Spouštění oken
Napsal: 31 říj 2010 11:01
Ahoj,
mám takový problém, začaly se me z ničehonic otvírat černá okna....když jsem šla podle "cesty" dostala jsem se do složky AppData kde se objevovaly "soubory" se stejnými názvy jako okna. Smazala jsem je jenže za hodinu se to opakovalo. A opakuje se pořád.
V procesech jsem si všimla že jsou tam dvě věci co neznám a to csrss.exe a dllhost.exe
Nevím jestli je to tim nebo ne....
Děkuju za každou radu
log:
Logfile of random's system information tool 1.08 (written by random/random)
Run by pc at 2010-10-31 10:55:18
Microsoft® Windows Vista™ Business Service Pack 2
System drive C: has 59 GB (40%) free of 148 GB
Total RAM: 3062 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:55:33, on 31.10.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18975)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\PLFSetI.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Users\pc\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIEDE.EXE
D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Windows Live\Installer\wlarp.exe
C:\Windows\system32\Taskmgr.exe
C:\Program Files\Opera\opera.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\pc\Desktop\RSIT.exe
C:\Program Files\trend micro\pc.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5620
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "C:\Windows\TEMP\E_S84D3.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [CooLWPC3] D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe /boot
O4 - HKCU\..\Run: [GoogleHelper] C:\Users\pc\AppData\Roaming\svchost.exe
O4 - HKCU\..\Run: [DnE] C:\Users\pc\AppData\Local\Temp\e.exe
O4 - HKCU\..\Policies\Explorer\Run: [GoogleService] C:\Users\pc\AppData\Roaming\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - User Startup: winhelp.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 8922 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-01-03 312368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-01-03 155184]
{D5D47440-0750-463D-BAEF-A47D02414806}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-10-03 178712]
"SynTPStart"=C:\Program Files\Synaptics\SynTP\SynTPStart.exe [2007-09-07 102400]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-08 4853760]
"Skytel"=C:\Windows\Skytel.exe [2007-11-21 1826816]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2008-01-22 81920]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-10-11 62760]
"eDataSecurity Loader"=C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-01-03 521776]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-01-08 858632]
"eRecoveryService"= []
"WarReg_PopUp"=C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [2008-01-29 303104]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-02-26 2140880]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE [2008-02-05 188928]
"EA Core"=C:\Program Files\Electronic Arts\EADM\Core.exe -silent []
"CooLWPC3"=D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe [2003-04-06 1008128]
"GoogleHelper"=C:\Users\pc\AppData\Roaming\svchost.exe [2010-09-10 20584]
"DnE"=C:\Users\pc\AppData\Local\Temp\e.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"GoogleService"=C:\Users\pc\AppData\Roaming\svchost.exe [2010-09-10 20584]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
C:\Users\Public\Documents\Windows
winhelp.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-10-31 10:55:18 ----D---- C:\rsit
2010-10-31 10:55:18 ----D---- C:\Program Files\trend micro
2010-10-31 09:17:34 ----SHD---- C:\Config.Msi
2010-10-31 06:44:50 ----A---- C:\Windows\system32\XAudio2_7.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\xactengine3_7.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\D3DX9_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dx11_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dx10_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dcsx_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\xinput1_3.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-10-31 06:44:40 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-10-31 06:44:39 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-10-31 06:44:39 ----A---- C:\Windows\system32\d3dx10.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\xinput1_2.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xinput1_1.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-10-31 06:44:29 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-10-27 07:28:37 ----A---- C:\Windows\system32\gameux.dll
2010-10-27 07:28:35 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-10-27 07:28:35 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-10-23 12:42:39 ----A---- C:\Windows\system32\webservices.dll
2010-10-23 10:11:29 ----D---- C:\Users\pc\AppData\Roaming\Ventrilo
2010-10-14 04:45:13 ----A---- C:\Windows\system32\wmp.dll
2010-10-14 04:45:11 ----A---- C:\Windows\system32\wmploc.DLL
2010-10-14 04:44:50 ----A---- C:\Windows\system32\srvsvc.dll
2010-10-14 04:44:49 ----A---- C:\Windows\system32\netevent.dll
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srv.sys
2010-10-14 04:44:39 ----A---- C:\Windows\system32\schannel.dll
2010-10-14 04:44:34 ----A---- C:\Windows\system32\ole32.dll
2010-10-14 04:44:31 ----A---- C:\Windows\system32\t2embed.dll
2010-10-14 04:44:18 ----A---- C:\Windows\system32\mshtml.dll
2010-10-14 04:44:15 ----A---- C:\Windows\system32\ieframe.dll
2010-10-14 04:44:14 ----A---- C:\Windows\system32\msfeeds.dll
2010-10-14 04:44:13 ----A---- C:\Windows\system32\urlmon.dll
2010-10-14 04:44:13 ----A---- C:\Windows\system32\licmgr10.dll
2010-10-14 04:44:12 ----A---- C:\Windows\system32\wininet.dll
2010-10-14 04:44:12 ----A---- C:\Windows\system32\mshtmled.dll
2010-10-14 04:44:11 ----A---- C:\Windows\system32\mstime.dll
2010-10-14 04:44:11 ----A---- C:\Windows\system32\iertutil.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\occache.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\ieUnatt.exe
2010-10-14 04:44:10 ----A---- C:\Windows\system32\ieui.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iesysprep.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iesetup.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iernonce.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iepeers.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iedkcs32.dll
2010-10-14 04:44:09 ----A---- C:\Windows\system32\msfeedssync.exe
2010-10-14 04:44:09 ----A---- C:\Windows\system32\jsproxy.dll
2010-10-14 04:44:09 ----A---- C:\Windows\system32\ie4uinit.exe
2010-10-14 04:44:06 ----A---- C:\Windows\system32\mfc40.dll
2010-10-14 04:44:05 ----A---- C:\Windows\system32\mfc40u.dll
2010-10-14 04:44:03 ----A---- C:\Windows\system32\win32k.sys
2010-10-14 04:44:00 ----A---- C:\Windows\system32\msshsq.dll
2010-10-14 04:43:58 ----A---- C:\Windows\system32\wmpmde.dll
2010-10-14 04:43:53 ----A---- C:\Windows\system32\comctl32.dll
2010-10-03 16:15:03 ----A---- C:\Windows\Supermarket Management Uninstall Log.txt
======List of files/folders modified in the last 1 months======
2010-10-31 10:55:33 ----D---- C:\Windows\Prefetch
2010-10-31 10:55:23 ----D---- C:\Windows\Temp
2010-10-31 10:55:18 ----RD---- C:\Program Files
2010-10-31 10:45:11 ----D---- C:\Windows\System32
2010-10-31 10:45:08 ----SHD---- C:\System Volume Information
2010-10-31 10:44:37 ----HD---- C:\ProgramData
2010-10-31 09:17:46 ----SHD---- C:\Windows\Installer
2010-10-31 09:17:36 ----D---- C:\Program Files\Windows Live
2010-10-31 09:17:17 ----D---- C:\Windows\winsxs
2010-10-31 09:17:01 ----SD---- C:\ProgramData\Microsoft
2010-10-31 09:16:25 ----D---- C:\Program Files\Common Files\microsoft shared
2010-10-31 09:15:18 ----D---- C:\Windows\inf
2010-10-31 09:14:54 ----D---- C:\Windows\system32\drivers
2010-10-31 09:09:20 ----D---- C:\Users\pc\AppData\Roaming\uTorrent
2010-10-31 09:08:07 ----SD---- C:\Users\pc\AppData\Roaming\Microsoft
2010-10-31 07:57:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-10-31 07:50:52 ----D---- C:\Windows
2010-10-31 06:50:10 ----D---- C:\Windows\system32\catroot
2010-10-31 06:44:36 ----RSD---- C:\Windows\assembly
2010-10-31 06:44:32 ----D---- C:\Windows\Microsoft.NET
2010-10-31 06:43:39 ----D---- C:\Windows\Logs
2010-10-30 23:00:19 ----D---- C:\Windows\system32\catroot2
2010-10-28 02:16:27 ----D---- C:\Windows\AppPatch
2010-10-26 20:06:01 ----D---- C:\ProgramData\PlayFirst
2010-10-24 18:01:52 ----A---- C:\Windows\ntbtlog.txt
2010-10-24 17:47:34 ----D---- C:\Windows\rescache
2010-10-23 12:49:38 ----RSD---- C:\Windows\Fonts
2010-10-23 12:43:07 ----D---- C:\Windows\system32\cs-CZ
2010-10-19 10:41:44 ----N---- C:\Windows\system32\MpSigStub.exe
2010-10-14 18:46:30 ----D---- C:\Users\pc\AppData\Roaming\dvdcss
2010-10-14 13:29:29 ----D---- C:\Program Files\Microsoft Silverlight
2010-10-14 13:27:55 ----D---- C:\Program Files\Windows Media Player
2010-10-14 13:27:54 ----D---- C:\Program Files\Internet Explorer
2010-10-14 13:27:53 ----D---- C:\Windows\system32\migration
2010-10-14 13:21:54 ----D---- C:\ProgramData\Microsoft Help
2010-10-14 13:14:18 ----A---- C:\Windows\system32\mrt.exe
2010-10-13 15:34:12 ----D---- C:\Program Files\Opera
2010-10-03 16:06:40 ----D---- C:\Program Files\Common Files\Adobe
2010-10-03 16:06:40 ----D---- C:\Program Files\Common Files
2010-10-03 16:05:58 ----D---- C:\Program Files\Adobe
2010-10-03 16:03:55 ----D---- C:\Users\pc\AppData\Roaming\Adobe
2010-10-03 16:01:28 ----D---- C:\ProgramData\Adobe
2010-10-01 04:41:00 ----D---- C:\Windows\Tasks
2010-10-01 04:36:53 ----D---- C:\Windows\system32\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-09-29 308248]
R0 PSDFilter;PSDFilter; C:\Windows\system32\DRIVERS\psdfilter.sys [2008-01-03 18480]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-04-09 691696]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-02-26 96896]
R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2007-11-30 15392]
R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2008-01-21 95744]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 50704]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-01-03 16432]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-01-03 59952]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-11-29 8192]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-12-22 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-12-22 207360]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-01-09 2044896]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
R3 NSCIRDA;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-21 30720]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-04-27 6144]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-09-07 192816]
R3 tifm21;tifm21; C:\Windows\system32\drivers\tifm21.sys [2007-05-02 290816]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-12-22 659968]
S3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys []
S3 amsmtvhs;amsmtvhs; C:\Windows\system32\drivers\amsmtvhs.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2007-07-22 180736]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-08-30 81448]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-08-30 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2007-05-18 28464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-08-30 17448]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 NETw4v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-10-31 2252800]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2005-12-05 48640]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2008-11-28 7168]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WisINT15;WisINT15; \??\C:\Elements\1stboot\WisINT15.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BcmSqlStartupSvc;Služba spouštění serveru SQL Server aplikace Business Contact Manager; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2009-02-23 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 eDataSecurity Service;eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-01-03 506416]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2007-10-01 24576]
R2 eNet Service;eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [2007-12-20 131072]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-09-10 57344]
R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-12-19 24576]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2008-10-16 860160]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-10-03 358936]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-11-27 110592]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2009-08-08 71096]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2008-10-16 466944]
R2 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904]
R2 WMIService;ePower Service; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-09-20 167936]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-11-29 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-02-26 33560]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2009-05-27 29262680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408]
-----------------EOF-----------------
mám takový problém, začaly se me z ničehonic otvírat černá okna....když jsem šla podle "cesty" dostala jsem se do složky AppData kde se objevovaly "soubory" se stejnými názvy jako okna. Smazala jsem je jenže za hodinu se to opakovalo. A opakuje se pořád.
V procesech jsem si všimla že jsou tam dvě věci co neznám a to csrss.exe a dllhost.exe
Nevím jestli je to tim nebo ne....
Děkuju za každou radu
log:
Logfile of random's system information tool 1.08 (written by random/random)
Run by pc at 2010-10-31 10:55:18
Microsoft® Windows Vista™ Business Service Pack 2
System drive C: has 59 GB (40%) free of 148 GB
Total RAM: 3062 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:55:33, on 31.10.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18975)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\PLFSetI.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Users\pc\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIEDE.EXE
D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Windows Live\Installer\wlarp.exe
C:\Windows\system32\Taskmgr.exe
C:\Program Files\Opera\opera.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\pc\Desktop\RSIT.exe
C:\Program Files\trend micro\pc.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACA ... tensa_5620
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: (no name) - {D5D47440-0750-463D-BAEF-A47D02414806} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE /FU "C:\Windows\TEMP\E_S84D3.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [CooLWPC3] D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe /boot
O4 - HKCU\..\Run: [GoogleHelper] C:\Users\pc\AppData\Roaming\svchost.exe
O4 - HKCU\..\Run: [DnE] C:\Users\pc\AppData\Local\Temp\e.exe
O4 - HKCU\..\Policies\Explorer\Run: [GoogleService] C:\Users\pc\AppData\Roaming\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - User Startup: winhelp.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 8922 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-01-03 312368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-01-03 155184]
{D5D47440-0750-463D-BAEF-A47D02414806}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-10-03 178712]
"SynTPStart"=C:\Program Files\Synaptics\SynTP\SynTPStart.exe [2007-09-07 102400]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-08 4853760]
"Skytel"=C:\Windows\Skytel.exe [2007-11-21 1826816]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2008-01-22 81920]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-10-11 62760]
"eDataSecurity Loader"=C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-01-03 521776]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-01-08 858632]
"eRecoveryService"= []
"WarReg_PopUp"=C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [2008-01-29 303104]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-02-26 2140880]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIEDE.EXE [2008-02-05 188928]
"EA Core"=C:\Program Files\Electronic Arts\EADM\Core.exe -silent []
"CooLWPC3"=D:\PROGRAMY\měnič pozadí\CooL Wallpaper Changer\coolwpc.exe [2003-04-06 1008128]
"GoogleHelper"=C:\Users\pc\AppData\Roaming\svchost.exe [2010-09-10 20584]
"DnE"=C:\Users\pc\AppData\Local\Temp\e.exe []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"GoogleService"=C:\Users\pc\AppData\Roaming\svchost.exe [2010-09-10 20584]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
C:\Users\Public\Documents\Windows
winhelp.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-10-31 10:55:18 ----D---- C:\rsit
2010-10-31 10:55:18 ----D---- C:\Program Files\trend micro
2010-10-31 09:17:34 ----SHD---- C:\Config.Msi
2010-10-31 06:44:50 ----A---- C:\Windows\system32\XAudio2_7.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\xactengine3_7.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\D3DX9_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dx11_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dx10_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\d3dcsx_43.dll
2010-10-31 06:44:50 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-10-31 06:44:49 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-10-31 06:44:48 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-10-31 06:44:47 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-10-31 06:44:46 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-10-31 06:44:45 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-10-31 06:44:44 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-10-31 06:44:43 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-10-31 06:44:42 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\xinput1_3.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-10-31 06:44:41 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-10-31 06:44:40 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-10-31 06:44:39 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-10-31 06:44:39 ----A---- C:\Windows\system32\d3dx10.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-10-31 06:44:38 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\xinput1_2.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-10-31 06:44:37 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xinput1_1.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-10-31 06:44:36 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-10-31 06:44:31 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-10-31 06:44:30 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-10-31 06:44:29 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-10-27 07:28:37 ----A---- C:\Windows\system32\gameux.dll
2010-10-27 07:28:35 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-10-27 07:28:35 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-10-23 12:42:39 ----A---- C:\Windows\system32\webservices.dll
2010-10-23 10:11:29 ----D---- C:\Users\pc\AppData\Roaming\Ventrilo
2010-10-14 04:45:13 ----A---- C:\Windows\system32\wmp.dll
2010-10-14 04:45:11 ----A---- C:\Windows\system32\wmploc.DLL
2010-10-14 04:44:50 ----A---- C:\Windows\system32\srvsvc.dll
2010-10-14 04:44:49 ----A---- C:\Windows\system32\netevent.dll
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-10-14 04:44:49 ----A---- C:\Windows\system32\drivers\srv.sys
2010-10-14 04:44:39 ----A---- C:\Windows\system32\schannel.dll
2010-10-14 04:44:34 ----A---- C:\Windows\system32\ole32.dll
2010-10-14 04:44:31 ----A---- C:\Windows\system32\t2embed.dll
2010-10-14 04:44:18 ----A---- C:\Windows\system32\mshtml.dll
2010-10-14 04:44:15 ----A---- C:\Windows\system32\ieframe.dll
2010-10-14 04:44:14 ----A---- C:\Windows\system32\msfeeds.dll
2010-10-14 04:44:13 ----A---- C:\Windows\system32\urlmon.dll
2010-10-14 04:44:13 ----A---- C:\Windows\system32\licmgr10.dll
2010-10-14 04:44:12 ----A---- C:\Windows\system32\wininet.dll
2010-10-14 04:44:12 ----A---- C:\Windows\system32\mshtmled.dll
2010-10-14 04:44:11 ----A---- C:\Windows\system32\mstime.dll
2010-10-14 04:44:11 ----A---- C:\Windows\system32\iertutil.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\occache.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\ieUnatt.exe
2010-10-14 04:44:10 ----A---- C:\Windows\system32\ieui.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iesysprep.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iesetup.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iernonce.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iepeers.dll
2010-10-14 04:44:10 ----A---- C:\Windows\system32\iedkcs32.dll
2010-10-14 04:44:09 ----A---- C:\Windows\system32\msfeedssync.exe
2010-10-14 04:44:09 ----A---- C:\Windows\system32\jsproxy.dll
2010-10-14 04:44:09 ----A---- C:\Windows\system32\ie4uinit.exe
2010-10-14 04:44:06 ----A---- C:\Windows\system32\mfc40.dll
2010-10-14 04:44:05 ----A---- C:\Windows\system32\mfc40u.dll
2010-10-14 04:44:03 ----A---- C:\Windows\system32\win32k.sys
2010-10-14 04:44:00 ----A---- C:\Windows\system32\msshsq.dll
2010-10-14 04:43:58 ----A---- C:\Windows\system32\wmpmde.dll
2010-10-14 04:43:53 ----A---- C:\Windows\system32\comctl32.dll
2010-10-03 16:15:03 ----A---- C:\Windows\Supermarket Management Uninstall Log.txt
======List of files/folders modified in the last 1 months======
2010-10-31 10:55:33 ----D---- C:\Windows\Prefetch
2010-10-31 10:55:23 ----D---- C:\Windows\Temp
2010-10-31 10:55:18 ----RD---- C:\Program Files
2010-10-31 10:45:11 ----D---- C:\Windows\System32
2010-10-31 10:45:08 ----SHD---- C:\System Volume Information
2010-10-31 10:44:37 ----HD---- C:\ProgramData
2010-10-31 09:17:46 ----SHD---- C:\Windows\Installer
2010-10-31 09:17:36 ----D---- C:\Program Files\Windows Live
2010-10-31 09:17:17 ----D---- C:\Windows\winsxs
2010-10-31 09:17:01 ----SD---- C:\ProgramData\Microsoft
2010-10-31 09:16:25 ----D---- C:\Program Files\Common Files\microsoft shared
2010-10-31 09:15:18 ----D---- C:\Windows\inf
2010-10-31 09:14:54 ----D---- C:\Windows\system32\drivers
2010-10-31 09:09:20 ----D---- C:\Users\pc\AppData\Roaming\uTorrent
2010-10-31 09:08:07 ----SD---- C:\Users\pc\AppData\Roaming\Microsoft
2010-10-31 07:57:22 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-10-31 07:50:52 ----D---- C:\Windows
2010-10-31 06:50:10 ----D---- C:\Windows\system32\catroot
2010-10-31 06:44:36 ----RSD---- C:\Windows\assembly
2010-10-31 06:44:32 ----D---- C:\Windows\Microsoft.NET
2010-10-31 06:43:39 ----D---- C:\Windows\Logs
2010-10-30 23:00:19 ----D---- C:\Windows\system32\catroot2
2010-10-28 02:16:27 ----D---- C:\Windows\AppPatch
2010-10-26 20:06:01 ----D---- C:\ProgramData\PlayFirst
2010-10-24 18:01:52 ----A---- C:\Windows\ntbtlog.txt
2010-10-24 17:47:34 ----D---- C:\Windows\rescache
2010-10-23 12:49:38 ----RSD---- C:\Windows\Fonts
2010-10-23 12:43:07 ----D---- C:\Windows\system32\cs-CZ
2010-10-19 10:41:44 ----N---- C:\Windows\system32\MpSigStub.exe
2010-10-14 18:46:30 ----D---- C:\Users\pc\AppData\Roaming\dvdcss
2010-10-14 13:29:29 ----D---- C:\Program Files\Microsoft Silverlight
2010-10-14 13:27:55 ----D---- C:\Program Files\Windows Media Player
2010-10-14 13:27:54 ----D---- C:\Program Files\Internet Explorer
2010-10-14 13:27:53 ----D---- C:\Windows\system32\migration
2010-10-14 13:21:54 ----D---- C:\ProgramData\Microsoft Help
2010-10-14 13:14:18 ----A---- C:\Windows\system32\mrt.exe
2010-10-13 15:34:12 ----D---- C:\Program Files\Opera
2010-10-03 16:06:40 ----D---- C:\Program Files\Common Files\Adobe
2010-10-03 16:06:40 ----D---- C:\Program Files\Common Files
2010-10-03 16:05:58 ----D---- C:\Program Files\Adobe
2010-10-03 16:03:55 ----D---- C:\Users\pc\AppData\Roaming\Adobe
2010-10-03 16:01:28 ----D---- C:\ProgramData\Adobe
2010-10-01 04:41:00 ----D---- C:\Windows\Tasks
2010-10-01 04:36:53 ----D---- C:\Windows\system32\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-09-29 308248]
R0 PSDFilter;PSDFilter; C:\Windows\system32\DRIVERS\psdfilter.sys [2008-01-03 18480]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-04-09 691696]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-02-26 96896]
R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2007-11-30 15392]
R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2008-01-21 95744]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-11-16 50704]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-01-03 16432]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-01-03 59952]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-11-29 8192]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-12-22 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-12-22 207360]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-01-09 2044896]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
R3 NSCIRDA;NSC Infrared Device Driver; C:\Windows\system32\DRIVERS\nscirda.sys [2008-01-21 30720]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-04-27 6144]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-09-07 192816]
R3 tifm21;tifm21; C:\Windows\system32\drivers\tifm21.sys [2007-05-02 290816]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-12-22 659968]
S3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys []
S3 amsmtvhs;amsmtvhs; C:\Windows\system32\drivers\amsmtvhs.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2007-07-22 180736]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-08-30 81448]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-08-30 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2007-05-18 28464]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-08-30 17448]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 NETw4v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-10-31 2252800]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2005-12-05 48640]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2008-11-28 7168]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WisINT15;WisINT15; \??\C:\Elements\1stboot\WisINT15.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BcmSqlStartupSvc;Služba spouštění serveru SQL Server aplikace Business Contact Manager; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2009-02-23 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 eDataSecurity Service;eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-01-03 506416]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2007-10-01 24576]
R2 eNet Service;eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [2007-12-20 131072]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-09-10 57344]
R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-12-19 24576]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2008-10-16 860160]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-10-03 358936]
R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-11-27 110592]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2009-08-08 71096]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2008-10-16 466944]
R2 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904]
R2 WMIService;ePower Service; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-09-20 167936]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-11-29 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-02-26 33560]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2009-05-27 29262680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408]
-----------------EOF-----------------