Pred par dny pocitac navstivil znamy a natahl do neho nejakou havet - vyhledana (v te dobe rezidentni) Avirou (AVG nenasel nic). Konstatoval jsem pomerne dlouhe nacitani Firefoxu zatezujici procesor na 100% (+ obcasne zaseky pri jeho pouzivani, pricemz PC je: Win XP SP3 na Celeronu (2.4GHz) s 1 GB RAM a 10 GB z 20gb Céčka volné)), zvlastni trochu je, ze i prestoze FF vykazuje v TaskManageru 100% vyuziti procesoru, ostatni spustene aplikace v pohode bezi... :-/
Aktualizoval jsem tedy FF z 3.0.6 na nejnovejsi 3.6.8, povypínal většinu rozšíření (jako je dict.cc toolbar, AVG toolbar, AVG Safe Search, skype Extension...) a nechal jen Java Console (6.0.03), Extended StatusBar (1.5.5) a přidal AddBlock Plus a All-In-One Gestures ale i přesto občas zátěž přetrvává...
RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Mila at 2010-08-29 12:38:30
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 11 GB (56%) free of 20 GB
Total RAM: 1016 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:38:43, on 29.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
D:\INSTALL\RSIT.exe
C:\Program Files\trend micro\Mila.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGS\SPYBOT\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGS\SPYBOT\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGS\SPYBOT\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 3069996671
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 6221 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\WGASetup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-08-28 1619296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGS\SPYBOT\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2010-02-23 1664256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2010-02-23 1664256]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2003-03-11 114688]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2009-02-10 2957824]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-28 2065760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-28 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2003-03-11 315392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe"="C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe:*:Disabled:Sunbelt Kerio Firewall GUI"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\AVG\AVG9\avgemc.exe"="C:\Program Files\AVG\AVG9\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-08-29 12:35:38 ----D---- C:\Program Files\trend micro
2010-08-29 12:35:37 ----D---- C:\rsit
2010-08-29 10:16:53 ----D---- C:\Program Files\Altap Salamander
2010-08-28 18:21:27 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2010-08-28 17:58:24 ----A---- C:\WINDOWS\system32\drivers\avgtdix.sys
2010-08-28 17:58:12 ----A---- C:\WINDOWS\system32\drivers\avgmfx86.sys
2010-08-28 17:58:12 ----A---- C:\WINDOWS\system32\drivers\avgldx86.sys
2010-08-28 17:58:10 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-08-28 17:58:01 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVG Security Toolbar
2010-08-28 17:57:18 ----D---- C:\Program Files\AVG
2010-08-28 17:57:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg9
2010-08-28 16:06:10 ----D---- C:\Program Files\CCleaner
2010-08-28 15:48:00 ----D---- C:\Program Files\IObit
2010-08-28 15:48:00 ----D---- C:\Documents and Settings\Mila\Data aplikací\IObit
======List of files/folders modified in the last 1 months======
2010-08-29 12:35:53 ----D---- C:\WINDOWS\Prefetch
2010-08-29 12:35:38 ----RD---- C:\Program Files
2010-08-29 12:30:54 ----D---- C:\WINDOWS\system32\KB905474
2010-08-29 12:00:27 ----D---- C:\WINDOWS\Temp
2010-08-29 12:00:26 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-29 11:58:53 ----SHD---- C:\WINDOWS\CSC
2010-08-29 11:32:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-08-29 11:22:33 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-29 11:08:12 ----D---- C:\Program Files\Mozilla Firefox
2010-08-29 11:04:24 ----D---- C:\WINDOWS\system32\Restore
2010-08-29 10:28:57 ----D---- C:\WINDOWS
2010-08-29 10:26:35 ----SHD---- C:\WINDOWS\Installer
2010-08-29 10:21:06 ----AD---- C:\Program Files\Altap Salamander 2.5
2010-08-29 10:20:17 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-08-29 10:20:13 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-08-29 10:20:13 ----D---- C:\WINDOWS\SoftwareDistribution
2010-08-29 10:20:12 ----D---- C:\WINDOWS\system32
2010-08-29 06:50:26 ----D---- C:\Documents and Settings\Mila\Data aplikací\Spyware Terminator
2010-08-28 18:21:55 ----D---- C:\WINDOWS\system32\drivers
2010-08-28 17:56:57 ----D---- C:\WINDOWS\WinSxS
2010-08-28 17:55:12 ----SD---- C:\Documents and Settings\Mila\Data aplikací\Microsoft
2010-08-28 16:07:36 ----D---- C:\Documents and Settings\Mila\Data aplikací\Media Player Classic
2010-08-28 16:07:26 ----D---- C:\WINDOWS\Minidump
2010-08-28 16:07:26 ----D---- C:\WINDOWS\Debug
2010-08-27 06:09:25 ----D---- C:\Documents and Settings\Mila\Data aplikací\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-28 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-28 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-28 243024]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 fwdrv;Firewall Driver; C:\WINDOWS\system32\drivers\fwdrv.sys [2006-07-18 284184]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 khips;Kerio HIPS Driver; C:\WINDOWS\system32\drivers\khips.sys [2006-07-18 91672]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-12-07 56816]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-03-13 112288]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-03-13 78496]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2003-03-13 90395]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:\WINDOWS\system32\DRIVERS\R8139n51.SYS [2003-07-31 46976]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 avg9emc;AVG Free E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-08-28 921952]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-28 308136]
R2 KPF4;Sunbelt Kerio Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe [2006-07-18 1205784]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2009-02-10 1097216]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe [2010-02-23 369920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-01-15 266240]
-----------------EOF-----------------
Avira Log:
Kód: Vybrat vše
24.8.2010 22:32 [Scanner] Malware found
The file 'C:\Documents and Settings\Mila\Local Settings\Temporary Internet
Files\Content.IE5\GX2NSHU3\play2[1].htm'
contained a virus or unwanted program 'HEUR/HTML.Malware' [heuristic]
Action(s) taken:
The detection was classified as suspicious.
The file was moved to '4cd52cd1.qua'!
24.8.2010 22:32 [Scanner] Malware found
The file 'C:\Documents and Settings\Mila\Local Settings\Temporary Internet
Files\Content.IE5\056BK1YB\shemales[1].htm'
contained a virus or unwanted program 'HEUR/HTML.Malware' [heuristic]
Action(s) taken:
The detection was classified as suspicious.
The file was moved to '4cd92ccc.qua'!
24.8.2010 19:41 [Guard] Malware found
Virus or unwanted program 'HEUR/HTML.Malware [heuristic]'
detected in file 'C:\Documents and Settings\Mila\Local Settings\Temporary
Internet Files\Content.IE5\056BK1YB\shemales[1].htm.
Action performed: Allow access
24.8.2010 19:40 [Guard] Malware found
Virus or unwanted program 'HEUR/HTML.Malware [heuristic]'
detected in file 'C:\Documents and Settings\Mila\Local Settings\Temporary
Internet Files\Content.IE5\GX2NSHU3\asian[1].htm.
Action performed: Allow access
24.8.2010 19:35 [Guard] Malware found
Virus or unwanted program 'HEUR/HTML.Malware [heuristic]'
detected in file 'C:\Documents and Settings\Mila\Local Settings\Temporary
Internet Files\Content.IE5\GX2NSHU3\play2[1].htm.
Action performed: Allow access
23.8.2010 5:41 [Updater] Update not carried out
The update of ODIN (127.0.0.1) from http://perspeak.avira-update.com/update
failed.
An error occurred during downloading
No new files were loaded.
22.8.2010 19:58 [Guard] Malware found
Virus or unwanted program 'WORM/Conficker.Autorun.Gen [worm]'
detected in file 'E:\autorun.inf.
Action performed: Delete file
22.8.2010 19:57 [Guard] Malware found
Virus or unwanted program 'WORM/Conficker.Autorun.Gen [worm]'
detected in file 'E:\autorun.inf.
Action performed: Allow access
Kód: Vybrat vše
Logfile of Spyware Terminator v2.1.1.314 (db:1.0.218.880)
Scan Time: 29.8.2010 11:24:36 length: 25 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Fast_Spyware_Scan
Scanned Objects: 3099 (Critical:0)
Filter: No System items, No Safe items, No Invalid items
Running Processes
avgchsvx.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgchsvx.exe
avgrsx.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgrsx.exe
avgcsrvx.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgcsrvx.exe
sched.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\sched.exe
avguard.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\avguard.exe
avgwdsvc.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgwdsvc.exe
kpf4ss.exe [Sunbelt Software] : C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
kpf4gui.exe [Sunbelt Software] : C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
hkcmd.exe [Intel Corporation] : C:\WINDOWS\system32\hkcmd.exe
SOUNDMAN.EXE [Realtek Semiconductor Corp.] : C:\WINDOWS\SOUNDMAN.EXE
avgtray.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgtray.exe
avgemc.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgemc.exe
avgnsx.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgnsx.exe
avgcsrvx.exe [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgcsrvx.exe
kpf4gui.exe [Sunbelt Software] : C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar = http://www.google.com/ie
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
R - HKLM\Software\Microsoft\Internet Explorer\Search, SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
R - HKLM\Software\Microsoft\Internet Explorer\Search, CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
R - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony, DomainName =
BHO
02 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgssie.dll
02 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - [Safer Networking Limited] : C:\PROGS\SPYBOT\SDHelper.dll
02 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - [Sun Microsystems, Inc.] : C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
02 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - : C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
Toolbars
03 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - : C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
StartUps
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, HotKeysCmds : [Intel Corporation] : C:\WINDOWS\system32\hkcmd.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SoundMan : [Realtek Semiconductor Corp.] : C:\WINDOWS\SOUNDMAN.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AVG9_TRAY : [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgtray.exe
Shell Extensions
- {42042206-2D85-11D3-8CFF-005004838597} - [Microsoft Corporation] : C:\Program Files\Microsoft Office\Office10\msohev.dll
- {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} - [Sun Microsystems, Inc.] : C:\Program Files\OPENOFFICE.ORG 3\BASIS\PROGRAM\SHLXTHDL\SHLXTHDL.DLL
- {087B3AE3-E237-4467-B8DB-5A38AB959AC9} - [Sun Microsystems, Inc.] : C:\Program Files\OPENOFFICE.ORG 3\BASIS\PROGRAM\SHLXTHDL\SHLXTHDL.DLL
- {63542C48-9552-494A-84F7-73AA6A7C99C1} - [Sun Microsystems, Inc.] : C:\Program Files\OPENOFFICE.ORG 3\BASIS\PROGRAM\SHLXTHDL\SHLXTHDL.DLL
- {3B092F0C-7696-40E3-A80F-68D74DA84210} - [Sun Microsystems, Inc.] : C:\Program Files\OPENOFFICE.ORG 3\BASIS\PROGRAM\SHLXTHDL\SHLXTHDL.DLL
NeroCoverEdLiveIcons Class - {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} - [Nero AG] : C:\Program Files\Nero\Nero 7\Nero CoverDesigner\CoverEdExtension.dll
Shell Extension for Malware scanning - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} - [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\shlext.dll
AVG Shell Extension Class - {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} - [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgse.dll
Shell Extension for Altap Salamander 2.53 - {C78B613F-F3EA-11D2-94A1-00E0292A01E3} - [ALTAP] : C:\Program Files\Altap Salamander\plugins\salamext.dll
Protocol Handler
avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - : C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
Microsoft PKM KnowledgePluggable Class - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - [Microsoft Corporation] : C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL
XPLPPFilter Class - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgpp.dll
Data Page Pluggable Protocol mso-offdap Handler - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - [Microsoft Corporation] : C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL
Services
23 - [Realtek Semiconductor Corp.] : C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\sched.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\avguard.exe
23 - [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgemc.exe
23 - [AVG Technologies CZ, s.r.o.] : C:\Program Files\AVG\AVG9\avgwdsvc.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir Desktop\avgio.sys
23 - [AVG Technologies CZ, s.r.o.] : C:\WINDOWS\system32\Drivers\avgldx86.sys
23 - [AVG Technologies CZ, s.r.o.] : C:\WINDOWS\system32\Drivers\avgmfx86.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\avgntflt.sys
23 - [AVG Technologies CZ, s.r.o.] : C:\WINDOWS\system32\Drivers\avgtdix.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\avipbb.sys
23 - [Sunbelt Software] : C:\WINDOWS\system32\drivers\fwdrv.sys
23 - [Intel Corporation] : C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
23 - [Sunbelt Software] : C:\WINDOWS\system32\drivers\khips.sys
23 - [Sunbelt Software] : C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
23 - [Realtek Semiconductor Corporation ] : C:\WINDOWS\system32\DRIVERS\R8139n51.SYS
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
23 - [Intel Corporation] : C:\WINDOWS\system32\drivers\ialmsbw.sys
23 - [Intel Corporation] : C:\WINDOWS\system32\drivers\ialmkchw.sys
Winlogon Notify
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter, DLLName : [AVG Technologies CZ, s.r.o.] : C:\WINDOWS\system32\avgrsstx.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui, DLLName : [Intel Corporation] : C:\WINDOWS\system32\igfxsrvc.dll
IE URL Search Hooks
AVG Security Toolbar BHO - {{A3BC75A2-1F87-4686-AA43-5347D756017C}} - : C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
Advanced Files Report
%SYSDIR%\avgrsstx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=D2A2B291414EB3D256B9E49331ED06C3 SIZE=12536
%PROGRAMFILES%\AVG\AVG9\avgchsvx.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=031DD8DBD4B958B5765C8C111CB1EA03 SIZE=1101152
%PROGRAMFILES%\AVG\AVG9\avglogx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=4A2FC89ED82ABE547DDE1B7443C5F321 SIZE=313696
%PROGRAMFILES%\AVG\AVG9\avgchjwx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=A0C86DD4ADAD6C115322977159B32E19 SIZE=557920
%PROGRAMFILES%\AVG\AVG9\avgcertx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=6ABB7C1BB86021268BFD0DAC655BED2E SIZE=623456
%PROGRAMFILES%\AVG\AVG9\avgclitx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=5412B19162D52E9DE9E83534613E664E SIZE=403296
%PROGRAMFILES%\AVG\AVG9\avgrsx.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=5654DB4719A3C52684A20C1CA443BF8F SIZE=515424
%PROGRAMFILES%\AVG\AVG9\avgcclix.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=7F65F6F91690074AC3B02C14A10FCCCE SIZE=461152
%PROGRAMFILES%\AVG\AVG9\avgcsrvx.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=78EF60FECB03144780151FD934BBAB94 SIZE=723296
%PROGRAMFILES%\AVG\AVG9\avgcorex.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=48E09D07626921ADDD121725515B5AFD SIZE=4371296
%PROGRAMFILES%\AVG\AVG9\avgchclx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=F284AD3887C458312797FD1F1A920498 SIZE=300896
%PROGRAMFILES%\Avira\AntiVir Desktop\sched.exe [Avira GmbH] [AntiVir Desktop] MD5=9015BC03F62940527EC92D45EE89E46F SIZE=108289
%PROGRAMFILES%\Avira\AntiVir Desktop\schedr.dll [Avira GmbH] [AntiVir Desktop] MD5=6F4600130B890BC8559D05BE9195E869 SIZE=6913
%PROGRAMFILES%\Avira\AntiVir Desktop\avevtlog.dll [Avira GmbH] [AntiVir Desktop] MD5=8C3372E134E788CCB190913075619948 SIZE=167169
%PROGRAMFILES%\Avira\AntiVir Desktop\sqlite3.dll [] [SQLite Database] MD5=22064F0107F144ACAA6BF444EBACA212 SIZE=326401
%PROGRAMFILES%\Avira\AntiVir Desktop\avguard.exe [Avira GmbH] [AntiVir Desktop] MD5=B8720A787C1223492E6F319465E996CE SIZE=185089
%PROGRAMFILES%\Avira\AntiVir Desktop\guardmsg.dll [Avira GmbH] MD5=C1CFBD76FA002C045A01628C5C0276D2 SIZE=29441
%PROGRAMFILES%\Avira\AntiVir Desktop\AVPREF.DLL [Avira GmbH] [AntiVir Desktop] MD5=FB8E5AFBD9F99446888ED1DF354AD28B SIZE=44289
%PROGRAMFILES%\Avira\AntiVir Desktop\SMTPLIB.DLL [Avira GmbH] [AntiVir Workstation] MD5=4DAD5D05D96D57DA36F61C40D3FB7241 SIZE=28417
%PROGRAMFILES%\Avira\AntiVir Desktop\AVGIO.DLL [Avira GmbH] MD5=E6279DB37754828A2F5016FDEEA25A0F SIZE=71937
%PROGRAMFILES%\Avira\AntiVir Desktop\aecore.dll [Avira GmbH] [AVCORE] MD5=ABBCB1867AD6C83615EF99220B25A3AD SIZE=192887
%PROGRAMFILES%\Avira\AntiVir Desktop\aevdf.dll [Avira GmbH] [AVVDF] MD5=100CAAF3542FB51FECA9C09DB1CB940D SIZE=106868
%PROGRAMFILES%\Avira\AntiVir Desktop\aescript.dll [Avira GmbH] [AVSCRIPT] MD5=56CFA11E3FA85563B51D9779BDC46909 SIZE=1364346
%PROGRAMFILES%\Avira\AntiVir Desktop\aescn.dll [Avira GmbH] [AVSCN] MD5=2EE40BD646AE9E2AEA3282F2C86A05AD SIZE=127347
%PROGRAMFILES%\Avira\AntiVir Desktop\aesbx.dll [Avira GmbH] [AVSBX] MD5=F3A07C983A0EE71D150BCFF15F6B40EC SIZE=254324
%PROGRAMFILES%\Avira\AntiVir Desktop\aerdl.dll [Avira GmbH] [AVRDL] MD5=C56E00C5335383893257C5B1C1334D9C SIZE=614772
%PROGRAMFILES%\Avira\AntiVir Desktop\aepack.dll [Avira GmbH] [AVPACK] MD5=B2E908FFA076318BE80815A7DEA6FC83 SIZE=471412
%PROGRAMFILES%\Avira\AntiVir Desktop\unacev2.dll [ACE Compression Software] [UNACE - freeware ACE extraction component] MD5=F9622B84D0050D590CE71FD882A130EE SIZE=77312
%PROGRAMFILES%\Avira\AntiVir Desktop\aeoffice.dll [Avira GmbH] [AVOFFICE] MD5=76AE96973EECFA76A88264FD873E5B26 SIZE=201081
%PROGRAMFILES%\Avira\AntiVir Desktop\aeheur.dll [Avira GmbH] [AVHEUR] MD5=FAAF2A23F25541065814C8C8AFE184DD SIZE=2867574
%PROGRAMFILES%\Avira\AntiVir Desktop\aehelp.dll [Avira GmbH] [AVHELP] MD5=CE7E315D7628E07DEAB1BC0183C5696F SIZE=242038
%PROGRAMFILES%\Avira\AntiVir Desktop\aegen.dll [Avira GmbH] [AVGEN] MD5=E72536753ABA74ACEEF3EF28B65DDFF0 SIZE=397684
%PROGRAMFILES%\Avira\AntiVir Desktop\aeemu.dll [Avira GmbH] [AVEMU] MD5=2364E3D43E8839AE6F47D4CA9AE05762 SIZE=393588
%PROGRAMFILES%\Avira\AntiVir Desktop\aebb.dll [Avira GmbH] [AVBB] MD5=7E3D9E781E7D2E099BD424B188FBC9AA SIZE=53618
%PROGRAMFILES%\Avira\AntiVir Desktop\avipc.dll [Avira GmbH] [AntiVir Workstation] MD5=2013FBA8166C3EF321F15917A4957B9F SIZE=62209
%PROGRAMFILES%\AVG\AVG9\avgwdsvc.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=C4D15594DB5BE042D3346EA58DF87D89 SIZE=308136
%PROGRAMFILES%\AVG\AVG9\avgwd.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=EC007398F0E040017965A4AE378477EE SIZE=1518904
%PROGRAMFILES%\AVG\AVG9\avgcfgx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=37C58F3C25745E83BF5E141C3E7F555E SIZE=942432
%PROGRAMFILES%\AVG\AVG9\avgamnot.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=6045FD764EA16155A7E28895FB442940 SIZE=278368
%PROGRAMFILES%\AVG\AVG9\avgsched.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=F34780EC4BA8D315F415D8DDAACA61D9 SIZE=539488
%PROGRAMFILES%\AVG\AVG9\avgwdwsc.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=1768312EF86F64620ABBCE147BDB764D SIZE=423520
%PROGRAMFILES%\AVG\AVG9\avglngx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=6E369ACB5D93EC872CABB3FB066FE96F SIZE=303968
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\kpf4ss.exe [Sunbelt Software] [Sunbelt Kerio Personal Firewall] MD5=9EF600C64435CCFDEA01C991289E76EC SIZE=1205784
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\PocoFoundation.dll [] MD5=8342EA2FB9B9DED9634D5E684A81AF0A SIZE=859648
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\PocoXML.dll [] MD5=668AAB2221F2C588A2200543CCF14FEA SIZE=470016
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\PocoExt.dll [] MD5=50764019F146982007AC5DEF44971708 SIZE=18432
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\kfe.dll [Sunbelt Software] [Sunbelt Firewall Engine] MD5=EE9BEA053E2154E0A6FDA843E80B3BF1 SIZE=376832
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\LIBEAY32.dll [] MD5=96373C802D27D4F942B3D8E24F1CBDCE SIZE=827392
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\SSLEAY32.dll [] MD5=E4DF774312A6C2215D36F42E2CE8D4D8 SIZE=155648
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\curllib.dll [The cURL library, http://curl.haxx.se/] [The cURL library] MD5=8156230FCFFADDB2A6B4623D64CE8282 SIZE=290816
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\kwsapi.dll [Sunbelt Software] [Sunbelt Firewall Engine] MD5=D062CF413129D1E69004C0890C57EB6A SIZE=86016
%PROGRAMFILES%\Sunbelt Software\Personal Firewall\kpf4gui.exe [Sunbelt Software] [Sunbelt Kerio Personal Firewall] MD5=B91383C52C1F3442E06E84276CB9EAAF SIZE=1955352
%SYSDIR%\hccutils.DLL [Intel Corporation] [Intel(R) Common User Interface] MD5=D2805723C9D5BA94E81A01D8AD0657CC SIZE=118784
%SYSDIR%\igfxdev.dll [Intel Corporation] [Intel(R) Common User Interface] MD5=3E42BA7F24390F4A61E3544AD79E61E5 SIZE=147456
%SYSDIR%\igfxsrvc.dll [Intel Corporation] [Intel(R) Common User Interface] MD5=959B435B73C2AB7807161E99D80F68CC SIZE=315392
%SYSDIR%\igfxhk.dll [Intel Corporation] [Intel(R) Common User Interface] MD5=E807D618BF2A6D612B9D513BBCFCB2F2 SIZE=118784
%SYSDIR%\igfxres.dll [Intel Corporation] [Intel(R) Common User Interface] MD5=86AE3D56F55390F9BC2ADA765D1F09F1 SIZE=155648
%PROGRAMFILES%\AVG\AVG9\AVGUIRES.DLL [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=FBF5B6F86E07FA0A9537B24FE04AA7EA SIZE=3951968
%PROGRAMFILES%\AVG\AVG9\avgemc.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=AA054CD537357F03D5BA6ABA7562B35F SIZE=921952
%PROGRAMFILES%\AVG\AVG9\libsasl.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=6BA10DE5FC60333BF2A7AFC94743F8CB SIZE=53600
%PROGRAMFILES%\AVG\AVG9\avgapix.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=CCEAE95F3EC435D8C2603BB42CAF41DD SIZE=2069344
%PROGRAMFILES%\AVG\AVG9\avgscanx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=61C8FAE993D723E19078D4CAE8FC47A3 SIZE=257888
%PROGRAMFILES%\AVG\AVG9\avgsrmx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=E230DB9A3032E6D2BE44D61285085365 SIZE=598368
%PROGRAMFILES%\AVG\AVG9\avgvvx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=01C10B077D464FEA240A7B1B71A123BC SIZE=644448
%PROGRAMFILES%\AVG\AVG9\avgmvflx.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=5A7D4F5D293B48584AE2112ED5DB4132 SIZE=231264
%PROGRAMFILES%\AVG\AVG9\saslcrammd5.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=5A3F5083157788A4952AADB755AF7B1E SIZE=18272
%PROGRAMFILES%\AVG\AVG9\sasldigestmd5.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=FF42698F85DBEFF3729821D8A0E48B20 SIZE=36704
%PROGRAMFILES%\AVG\AVG9\sasllogin.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=1DA5DAAF359873246D9642C65432B163 SIZE=16736
%PROGRAMFILES%\AVG\AVG9\saslplain.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=6DE53AF6695AA88E5D75C06014D84FA3 SIZE=16736
%PROGRAMFILES%\AVG\AVG9\avgnsx.exe [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=7C8E0F172E0BE4F9A25E766F84D22E64 SIZE=620896
oodbs []
deskpan.dll []
%PROGRAMFILES%\Microsoft Office\Office10\msohev.dll [Microsoft Corporation] [Microsoft Office XP] MD5=72A0DF237F9118F18AD136E99266E816 SIZE=79264
%PROGRAMFILES%\OPENOFFICE.ORG 3\BASIS\PROGRAM\SHLXTHDL\SHLXTHDL.DLL [Sun Microsystems, Inc.] MD5=257E5893E31DFF658F9C5543C80AAC29 SIZE=344064
%PROGRAMFILES%\Nero\Nero 7\Nero CoverDesigner\CoverEdExtension.dll [Nero AG] [Cover Designer] MD5=3538FF8336AD44E1BB51A4493BB34C32 SIZE=1953792
%PROGRAMFILES%\Avira\AntiVir Desktop\shlext.dll [Avira GmbH] [AntiVir Desktop] MD5=318B0D2CF5470F724B217498553D36E6 SIZE=286977
%PROGRAMFILES%\AVG\AVG9\avgse.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=34028074A7BC35E22697058BE5E04645 SIZE=125280
%PROGRAMFILES%\Altap Salamander\plugins\salamext.dll [ALTAP] [Altap Salamander] MD5=7053832EE0133E1696F5723E2E416B7D SIZE=9728
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek Semiconductor Corp.] [Windows (R) WDM driver for Realtek AC'97 Audio(HRTF data Copyright 1994 by MIT Media Lab)] MD5=DD8520280304B6145A6BE31008748C7C SIZE=4122368
%SYSDIR%\svchost.exe -k netsvcs []
%PROGRAMFILES%\Avira\AntiVir Desktop\avgio.sys [Avira GmbH] [AntiVir] MD5=6A646C46B9415E13095AA9B352040A7A SIZE=11608
%SYSDIR%\Drivers\avgldx86.sys [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=B8C187439D27ABA430DD69FDCF1FA657 SIZE=216400
%SYSDIR%\Drivers\avgmfx86.sys [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=53B3F979930A786A614D29CAFE99F645 SIZE=29584
%SYSDIR%\DRIVERS\avgntflt.sys [Avira GmbH] [AntiVir Workstation] MD5=14FE36D8F2C6A2435275338D061A0B66 SIZE=56816
%SYSDIR%\Drivers\avgtdix.sys [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=22E3B793C3E61720F03D3A22351AF410 SIZE=243024
%SYSDIR%\DRIVERS\avipbb.sys [Avira GmbH] MD5=452E382340BB0C5E694ED9D3625356D0 SIZE=96104
%SYSDIR%\svchost -k DcomLaunch []
%SYSDIR%\svchost.exe -k NetworkService []
%SYSDIR%\drivers\fwdrv.sys [Sunbelt Software] [Sunbelt Firewall Engine] MD5=1FF2EEF447A177DF2C544B80F8F7F879 SIZE=284184
%SYSDIR%\DRIVERS\ialmnt5.sys [Intel Corporation] [Intel Graphics Accelerator Drivers for Windows NT(R)] MD5=A79029861CB69CD3CF4EAB9EBFEE32DD SIZE=90395
%SYSDIR%\drivers\khips.sys [Sunbelt Software] [Sunbelt Firewall Engine] MD5=304CE9FB3D64CAA07B940BEF4F8C2DCD SIZE=91672
%SYSDIR%\svchost.exe -k LocalService []
%SYSDIR%\svchost -k rpcss []
%SYSDIR%\DRIVERS\R8139n51.SYS [Realtek Semiconductor Corporation ] [Realtek RTL8139/810x Family Fast Ethernet NIC ] MD5=2EF9C0DC26B30B2318B1FC3FAA1F0AE7 SIZE=46976
%SYSDIR%\DRIVERS\ssmdrv.sys [Avira GmbH] MD5=654DFEA96BC82B4ACDA4F37E5E4A3BBF SIZE=28520
%SYSDIR%\drivers\ialmsbw.sys [Intel Corporation] [Intel Graphics Accelerator Drivers for Windows NT(R)] MD5=3EE36328E860FBF102B54608A055C6BE SIZE=112288
%SYSDIR%\drivers\ialmkchw.sys [Intel Corporation] [Intel Graphics Accelerator Drivers for Windows NT(R)] MD5=17F39A1916733ED228EB46AD67C35426 SIZE=78496
%COMMONFILES%\Microsoft Shared\Web Folders\PKMCDO.DLL [Microsoft Corporation] [SharePointPortalServer] MD5=A5944428A77CE0E5337B40F5FC12E327 SIZE=872448
%PROGRAMFILES%\AVG\AVG9\avgpp.dll [AVG Technologies CZ, s.r.o.] [AVG Internet Security] MD5=3D9895B981AFAC3CE2ABE9C0A63D949A SIZE=91488
%COMMONFILES%\Microsoft Shared\Web Components\10\OWC10.DLL [Microsoft Corporation] [Microsoft Office XP] MD5=6C1F34B3609BBD42E9B4A2A25548FAF0 SIZE=7445600
End of Report