kernel stack debugger error
Napsal: 29 zář 2010 18:13
Dobrý den,
dnes jsme si přinesli domu nové PC od známého, který počítačům vůbec nerozumí a nějakou dobu ho používal. Nepoužíval pravděpodobně žádný antivir a nic podobného. My také pc moc nerozumíme a máme pocit, že není vše úplně v pořádku.
Prý je něco s grafickou kartou, ale to nevíme jistě. Často nám počítač spadne a objeví se modrá obrazovka, kde je napsáno něco jako kernel stack debugger error a potom at odinstalujeme nějaký software apod. Oba počítačům příliš nerozumíjme, a proto se obracíme na odborníky.
Přikládáme log z RSITU.
Moc děkujeme za pomoc, Bubeníkovi
Logfile of random's system information tool 1.08 (written by random/random)
Run by Vašek at 2010-09-29 19:05:29
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 140 GB (92%) free of 152 GB
Total RAM: 1023 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:05:36, on 29.9.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ANIWConnService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Vašek.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [D-Link D-Link Wireless G DWL-G122_DWA-110] C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe
O4 - HKLM\..\Run: [WZCSLDR2] C:\Program Files\D-Link\DWL-G122_DWA-110\WZCSLDR2.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Vašek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ANIWConn Service (ANIWConnService) - Unknown owner - C:\WINDOWS\system32\ANIWConnService.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
--
End of file - 5319 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1123561945-1957994488-839522115-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1123561945-1957994488-839522115-1003UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-09-23 1619296]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-27 16208384]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"GBB36X Configure"=C:\WINDOWS\system32\JMRaidTool.exe [2006-06-02 385024]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-07 2065760]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"ANIWZCS2Service"=C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe [2009-08-21 98304]
"D-Link D-Link Wireless G DWL-G122_DWA-110"=C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe [2009-09-18 1708032]
"WZCSLDR2"=C:\Program Files\D-Link\DWL-G122_DWA-110\WZCSLDR2.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-18 15360]
"Google Update"=C:\Documents and Settings\Vašek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-08-07 136176]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-11-16 139264]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-04-01 486856]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-07 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG9\avgemc.exe"="C:\Program Files\AVG\AVG9\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\VideoConverter_Setup.exe"="C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\VideoConverter_Setup.exe:*:Enabled:Video Converter"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-09-29 19:05:30 ----D---- C:\Program Files\trend micro
2010-09-29 19:05:29 ----D---- C:\rsit
2010-09-28 19:03:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-09-27 20:04:23 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-09-27 20:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-09-27 00:59:42 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-09-27 00:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-09-27 00:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-09-27 00:59:30 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-09-27 00:59:26 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-09-27 00:59:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-09-27 00:59:18 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-09-27 00:59:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-09-27 00:59:06 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-09-27 00:59:01 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2010-09-27 00:58:58 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-09-27 00:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-09-27 00:58:52 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-09-27 00:58:48 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-09-27 00:58:44 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-09-27 00:58:40 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-09-27 00:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-09-27 00:58:20 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-09-27 00:58:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-09-27 00:58:13 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-09-27 00:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-09-27 00:58:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-09-27 00:58:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-09-27 00:57:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-09-27 00:57:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-09-27 00:57:49 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-09-27 00:57:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-09-27 00:57:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-09-27 00:57:29 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-09-27 00:57:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-09-27 00:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-09-27 00:57:16 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-09-27 00:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-09-27 00:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-09-27 00:57:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-09-27 00:57:00 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-09-27 00:56:56 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-09-27 00:56:52 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-09-27 00:56:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-09-27 00:56:44 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-09-27 00:56:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-09-27 00:56:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-09-27 00:56:31 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-09-27 00:56:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-09-27 00:56:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-09-27 00:56:21 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-09-27 00:56:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-09-27 00:56:10 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-09-27 00:56:06 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-09-27 00:56:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-09-27 00:55:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-09-27 00:55:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-09-27 00:55:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-09-27 00:55:42 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-09-27 00:55:38 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-09-27 00:55:34 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-09-27 00:55:30 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-09-27 00:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-09-27 00:55:24 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-09-27 00:55:20 ----D---- C:\WINDOWS\ServicePackFiles
2010-09-27 00:55:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-09-27 00:55:14 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-09-27 00:55:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-09-27 00:55:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-09-27 00:55:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-09-27 00:54:56 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-09-27 00:54:52 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-09-27 00:54:48 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-09-27 00:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-09-27 00:54:35 ----HDC---- C:\WINDOWS\$NtUninstallKB982381$
2010-09-27 00:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-09-27 00:54:25 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-09-27 00:54:21 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-09-27 00:54:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-09-26 18:02:02 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-09-26 17:59:47 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-09-26 17:54:42 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-09-26 17:54:22 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-09-26 17:49:21 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-09-26 17:49:07 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-09-26 17:49:07 ----D---- C:\WINDOWS\system32\PreInstall
2010-09-26 17:49:06 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-09-26 17:49:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-09-26 17:38:35 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-09-26 11:28:19 ----D---- C:\Program Files\VideoConverter
2010-09-26 10:46:05 ----D---- C:\Program Files\DsNET Corp
2010-09-22 20:40:36 ----A---- C:\WINDOWS\NeroDigital.ini
2010-09-12 19:14:30 ----A---- C:\Documents and Settings\Vašek\Data aplikací\ANICONFIG_{B4196C4B-4DCC-4D7B-8B8E-D5599FE6A47C}.ini
2010-09-12 19:12:39 ----A---- C:\WINDOWS\system32\ANIWConnService.exe
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\wnicapi.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\wlanapp.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\odSupp_M.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\AQCKGen.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\ANIWZCS2.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\ANICtl.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\aIPH.dll
2010-09-12 19:12:17 ----D---- C:\Program Files\ANI
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIOApi.dll
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIO64.sys
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\anio4.sys
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIO.sys
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\ssleay32.dll
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\libeay32.dll
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\ANIWPS.exe
2010-09-12 19:11:57 ----A---- C:\WINDOWS\system32\ANIOWPS.dll
2010-09-12 19:11:04 ----A---- C:\WINDOWS\system32\RaCoInst.dll
2010-09-12 19:11:04 ----A---- C:\WINDOWS\system32\drivers\Drt2870.sys
2010-09-12 19:11:03 ----A---- C:\WINDOWS\system32\rt25u98.sys
2010-09-12 19:11:03 ----A---- C:\WINDOWS\system32\Dr71WU98.sys
2010-09-12 19:10:58 ----D---- C:\Program Files\D-Link
2010-09-12 19:10:37 ----D---- C:\Documents and Settings\Vašek\Data aplikací\InstallShield
2010-09-06 20:53:37 ----D---- C:\Program Files\Creative
2010-09-06 20:53:37 ----A---- C:\WINDOWS\system32\eax.dll
2010-09-06 20:50:18 ----D---- C:\Program Files\Mafia
2010-09-06 20:50:13 ----RA---- C:\WINDOWS\system32\MafiaSetup.exe
2010-09-06 20:47:47 ----D---- C:\Program Files\DAEMON Tools Lite
2010-09-06 20:40:58 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2010-09-06 20:40:53 ----D---- C:\Documents and Settings\Vašek\Data aplikací\DAEMON Tools
2010-09-06 20:36:59 ----D---- C:\Program Files\WinRAR
2010-09-06 20:31:31 ----ASH---- C:\pagefile.sys
2010-09-06 20:01:03 ----D---- C:\WINDOWS\Minidump
2010-09-06 19:57:03 ----D---- C:\WINDOWS\nview
2010-09-06 19:55:51 ----RA---- C:\WINDOWS\system32\drivers\GVCplDrv.sys
2010-09-06 19:13:46 ----D---- C:\Documents and Settings\Vašek\Data aplikací\Ahead
2010-09-06 19:12:33 ----D---- C:\Program Files\Nero
2010-09-06 19:12:33 ----D---- C:\Program Files\Common Files\Ahead
2010-09-06 19:12:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2010-09-06 19:12:17 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-09-06 19:12:17 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-09-06 18:45:57 ----HD---- C:\$AVG
2010-09-06 18:38:20 ----D---- C:\WINDOWS\system32\appmgmt
2010-09-05 17:58:00 ----HD---- C:\WINDOWS\msdownld.tmp
2010-09-05 17:57:31 ----D---- C:\WINDOWS\Logs
======List of files/folders modified in the last 1 months======
2010-09-29 19:05:36 ----D---- C:\WINDOWS\Prefetch
2010-09-29 19:05:30 ----RD---- C:\Program Files
2010-09-29 18:59:37 ----D---- C:\WINDOWS\system32
2010-09-29 18:48:33 ----D---- C:\WINDOWS
2010-09-29 18:48:32 ----D---- C:\WINDOWS\Temp
2010-09-29 18:37:50 ----D---- C:\Program Files\Mozilla Firefox
2010-09-29 18:13:45 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-09-28 21:10:43 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-09-28 19:03:21 ----SD---- C:\WINDOWS\Tasks
2010-09-28 19:03:01 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-09-28 19:02:47 ----HD---- C:\WINDOWS\inf
2010-09-28 19:02:46 ----D---- C:\WINDOWS\system32\CatRoot2
2010-09-28 18:44:11 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-09-28 18:42:50 ----D---- C:\WINDOWS\system32\drivers
2010-09-27 18:21:37 ----D---- C:\WINDOWS\system32\wbem
2010-09-27 18:21:37 ----D---- C:\WINDOWS\AppPatch
2010-09-27 18:21:36 ----D---- C:\WINDOWS\system32\Setup
2010-09-27 00:59:27 ----D---- C:\Program Files\Messenger
2010-09-27 00:58:58 ----D---- C:\WINDOWS\WinSxS
2010-09-27 00:57:22 ----D---- C:\Program Files\Movie Maker
2010-09-27 00:55:43 ----D---- C:\Program Files\Outlook Express
2010-09-27 00:54:39 ----D---- C:\Program Files\Internet Explorer
2010-09-26 18:16:46 ----D---- C:\WINDOWS\system32\CatRoot
2010-09-26 18:02:02 ----D---- C:\WINDOWS\Debug
2010-09-26 17:38:43 ----D---- C:\WINDOWS\SoftwareDistribution
2010-09-26 17:38:41 ----D---- C:\WINDOWS\Help
2010-09-12 19:12:30 ----HD---- C:\Program Files\InstallShield Installation Information
2010-09-12 19:12:16 ----D---- C:\Program Files\Common Files\InstallShield
2010-09-12 19:11:49 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-09-09 18:37:01 ----D---- C:\WINDOWS\system32\oodag
2010-09-06 20:31:46 ----D---- C:\Documents and Settings
2010-09-06 19:13:28 ----SHD---- C:\WINDOWS\Installer
2010-09-06 19:12:33 ----D---- C:\Program Files\Common Files
2010-09-06 19:12:18 ----D---- C:\WINDOWS\system32\DirectX
2010-09-06 18:42:56 ----D---- C:\- Foto
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2006-06-02 43264]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-09-06 717296]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-07 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-07 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-07 243024]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-18 39936]
R2 ANIO;ANIO Service; \??\C:\WINDOWS\system32\ANIO.SYS []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-18 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-26 4279296]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 rt2870;D-Link dnetr28u USB Extensible Wireless LAN Card Driver; C:\WINDOWS\system32\DRIVERS\Drt2870.sys [2009-08-03 724736]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-03-15 244608]
S3 a25mos70;a25mos70; C:\WINDOWS\system32\drivers\a25mos70.sys []
S3 atirage3;atirage3; C:\WINDOWS\system32\DRIVERS\atimpae.sys [2001-10-24 75136]
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-18 26496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ANIWConnService;ANIWConn Service; C:\WINDOWS\system32\ANIWConnService.exe [2009-07-07 151552]
R2 avg9emc;AVG Free E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-08-07 921952]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-07 308136]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2005-03-21 225280]
S2 ANIWZCSdService;ANIWZCSd Service; C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe [2009-08-21 102400]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------
dnes jsme si přinesli domu nové PC od známého, který počítačům vůbec nerozumí a nějakou dobu ho používal. Nepoužíval pravděpodobně žádný antivir a nic podobného. My také pc moc nerozumíme a máme pocit, že není vše úplně v pořádku.
Prý je něco s grafickou kartou, ale to nevíme jistě. Často nám počítač spadne a objeví se modrá obrazovka, kde je napsáno něco jako kernel stack debugger error a potom at odinstalujeme nějaký software apod. Oba počítačům příliš nerozumíjme, a proto se obracíme na odborníky.
Přikládáme log z RSITU.
Moc děkujeme za pomoc, Bubeníkovi
Logfile of random's system information tool 1.08 (written by random/random)
Run by Vašek at 2010-09-29 19:05:29
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 140 GB (92%) free of 152 GB
Total RAM: 1023 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:05:36, on 29.9.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ANIWConnService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Vašek.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [D-Link D-Link Wireless G DWL-G122_DWA-110] C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe
O4 - HKLM\..\Run: [WZCSLDR2] C:\Program Files\D-Link\DWL-G122_DWA-110\WZCSLDR2.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Vašek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ANIWConn Service (ANIWConnService) - Unknown owner - C:\WINDOWS\system32\ANIWConnService.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
--
End of file - 5319 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1123561945-1957994488-839522115-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1123561945-1957994488-839522115-1003UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-09-23 1619296]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-27 16208384]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"GBB36X Configure"=C:\WINDOWS\system32\JMRaidTool.exe [2006-06-02 385024]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-08-07 2065760]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"ANIWZCS2Service"=C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe [2009-08-21 98304]
"D-Link D-Link Wireless G DWL-G122_DWA-110"=C:\Program Files\D-Link\DWL-G122_DWA-110\AirGCFG.exe [2009-09-18 1708032]
"WZCSLDR2"=C:\Program Files\D-Link\DWL-G122_DWA-110\WZCSLDR2.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-18 15360]
"Google Update"=C:\Documents and Settings\Vašek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-08-07 136176]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-11-16 139264]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-04-01 486856]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-08-07 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG9\avgemc.exe"="C:\Program Files\AVG\AVG9\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\VideoConverter_Setup.exe"="C:\Documents and Settings\Vašek\Dokumenty\Stažené soubory\VideoConverter_Setup.exe:*:Enabled:Video Converter"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-09-29 19:05:30 ----D---- C:\Program Files\trend micro
2010-09-29 19:05:29 ----D---- C:\rsit
2010-09-28 19:03:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-09-27 20:04:23 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-09-27 20:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-09-27 00:59:42 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2010-09-27 00:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-09-27 00:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-09-27 00:59:30 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-09-27 00:59:26 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-09-27 00:59:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-09-27 00:59:18 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-09-27 00:59:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-09-27 00:59:06 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-09-27 00:59:01 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2010-09-27 00:58:58 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-09-27 00:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-09-27 00:58:52 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-09-27 00:58:48 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-09-27 00:58:44 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-09-27 00:58:40 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-09-27 00:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-09-27 00:58:20 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-09-27 00:58:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-09-27 00:58:13 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-09-27 00:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-09-27 00:58:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-09-27 00:58:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-09-27 00:57:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-09-27 00:57:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-09-27 00:57:49 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-09-27 00:57:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-09-27 00:57:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-09-27 00:57:29 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-09-27 00:57:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-09-27 00:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-09-27 00:57:16 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-09-27 00:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-09-27 00:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-09-27 00:57:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-09-27 00:57:00 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-09-27 00:56:56 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-09-27 00:56:52 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-09-27 00:56:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-09-27 00:56:44 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-09-27 00:56:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-09-27 00:56:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-09-27 00:56:31 ----HDC---- C:\WINDOWS\$NtUninstallKB981793$
2010-09-27 00:56:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-09-27 00:56:25 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2010-09-27 00:56:21 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-09-27 00:56:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-09-27 00:56:10 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-09-27 00:56:06 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-09-27 00:56:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-09-27 00:55:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-09-27 00:55:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-09-27 00:55:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-09-27 00:55:42 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-09-27 00:55:38 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-09-27 00:55:34 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-09-27 00:55:30 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-09-27 00:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-09-27 00:55:24 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-09-27 00:55:20 ----D---- C:\WINDOWS\ServicePackFiles
2010-09-27 00:55:18 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-09-27 00:55:14 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-09-27 00:55:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-09-27 00:55:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-09-27 00:55:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-09-27 00:54:56 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-09-27 00:54:52 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-09-27 00:54:48 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-09-27 00:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-09-27 00:54:35 ----HDC---- C:\WINDOWS\$NtUninstallKB982381$
2010-09-27 00:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-09-27 00:54:25 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-09-27 00:54:21 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-09-27 00:54:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-09-26 18:02:02 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-09-26 17:59:47 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-09-26 17:54:42 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-09-26 17:54:22 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-09-26 17:49:21 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-09-26 17:49:07 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-09-26 17:49:07 ----D---- C:\WINDOWS\system32\PreInstall
2010-09-26 17:49:06 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-09-26 17:49:05 ----HD---- C:\WINDOWS\$hf_mig$
2010-09-26 17:38:35 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-09-26 11:28:19 ----D---- C:\Program Files\VideoConverter
2010-09-26 10:46:05 ----D---- C:\Program Files\DsNET Corp
2010-09-22 20:40:36 ----A---- C:\WINDOWS\NeroDigital.ini
2010-09-12 19:14:30 ----A---- C:\Documents and Settings\Vašek\Data aplikací\ANICONFIG_{B4196C4B-4DCC-4D7B-8B8E-D5599FE6A47C}.ini
2010-09-12 19:12:39 ----A---- C:\WINDOWS\system32\ANIWConnService.exe
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\wnicapi.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\wlanapp.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\odSupp_M.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\AQCKGen.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\ANIWZCS2.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\ANICtl.dll
2010-09-12 19:12:30 ----A---- C:\WINDOWS\system32\aIPH.dll
2010-09-12 19:12:17 ----D---- C:\Program Files\ANI
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIOApi.dll
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIO64.sys
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\anio4.sys
2010-09-12 19:12:17 ----A---- C:\WINDOWS\system32\ANIO.sys
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\ssleay32.dll
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\libeay32.dll
2010-09-12 19:11:58 ----A---- C:\WINDOWS\system32\ANIWPS.exe
2010-09-12 19:11:57 ----A---- C:\WINDOWS\system32\ANIOWPS.dll
2010-09-12 19:11:04 ----A---- C:\WINDOWS\system32\RaCoInst.dll
2010-09-12 19:11:04 ----A---- C:\WINDOWS\system32\drivers\Drt2870.sys
2010-09-12 19:11:03 ----A---- C:\WINDOWS\system32\rt25u98.sys
2010-09-12 19:11:03 ----A---- C:\WINDOWS\system32\Dr71WU98.sys
2010-09-12 19:10:58 ----D---- C:\Program Files\D-Link
2010-09-12 19:10:37 ----D---- C:\Documents and Settings\Vašek\Data aplikací\InstallShield
2010-09-06 20:53:37 ----D---- C:\Program Files\Creative
2010-09-06 20:53:37 ----A---- C:\WINDOWS\system32\eax.dll
2010-09-06 20:50:18 ----D---- C:\Program Files\Mafia
2010-09-06 20:50:13 ----RA---- C:\WINDOWS\system32\MafiaSetup.exe
2010-09-06 20:47:47 ----D---- C:\Program Files\DAEMON Tools Lite
2010-09-06 20:40:58 ----A---- C:\WINDOWS\system32\drivers\sptd.sys
2010-09-06 20:40:53 ----D---- C:\Documents and Settings\Vašek\Data aplikací\DAEMON Tools
2010-09-06 20:36:59 ----D---- C:\Program Files\WinRAR
2010-09-06 20:31:31 ----ASH---- C:\pagefile.sys
2010-09-06 20:01:03 ----D---- C:\WINDOWS\Minidump
2010-09-06 19:57:03 ----D---- C:\WINDOWS\nview
2010-09-06 19:55:51 ----RA---- C:\WINDOWS\system32\drivers\GVCplDrv.sys
2010-09-06 19:13:46 ----D---- C:\Documents and Settings\Vašek\Data aplikací\Ahead
2010-09-06 19:12:33 ----D---- C:\Program Files\Nero
2010-09-06 19:12:33 ----D---- C:\Program Files\Common Files\Ahead
2010-09-06 19:12:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\Nero
2010-09-06 19:12:17 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-09-06 19:12:17 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-09-06 18:45:57 ----HD---- C:\$AVG
2010-09-06 18:38:20 ----D---- C:\WINDOWS\system32\appmgmt
2010-09-05 17:58:00 ----HD---- C:\WINDOWS\msdownld.tmp
2010-09-05 17:57:31 ----D---- C:\WINDOWS\Logs
======List of files/folders modified in the last 1 months======
2010-09-29 19:05:36 ----D---- C:\WINDOWS\Prefetch
2010-09-29 19:05:30 ----RD---- C:\Program Files
2010-09-29 18:59:37 ----D---- C:\WINDOWS\system32
2010-09-29 18:48:33 ----D---- C:\WINDOWS
2010-09-29 18:48:32 ----D---- C:\WINDOWS\Temp
2010-09-29 18:37:50 ----D---- C:\Program Files\Mozilla Firefox
2010-09-29 18:13:45 ----D---- C:\WINDOWS\system32\drivers\Avg
2010-09-28 21:10:43 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-09-28 19:03:21 ----SD---- C:\WINDOWS\Tasks
2010-09-28 19:03:01 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-09-28 19:02:47 ----HD---- C:\WINDOWS\inf
2010-09-28 19:02:46 ----D---- C:\WINDOWS\system32\CatRoot2
2010-09-28 18:44:11 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-09-28 18:42:50 ----D---- C:\WINDOWS\system32\drivers
2010-09-27 18:21:37 ----D---- C:\WINDOWS\system32\wbem
2010-09-27 18:21:37 ----D---- C:\WINDOWS\AppPatch
2010-09-27 18:21:36 ----D---- C:\WINDOWS\system32\Setup
2010-09-27 00:59:27 ----D---- C:\Program Files\Messenger
2010-09-27 00:58:58 ----D---- C:\WINDOWS\WinSxS
2010-09-27 00:57:22 ----D---- C:\Program Files\Movie Maker
2010-09-27 00:55:43 ----D---- C:\Program Files\Outlook Express
2010-09-27 00:54:39 ----D---- C:\Program Files\Internet Explorer
2010-09-26 18:16:46 ----D---- C:\WINDOWS\system32\CatRoot
2010-09-26 18:02:02 ----D---- C:\WINDOWS\Debug
2010-09-26 17:38:43 ----D---- C:\WINDOWS\SoftwareDistribution
2010-09-26 17:38:41 ----D---- C:\WINDOWS\Help
2010-09-12 19:12:30 ----HD---- C:\Program Files\InstallShield Installation Information
2010-09-12 19:12:16 ----D---- C:\Program Files\Common Files\InstallShield
2010-09-12 19:11:49 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-09-09 18:37:01 ----D---- C:\WINDOWS\system32\oodag
2010-09-06 20:31:46 ----D---- C:\Documents and Settings
2010-09-06 19:13:28 ----SHD---- C:\WINDOWS\Installer
2010-09-06 19:12:33 ----D---- C:\Program Files\Common Files
2010-09-06 19:12:18 ----D---- C:\WINDOWS\system32\DirectX
2010-09-06 18:42:56 ----D---- C:\- Foto
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2006-06-02 43264]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-09-06 717296]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-08-07 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-08-07 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2010-08-07 243024]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-18 39936]
R2 ANIO;ANIO Service; \??\C:\WINDOWS\system32\ANIO.SYS []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-18 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-26 4279296]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 rt2870;D-Link dnetr28u USB Extensible Wireless LAN Card Driver; C:\WINDOWS\system32\DRIVERS\Drt2870.sys [2009-08-03 724736]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-03-15 244608]
S3 a25mos70;a25mos70; C:\WINDOWS\system32\drivers\a25mos70.sys []
S3 atirage3;atirage3; C:\WINDOWS\system32\DRIVERS\atimpae.sys [2001-10-24 75136]
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-18 26496]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ANIWConnService;ANIWConn Service; C:\WINDOWS\system32\ANIWConnService.exe [2009-07-07 151552]
R2 avg9emc;AVG Free E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-08-07 921952]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-08-07 308136]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2005-03-21 225280]
S2 ANIWZCSdService;ANIWZCSd Service; C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe [2009-08-21 102400]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-11-10 774144]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------