov;Google Updater Service gusvcxmlprov; đ%€|x srv []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Richard at 2010-08-24 09:33:52
WIN_XP Service Pack 3
System drive C: has 13 GB (18%) free of 76 GB
Total RAM: 503 MB (21% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:34:33, on 24.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Lotus\Notes\ntmulti.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Richard\Plocha\RSIT.exe
C:\Program Files\trend micro\Richard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Print Monitor.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ib.internetbanka.cz/ibs31/bin/I ... .3.0.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ib.internetbanka.cz/ibs31/bin/I ... .99.99.cab
O16 - DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} (FotoStarUploader Control) - http://sberna7.ifoto.cz/snadno-vlozit-f ... oader2.dll
O16 - DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} (PCVRA.VRPCA) - http://www.visualradio.de/download/VRPCA.CAB
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} (RtspVaPgCtrlNew Class) - http://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://host13.nwt.cz/activex/AMC.cab
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://asp05.photoprintit.de/microsite/ ... loader.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = into.cz
O17 - HKLM\Software\..\Telephony: DomainName = into.cz
O17 - HKLM\System\CCS\Services\Tcpip\..\{918D11F8-3B92-45F4-B7BB-51D21899DDE6}: NameServer = 194.228.41.65,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = into.cz
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV (aawserviceCiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: AdobeVersionCue - Adobe Sytems - C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Indexing Service CiSvcSSDPSRV (CiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: .NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger (clr_optimization_v2.0.50727_32Messenger) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient DHCP DhcpRpcSs (DhcpRpcSs) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminaspnet_state (dmadminaspnet_state) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminWmdmPmSN (dmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InstallDriver Table Manager IDriverTServiceLayer (IDriverTServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule (LightScribeServiceTrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Groove Audit Service MicrosoftPlugPlay (MicrosoftPlugPlay) - Unknown owner - C:\WINDOWS\
O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\Lotus\Notes\ntmulti.exe
O23 - Service: Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor (NetTcpPortSharingS24EventMonitor) - Unknown owner - C:\WINDOWS\
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Sledování umístění v síti (NLA) NlaDcomLaunch (NlaDcomLaunch) - Unknown owner - C:\WINDOWS\
O23 - Service: NOD32 Kernel Service NOD32krnRpcLocator (NOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Vyměnitelné úložiště NtmsSvcTlntSvr (NtmsSvcTlntSvr) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Diagnostics Service odservMSIServer (odservMSIServer) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem (RasAutoEventSystem) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator (RDSessMgrNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer (RegSrvcServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN (RemoteAccessdmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService (RemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService (RemoteAccessImapiServiceRemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc (S24EventMonitorCiSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Oznamování systémových událostí SENSAudioSrv (SENSAudioSrv) - Unknown owner - C:\WINDOWS\
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Načítání obrázků (WIA) stisvcProtectedStorage (stisvcProtectedStorage) - Unknown owner - C:\WINDOWS\
O23 - Service: Terminálová služba TermServiceBrowser (TermServiceBrowser) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksCryptSvc (TrkWksCryptSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksSchedule (TrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon (WmdmPmSNNetlogon) - Unknown owner - C:\WINDOWS\
O23 - Service: Rozšíření ovladače WMI WmiNOD32krnRpcLocator (WmiNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
--
End of file - 17632 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-08-20 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-19 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-19 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Program Files\TRANSLATOR\WEBIE.DLL [2006-11-10 360448]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-15 147456]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-28 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-12-28 602182]
"EOUApp"=C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe [2005-12-28 569413]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-04-17 110592]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"=C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe [2003-09-30 425984]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
"ISUSScheduler"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe [2004-06-16 81920]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-20 2065760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2007-10-25 956296]
"Google Update"=C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-07-09 133104]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2007-01-05 204288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
C:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe [2004-03-25 1732608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
C:\PROGRA~1\MICROS~2\wcescomm.exe [2006-06-20 1207080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-05 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
C:\Program Files\MP4 Player\mp4Player.exe [2008-11-06 772096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe [2008-12-03 2372840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-11-23 56928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
C:\Program Files\Visagesoft\eXPert PDF\vspdfprsrv.exe [2006-05-19 884224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2
"gusvcwinmgmt"=2
"gusvc"=3
"FLEXnet Licensing Service"=3
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Print Monitor.lnk - C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-20 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-08-11 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-08-24 09:33:53 ----D---- C:\Program Files\trend micro
2010-08-24 09:33:52 ----D---- C:\rsit
2010-08-24 09:08:33 ----A---- C:\ComboFix.txt
2010-08-20 08:12:43 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2010-08-20 04:56:13 ----D---- C:\$AVG
2010-08-20 04:33:56 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2010-08-20 04:33:29 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-08-20 04:33:05 ----D---- C:\Program Files\AVG
2010-08-20 04:33:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2010-08-17 10:29:30 ----A---- C:\Boot.bak
2010-08-17 10:29:16 ----RASHD---- C:\cmdcons
2010-08-17 10:24:03 ----A---- C:\WINDOWS\MBR.exe
2010-08-17 10:24:02 ----A---- C:\WINDOWS\PEV.exe
2010-08-17 10:20:32 ----A---- C:\WINDOWS\system32\CF10281.exe
2010-08-13 12:10:15 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-13 12:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-13 12:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-13 12:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-13 11:53:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-13 11:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-13 11:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-08-13 11:46:27 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-13 11:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 08:34:01 ----ASH---- C:\hiberfil.sys
2010-08-09 08:02:26 ----D---- C:\332d97db2a57536c3febfa53
2010-08-03 12:38:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-03 08:45:28 ----D---- C:\fc7d322ab63a425f02eb206f01
======List of files/folders modified in the last 1 months======
2010-08-24 09:33:53 ----RD---- C:\Program Files
2010-08-24 09:08:36 ----A---- C:\WINDOWS\Msiosd.ini
2010-08-24 09:05:50 ----D---- C:\WINDOWS\temp
2010-08-24 09:04:46 ----D---- C:\QooBox
2010-08-24 08:56:16 ----D---- C:\WINDOWS
2010-08-24 08:56:15 ----A---- C:\WINDOWS\system.ini
2010-08-24 08:52:17 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-24 08:52:03 ----D---- C:\WINDOWS\system32\drivers
2010-08-24 08:51:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-24 08:47:07 ----SHD---- C:\System Volume Information
2010-08-24 08:47:07 ----D---- C:\WINDOWS\system32\Restore
2010-08-24 08:41:08 ----D---- C:\WINDOWS\Prefetch
2010-08-24 08:34:12 ----D---- C:\WINDOWS\system32\ias
2010-08-24 08:34:07 ----D---- C:\WINDOWS\system32\Lang
2010-08-22 07:35:50 ----D---- C:\Program Files\Mozilla Firefox
2010-08-20 16:12:47 ----D---- C:\WINDOWS\system32
2010-08-20 07:11:12 ----D---- C:\Program Files\AEBPR
2010-08-20 06:30:19 ----A---- C:\WINDOWS\wincmd.ini
2010-08-20 05:14:48 ----A---- C:\WINDOWS\wcx_ftp.ini
2010-08-20 04:33:01 ----SHD---- C:\WINDOWS\Installer
2010-08-20 04:32:24 ----D---- C:\Config.Msi
2010-08-20 04:29:36 ----SD---- C:\Documents and Settings\Richard\Data aplikací\Microsoft
2010-08-19 13:56:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2010-08-19 13:55:40 ----HD---- C:\WINDOWS\inf
2010-08-19 09:30:57 ----D---- C:\WINDOWS\AppPatch
2010-08-19 09:30:54 ----D---- C:\Program Files\Common Files
2010-08-17 11:18:17 ----SD---- C:\WINDOWS\Tasks
2010-08-17 11:17:31 ----D---- C:\WINDOWS\erdnt
2010-08-17 11:02:14 ----D---- C:\WINDOWS\system32\drivers\etc
2010-08-17 10:58:30 ----D---- C:\WINDOWS\system32\config
2010-08-17 10:29:30 ----RASH---- C:\boot.ini
2010-08-13 12:16:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-08-13 12:16:30 ----RSD---- C:\WINDOWS\assembly
2010-08-13 12:10:21 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-08-13 12:10:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-08-13 12:08:50 ----A---- C:\WINDOWS\imsins.BAK
2010-08-13 12:02:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-08-13 11:59:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-08-13 11:58:51 ----D---- C:\WINDOWS\WinSxS
2010-08-13 11:54:29 ----D---- C:\Program Files\Internet Explorer
2010-08-13 11:54:10 ----D---- C:\WINDOWS\ie8updates
2010-08-13 11:46:31 ----D---- C:\Program Files\Movie Maker
2010-08-11 14:46:46 ----D---- C:\Documents and Settings\Richard\Data aplikací\Skype
2010-08-10 08:26:21 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-08-10 08:11:15 ----A---- C:\WINDOWS\ntbtlog.txt
2010-08-09 15:05:17 ----D---- C:\Program Files\ESET
2010-08-09 10:38:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-08-09 10:36:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-09 08:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2010-08-04 15:47:25 ----D---- C:\Documents and Settings\Richard\Data aplikací\Adobe
2010-08-04 11:27:14 ----D---- C:\WINDOWS\Minidump
2010-08-03 20:09:31 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-02 14:27:34 ----D---- C:\Documents and Settings\Richard\Data aplikací\Happy Foto
2010-07-27 08:30:31 ----A---- C:\WINDOWS\system32\shell32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 risdptsk;risdptsk; C:\WINDOWS\system32\DRIVERS\risdptsk.sys [2005-07-14 27904]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-01-18 77696]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-20 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-20 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-20 243024]
R1 hwinterface;hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [2006-12-04 3026]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 msikbd2k;Multimedia Keyboard Filter Driver; C:\WINDOWS\System32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
R1 truecrypt;truecrypt; C:\WINDOWS\System32\drivers\truecrypt.sys [2008-11-15 215616]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-08-07 21275]
R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
R2 DLPortIO;DriverLINX Port I/O Driver; \??\C:\WINDOWS\system32\DRIVERS\DLPortIO.SYS []
R2 Ethpdrv;Ethernet Packet Driver; C:\WINDOWS\system32\DRIVERS\ethpdrv.sys [2005-09-08 9728]
R2 hercul;hercul; \??\C:\WINDOWS\system32\DRIVERS\HERCUL.SYS []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-02-16 13059]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-12-28 13568]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-05 65304]
R3 catchme;catchme; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\catchme.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-02-16 1036928]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-02-16 163328]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-02-16 4156416]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-18 5632]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-07-01 9856]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2004-08-09 70144]
R3 SynMini;USB2.0 1.3M Web Cam; C:\WINDOWS\System32\Drivers\SynMini.sys [2005-10-03 720470]
R3 SynScan;USB2.0 1.3M Web Cam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2005-10-03 8278]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-02-16 702592]
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys []
S0 Winag16;Winag16; C:\WINDOWS\System32\Drivers\Winag16.sys []
S0 Winag30;Winag30; C:\WINDOWS\System32\Drivers\Winag30.sys []
S0 Winci74;Winci74; C:\WINDOWS\System32\Drivers\Winci74.sys []
S0 Winek84;Winek84; C:\WINDOWS\System32\Drivers\Winek84.sys []
S0 Winfk38;Winfk38; C:\WINDOWS\System32\Drivers\Winfk38.sys []
S0 Winfl63;Winfl63; C:\WINDOWS\System32\Drivers\Winfl63.sys []
S0 Wingm28;Wingm28; C:\WINDOWS\System32\Drivers\Wingm28.sys []
S0 Winlr41;Winlr41; C:\WINDOWS\System32\Drivers\Winlr41.sys []
S0 Winry41;Winry41; C:\WINDOWS\System32\Drivers\Winry41.sys []
S0 Winsy16;Winsy16; C:\WINDOWS\System32\Drivers\Winsy16.sys []
S0 Winub38;Winub38; C:\WINDOWS\System32\Drivers\Winub38.sys []
S0 Winyg74;Winyg74; C:\WINDOWS\System32\Drivers\Winyg74.sys []
S2 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys []
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys []
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-05 30459]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys []
S3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-05 148900]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2006-01-05 45507]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FagorPcmcia;Description of FagorPcmcia NT service here; C:\WINDOWS\System32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
S3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter; \??\C:\Documents and Settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys []
S3 FTCSER2K;FTDI USB Dual Serial Port Driver; C:\WINDOWS\system32\drivers\ftcser2k.sys [2004-03-23 56031]
S3 FTCUSB;FTCUSB.SYS FT2232C IO test driver; C:\WINDOWS\system32\drivers\ftcusb.sys [2004-05-05 43235]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2006-05-18 47249]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2006-05-18 61067]
S3 IpwP;IPWireless 3G Network Adapter; C:\WINDOWS\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
S3 lptwdmio;LPT port direct access service; \??\C:\PROGRA~1\HAM\UR5EQF~1\LPTWDMIO.SYS []
S3 mbr;mbr; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\mbr.sys []
S3 memcard;Ovladač paměťových karet PCMCIA; C:\WINDOWS\system32\DRIVERS\memcard.sys [2001-08-17 8320]
S3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-20 50704]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\NSNDIS5.SYS []
S3 packet_2.1;Packet Driver v2.1; \??\C:\WINDOWS\system32\drivers\packet.sys []
S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys [2007-03-11 16694]
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys [2005-07-11 17664]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 wlluc48;Wireless LAN PC Card Driver; C:\WINDOWS\system32\DRIVERS\wlluc48.sys [2004-08-03 154624]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-05 266295]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-12-28 114753]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-12-17 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-06-20 53248]
R2 Multi-user Cleanup Service;Multi-user Cleanup Service; C:\Lotus\Notes\ntmulti.exe [2006-09-27 53248]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-12-28 217164]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2005-08-08 167936]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-12-28 540745]
R2 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV; đ%€|x srv []
S2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV; đ%€|x srv []
S2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger; đ%€|x srv []
S2 DhcpRpcSs;Klient DHCP DhcpRpcSs; đ%€|x srv []
S2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state; đ%€|x srv []
S2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN; đ%€|x srv []
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
S2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer; đ%€|x srv []
S2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule; đ%€|x srv []
S2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay; đ%€|x srv []
S2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor; đ%€|x srv []
S2 nhksrv;Netropa NHK Server; C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
S2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch; đ%€|x srv []
S2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator; đ%€|x srv []
S2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr; đ%€|x srv []
S2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer; đ%€|x srv []
S2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem; đ%€|x srv []
S2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator; đ%€|x srv []
S2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer; đ%€|x srv []
S2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN; đ%€|x srv []
S2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService; đ%€|x srv []
S2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService; đ%€|x srv []
S2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc; đ%€|x srv []
S2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv; đ%€|x srv []
S2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage; đ%€|x srv []
S2 TermServiceBrowser;Terminálová služba TermServiceBrowser; đ%€|x srv []
S2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc; đ%€|x srv []
S2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule; đ%€|x srv []
S2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon; đ%€|x srv []
S2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator; đ%€|x srv []
S3 AdobeVersionCue;AdobeVersionCue; C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe [2004-03-25 61440]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2009-02-17 85184]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-02-26 652800]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-17 654848]
S4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt; đ%€|x srv []
S4 gusvcxmlprov;Google Updater Service gusvcxmlprov; đ%€|x srv []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
OK už instaluji SUPERAntiSpyware. Ozvu se jak to dopadlo. DěkujiJaRon píše:nainstaluj SUPERAntiSpyware a vycisti nim PC
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
doporucujem odinstalovat AVG - na tak zasvinenom PC je momentalne zbytocny akykolvek AV, po vycisteni tam vrat NOD
teraz pockam na log z vysledkami SaS + po restarte aktualny log RSIT

teraz pockam na log z vysledkami SaS + po restarte aktualny log RSIT
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Použil jsem SUPERAntiSpyware - zde je log:
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 08/24/2010 at 10:39 AM
Application Version : 4.41.1000
Core Rules Database Version : 5397
Trace Rules Database Version: 3209
Scan type : Quick Scan
Total Scan Time : 00:51:20
Memory items scanned : 612
Memory threats detected : 0
Registry items scanned : 2096
Registry threats detected : 0
File items scanned : 11874
File threats detected : 37
Adware.Tracking Cookie
C:\Documents and Settings\Richard\Cookies\richard@toplist[3].txt
C:\Documents and Settings\Richard\Cookies\richard@ad2.billboard[1].txt
C:\Documents and Settings\Richard\Cookies\richard@jizdnirady.idnes[1].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[4].txt
C:\Documents and Settings\Richard\Cookies\richard@content.yieldmanager[1].txt
C:\Documents and Settings\Richard\Cookies\richard@fastclick[2].txt
C:\Documents and Settings\Richard\Cookies\richard@spmedia[2].txt
C:\Documents and Settings\Richard\Cookies\richard@counter.cnw[1].txt
C:\Documents and Settings\Richard\Cookies\richard@adfarm1.adition[2].txt
C:\Documents and Settings\Richard\Cookies\richard@jizdnirady.idnes[3].txt
C:\Documents and Settings\Richard\Cookies\richard@toplist[1].txt
C:\Documents and Settings\Richard\Cookies\richard@doubleclick[1].txt
C:\Documents and Settings\Richard\Cookies\richard@etargetnet[1].txt
C:\Documents and Settings\Richard\Cookies\richard@ad.yieldmanager[2].txt
C:\Documents and Settings\Richard\Cookies\richard@ad1.proklik[2].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[1].txt
C:\Documents and Settings\Richard\Cookies\richard@track.mailkit[1].txt
C:\Documents and Settings\Richard\Cookies\richard@apmebf[1].txt
C:\Documents and Settings\Richard\Cookies\richard@tradedoubler[2].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[2].txt
C:\Documents and Settings\Branda\Cookies\branda@ad2.billboard[1].txt
C:\Documents and Settings\Branda\Cookies\branda@atdmt[1].txt
C:\Documents and Settings\Branda\Cookies\branda@www.googleadservices[1].txt
C:\Documents and Settings\Branda\Cookies\branda@ad2.bbmedia[2].txt
C:\Documents and Settings\Branda\Cookies\branda@counter.cnw[2].txt
C:\Documents and Settings\Branda\Cookies\branda@doubleclick[1].txt
C:\Documents and Settings\Branda\Cookies\branda@toplist[1].txt
acvs.mediaonenetwork.net [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
broadcast.piximedia.fr [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
img-cdn.mediaplex.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
m.uk.2mdn.net [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
media.moblyng.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
media1.break.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
pornpros.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
Trojan.Agent/Gen-Krpytik
C:\FAGOR\MANUALY\8050T\CZECH\OPERACTC\TC-PM6CZ\RAR\8055TC.EXE
Adware.Vundo/Variant-MSFake
C:\WINDOWS\SETUP1.EXE
Rootkit.TDSServ-Trace
C:\WINDOWS\SYSTEM32\TDSSLRVD.DAT
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 08/24/2010 at 10:39 AM
Application Version : 4.41.1000
Core Rules Database Version : 5397
Trace Rules Database Version: 3209
Scan type : Quick Scan
Total Scan Time : 00:51:20
Memory items scanned : 612
Memory threats detected : 0
Registry items scanned : 2096
Registry threats detected : 0
File items scanned : 11874
File threats detected : 37
Adware.Tracking Cookie
C:\Documents and Settings\Richard\Cookies\richard@toplist[3].txt
C:\Documents and Settings\Richard\Cookies\richard@ad2.billboard[1].txt
C:\Documents and Settings\Richard\Cookies\richard@jizdnirady.idnes[1].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[4].txt
C:\Documents and Settings\Richard\Cookies\richard@content.yieldmanager[1].txt
C:\Documents and Settings\Richard\Cookies\richard@fastclick[2].txt
C:\Documents and Settings\Richard\Cookies\richard@spmedia[2].txt
C:\Documents and Settings\Richard\Cookies\richard@counter.cnw[1].txt
C:\Documents and Settings\Richard\Cookies\richard@adfarm1.adition[2].txt
C:\Documents and Settings\Richard\Cookies\richard@jizdnirady.idnes[3].txt
C:\Documents and Settings\Richard\Cookies\richard@toplist[1].txt
C:\Documents and Settings\Richard\Cookies\richard@doubleclick[1].txt
C:\Documents and Settings\Richard\Cookies\richard@etargetnet[1].txt
C:\Documents and Settings\Richard\Cookies\richard@ad.yieldmanager[2].txt
C:\Documents and Settings\Richard\Cookies\richard@ad1.proklik[2].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[1].txt
C:\Documents and Settings\Richard\Cookies\richard@track.mailkit[1].txt
C:\Documents and Settings\Richard\Cookies\richard@apmebf[1].txt
C:\Documents and Settings\Richard\Cookies\richard@tradedoubler[2].txt
C:\Documents and Settings\Richard\Cookies\richard@idnes[2].txt
C:\Documents and Settings\Branda\Cookies\branda@ad2.billboard[1].txt
C:\Documents and Settings\Branda\Cookies\branda@atdmt[1].txt
C:\Documents and Settings\Branda\Cookies\branda@www.googleadservices[1].txt
C:\Documents and Settings\Branda\Cookies\branda@ad2.bbmedia[2].txt
C:\Documents and Settings\Branda\Cookies\branda@counter.cnw[2].txt
C:\Documents and Settings\Branda\Cookies\branda@doubleclick[1].txt
C:\Documents and Settings\Branda\Cookies\branda@toplist[1].txt
acvs.mediaonenetwork.net [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
broadcast.piximedia.fr [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
img-cdn.mediaplex.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
m.uk.2mdn.net [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
media.moblyng.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
media1.break.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
pornpros.com [ C:\Documents and Settings\Richard\Data aplikací\Macromedia\Flash Player\#SharedObjects\BTY2JW8H ]
Trojan.Agent/Gen-Krpytik
C:\FAGOR\MANUALY\8050T\CZECH\OPERACTC\TC-PM6CZ\RAR\8055TC.EXE
Adware.Vundo/Variant-MSFake
C:\WINDOWS\SETUP1.EXE
Rootkit.TDSServ-Trace
C:\WINDOWS\SYSTEM32\TDSSLRVD.DAT
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
fajn - vloz log RSIT po restarte
samozrejme polozky najdene SaS ZMAZAT
samozrejme polozky najdene SaS ZMAZAT

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Restartnul jsem a tady je následný log RSIT.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Richard at 2010-08-24 13:08:59
WIN_XP Service Pack 3
System drive C: has 13 GB (17%) free of 76 GB
Total RAM: 503 MB (9% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:09:30, on 24.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Lotus\Notes\ntmulti.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Documents and Settings\Richard\Plocha\RSIT.exe
C:\Program Files\trend micro\Richard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Print Monitor.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ib.internetbanka.cz/ibs31/bin/I ... .3.0.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ib.internetbanka.cz/ibs31/bin/I ... .99.99.cab
O16 - DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} (FotoStarUploader Control) - http://sberna7.ifoto.cz/snadno-vlozit-f ... oader2.dll
O16 - DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} (PCVRA.VRPCA) - http://www.visualradio.de/download/VRPCA.CAB
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} (RtspVaPgCtrlNew Class) - http://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://host13.nwt.cz/activex/AMC.cab
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://asp05.photoprintit.de/microsite/ ... loader.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = into.cz
O17 - HKLM\Software\..\Telephony: DomainName = into.cz
O17 - HKLM\System\CCS\Services\Tcpip\..\{918D11F8-3B92-45F4-B7BB-51D21899DDE6}: NameServer = 194.228.41.65,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = into.cz
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV (aawserviceCiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: AdobeVersionCue - Adobe Sytems - C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Indexing Service CiSvcSSDPSRV (CiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: .NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger (clr_optimization_v2.0.50727_32Messenger) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient DHCP DhcpRpcSs (DhcpRpcSs) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminaspnet_state (dmadminaspnet_state) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminWmdmPmSN (dmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InstallDriver Table Manager IDriverTServiceLayer (IDriverTServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule (LightScribeServiceTrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Groove Audit Service MicrosoftPlugPlay (MicrosoftPlugPlay) - Unknown owner - C:\WINDOWS\
O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\Lotus\Notes\ntmulti.exe
O23 - Service: Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor (NetTcpPortSharingS24EventMonitor) - Unknown owner - C:\WINDOWS\
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Sledování umístění v síti (NLA) NlaDcomLaunch (NlaDcomLaunch) - Unknown owner - C:\WINDOWS\
O23 - Service: NOD32 Kernel Service NOD32krnRpcLocator (NOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Vyměnitelné úložiště NtmsSvcTlntSvr (NtmsSvcTlntSvr) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Diagnostics Service odservMSIServer (odservMSIServer) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem (RasAutoEventSystem) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator (RDSessMgrNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer (RegSrvcServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN (RemoteAccessdmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService (RemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService (RemoteAccessImapiServiceRemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc (S24EventMonitorCiSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Oznamování systémových událostí SENSAudioSrv (SENSAudioSrv) - Unknown owner - C:\WINDOWS\
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Načítání obrázků (WIA) stisvcProtectedStorage (stisvcProtectedStorage) - Unknown owner - C:\WINDOWS\
O23 - Service: Terminálová služba TermServiceBrowser (TermServiceBrowser) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksCryptSvc (TrkWksCryptSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksSchedule (TrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon (WmdmPmSNNetlogon) - Unknown owner - C:\WINDOWS\
O23 - Service: Rozšíření ovladače WMI WmiNOD32krnRpcLocator (WmiNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
--
End of file - 17809 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-08-20 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-19 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-19 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Program Files\TRANSLATOR\WEBIE.DLL [2006-11-10 360448]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-15 147456]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-28 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-12-28 602182]
"EOUApp"=C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe [2005-12-28 569413]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-04-17 110592]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"=C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe [2003-09-30 425984]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
"ISUSScheduler"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe [2004-06-16 81920]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-20 2065760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2007-10-25 956296]
"Google Update"=C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-07-09 133104]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2007-01-05 204288]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2010-07-19 2403568]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
C:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe [2004-03-25 1732608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
C:\PROGRA~1\MICROS~2\wcescomm.exe [2006-06-20 1207080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-05 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
C:\Program Files\MP4 Player\mp4Player.exe [2008-11-06 772096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe [2008-12-03 2372840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-11-23 56928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
C:\Program Files\Visagesoft\eXPert PDF\vspdfprsrv.exe [2006-05-19 884224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2
"gusvcwinmgmt"=2
"gusvc"=3
"FLEXnet Licensing Service"=3
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Print Monitor.lnk - C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-04 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-20 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-08-11 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-08-24 09:40:59 ----D---- C:\Documents and Settings\Richard\Data aplikací\SUPERAntiSpyware.com
2010-08-24 09:40:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2010-08-24 09:40:13 ----D---- C:\Program Files\SUPERAntiSpyware
2010-08-24 09:33:53 ----D---- C:\Program Files\trend micro
2010-08-24 09:33:52 ----D---- C:\rsit
2010-08-24 09:08:33 ----A---- C:\ComboFix.txt
2010-08-20 08:12:43 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2010-08-20 04:56:13 ----D---- C:\$AVG
2010-08-20 04:33:56 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2010-08-20 04:33:29 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-08-20 04:33:05 ----D---- C:\Program Files\AVG
2010-08-20 04:33:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2010-08-17 10:29:30 ----A---- C:\Boot.bak
2010-08-17 10:29:16 ----RASHD---- C:\cmdcons
2010-08-17 10:24:03 ----A---- C:\WINDOWS\MBR.exe
2010-08-17 10:24:02 ----A---- C:\WINDOWS\PEV.exe
2010-08-17 10:20:32 ----A---- C:\WINDOWS\system32\CF10281.exe
2010-08-13 12:10:15 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-13 12:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-13 12:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-13 12:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-13 11:53:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-13 11:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-13 11:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-08-13 11:46:27 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-13 11:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 08:34:01 ----ASH---- C:\hiberfil.sys
2010-08-09 08:02:26 ----D---- C:\332d97db2a57536c3febfa53
2010-08-03 12:38:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-03 08:45:28 ----D---- C:\fc7d322ab63a425f02eb206f01
======List of files/folders modified in the last 1 months======
2010-08-24 13:09:06 ----D---- C:\WINDOWS\Prefetch
2010-08-24 13:07:39 ----A---- C:\WINDOWS\Msiosd.ini
2010-08-24 13:05:53 ----D---- C:\WINDOWS\system32\ias
2010-08-24 13:05:32 ----D---- C:\WINDOWS\temp
2010-08-24 13:05:17 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-24 13:02:07 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-24 12:19:06 ----SHD---- C:\WINDOWS\Installer
2010-08-24 12:19:06 ----D---- C:\Config.Msi
2010-08-24 12:17:48 ----D---- C:\WINDOWS\system32
2010-08-24 12:14:36 ----D---- C:\WINDOWS\system32\Lang
2010-08-24 11:15:36 ----D---- C:\WINDOWS
2010-08-24 09:40:13 ----RD---- C:\Program Files
2010-08-24 09:08:37 ----D---- C:\QooBox
2010-08-24 08:56:15 ----A---- C:\WINDOWS\system.ini
2010-08-24 08:52:03 ----D---- C:\WINDOWS\system32\drivers
2010-08-24 08:47:07 ----SHD---- C:\System Volume Information
2010-08-24 08:47:07 ----D---- C:\WINDOWS\system32\Restore
2010-08-22 07:35:50 ----D---- C:\Program Files\Mozilla Firefox
2010-08-20 07:11:12 ----D---- C:\Program Files\AEBPR
2010-08-20 06:30:19 ----A---- C:\WINDOWS\wincmd.ini
2010-08-20 05:14:48 ----A---- C:\WINDOWS\wcx_ftp.ini
2010-08-20 04:29:36 ----SD---- C:\Documents and Settings\Richard\Data aplikací\Microsoft
2010-08-19 13:56:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2010-08-19 13:55:40 ----HD---- C:\WINDOWS\inf
2010-08-19 09:30:57 ----D---- C:\WINDOWS\AppPatch
2010-08-19 09:30:54 ----D---- C:\Program Files\Common Files
2010-08-17 11:18:17 ----SD---- C:\WINDOWS\Tasks
2010-08-17 11:17:31 ----D---- C:\WINDOWS\erdnt
2010-08-17 11:02:14 ----D---- C:\WINDOWS\system32\drivers\etc
2010-08-17 10:58:30 ----D---- C:\WINDOWS\system32\config
2010-08-17 10:29:30 ----RASH---- C:\boot.ini
2010-08-13 12:16:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-08-13 12:16:30 ----RSD---- C:\WINDOWS\assembly
2010-08-13 12:10:21 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-08-13 12:10:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-08-13 12:08:50 ----A---- C:\WINDOWS\imsins.BAK
2010-08-13 12:02:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-08-13 11:59:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-08-13 11:58:51 ----D---- C:\WINDOWS\WinSxS
2010-08-13 11:54:29 ----D---- C:\Program Files\Internet Explorer
2010-08-13 11:54:10 ----D---- C:\WINDOWS\ie8updates
2010-08-13 11:46:31 ----D---- C:\Program Files\Movie Maker
2010-08-11 14:46:46 ----D---- C:\Documents and Settings\Richard\Data aplikací\Skype
2010-08-10 08:26:21 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-08-10 08:11:15 ----A---- C:\WINDOWS\ntbtlog.txt
2010-08-09 15:05:17 ----D---- C:\Program Files\ESET
2010-08-09 10:38:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-08-09 10:36:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-09 08:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2010-08-04 15:47:25 ----D---- C:\Documents and Settings\Richard\Data aplikací\Adobe
2010-08-04 11:27:14 ----D---- C:\WINDOWS\Minidump
2010-08-03 20:09:31 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-02 14:27:34 ----D---- C:\Documents and Settings\Richard\Data aplikací\Happy Foto
2010-07-27 08:30:31 ----A---- C:\WINDOWS\system32\shell32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 risdptsk;risdptsk; C:\WINDOWS\system32\DRIVERS\risdptsk.sys [2005-07-14 27904]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-01-18 77696]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-20 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-20 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-20 243024]
R1 hwinterface;hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [2006-12-04 3026]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 msikbd2k;Multimedia Keyboard Filter Driver; C:\WINDOWS\System32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 truecrypt;truecrypt; C:\WINDOWS\System32\drivers\truecrypt.sys [2008-11-15 215616]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-08-07 21275]
R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
R2 DLPortIO;DriverLINX Port I/O Driver; \??\C:\WINDOWS\system32\DRIVERS\DLPortIO.SYS []
R2 Ethpdrv;Ethernet Packet Driver; C:\WINDOWS\system32\DRIVERS\ethpdrv.sys [2005-09-08 9728]
R2 hercul;hercul; \??\C:\WINDOWS\system32\DRIVERS\HERCUL.SYS []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-02-16 13059]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-12-28 13568]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-05 65304]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-02-16 1036928]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-02-16 163328]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-02-16 4156416]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-18 5632]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-07-01 9856]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2004-08-09 70144]
R3 SynMini;USB2.0 1.3M Web Cam; C:\WINDOWS\System32\Drivers\SynMini.sys [2005-10-03 720470]
R3 SynScan;USB2.0 1.3M Web Cam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2005-10-03 8278]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-02-16 702592]
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys []
S0 Winag16;Winag16; C:\WINDOWS\System32\Drivers\Winag16.sys []
S0 Winag30;Winag30; C:\WINDOWS\System32\Drivers\Winag30.sys []
S0 Winci74;Winci74; C:\WINDOWS\System32\Drivers\Winci74.sys []
S0 Winek84;Winek84; C:\WINDOWS\System32\Drivers\Winek84.sys []
S0 Winfk38;Winfk38; C:\WINDOWS\System32\Drivers\Winfk38.sys []
S0 Winfl63;Winfl63; C:\WINDOWS\System32\Drivers\Winfl63.sys []
S0 Wingm28;Wingm28; C:\WINDOWS\System32\Drivers\Wingm28.sys []
S0 Winlr41;Winlr41; C:\WINDOWS\System32\Drivers\Winlr41.sys []
S0 Winry41;Winry41; C:\WINDOWS\System32\Drivers\Winry41.sys []
S0 Winsy16;Winsy16; C:\WINDOWS\System32\Drivers\Winsy16.sys []
S0 Winub38;Winub38; C:\WINDOWS\System32\Drivers\Winub38.sys []
S0 Winyg74;Winyg74; C:\WINDOWS\System32\Drivers\Winyg74.sys []
S2 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys []
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys []
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-05 30459]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys []
S3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-05 148900]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2006-01-05 45507]
S3 catchme;catchme; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FagorPcmcia;Description of FagorPcmcia NT service here; C:\WINDOWS\System32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
S3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter; \??\C:\Documents and Settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys []
S3 FTCSER2K;FTDI USB Dual Serial Port Driver; C:\WINDOWS\system32\drivers\ftcser2k.sys [2004-03-23 56031]
S3 FTCUSB;FTCUSB.SYS FT2232C IO test driver; C:\WINDOWS\system32\drivers\ftcusb.sys [2004-05-05 43235]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2006-05-18 47249]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2006-05-18 61067]
S3 IpwP;IPWireless 3G Network Adapter; C:\WINDOWS\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
S3 lptwdmio;LPT port direct access service; \??\C:\PROGRA~1\HAM\UR5EQF~1\LPTWDMIO.SYS []
S3 memcard;Ovladač paměťových karet PCMCIA; C:\WINDOWS\system32\DRIVERS\memcard.sys [2001-08-17 8320]
S3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-20 50704]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\NSNDIS5.SYS []
S3 packet_2.1;Packet Driver v2.1; \??\C:\WINDOWS\system32\drivers\packet.sys []
S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys [2007-03-11 16694]
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys [2005-07-11 17664]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 wlluc48;Wireless LAN PC Card Driver; C:\WINDOWS\system32\DRIVERS\wlluc48.sys [2004-08-03 154624]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-05 266295]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-12-28 114753]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-12-17 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-06-20 53248]
R2 Multi-user Cleanup Service;Multi-user Cleanup Service; C:\Lotus\Notes\ntmulti.exe [2006-09-27 53248]
R2 nhksrv;Netropa NHK Server; C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-12-28 217164]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2005-08-08 167936]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-12-28 540745]
R2 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV; đ%€|x srv []
S2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV; đ%€|x srv []
S2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger; đ%€|x srv []
S2 DhcpRpcSs;Klient DHCP DhcpRpcSs; đ%€|x srv []
S2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state; đ%€|x srv []
S2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN; đ%€|x srv []
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
S2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer; đ%€|x srv []
S2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule; đ%€|x srv []
S2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay; đ%€|x srv []
S2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor; đ%€|x srv []
S2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch; đ%€|x srv []
S2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator; đ%€|x srv []
S2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr; đ%€|x srv []
S2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer; đ%€|x srv []
S2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem; đ%€|x srv []
S2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator; đ%€|x srv []
S2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer; đ%€|x srv []
S2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN; đ%€|x srv []
S2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService; đ%€|x srv []
S2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService; đ%€|x srv []
S2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc; đ%€|x srv []
S2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv; đ%€|x srv []
S2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage; đ%€|x srv []
S2 TermServiceBrowser;Terminálová služba TermServiceBrowser; đ%€|x srv []
S2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc; đ%€|x srv []
S2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule; đ%€|x srv []
S2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon; đ%€|x srv []
S2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator; đ%€|x srv []
S3 AdobeVersionCue;AdobeVersionCue; C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe [2004-03-25 61440]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2009-02-17 85184]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-02-26 652800]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-17 654848]
S4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt; đ%€|x srv []
S4 gusvcxmlprov;Google Updater Service gusvcxmlprov; đ%€|x srv []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by Richard at 2010-08-24 13:08:59
WIN_XP Service Pack 3
System drive C: has 13 GB (17%) free of 76 GB
Total RAM: 503 MB (9% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:09:30, on 24.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Lotus\Notes\ntmulti.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Netropa\Onscreen Display\OSD.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Documents and Settings\Richard\Plocha\RSIT.exe
C:\Program Files\trend micro\Richard.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [ISUSScheduler] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" -start
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [Google Update] "C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User '?')
O4 - HKUS\S-1-5-21-789336058-1275210071-839522115-1003\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User '?')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Print Monitor.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Program Files\TRANSLATOR\WEBIE.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ib.internetbanka.cz/ibs31/bin/I ... .3.0.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ib.internetbanka.cz/ibs31/bin/I ... .99.99.cab
O16 - DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} (FotoStarUploader Control) - http://sberna7.ifoto.cz/snadno-vlozit-f ... oader2.dll
O16 - DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} (PCVRA.VRPCA) - http://www.visualradio.de/download/VRPCA.CAB
O16 - DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} (RtspVaPgCtrlNew Class) - http://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://host13.nwt.cz/activex/AMC.cab
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://asp05.photoprintit.de/microsite/ ... loader.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = into.cz
O17 - HKLM\Software\..\Telephony: DomainName = into.cz
O17 - HKLM\System\CCS\Services\Tcpip\..\{918D11F8-3B92-45F4-B7BB-51D21899DDE6}: NameServer = 194.228.41.65,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = into.cz
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV (aawserviceCiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: AdobeVersionCue - Adobe Sytems - C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Indexing Service CiSvcSSDPSRV (CiSvcSSDPSRV) - Unknown owner - C:\WINDOWS\
O23 - Service: .NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger (clr_optimization_v2.0.50727_32Messenger) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient DHCP DhcpRpcSs (DhcpRpcSs) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminaspnet_state (dmadminaspnet_state) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba správy pro Správce logických disků dmadminWmdmPmSN (dmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InstallDriver Table Manager IDriverTServiceLayer (IDriverTServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule (LightScribeServiceTrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Groove Audit Service MicrosoftPlugPlay (MicrosoftPlugPlay) - Unknown owner - C:\WINDOWS\
O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\Lotus\Notes\ntmulti.exe
O23 - Service: Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor (NetTcpPortSharingS24EventMonitor) - Unknown owner - C:\WINDOWS\
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Sledování umístění v síti (NLA) NlaDcomLaunch (NlaDcomLaunch) - Unknown owner - C:\WINDOWS\
O23 - Service: NOD32 Kernel Service NOD32krnRpcLocator (NOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Vyměnitelné úložiště NtmsSvcTlntSvr (NtmsSvcTlntSvr) - Unknown owner - C:\WINDOWS\
O23 - Service: Microsoft Office Diagnostics Service odservMSIServer (odservMSIServer) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem (RasAutoEventSystem) - Unknown owner - C:\WINDOWS\
O23 - Service: Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator (RDSessMgrNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer (RegSrvcServiceLayer) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN (RemoteAccessdmadminWmdmPmSN) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService (RemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService (RemoteAccessImapiServiceRemoteAccessImapiService) - Unknown owner - C:\WINDOWS\
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc (S24EventMonitorCiSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Oznamování systémových událostí SENSAudioSrv (SENSAudioSrv) - Unknown owner - C:\WINDOWS\
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Načítání obrázků (WIA) stisvcProtectedStorage (stisvcProtectedStorage) - Unknown owner - C:\WINDOWS\
O23 - Service: Terminálová služba TermServiceBrowser (TermServiceBrowser) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksCryptSvc (TrkWksCryptSvc) - Unknown owner - C:\WINDOWS\
O23 - Service: Klient služby sledování distribuovaných propojení TrkWksSchedule (TrkWksSchedule) - Unknown owner - C:\WINDOWS\
O23 - Service: Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon (WmdmPmSNNetlogon) - Unknown owner - C:\WINDOWS\
O23 - Service: Rozšíření ovladače WMI WmiNOD32krnRpcLocator (WmiNOD32krnRpcLocator) - Unknown owner - C:\WINDOWS\
--
End of file - 17809 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-08-20 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-19 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-19 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\Program Files\TRANSLATOR\WEBIE.DLL [2006-11-10 360448]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Adobe Acrobat 6.0 CE\Acrobat\AcroIEFavClient.dll [2003-05-15 147456]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-28 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-12-28 602182]
"EOUApp"=C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe [2005-12-28 569413]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2006-04-17 110592]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"=C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe [2003-09-30 425984]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
"ISUSScheduler"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe [2004-06-16 81920]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-20 2065760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2007-10-25 956296]
"Google Update"=C:\Documents and Settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-07-09 133104]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2007-01-05 204288]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2010-07-19 2403568]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
C:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe [2004-03-25 1732608]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
C:\PROGRA~1\MICROS~2\wcescomm.exe [2006-06-20 1207080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2006-12-05 54832]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
C:\Program Files\MP4 Player\mp4Player.exe [2008-11-06 772096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
C:\Program Files\Nokia\Nokia Music\NokiaMusic.exe [2008-12-03 2372840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-09-12 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2006-11-23 56928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-02-11 520192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
C:\Program Files\Visagesoft\eXPert PDF\vspdfprsrv.exe [2006-05-19 884224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2
"gusvcwinmgmt"=2
"gusvc"=3
"FLEXnet Licensing Service"=3
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Print Monitor.lnk - C:\Program Files\canon\PrintMonitor\CPUPVIEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2009-09-04 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-20 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-08-11 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-08-24 09:40:59 ----D---- C:\Documents and Settings\Richard\Data aplikací\SUPERAntiSpyware.com
2010-08-24 09:40:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2010-08-24 09:40:13 ----D---- C:\Program Files\SUPERAntiSpyware
2010-08-24 09:33:53 ----D---- C:\Program Files\trend micro
2010-08-24 09:33:52 ----D---- C:\rsit
2010-08-24 09:08:33 ----A---- C:\ComboFix.txt
2010-08-20 08:12:43 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2010-08-20 04:56:13 ----D---- C:\$AVG
2010-08-20 04:33:56 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2010-08-20 04:33:50 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2010-08-20 04:33:29 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-08-20 04:33:05 ----D---- C:\Program Files\AVG
2010-08-20 04:33:05 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2010-08-17 10:29:30 ----A---- C:\Boot.bak
2010-08-17 10:29:16 ----RASHD---- C:\cmdcons
2010-08-17 10:24:03 ----A---- C:\WINDOWS\MBR.exe
2010-08-17 10:24:02 ----A---- C:\WINDOWS\PEV.exe
2010-08-17 10:20:32 ----A---- C:\WINDOWS\system32\CF10281.exe
2010-08-13 12:10:15 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-13 12:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-13 12:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-13 12:02:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-13 11:53:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-13 11:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-13 11:46:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-08-13 11:46:27 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-13 11:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-10 08:34:01 ----ASH---- C:\hiberfil.sys
2010-08-09 08:02:26 ----D---- C:\332d97db2a57536c3febfa53
2010-08-03 12:38:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-03 08:45:28 ----D---- C:\fc7d322ab63a425f02eb206f01
======List of files/folders modified in the last 1 months======
2010-08-24 13:09:06 ----D---- C:\WINDOWS\Prefetch
2010-08-24 13:07:39 ----A---- C:\WINDOWS\Msiosd.ini
2010-08-24 13:05:53 ----D---- C:\WINDOWS\system32\ias
2010-08-24 13:05:32 ----D---- C:\WINDOWS\temp
2010-08-24 13:05:17 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-24 13:02:07 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-24 12:19:06 ----SHD---- C:\WINDOWS\Installer
2010-08-24 12:19:06 ----D---- C:\Config.Msi
2010-08-24 12:17:48 ----D---- C:\WINDOWS\system32
2010-08-24 12:14:36 ----D---- C:\WINDOWS\system32\Lang
2010-08-24 11:15:36 ----D---- C:\WINDOWS
2010-08-24 09:40:13 ----RD---- C:\Program Files
2010-08-24 09:08:37 ----D---- C:\QooBox
2010-08-24 08:56:15 ----A---- C:\WINDOWS\system.ini
2010-08-24 08:52:03 ----D---- C:\WINDOWS\system32\drivers
2010-08-24 08:47:07 ----SHD---- C:\System Volume Information
2010-08-24 08:47:07 ----D---- C:\WINDOWS\system32\Restore
2010-08-22 07:35:50 ----D---- C:\Program Files\Mozilla Firefox
2010-08-20 07:11:12 ----D---- C:\Program Files\AEBPR
2010-08-20 06:30:19 ----A---- C:\WINDOWS\wincmd.ini
2010-08-20 05:14:48 ----A---- C:\WINDOWS\wcx_ftp.ini
2010-08-20 04:29:36 ----SD---- C:\Documents and Settings\Richard\Data aplikací\Microsoft
2010-08-19 13:56:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2010-08-19 13:55:40 ----HD---- C:\WINDOWS\inf
2010-08-19 09:30:57 ----D---- C:\WINDOWS\AppPatch
2010-08-19 09:30:54 ----D---- C:\Program Files\Common Files
2010-08-17 11:18:17 ----SD---- C:\WINDOWS\Tasks
2010-08-17 11:17:31 ----D---- C:\WINDOWS\erdnt
2010-08-17 11:02:14 ----D---- C:\WINDOWS\system32\drivers\etc
2010-08-17 10:58:30 ----D---- C:\WINDOWS\system32\config
2010-08-17 10:29:30 ----RASH---- C:\boot.ini
2010-08-13 12:16:34 ----D---- C:\WINDOWS\Microsoft.NET
2010-08-13 12:16:30 ----RSD---- C:\WINDOWS\assembly
2010-08-13 12:10:21 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-08-13 12:10:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-08-13 12:08:50 ----A---- C:\WINDOWS\imsins.BAK
2010-08-13 12:02:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-08-13 11:59:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-08-13 11:58:51 ----D---- C:\WINDOWS\WinSxS
2010-08-13 11:54:29 ----D---- C:\Program Files\Internet Explorer
2010-08-13 11:54:10 ----D---- C:\WINDOWS\ie8updates
2010-08-13 11:46:31 ----D---- C:\Program Files\Movie Maker
2010-08-11 14:46:46 ----D---- C:\Documents and Settings\Richard\Data aplikací\Skype
2010-08-10 08:26:21 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-08-10 08:11:15 ----A---- C:\WINDOWS\ntbtlog.txt
2010-08-09 15:05:17 ----D---- C:\Program Files\ESET
2010-08-09 10:38:07 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-08-09 10:36:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-08-09 08:55:49 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2010-08-04 15:47:25 ----D---- C:\Documents and Settings\Richard\Data aplikací\Adobe
2010-08-04 11:27:14 ----D---- C:\WINDOWS\Minidump
2010-08-03 20:09:31 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-02 14:27:34 ----D---- C:\Documents and Settings\Richard\Data aplikací\Happy Foto
2010-07-27 08:30:31 ----A---- C:\WINDOWS\system32\shell32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 risdptsk;risdptsk; C:\WINDOWS\system32\DRIVERS\risdptsk.sys [2005-07-14 27904]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-01-18 77696]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-20 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-20 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-20 243024]
R1 hwinterface;hwinterface; C:\WINDOWS\System32\Drivers\hwinterface.sys [2006-12-04 3026]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 msikbd2k;Multimedia Keyboard Filter Driver; C:\WINDOWS\System32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 truecrypt;truecrypt; C:\WINDOWS\System32\drivers\truecrypt.sys [2008-11-15 215616]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-08-07 21275]
R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
R2 DLPortIO;DriverLINX Port I/O Driver; \??\C:\WINDOWS\system32\DRIVERS\DLPortIO.SYS []
R2 Ethpdrv;Ethernet Packet Driver; C:\WINDOWS\system32\DRIVERS\ethpdrv.sys [2005-09-08 9728]
R2 hercul;hercul; \??\C:\WINDOWS\system32\DRIVERS\HERCUL.SYS []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-02-16 13059]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-12-28 13568]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2006-01-05 65304]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-02-16 1036928]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-02-16 163328]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-02-16 4156416]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-18 5632]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-07-01 9856]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2004-08-09 70144]
R3 SynMini;USB2.0 1.3M Web Cam; C:\WINDOWS\System32\Drivers\SynMini.sys [2005-10-03 720470]
R3 SynScan;USB2.0 1.3M Web Cam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2005-10-03 8278]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-02-16 702592]
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys []
S0 Winag16;Winag16; C:\WINDOWS\System32\Drivers\Winag16.sys []
S0 Winag30;Winag30; C:\WINDOWS\System32\Drivers\Winag30.sys []
S0 Winci74;Winci74; C:\WINDOWS\System32\Drivers\Winci74.sys []
S0 Winek84;Winek84; C:\WINDOWS\System32\Drivers\Winek84.sys []
S0 Winfk38;Winfk38; C:\WINDOWS\System32\Drivers\Winfk38.sys []
S0 Winfl63;Winfl63; C:\WINDOWS\System32\Drivers\Winfl63.sys []
S0 Wingm28;Wingm28; C:\WINDOWS\System32\Drivers\Wingm28.sys []
S0 Winlr41;Winlr41; C:\WINDOWS\System32\Drivers\Winlr41.sys []
S0 Winry41;Winry41; C:\WINDOWS\System32\Drivers\Winry41.sys []
S0 Winsy16;Winsy16; C:\WINDOWS\System32\Drivers\Winsy16.sys []
S0 Winub38;Winub38; C:\WINDOWS\System32\Drivers\Winub38.sys []
S0 Winyg74;Winyg74; C:\WINDOWS\System32\Drivers\Winyg74.sys []
S2 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys []
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 61883;61883 Unit Device; C:\WINDOWS\system32\DRIVERS\61883.sys []
S3 Avc;AVC Device; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-13 38912]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2006-01-05 30459]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys []
S3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2006-01-05 148900]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2006-01-05 45507]
S3 catchme;catchme; \??\C:\DOCUME~1\Richard\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 FagorPcmcia;Description of FagorPcmcia NT service here; C:\WINDOWS\System32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
S3 F-Secure Standalone Minifilter;F-Secure Standalone Minifilter; \??\C:\Documents and Settings\Richard\Local Settings\Temp\{234ABC07-DAD1-4151-B178-F590F492C13D}\fsgk.sys []
S3 FTCSER2K;FTDI USB Dual Serial Port Driver; C:\WINDOWS\system32\drivers\ftcser2k.sys [2004-03-23 56031]
S3 FTCUSB;FTCUSB.SYS FT2232C IO test driver; C:\WINDOWS\system32\drivers\ftcusb.sys [2004-05-05 43235]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2006-05-18 47249]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2006-05-18 61067]
S3 IpwP;IPWireless 3G Network Adapter; C:\WINDOWS\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
S3 lptwdmio;LPT port direct access service; \??\C:\PROGRA~1\HAM\UR5EQF~1\LPTWDMIO.SYS []
S3 memcard;Ovladač paměťových karet PCMCIA; C:\WINDOWS\system32\DRIVERS\memcard.sys [2001-08-17 8320]
S3 mf;mf; C:\WINDOWS\system32\DRIVERS\mf.sys [2008-04-13 63744]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-13 51200]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-20 50704]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\NSNDIS5.SYS []
S3 packet_2.1;Packet Driver v2.1; \??\C:\WINDOWS\system32\drivers\packet.sys []
S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys [2007-03-11 16694]
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys [2005-07-11 17664]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-18 5888]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-04 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2009-07-14 444136]
S3 wlluc48;Wireless LAN PC Card Driver; C:\WINDOWS\system32\DRIVERS\wlluc48.sys [2004-08-03 154624]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2006-01-05 266295]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-12-28 114753]
R2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-12-17 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2005-06-20 53248]
R2 Multi-user Cleanup Service;Multi-user Cleanup Service; C:\Lotus\Notes\ntmulti.exe [2006-09-27 53248]
R2 nhksrv;Netropa NHK Server; C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-12-28 217164]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2005-08-08 167936]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-12-28 540745]
R2 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 aawserviceCiSvcSSDPSRV;Ad-Aware 2007 Service aawserviceCiSvcSSDPSRV; đ%€|x srv []
S2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV; đ%€|x srv []
S2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger; đ%€|x srv []
S2 DhcpRpcSs;Klient DHCP DhcpRpcSs; đ%€|x srv []
S2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state; đ%€|x srv []
S2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN; đ%€|x srv []
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
S2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer; đ%€|x srv []
S2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule; đ%€|x srv []
S2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay; đ%€|x srv []
S2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor; đ%€|x srv []
S2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch; đ%€|x srv []
S2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator; đ%€|x srv []
S2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr; đ%€|x srv []
S2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer; đ%€|x srv []
S2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem; đ%€|x srv []
S2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator; đ%€|x srv []
S2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer; đ%€|x srv []
S2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN; đ%€|x srv []
S2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService; đ%€|x srv []
S2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService; đ%€|x srv []
S2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc; đ%€|x srv []
S2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv; đ%€|x srv []
S2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage; đ%€|x srv []
S2 TermServiceBrowser;Terminálová služba TermServiceBrowser; đ%€|x srv []
S2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc; đ%€|x srv []
S2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule; đ%€|x srv []
S2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon; đ%€|x srv []
S2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator; đ%€|x srv []
S3 AdobeVersionCue;AdobeVersionCue; C:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe [2004-03-25 61440]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 InstallShield Licensing Service;InstallShield Licensing Service; C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe [2009-02-17 85184]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-02-26 652800]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-17 654848]
S4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt; đ%€|x srv []
S4 gusvcxmlprov;Google Updater Service gusvcxmlprov; đ%€|x srv []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Presun ComboFix
na plochu (ak tam este nie je)
otvor si Poznamkovy blok - notepad
do neho zkopiruj skript z nasledujiceho okna:
uloz vytvoreny textovy soubor ako CFScript.txt na plochu
po ulozeni uchop vytvoreny skript lavym tlacitkom mysi a presun ho nad ikonu Combofixu, nad nim skript upust:

po aplikacii by mal vzniknut dalsi log, ten vloz sem
na plochu (ak tam este nie je)
otvor si Poznamkovy blok - notepad
do neho zkopiruj skript z nasledujiceho okna:
Kód: Vybrat vše
Driver::
Winag16
Winag30
Winci74
Winek84
Winfk38
Winfl63
Wingm28
Winlr41
Winry41
Winsy16
Winub38
Winyg74
SSPORT
F-Secure Standalone Minifilter
aawserviceCiSvcSSDPSRV
po ulozeni uchop vytvoreny skript lavym tlacitkom mysi a presun ho nad ikonu Combofixu, nad nim skript upust:

po aplikacii by mal vzniknut dalsi log, ten vloz sem

FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Udělal jsem to, Combofix se aktualizoval a nyní se combofix restartuje ...
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Combofixu to trvalo přibližně hodinu, ale nakonec log je tady:
ComboFix 10-08-23.02 - Richard 24.08.2010 13:36:30.6.1 - x86
Spuštěný z: c:\documents and settings\Richard\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Richard\Plocha\CFScript.txt
* Vytvořen nový Bod Obnovení
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_AAWSERVICECISVCSSDPSRV
-------\Legacy_SSPORT
-------\Legacy_WINRY41
-------\Service_aawserviceCiSvcSSDPSRV
-------\Service_F-Secure Standalone Minifilter
-------\Service_SSPORT
-------\Service_Winag16
-------\Service_Winag30
-------\Service_Winci74
-------\Service_Winek84
-------\Service_Winfk38
-------\Service_Winfl63
-------\Service_Wingm28
-------\Service_Winlr41
-------\Service_Winry41
-------\Service_Winsy16
-------\Service_Winub38
-------\Service_Winyg74
((((((((((((((((((((((((( Soubory vytvořené od 2010-07-24 do 2010-08-24 )))))))))))))))))))))))))))))))
.
2010-08-24 07:40 . 2010-08-24 07:41 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-08-24 07:33 . 2010-08-24 11:09 -------- d-----w- c:\program files\trend micro
2010-08-24 07:33 . 2010-08-24 07:34 -------- d-----w- C:\rsit
2010-08-20 06:12 . 2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
2010-08-20 02:56 . 2010-08-20 02:56 -------- d-----w- C:\$AVG
2010-08-20 02:33 . 2010-08-20 06:12 243024 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-08-20 02:33 . 2010-08-20 06:12 29584 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-08-20 02:33 . 2010-08-20 06:10 216400 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-08-20 02:33 . 2010-08-24 10:44 -------- d-----w- c:\windows\system32\drivers\Avg
2010-08-20 02:33 . 2010-08-20 02:33 -------- d-----w- c:\program files\AVG
2010-08-17 08:20 . 2010-08-17 08:20 390144 ----a-w- c:\windows\system32\CF10281.exe
2010-08-09 06:02 . 2010-08-09 06:02 -------- d-----w- C:\332d97db2a57536c3febfa53
2010-08-03 06:45 . 2010-08-03 06:45 -------- d-----w- C:\fc7d322ab63a425f02eb206f01
2010-08-03 06:44 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-20 05:11 . 2007-01-10 07:50 -------- d-----w- c:\program files\AEBPR
2010-08-13 09:59 . 2004-08-18 12:00 82828 ----a-w- c:\windows\system32\perfc005.dat
2010-08-13 09:59 . 2004-08-18 12:00 440774 ----a-w- c:\windows\system32\perfh005.dat
2010-08-09 13:05 . 2006-08-07 19:40 -------- d-----w- c:\program files\ESET
2010-08-09 08:36 . 2009-03-23 14:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-16 10:32 . 2010-07-16 10:29 -------- d-----w- c:\program files\Karaoke Editor
2010-07-01 13:33 . 2007-09-12 20:08 -------- d-----w- c:\program files\Google
2010-06-30 12:33 . 2004-08-18 12:00 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-24 12:27 . 2004-08-18 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 09:02 . 2004-08-18 12:00 1851904 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2004-08-18 12:00 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2004-08-18 12:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 07:43 . 2004-08-18 12:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- c:\windows\system32\GPhotos.scr
2008-09-29 07:33 . 2008-09-29 05:50 1450245 --sha-w- c:\windows\system32\AdobePDFh.sys
2006-05-03 10:06 . 2007-02-21 14:41 163328 --sh--r- c:\windows\system32\flvDX.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"="c:\program files\T-Mobile\Web'n'walk Manager\Manager.exe" [2007-10-25 956296]
"Google Update"="c:\documents and settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-07-09 133104]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2007-01-05 204288]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-07-19 2403568]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2005-12-28 569413]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-04-17 110592]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-11-28 98304]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-11-28 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-11-28 118784]
"RTHDCPL"="RTHDCPL.EXE" [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"="c:\program files\Netropa\Multimedia Keyboard\MMKeybd.exe" [2003-09-30 425984]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-12 282624]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-02-11 520192]
"ISUSScheduler"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" [2004-06-16 81920]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-08-20 2065760]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-1-5 618557]
Print Monitor.lnk - c:\program files\canon\PrintMonitor\CPUPVIEW.exe [2010-5-11 81920]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
2004-03-25 10:35 1732608 ----a-w- c:\program files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-06-20 21:36 1207080 ----a-w- c:\progra~1\MICROS~2\wcescomm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2004-06-16 05:03 221184 ----a-w- c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2004-06-16 05:03 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2006-12-05 21:55 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
2008-11-06 17:23 772096 ----a-w- c:\program files\MP4 Player\Mp4Player.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
2008-12-03 09:33 2372840 ----a-w- c:\program files\Nokia\Nokia Music\NokiaMusic.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-09-12 06:40 282624 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2006-11-23 14:10 56928 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
2008-02-11 00:37 520192 ----a-w- c:\windows\Samsung\PanelMgr\SSMMgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
2006-05-19 16:40 884224 ----a-w- c:\program files\Visagesoft\eXPert PDF\vspdfprsrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2 (0x2)
"gusvcwinmgmt"=2 (0x2)
"gusvc"=3 (0x3)
"FLEXnet Licensing Service"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
R0 fsbts;fsbts;c:\windows\system32\Drivers\fsbts.sys [x]
R2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV;đ%€|x srv [x]
R2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger;đ%€|x srv [x]
R2 DhcpRpcSs;Klient DHCP DhcpRpcSs;đ%€|x srv [x]
R2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state;đ%€|x srv [x]
R2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN;đ%€|x srv [x]
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
R2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer;đ%€|x srv [x]
R2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule;đ%€|x srv [x]
R2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay;đ%€|x srv [x]
R2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor;đ%€|x srv [x]
R2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch;đ%€|x srv [x]
R2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator;đ%€|x srv [x]
R2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr;đ%€|x srv [x]
R2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer;đ%€|x srv [x]
R2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem;đ%€|x srv [x]
R2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator;đ%€|x srv [x]
R2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer;đ%€|x srv [x]
R2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN;đ%€|x srv [x]
R2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService;đ%€|x srv [x]
R2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService;đ%€|x srv [x]
R2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc;đ%€|x srv [x]
R2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv;đ%€|x srv [x]
R2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage;đ%€|x srv [x]
R2 TermServiceBrowser;Terminálová služba TermServiceBrowser;đ%€|x srv [x]
R2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc;đ%€|x srv [x]
R2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule;đ%€|x srv [x]
R2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon;đ%€|x srv [x]
R2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator;đ%€|x srv [x]
R3 FagorPcmcia;Description of FagorPcmcia NT service here;c:\windows\system32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
R3 FTCSER2K;FTDI USB Dual Serial Port Driver;c:\windows\system32\drivers\ftcser2k.sys [2004-03-23 56031]
R3 FTCUSB;FTCUSB.SYS FT2232C IO test driver;c:\windows\system32\drivers\ftcusb.sys [2004-05-05 43235]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
R3 lptwdmio;LPT port direct access service;c:\progra~1\HAM\UR5EQF~1\LPTWDMIO.SYS [x]
R3 memcard;Ovladač paměťových karet PCMCIA;c:\windows\system32\DRIVERS\memcard.sys [2001-08-17 8320]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
R3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-10-20 50704]
R3 packet_2.1;Packet Driver v2.1;c:\windows\system32\drivers\packet.sys [2000-10-24 10755]
R3 TVICHW32;TVICHW32;c:\windows\system32\DRIVERS\TVICHW32.SYS [2002-01-08 24576]
R4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt;đ%€|x srv [x]
R4 gusvcxmlprov;Google Updater Service gusvcxmlprov;đ%€|x srv [x]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2010-08-20 216400]
S1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2010-08-20 243024]
S1 hwinterface;hwinterface;c:\windows\system32\Drivers\hwinterface.sys [2006-12-04 3026]
S1 msikbd2k;Multimedia Keyboard Filter Driver;c:\windows\system32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\DRIVERS\DLPortIO.SYS [1999-01-10 3584]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2005-09-07 9728]
S2 hercul;hercul;c:\windows\system32\DRIVERS\HERCUL.SYS [2002-07-10 4640]
S2 nhksrv;Netropa NHK Server;c:\program files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
S3 SynMini;USB2.0 1.3M Web Cam;c:\windows\system32\Drivers\SynMini.sys [2005-10-03 720470]
S3 SynScan;USB2.0 1.3M Web Cam Still Image;c:\windows\system32\Drivers\SynScan.sys [2005-10-03 8278]
.
Obsah adresáře 'Naplánované úlohy'
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\program files\TRANSLATOR\WEBIE.DLL
TCP: {918D11F8-3B92-45F4-B7BB-51D21899DDE6} = 194.228.41.65,8.8.8.8
DPF: GEMINI IBS 32 GEMB Applet Security - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplsec-3.3.0.0.cab
DPF: GEMINI IBS 32 GEMB Applet Utilities - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplutil-99.99.99.99.cab
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} - hxxp://sberna7.ifoto.cz/snadno-vlozit-fotografie/ilt/ilikethisPhotoUploader2.dll
DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} - hxxp://www.visualradio.de/download/VRPCA.CAB
DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} - hxxp://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} - hxxp://asp05.photoprintit.de/microsite/4860/defaults/activex/IPSUploader.cab
FF - ProfilePath - c:\documents and settings\Richard\Data aplikací\Mozilla\Firefox\Profiles\xu5nzrbm.default\
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-24 14:04
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v2.0.50727_32Messenger]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DhcpRpcSs]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminaspnet_state]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcwinmgmt]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcxmlprov]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverTServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeServiceTrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MicrosoftPlugPlay]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharingS24EventMonitor]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaDcomLaunch]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtmsSvcTlntSvr]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\odservMSIServer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAutoEventSystem]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDSessMgrNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RegSrvcServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessdmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiServiceRemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\S24EventMonitorCiSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENSAudioSrv]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\stisvcProtectedStorage]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermServiceBrowser]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksCryptSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmdmPmSNNetlogon]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(828)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
- - - - - - - > 'explorer.exe'(3700)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\btncopy.dll
c:\program files\Netropa\Multimedia Keyboard\nhkdll.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVG\AVG9\avgchsvx.exe
c:\program files\AVG\AVG9\avgrsx.exe
c:\program files\AVG\AVG9\avgcsrvx.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\AVG\AVG9\avgnsx.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\lotus\Notes\ntmulti.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\RTHDCPL.EXE
c:\program files\Windows Media Player\WMPNetwk.exe
c:\program files\Netropa\Multimedia Keyboard\TrayMon.exe
c:\program files\Netropa\Onscreen Display\OSD.exe
c:\windows\system32\wscntfy.exe
c:\windows\ATK0100\ATKOSD.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\progra~1\Intel\Wireless\Bin\Dot1XCfg.exe
c:\progra~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
.
**************************************************************************
.
Celkový čas: 2010-08-24 14:25:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-08-24 12:25
ComboFix2.txt 2010-08-24 07:08
ComboFix3.txt 2010-08-19 07:51
ComboFix4.txt 2010-08-18 09:54
ComboFix5.txt 2010-08-24 11:31
Před spuštěním: Volných bajtů: 13 913 042 944
Po spuštění: Volných bajtů: 13 902 598 144
- - End Of File - - 8D9D71D2E67C9A468B1BC0FAF69AC51B
ComboFix 10-08-23.02 - Richard 24.08.2010 13:36:30.6.1 - x86
Spuštěný z: c:\documents and settings\Richard\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Richard\Plocha\CFScript.txt
* Vytvořen nový Bod Obnovení
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_AAWSERVICECISVCSSDPSRV
-------\Legacy_SSPORT
-------\Legacy_WINRY41
-------\Service_aawserviceCiSvcSSDPSRV
-------\Service_F-Secure Standalone Minifilter
-------\Service_SSPORT
-------\Service_Winag16
-------\Service_Winag30
-------\Service_Winci74
-------\Service_Winek84
-------\Service_Winfk38
-------\Service_Winfl63
-------\Service_Wingm28
-------\Service_Winlr41
-------\Service_Winry41
-------\Service_Winsy16
-------\Service_Winub38
-------\Service_Winyg74
((((((((((((((((((((((((( Soubory vytvořené od 2010-07-24 do 2010-08-24 )))))))))))))))))))))))))))))))
.
2010-08-24 07:40 . 2010-08-24 07:41 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-08-24 07:33 . 2010-08-24 11:09 -------- d-----w- c:\program files\trend micro
2010-08-24 07:33 . 2010-08-24 07:34 -------- d-----w- C:\rsit
2010-08-20 06:12 . 2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
2010-08-20 02:56 . 2010-08-20 02:56 -------- d-----w- C:\$AVG
2010-08-20 02:33 . 2010-08-20 06:12 243024 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-08-20 02:33 . 2010-08-20 06:12 29584 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-08-20 02:33 . 2010-08-20 06:10 216400 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-08-20 02:33 . 2010-08-24 10:44 -------- d-----w- c:\windows\system32\drivers\Avg
2010-08-20 02:33 . 2010-08-20 02:33 -------- d-----w- c:\program files\AVG
2010-08-17 08:20 . 2010-08-17 08:20 390144 ----a-w- c:\windows\system32\CF10281.exe
2010-08-09 06:02 . 2010-08-09 06:02 -------- d-----w- C:\332d97db2a57536c3febfa53
2010-08-03 06:45 . 2010-08-03 06:45 -------- d-----w- C:\fc7d322ab63a425f02eb206f01
2010-08-03 06:44 . 2010-06-14 14:31 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-20 05:11 . 2007-01-10 07:50 -------- d-----w- c:\program files\AEBPR
2010-08-13 09:59 . 2004-08-18 12:00 82828 ----a-w- c:\windows\system32\perfc005.dat
2010-08-13 09:59 . 2004-08-18 12:00 440774 ----a-w- c:\windows\system32\perfh005.dat
2010-08-09 13:05 . 2006-08-07 19:40 -------- d-----w- c:\program files\ESET
2010-08-09 08:36 . 2009-03-23 14:29 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-16 10:32 . 2010-07-16 10:29 -------- d-----w- c:\program files\Karaoke Editor
2010-07-01 13:33 . 2007-09-12 20:08 -------- d-----w- c:\program files\Google
2010-06-30 12:33 . 2004-08-18 12:00 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-24 12:27 . 2004-08-18 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 09:02 . 2004-08-18 12:00 1851904 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2004-08-18 12:00 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2004-08-18 12:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 07:43 . 2004-08-18 12:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-03 02:41 . 2010-06-03 02:41 3600384 ----a-w- c:\windows\system32\GPhotos.scr
2008-09-29 07:33 . 2008-09-29 05:50 1450245 --sha-w- c:\windows\system32\AdobePDFh.sys
2006-05-03 10:06 . 2007-02-21 14:41 163328 --sh--r- c:\windows\system32\flvDX.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"T-Mobile Communication Centre"="c:\program files\T-Mobile\Web'n'walk Manager\Manager.exe" [2007-10-25 956296]
"Google Update"="c:\documents and settings\Richard\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-07-09 133104]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2007-01-05 204288]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-07-19 2403568]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IntelZeroConfig"="c:\program files\Intel\Wireless\bin\ZCfgSvc.exe" [2005-12-28 667718]
"IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2005-12-28 602182]
"EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2005-12-28 569413]
"HControl"="c:\windows\ATK0100\HControl.exe" [2006-04-17 110592]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-11-28 98304]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-11-28 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-11-28 118784]
"RTHDCPL"="RTHDCPL.EXE" [2006-02-10 15969280]
"MULTIMEDIA KEYBOARD"="c:\program files\Netropa\Multimedia Keyboard\MMKeybd.exe" [2003-09-30 425984]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-12 282624]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-06-16 221184]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2008-02-11 520192]
"ISUSScheduler"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe" [2004-06-16 81920]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-06-20 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"AVG9_TRAY"="c:\progra~1\AVG\AVG9\avgtray.exe" [2010-08-20 2065760]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-1-5 618557]
Print Monitor.lnk - c:\program files\canon\PrintMonitor\CPUPVIEW.exe [2010-5-11 81920]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-08-20 06:12 12536 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeVersionCue]
2004-03-25 10:35 1732608 ----a-w- c:\program files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-06-20 21:36 1207080 ----a-w- c:\progra~1\MICROS~2\wcescomm.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2004-06-16 05:03 221184 ----a-w- c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2004-06-16 05:03 81920 ----a-w- c:\program files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2006-12-05 21:55 54832 ----a-w- c:\program files\CyberLink\PowerDVD\Language\Language.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MP4 Player]
2008-11-06 17:23 772096 ----a-w- c:\program files\MP4 Player\Mp4Player.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 09:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nokia FastStart]
2008-12-03 09:33 2372840 ----a-w- c:\program files\Nokia\Nokia Music\NokiaMusic.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2006-09-12 06:40 282624 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2006-11-23 14:10 56928 ------w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Samsung PanelMgr]
2008-02-11 00:37 520192 ----a-w- c:\windows\Samsung\PanelMgr\SSMMgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vspdfprsrv.exe]
2006-05-19 16:40 884224 ----a-w- c:\program files\Visagesoft\eXPert PDF\vspdfprsrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"gusvcxmlprov"=2 (0x2)
"gusvcwinmgmt"=2 (0x2)
"gusvc"=3 (0x3)
"FLEXnet Licensing Service"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
R0 fsbts;fsbts;c:\windows\system32\Drivers\fsbts.sys [x]
R2 CiSvcSSDPSRV;Indexing Service CiSvcSSDPSRV;đ%€|x srv [x]
R2 clr_optimization_v2.0.50727_32Messenger;.NET Runtime Optimization Service v2.0.50727_X86 clr_optimization_v2.0.50727_32Messenger;đ%€|x srv [x]
R2 DhcpRpcSs;Klient DHCP DhcpRpcSs;đ%€|x srv [x]
R2 dmadminaspnet_state;Služba správy pro Správce logických disků dmadminaspnet_state;đ%€|x srv [x]
R2 dmadminWmdmPmSN;Služba správy pro Správce logických disků dmadminWmdmPmSN;đ%€|x srv [x]
R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 135664]
R2 IDriverTServiceLayer;InstallDriver Table Manager IDriverTServiceLayer;đ%€|x srv [x]
R2 LightScribeServiceTrkWksSchedule;LightScribeService Direct Disc Labeling Service LightScribeServiceTrkWksSchedule;đ%€|x srv [x]
R2 MicrosoftPlugPlay;Microsoft Office Groove Audit Service MicrosoftPlugPlay;đ%€|x srv [x]
R2 NetTcpPortSharingS24EventMonitor;Net.Tcp Port Sharing Service NetTcpPortSharingS24EventMonitor;đ%€|x srv [x]
R2 NlaDcomLaunch;Sledování umístění v síti (NLA) NlaDcomLaunch;đ%€|x srv [x]
R2 NOD32krnRpcLocator;NOD32 Kernel Service NOD32krnRpcLocator;đ%€|x srv [x]
R2 NtmsSvcTlntSvr;Vyměnitelné úložiště NtmsSvcTlntSvr;đ%€|x srv [x]
R2 odservMSIServer;Microsoft Office Diagnostics Service odservMSIServer;đ%€|x srv [x]
R2 RasAutoEventSystem;Správce automatického připojení pomocí vzdáleného přístupu RasAutoEventSystem;đ%€|x srv [x]
R2 RDSessMgrNOD32krnRpcLocator;Správce relací nápovědy ke vzdálené ploše RDSessMgrNOD32krnRpcLocator;đ%€|x srv [x]
R2 RegSrvcServiceLayer;Intel(R) PROSet/Wireless Registry Service RegSrvcServiceLayer;đ%€|x srv [x]
R2 RemoteAccessdmadminWmdmPmSN;Směrování a vzdálený přístup RemoteAccessdmadminWmdmPmSN;đ%€|x srv [x]
R2 RemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService;đ%€|x srv [x]
R2 RemoteAccessImapiServiceRemoteAccessImapiService;Směrování a vzdálený přístup RemoteAccessImapiService RemoteAccessImapiServiceRemoteAccessImapiService;đ%€|x srv [x]
R2 S24EventMonitorCiSvc;Intel(R) PROSet/Wireless Service S24EventMonitorCiSvc;đ%€|x srv [x]
R2 SENSAudioSrv;Oznamování systémových událostí SENSAudioSrv;đ%€|x srv [x]
R2 stisvcProtectedStorage;Načítání obrázků (WIA) stisvcProtectedStorage;đ%€|x srv [x]
R2 TermServiceBrowser;Terminálová služba TermServiceBrowser;đ%€|x srv [x]
R2 TrkWksCryptSvc;Klient služby sledování distribuovaných propojení TrkWksCryptSvc;đ%€|x srv [x]
R2 TrkWksSchedule;Klient služby sledování distribuovaných propojení TrkWksSchedule;đ%€|x srv [x]
R2 WmdmPmSNNetlogon;Služba sériového čísla přenosného zařízení WmdmPmSNNetlogon;đ%€|x srv [x]
R2 WmiNOD32krnRpcLocator;Rozšíření ovladače WMI WmiNOD32krnRpcLocator;đ%€|x srv [x]
R3 FagorPcmcia;Description of FagorPcmcia NT service here;c:\windows\system32\Drivers\FagorPcmcia.sys [2003-07-08 10087]
R3 FTCSER2K;FTDI USB Dual Serial Port Driver;c:\windows\system32\drivers\ftcser2k.sys [2004-03-23 56031]
R3 FTCUSB;FTCUSB.SYS FT2232C IO test driver;c:\windows\system32\drivers\ftcusb.sys [2004-05-05 43235]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2007-06-12 51040]
R3 lptwdmio;LPT port direct access service;c:\progra~1\HAM\UR5EQF~1\LPTWDMIO.SYS [x]
R3 memcard;Ovladač paměťových karet PCMCIA;c:\windows\system32\DRIVERS\memcard.sys [2001-08-17 8320]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
R3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-10-20 50704]
R3 packet_2.1;Packet Driver v2.1;c:\windows\system32\drivers\packet.sys [2000-10-24 10755]
R3 TVICHW32;TVICHW32;c:\windows\system32\DRIVERS\TVICHW32.SYS [2002-01-08 24576]
R4 gusvcwinmgmt;Google Updater Service gusvcwinmgmt;đ%€|x srv [x]
R4 gusvcxmlprov;Google Updater Service gusvcxmlprov;đ%€|x srv [x]
S1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2010-08-20 216400]
S1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2010-08-20 243024]
S1 hwinterface;hwinterface;c:\windows\system32\Drivers\hwinterface.sys [2006-12-04 3026]
S1 msikbd2k;Multimedia Keyboard Filter Driver;c:\windows\system32\DRIVERS\msikbd2k.sys [2001-12-20 6656]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [2010-08-20 308136]
S2 DLPortIO;DriverLINX Port I/O Driver;c:\windows\system32\DRIVERS\DLPortIO.SYS [1999-01-10 3584]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2005-09-07 9728]
S2 hercul;hercul;c:\windows\system32\DRIVERS\HERCUL.SYS [2002-07-10 4640]
S2 nhksrv;Netropa NHK Server;c:\program files\Netropa\Multimedia Keyboard\nhksrv.exe [2001-08-06 28672]
S3 SynMini;USB2.0 1.3M Web Cam;c:\windows\system32\Drivers\SynMini.sys [2005-10-03 720470]
S3 SynScan;USB2.0 1.3M Web Cam Still Image;c:\windows\system32\Drivers\SynScan.sys [2005-10-03 8278]
.
Obsah adresáře 'Naplánované úlohy'
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-26 06:15]
2010-08-24 c:\windows\Tasks\User_Feed_Synchronization-{C0CA6F35-C6E9-4200-A7FD-D7701CE743C2}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = <local>
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\program files\TRANSLATOR\WEBIE.DLL
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\program files\TRANSLATOR\WEBIE.DLL
TCP: {918D11F8-3B92-45F4-B7BB-51D21899DDE6} = 194.228.41.65,8.8.8.8
DPF: GEMINI IBS 32 GEMB Applet Security - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplsec-3.3.0.0.cab
DPF: GEMINI IBS 32 GEMB Applet Utilities - hxxps://ib.internetbanka.cz/ibs31/bin/IBS32-GEMB-aplutil-99.99.99.99.cab
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
DPF: {0A6112F2-F9D1-4FBF-A6EC-B67B22915873} - hxxp://sberna7.ifoto.cz/snadno-vlozit-fotografie/ilt/ilikethisPhotoUploader2.dll
DPF: {10132C0C-B4E5-11D5-AB9E-444553540000} - hxxp://www.visualradio.de/download/VRPCA.CAB
DPF: {45830FF9-D9E6-4F41-86ED-B266933D8E90} - hxxp://bossdomu.dyndns.org:5070/RtspVaPgDec.cab
DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} - hxxp://asp05.photoprintit.de/microsite/4860/defaults/activex/IPSUploader.cab
FF - ProfilePath - c:\documents and settings\Richard\Data aplikací\Mozilla\Firefox\Profiles\xu5nzrbm.default\
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-24 14:04
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CiSvcSSDPSRV]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v2.0.50727_32Messenger]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DhcpRpcSs]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminaspnet_state]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcwinmgmt]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gusvcxmlprov]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverTServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeServiceTrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MicrosoftPlugPlay]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharingS24EventMonitor]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaDcomLaunch]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtmsSvcTlntSvr]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\odservMSIServer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAutoEventSystem]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDSessMgrNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RegSrvcServiceLayer]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessdmadminWmdmPmSN]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccessImapiServiceRemoteAccessImapiService]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\S24EventMonitorCiSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENSAudioSrv]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\stisvcProtectedStorage]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermServiceBrowser]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksCryptSvc]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWksSchedule]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmdmPmSNNetlogon]
"ImagePath"="đ%€|x\01\09 srv"
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiNOD32krnRpcLocator]
"ImagePath"="đ%€|x\01\09 srv"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(828)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
- - - - - - - > 'explorer.exe'(3700)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\btncopy.dll
c:\program files\Netropa\Multimedia Keyboard\nhkdll.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVG\AVG9\avgchsvx.exe
c:\program files\AVG\AVG9\avgrsx.exe
c:\program files\AVG\AVG9\avgcsrvx.exe
c:\program files\Intel\Wireless\Bin\EvtEng.exe
c:\program files\Intel\Wireless\Bin\S24EvMon.exe
c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
c:\program files\AVG\AVG9\avgnsx.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\lotus\Notes\ntmulti.exe
c:\program files\Intel\Wireless\Bin\RegSrvc.exe
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\RTHDCPL.EXE
c:\program files\Windows Media Player\WMPNetwk.exe
c:\program files\Netropa\Multimedia Keyboard\TrayMon.exe
c:\program files\Netropa\Onscreen Display\OSD.exe
c:\windows\system32\wscntfy.exe
c:\windows\ATK0100\ATKOSD.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\progra~1\Intel\Wireless\Bin\Dot1XCfg.exe
c:\progra~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
.
**************************************************************************
.
Celkový čas: 2010-08-24 14:25:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-08-24 12:25
ComboFix2.txt 2010-08-24 07:08
ComboFix3.txt 2010-08-19 07:51
ComboFix4.txt 2010-08-18 09:54
ComboFix5.txt 2010-08-24 11:31
Před spuštěním: Volných bajtů: 13 913 042 944
Po spuštění: Volných bajtů: 13 902 598 144
- - End Of File - - 8D9D71D2E67C9A468B1BC0FAF69AC51B
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
vycisti PC s CCleanerom - restart - prescanuj PC s CureIT a napis aky je stav PC ?
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
OK jdu na to.
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Dobré ráno. Vycistil jsem PC pomocí CCleanera, prescanoval PC pomocí CureIT - to trvalo 16 hodin. CureIT Dr.Web našel jednoho trojana v souboru "ilikethisphotouploader2.dll" c:\windows\downloaded program files\ilikethisphotouploader2.dll , kterého přesunul do dokumenty/DoctorWeb/Quarantie. CureIT měl neaktivní (šedou) volbu smazání, takže nebylo co mazat. Vypnul jsem tedy CureIT, restartoval PC, poté jsem otevřel dokumenty/DoctorWeb/Quarantie a ručně jsem smazal (SHIFT+DEL) soubor ilikethisphotouploader2.dll. Stav PC se zdá být OK, ale ještě neříkám hop...
Moc děkuji za pomoc s potvůrkami v mém PC.
Moc děkuji za pomoc s potvůrkami v mém PC.
Re: Pomalé PC, odvirováno AVG, NOD32 odinstalovan
Mám teď odinstalovat Free AVG a nainstalovat placený NOD32? V době problémů s PC NOD32 viry či červy nenašel, ale AVG jich našlo 8.