vir
Napsal: 15 lis 2010 21:38
Dobrý večer,
prosím o pomoc. mizí mi místo na C disku. jedná se o -3Gb za den. Před třemi dny jsem smazal temp, kde bylo asi 20Gb a za dva dny se tam uložilo asi 2Gb.
Všiml jsem si, že taky na C ve složce User je mě neznámý NTUSER.DAT.
Nevíte někdo, co by to mohlo být?
předem díky
zde je log
toLogfile of random's system information tool 1.08 (written by random/random)
Run by Jeník at 2009-11-15 21:26:58
Microsoft® Windows Vista™ Ultimate
System drive C: has 27 GB (54%) free of 50 GB
Total RAM: 4094 MB (22% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:27:02, on 15.11.2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16386)
Boot mode: Normal
Running processes:
E:\instalacky\Rainlendar2\Rainlendar2.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\trend micro\Jeník.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.qip.ru/search?query=%s&from=IE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Rainlendar2] E:\instalacky\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: Skype.lnk = ?
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: RocketDock.lnk = C:\Program Files (x86)\RocketDock\RocketDock.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\instalacky\comodo\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9086 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe"
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {F614609B-805D-4DFF-8FA9-914F11B2D332}
"C:\Windows\system32\Dwm.exe"
taskeng.exe {D66ABEDC-E0EF-4F63-B559-A3157AED43BD}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Windows Defender\MSASCui.exe" -hide
"C:\Windows\RAVCpl64.exe"
"E:\instalacky\comodo\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Windows\WindowsMobile\wmdSync.exe"
"E:\instalacky\Rainlendar2\Rainlendar2.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9e500c11-1593-4c80-8ea6-39e580010cd0 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3f50511d-0de8-4435-80cd-3aedfe6ac621 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-26218874-a4b2-494e-a4be-0b1463f1030c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b1050b8a-5ce7-468b-859a-9bfe204dde1e
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe" "C:\Users\Jeník\Desktop\Desktop\deep\DEEP_UPRAVA_prechod_krivky.ai"
"C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" "-launchedbycsxs"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4676.4563440.1405974438 "C:\Windows\system32\Macromed\Flash\NPSWF32.dll" 4676 plugin \\.\pipe\gecko-crash-server-pipe.4676
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE" /recycle
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe42_ Global\UsGthrCtrlFltPipeMssGthrPipe42 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot) " "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 640 644 652 65536 648
"C:\Users\Jeník\Desktop\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{4FCBA629-8E8E-4492-8C0A-0DA699842C8F}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2009-05-21 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-05-21 41368]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-02 1579624]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2007-10-01 5426688]
"Skytel"=C:\Windows\Skytel.exe [2007-08-03 1826816]
"COMODO Internet Security"=E:\instalacky\comodo\COMODO\COMODO Internet Security\cfp.exe [2010-03-03 7795984]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 225792]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-07-27 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"Rainlendar2"=E:\instalacky\Rainlendar2\Rainlendar2.exe [2009-08-22 5148672]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2010-05-13 26192168]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
RocketDock.lnk - C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Users\Jeník\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Skype.lnk - C:\Windows\Installer\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeIcon.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=95
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-09-21 18:37:35 ----D---- C:\Users\Jeník\AppData\Roaming\Processing
2010-09-06 11:03:42 ----RD---- C:\Program Files (x86)\Skype
2010-07-27 21:52:18 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-05-04 17:53:52 ----D---- C:\Users\Jeník\AppData\Roaming\Diercke Globus Online
2010-05-04 17:53:41 ----D---- C:\Program Files (x86)\ImagonShared
2010-05-04 15:11:38 ----D---- C:\Users\Jeník\AppData\Roaming\Thunderbird
2010-05-04 15:11:28 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2010-04-19 15:51:40 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2010-04-19 15:51:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2010-04-19 15:51:40 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-04-19 15:51:40 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-04-19 15:51:39 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2010-04-19 15:51:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2010-04-19 15:51:39 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-04-19 15:51:39 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-04-19 15:50:13 ----D---- C:\Windows\SYSWOW64\directx
2010-04-18 14:50:59 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2010-04-18 14:50:09 ----D---- C:\Program Files\NVIDIA Corporation
2010-04-18 14:48:15 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2010-04-18 14:48:15 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\OpenCL.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\nvwgf2umx.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2010-04-18 14:48:12 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2010-04-18 14:48:12 ----A---- C:\Windows\system32\nvoglv64.dll
2010-04-18 14:48:08 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2010-04-18 14:48:08 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2010-04-18 14:48:08 ----A---- C:\Windows\system32\nvcuvid.dll
2010-04-18 14:48:07 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2010-04-18 14:48:07 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2010-04-18 14:48:07 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-04-18 14:48:07 ----A---- C:\Windows\system32\nvcuda.dll
2010-04-18 14:48:06 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2010-04-18 14:48:04 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcompiler.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcod1914.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcod.dll
2010-04-18 14:48:00 ----D---- C:\NVIDIA
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvvsvc.exe
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvsvc64.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvshext.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvmctray.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvcpl.dll
2010-03-22 18:34:06 ----A---- C:\Windows\wnaspi32.dll
2010-03-14 21:12:27 ----HD---- C:\Sandbox
2010-03-14 21:11:49 ----D---- C:\ProgramData\COMODO
2010-03-14 21:04:24 ----D---- C:\Program Files (x86)\COMODO
2010-03-14 21:01:25 ----D---- C:\ProgramData\Comodo Downloader
2010-03-14 20:35:41 ----D---- C:\ProgramData\Alwil Software
2010-03-03 19:54:42 ----A---- C:\Windows\SYSWOW64\guard32.dll
2010-03-03 19:54:42 ----A---- C:\Windows\system32\guard64.dll
2010-03-03 19:54:02 ----A---- C:\Windows\system32\drivers\inspect.sys
2010-03-03 19:54:00 ----A---- C:\Windows\system32\drivers\cmdhlp.sys
2010-03-03 19:54:00 ----A---- C:\Windows\system32\drivers\cmdGuard.sys
2010-03-03 19:53:58 ----A---- C:\Windows\system32\drivers\cmderd.sys
2010-02-12 12:01:24 ----A---- C:\Windows\system32\dns-sd.exe
2010-01-27 18:11:42 ----D---- C:\Users\Jeník\AppData\Roaming\Skype
2010-01-24 23:32:01 ----D---- C:\Users\Jeník\AppData\Roaming\Mozilla
2010-01-10 18:41:30 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2010-01-10 18:41:30 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-01-10 18:41:29 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2010-01-10 18:41:29 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-01-10 18:41:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2010-01-10 18:41:28 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-01-10 18:41:20 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2010-01-10 18:41:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-01-10 18:41:17 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2010-01-10 18:41:17 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-01-10 18:41:15 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-01-10 18:41:12 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2010-01-10 18:41:12 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-01-10 18:41:10 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2010-01-10 18:41:10 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-01-10 18:41:07 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-01-10 18:41:02 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2010-01-10 18:41:02 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-01-10 18:41:01 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2010-01-10 18:41:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2010-01-10 18:41:01 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-01-10 18:41:01 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-01-10 18:41:00 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2010-01-10 18:41:00 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2010-01-10 18:41:00 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-01-10 18:41:00 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-01-10 18:40:59 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-01-10 18:40:59 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-01-10 18:40:59 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-01-10 18:40:59 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-01-10 18:40:58 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-01-10 18:40:58 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-01-10 18:40:56 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-01-10 18:40:52 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-01-10 18:40:52 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-01-10 18:40:51 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2010-01-10 18:40:51 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2010-01-10 18:40:51 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-01-10 18:40:51 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-01-10 18:40:50 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2010-01-10 18:40:50 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2010-01-10 18:40:50 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-01-10 18:40:50 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-01-10 18:40:47 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-01-10 18:40:43 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2010-01-10 18:40:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-01-10 18:40:42 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-01-10 18:40:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2010-01-10 18:40:41 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-01-10 18:40:38 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-01-10 18:40:34 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2010-01-10 18:40:34 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-01-10 18:40:33 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2010-01-10 18:40:33 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-01-10 18:40:30 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-01-10 18:40:26 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-01-10 18:40:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-01-10 18:40:25 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2010-01-10 18:40:25 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-01-10 18:40:22 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-01-10 18:40:17 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2010-01-10 18:40:17 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-01-10 18:40:16 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2010-01-10 18:40:16 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2010-01-10 18:40:16 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-01-10 18:40:16 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-01-10 18:40:13 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-01-10 18:40:09 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-01-10 18:40:09 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-01-10 18:40:08 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2010-01-10 18:40:08 ----A---- C:\Windows\system32\xinput1_3.dll
2010-01-10 18:40:07 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2010-01-10 18:40:07 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-01-10 18:40:04 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-01-10 18:39:59 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2010-01-10 18:39:59 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-01-10 18:39:58 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2010-01-10 18:39:58 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-01-10 18:39:57 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2010-01-10 18:39:57 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-01-10 18:39:55 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-01-10 18:39:55 ----A---- C:\Windows\system32\d3dx10.dll
2010-01-10 18:39:53 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-01-10 18:39:53 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-01-10 18:39:52 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2010-01-10 18:39:52 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2010-01-10 18:39:52 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-01-10 18:39:52 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-01-10 18:39:49 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2010-01-10 18:39:49 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-01-10 18:39:49 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-01-10 18:39:49 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-01-10 18:39:48 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2010-01-10 18:39:48 ----A---- C:\Windows\system32\xinput1_2.dll
2010-01-10 18:39:47 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2010-01-10 18:39:47 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2010-01-10 18:39:47 ----A---- C:\Windows\system32\xinput1_1.dll
2010-01-10 18:39:47 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-01-10 18:39:46 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2010-01-10 18:39:46 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-01-10 18:39:35 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2010-01-10 18:39:35 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-01-10 18:39:34 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-01-10 18:39:32 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2010-01-10 18:39:32 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-01-10 18:39:30 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2010-01-10 18:39:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-01-10 18:39:28 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2010-01-10 18:39:28 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-01-10 18:39:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2010-01-10 18:39:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-01-10 18:39:23 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2010-01-10 18:39:23 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-01-10 18:39:20 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2010-01-10 18:39:20 ----A---- C:\Windows\system32\d3dx9_24.dll
2009-11-18 20:56:54 ----D---- C:\Program Files (x86)\OpenXML-ODF Translator
2009-11-15 21:26:58 ----D---- C:\rsit
2009-11-15 21:15:12 ----D---- C:\Program Files\trend micro
2009-11-04 11:32:12 ----D---- C:\Program Files (x86)\QIP Infium
2009-11-03 18:48:22 ----D---- C:\Program Files\Common Files\Macrovision Shared
2009-11-03 17:42:51 ----D---- C:\Users\Jeník\AppData\Roaming\ZipGenius
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\TXTUSER.EXE
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\patchmod.dll
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\lookmod.dll
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\hookmod.dll
2009-11-03 00:06:15 ----D---- C:\pc-bib
2009-10-25 14:01:11 ----D---- C:\ProgramData\Google
======List of files/folders modified in the last 1 months======
2010-09-06 11:03:41 ----D---- C:\ProgramData\Skype
2010-07-19 12:28:53 ----D---- C:\ProgramData\FLEXnet
2010-07-01 15:02:38 ----D---- C:\Windows\system32\drivers\UMDF
2010-07-01 15:01:59 ----D---- C:\Windows\WindowsMobile
2010-05-04 23:58:12 ----D---- C:\Users\Jeník\AppData\Roaming\VMware
2010-04-26 10:29:56 ----SD---- C:\Users\Jeník\AppData\Roaming\Microsoft
2010-04-19 19:34:01 ----RSD---- C:\Windows\assembly
2010-04-18 16:08:41 ----A---- C:\Windows\Ascd_log.ini
2010-04-18 16:07:25 ----A---- C:\Windows\Ascd_tmp.ini
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvudisp.exe
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvd3dumx.dll
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvapi64.dll
2010-04-02 15:54:44 ----A---- C:\Windows\system32\NVUNINST.EXE
2010-03-23 00:04:11 ----D---- C:\Users\Jeník\AppData\Roaming\Apple Computer
2010-03-14 20:35:41 ----D---- C:\Program Files\Alwil Software
2010-03-14 14:20:12 ----D---- C:\Windows\SYSWOW64\Dexter Screen Saver dir
2010-03-14 14:17:02 ----D---- C:\Users\Jeník\AppData\Roaming\STGU
2010-03-11 10:07:19 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy
2010-03-05 09:13:40 ----A---- C:\Windows\SYSWOW64\msjava.dll
2010-02-03 10:13:46 ----D---- C:\Program Files (x86)\WinRAR
2010-01-05 19:58:10 ----D---- C:\Windows\Minidump
2009-11-18 21:39:11 ----D---- C:\Windows\Microsoft.NET
2009-11-15 21:26:55 ----D---- C:\Windows\Temp
2009-11-15 21:25:10 ----D---- C:\Windows\Prefetch
2009-11-15 21:15:12 ----RD---- C:\Program Files
2009-11-15 16:03:54 ----D---- C:\Users\Jeník\AppData\Roaming\skypePM
2009-11-14 20:25:39 ----D---- C:\Users\Jeník\AppData\Roaming\vlc
2009-11-14 20:09:09 ----D---- C:\Windows\inf
2009-11-14 20:09:09 ----AD---- C:\Windows\System32
2009-11-14 20:09:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-14 20:04:57 ----D---- C:\ProgramData\NVIDIA
2009-11-12 18:20:32 ----RD---- C:\Users
2009-11-12 17:21:05 ----SHD---- C:\Windows\Installer
2009-11-12 17:20:59 ----D---- C:\Program Files (x86)\Opera
2009-11-12 17:20:48 ----SHD---- C:\System Volume Information
2009-11-11 11:28:27 ----D---- C:\Windows\system32\WDI
2009-11-11 00:37:18 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2009-11-11 00:37:14 ----D---- C:\Windows\SYSWOW64\drivers
2009-11-10 23:38:21 ----D---- C:\Windows\system32\catroot2
2009-11-10 22:57:33 ----SD---- C:\Windows\Downloaded Program Files
2009-11-10 22:12:31 ----D---- C:\Windows
2009-11-07 21:55:45 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-04 11:35:23 ----D---- C:\Program Files (x86)\Internet Explorer
2009-11-04 00:06:34 ----D---- C:\Program Files (x86)\Google
2009-11-04 00:04:48 ----RD---- C:\Program Files (x86)
2009-11-03 23:58:36 ----D---- C:\Windows\system32\drivers
2009-11-03 23:55:32 ----HD---- C:\ProgramData
2009-11-03 23:55:32 ----D---- C:\Program Files (x86)\Common Files
2009-11-03 23:55:31 ----AD---- C:\ProgramData\TEMP
2009-11-03 23:50:05 ----D---- C:\Program Files (x86)\DivX
2009-11-03 23:49:32 ----D---- C:\Windows\SysWOW64
2009-11-03 23:42:32 ----D---- C:\ProgramData\VMware
2009-11-03 23:41:51 ----D---- C:\Windows\system32\catroot
2009-11-03 23:36:30 ----D---- C:\Program Files (x86)\The KMPlayer
2009-11-03 23:36:15 ----D---- C:\Windows\system32\Tasks
2009-11-03 23:35:47 ----D---- C:\Windows\winsxs
2009-11-03 23:12:02 ----D---- C:\Users\Jeník\AppData\Roaming\Adobe
2009-11-03 23:09:35 ----D---- C:\Program Files (x86)\Adobe
2009-11-03 22:46:59 ----D---- C:\ProgramData\Adobe
2009-11-03 19:12:03 ----D---- C:\ProgramData\WinZip
2009-11-03 18:56:55 ----D---- C:\Program Files\Common Files\Adobe
2009-11-03 18:52:21 ----RSD---- C:\Windows\Fonts
2009-11-03 18:48:22 ----D---- C:\Program Files\Common Files
2009-11-03 00:06:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2009-10-28 18:24:00 ----D---- C:\Users\Jeník\AppData\Roaming\dvdcss
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2006-11-02 138856]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-06-28 871408]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2010-03-03 19760]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-03-03 216456]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-03-03 33128]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-03-03 84616]
R2 47504;47504; \??\C:\Windows\System32\47504.sys [2001-10-21 6136]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R3 3xHybr64;3xHybrid service; C:\Windows\system32\DRIVERS\3xHybr64.sys [2007-04-20 873216]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\l160x64.sys [2007-12-17 56832]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 19304]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2007-10-02 1227160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-11-01 15680]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2010-04-03 13807976]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 108032]
S2 TBPanel;TBPanel; C:\Windows\system32\drivers\TBPanel.sys []
S3 aj3kb61n;aj3kb61n; C:\Windows\system32\drivers\aj3kb61n.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 6144]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 273920]
S3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys []
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 11008]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 7040]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 6656]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 7936]
S3 radpms;Driver for RADPMS Device; C:\Windows\system32\DRIVERS\radpms.sys []
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2008-10-01 40448]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\winusb.sys [2006-11-02 36864]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2006-11-02 46080]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
R2 CLPSLS;COMODO livePCsupport Service; C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe [2010-02-12 148744]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-04-03 159336]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2006-11-02 26624]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-04-03 240232]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2006-11-02 26624]
S2 cmdAgent;COMODO Internet Security Helper Service; E:\instalacky\comodo\COMODO\COMODO Internet Security\cmdagent.exe [2010-03-03 1220688]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-04 136176]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2009-11-03 1038088]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-08-09 655624]
S3 iPod Service;iPod Service; C:\Program Files (x86)\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------
prosím o pomoc. mizí mi místo na C disku. jedná se o -3Gb za den. Před třemi dny jsem smazal temp, kde bylo asi 20Gb a za dva dny se tam uložilo asi 2Gb.
Všiml jsem si, že taky na C ve složce User je mě neznámý NTUSER.DAT.
Nevíte někdo, co by to mohlo být?
předem díky
zde je log
toLogfile of random's system information tool 1.08 (written by random/random)
Run by Jeník at 2009-11-15 21:26:58
Microsoft® Windows Vista™ Ultimate
System drive C: has 27 GB (54%) free of 50 GB
Total RAM: 4094 MB (22% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:27:02, on 15.11.2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16386)
Boot mode: Normal
Running processes:
E:\instalacky\Rainlendar2\Rainlendar2.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\trend micro\Jeník.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.qip.ru/search?query=%s&from=IE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Rainlendar2] E:\instalacky\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: Skype.lnk = ?
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: RocketDock.lnk = C:\Program Files (x86)\RocketDock\RocketDock.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\instalacky\comodo\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9086 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe"
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {F614609B-805D-4DFF-8FA9-914F11B2D332}
"C:\Windows\system32\Dwm.exe"
taskeng.exe {D66ABEDC-E0EF-4F63-B559-A3157AED43BD}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Windows Defender\MSASCui.exe" -hide
"C:\Windows\RAVCpl64.exe"
"E:\instalacky\comodo\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Windows\WindowsMobile\wmdSync.exe"
"E:\instalacky\Rainlendar2\Rainlendar2.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE" /tsr
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9e500c11-1593-4c80-8ea6-39e580010cd0 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3f50511d-0de8-4435-80cd-3aedfe6ac621 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-26218874-a4b2-494e-a4be-0b1463f1030c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:b1050b8a-5ce7-468b-859a-9bfe204dde1e
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe" /SILENT
"C:\Program Files (x86)\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe" "C:\Users\Jeník\Desktop\Desktop\deep\DEEP_UPRAVA_prechod_krivky.ai"
"C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" "-launchedbycsxs"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4676.4563440.1405974438 "C:\Windows\system32\Macromed\Flash\NPSWF32.dll" 4676 plugin \\.\pipe\gecko-crash-server-pipe.4676
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE" /recycle
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe42_ Global\UsGthrCtrlFltPipeMssGthrPipe42 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot) " "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 640 644 652 65536 648
"C:\Users\Jeník\Desktop\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{4FCBA629-8E8E-4492-8C0A-0DA699842C8F}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~2\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2009-05-21 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-05-21 41368]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2006-11-02 1579624]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2007-10-01 5426688]
"Skytel"=C:\Windows\Skytel.exe [2007-08-03 1826816]
"COMODO Internet Security"=E:\instalacky\comodo\COMODO\COMODO Internet Security\cfp.exe [2010-03-03 7795984]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 225792]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-07-27 500208]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeBridge"= []
"Rainlendar2"=E:\instalacky\Rainlendar2\Rainlendar2.exe [2009-08-22 5148672]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2010-05-13 26192168]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
RocketDock.lnk - C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Users\Jeník\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Skype.lnk - C:\Windows\Installer\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeIcon.exe
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard64.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=95
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-09-21 18:37:35 ----D---- C:\Users\Jeník\AppData\Roaming\Processing
2010-09-06 11:03:42 ----RD---- C:\Program Files (x86)\Skype
2010-07-27 21:52:18 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-05-04 17:53:52 ----D---- C:\Users\Jeník\AppData\Roaming\Diercke Globus Online
2010-05-04 17:53:41 ----D---- C:\Program Files (x86)\ImagonShared
2010-05-04 15:11:38 ----D---- C:\Users\Jeník\AppData\Roaming\Thunderbird
2010-05-04 15:11:28 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2010-04-19 15:51:40 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2010-04-19 15:51:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2010-04-19 15:51:40 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-04-19 15:51:40 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-04-19 15:51:39 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2010-04-19 15:51:39 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2010-04-19 15:51:39 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-04-19 15:51:39 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-04-19 15:50:13 ----D---- C:\Windows\SYSWOW64\directx
2010-04-18 14:50:59 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2010-04-18 14:50:09 ----D---- C:\Program Files\NVIDIA Corporation
2010-04-18 14:48:15 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2010-04-18 14:48:15 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\OpenCL.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\nvwgf2umx.dll
2010-04-18 14:48:15 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2010-04-18 14:48:12 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2010-04-18 14:48:12 ----A---- C:\Windows\system32\nvoglv64.dll
2010-04-18 14:48:08 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2010-04-18 14:48:08 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2010-04-18 14:48:08 ----A---- C:\Windows\system32\nvcuvid.dll
2010-04-18 14:48:07 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2010-04-18 14:48:07 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2010-04-18 14:48:07 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-04-18 14:48:07 ----A---- C:\Windows\system32\nvcuda.dll
2010-04-18 14:48:06 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2010-04-18 14:48:04 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcompiler.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcod1914.dll
2010-04-18 14:48:04 ----A---- C:\Windows\system32\nvcod.dll
2010-04-18 14:48:00 ----D---- C:\NVIDIA
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvvsvc.exe
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvsvc64.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvshext.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvmctray.dll
2010-04-03 17:42:00 ----A---- C:\Windows\system32\nvcpl.dll
2010-03-22 18:34:06 ----A---- C:\Windows\wnaspi32.dll
2010-03-14 21:12:27 ----HD---- C:\Sandbox
2010-03-14 21:11:49 ----D---- C:\ProgramData\COMODO
2010-03-14 21:04:24 ----D---- C:\Program Files (x86)\COMODO
2010-03-14 21:01:25 ----D---- C:\ProgramData\Comodo Downloader
2010-03-14 20:35:41 ----D---- C:\ProgramData\Alwil Software
2010-03-03 19:54:42 ----A---- C:\Windows\SYSWOW64\guard32.dll
2010-03-03 19:54:42 ----A---- C:\Windows\system32\guard64.dll
2010-03-03 19:54:02 ----A---- C:\Windows\system32\drivers\inspect.sys
2010-03-03 19:54:00 ----A---- C:\Windows\system32\drivers\cmdhlp.sys
2010-03-03 19:54:00 ----A---- C:\Windows\system32\drivers\cmdGuard.sys
2010-03-03 19:53:58 ----A---- C:\Windows\system32\drivers\cmderd.sys
2010-02-12 12:01:24 ----A---- C:\Windows\system32\dns-sd.exe
2010-01-27 18:11:42 ----D---- C:\Users\Jeník\AppData\Roaming\Skype
2010-01-24 23:32:01 ----D---- C:\Users\Jeník\AppData\Roaming\Mozilla
2010-01-10 18:41:30 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2010-01-10 18:41:30 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-01-10 18:41:29 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2010-01-10 18:41:29 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-01-10 18:41:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2010-01-10 18:41:28 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-01-10 18:41:22 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-01-10 18:41:20 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2010-01-10 18:41:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-01-10 18:41:17 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2010-01-10 18:41:17 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-01-10 18:41:15 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-01-10 18:41:15 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-01-10 18:41:12 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2010-01-10 18:41:12 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2010-01-10 18:41:11 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-01-10 18:41:11 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-01-10 18:41:10 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2010-01-10 18:41:10 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-01-10 18:41:07 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-01-10 18:41:07 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-01-10 18:41:02 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2010-01-10 18:41:02 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-01-10 18:41:01 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2010-01-10 18:41:01 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2010-01-10 18:41:01 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-01-10 18:41:01 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-01-10 18:41:00 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2010-01-10 18:41:00 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2010-01-10 18:41:00 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-01-10 18:41:00 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-01-10 18:40:59 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-01-10 18:40:59 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-01-10 18:40:59 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-01-10 18:40:59 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-01-10 18:40:58 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-01-10 18:40:58 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-01-10 18:40:56 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-01-10 18:40:56 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-01-10 18:40:52 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-01-10 18:40:52 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-01-10 18:40:51 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2010-01-10 18:40:51 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2010-01-10 18:40:51 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-01-10 18:40:51 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-01-10 18:40:50 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2010-01-10 18:40:50 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2010-01-10 18:40:50 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-01-10 18:40:50 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-01-10 18:40:47 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-01-10 18:40:47 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-01-10 18:40:43 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2010-01-10 18:40:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-01-10 18:40:42 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-01-10 18:40:42 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-01-10 18:40:41 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2010-01-10 18:40:41 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-01-10 18:40:38 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-01-10 18:40:38 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-01-10 18:40:34 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2010-01-10 18:40:34 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-01-10 18:40:33 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2010-01-10 18:40:33 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-01-10 18:40:30 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-01-10 18:40:30 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-01-10 18:40:26 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-01-10 18:40:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-01-10 18:40:25 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2010-01-10 18:40:25 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-01-10 18:40:22 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-01-10 18:40:22 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-01-10 18:40:17 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2010-01-10 18:40:17 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-01-10 18:40:16 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2010-01-10 18:40:16 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2010-01-10 18:40:16 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-01-10 18:40:16 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-01-10 18:40:13 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-01-10 18:40:13 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-01-10 18:40:09 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-01-10 18:40:09 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-01-10 18:40:08 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2010-01-10 18:40:08 ----A---- C:\Windows\system32\xinput1_3.dll
2010-01-10 18:40:07 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2010-01-10 18:40:07 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-01-10 18:40:04 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-01-10 18:40:04 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-01-10 18:39:59 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2010-01-10 18:39:59 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-01-10 18:39:58 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2010-01-10 18:39:58 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-01-10 18:39:57 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2010-01-10 18:39:57 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-01-10 18:39:55 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-01-10 18:39:55 ----A---- C:\Windows\system32\d3dx10.dll
2010-01-10 18:39:53 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-01-10 18:39:53 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-01-10 18:39:52 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2010-01-10 18:39:52 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2010-01-10 18:39:52 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-01-10 18:39:52 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-01-10 18:39:49 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2010-01-10 18:39:49 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-01-10 18:39:49 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-01-10 18:39:49 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-01-10 18:39:48 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2010-01-10 18:39:48 ----A---- C:\Windows\system32\xinput1_2.dll
2010-01-10 18:39:47 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2010-01-10 18:39:47 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2010-01-10 18:39:47 ----A---- C:\Windows\system32\xinput1_1.dll
2010-01-10 18:39:47 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-01-10 18:39:46 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2010-01-10 18:39:46 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-01-10 18:39:35 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2010-01-10 18:39:35 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-01-10 18:39:34 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-01-10 18:39:34 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-01-10 18:39:32 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2010-01-10 18:39:32 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-01-10 18:39:30 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2010-01-10 18:39:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-01-10 18:39:28 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2010-01-10 18:39:28 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-01-10 18:39:25 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2010-01-10 18:39:25 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-01-10 18:39:23 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2010-01-10 18:39:23 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-01-10 18:39:20 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2010-01-10 18:39:20 ----A---- C:\Windows\system32\d3dx9_24.dll
2009-11-18 20:56:54 ----D---- C:\Program Files (x86)\OpenXML-ODF Translator
2009-11-15 21:26:58 ----D---- C:\rsit
2009-11-15 21:15:12 ----D---- C:\Program Files\trend micro
2009-11-04 11:32:12 ----D---- C:\Program Files (x86)\QIP Infium
2009-11-03 18:48:22 ----D---- C:\Program Files\Common Files\Macrovision Shared
2009-11-03 17:42:51 ----D---- C:\Users\Jeník\AppData\Roaming\ZipGenius
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\TXTUSER.EXE
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\patchmod.dll
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\lookmod.dll
2009-11-03 00:06:20 ----N---- C:\Windows\SYSWOW64\hookmod.dll
2009-11-03 00:06:15 ----D---- C:\pc-bib
2009-10-25 14:01:11 ----D---- C:\ProgramData\Google
======List of files/folders modified in the last 1 months======
2010-09-06 11:03:41 ----D---- C:\ProgramData\Skype
2010-07-19 12:28:53 ----D---- C:\ProgramData\FLEXnet
2010-07-01 15:02:38 ----D---- C:\Windows\system32\drivers\UMDF
2010-07-01 15:01:59 ----D---- C:\Windows\WindowsMobile
2010-05-04 23:58:12 ----D---- C:\Users\Jeník\AppData\Roaming\VMware
2010-04-26 10:29:56 ----SD---- C:\Users\Jeník\AppData\Roaming\Microsoft
2010-04-19 19:34:01 ----RSD---- C:\Windows\assembly
2010-04-18 16:08:41 ----A---- C:\Windows\Ascd_log.ini
2010-04-18 16:07:25 ----A---- C:\Windows\Ascd_tmp.ini
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvudisp.exe
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvd3dumx.dll
2010-04-03 23:55:31 ----A---- C:\Windows\system32\nvapi64.dll
2010-04-02 15:54:44 ----A---- C:\Windows\system32\NVUNINST.EXE
2010-03-23 00:04:11 ----D---- C:\Users\Jeník\AppData\Roaming\Apple Computer
2010-03-14 20:35:41 ----D---- C:\Program Files\Alwil Software
2010-03-14 14:20:12 ----D---- C:\Windows\SYSWOW64\Dexter Screen Saver dir
2010-03-14 14:17:02 ----D---- C:\Users\Jeník\AppData\Roaming\STGU
2010-03-11 10:07:19 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy
2010-03-05 09:13:40 ----A---- C:\Windows\SYSWOW64\msjava.dll
2010-02-03 10:13:46 ----D---- C:\Program Files (x86)\WinRAR
2010-01-05 19:58:10 ----D---- C:\Windows\Minidump
2009-11-18 21:39:11 ----D---- C:\Windows\Microsoft.NET
2009-11-15 21:26:55 ----D---- C:\Windows\Temp
2009-11-15 21:25:10 ----D---- C:\Windows\Prefetch
2009-11-15 21:15:12 ----RD---- C:\Program Files
2009-11-15 16:03:54 ----D---- C:\Users\Jeník\AppData\Roaming\skypePM
2009-11-14 20:25:39 ----D---- C:\Users\Jeník\AppData\Roaming\vlc
2009-11-14 20:09:09 ----D---- C:\Windows\inf
2009-11-14 20:09:09 ----AD---- C:\Windows\System32
2009-11-14 20:09:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-14 20:04:57 ----D---- C:\ProgramData\NVIDIA
2009-11-12 18:20:32 ----RD---- C:\Users
2009-11-12 17:21:05 ----SHD---- C:\Windows\Installer
2009-11-12 17:20:59 ----D---- C:\Program Files (x86)\Opera
2009-11-12 17:20:48 ----SHD---- C:\System Volume Information
2009-11-11 11:28:27 ----D---- C:\Windows\system32\WDI
2009-11-11 00:37:18 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2009-11-11 00:37:14 ----D---- C:\Windows\SYSWOW64\drivers
2009-11-10 23:38:21 ----D---- C:\Windows\system32\catroot2
2009-11-10 22:57:33 ----SD---- C:\Windows\Downloaded Program Files
2009-11-10 22:12:31 ----D---- C:\Windows
2009-11-07 21:55:45 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-04 11:35:23 ----D---- C:\Program Files (x86)\Internet Explorer
2009-11-04 00:06:34 ----D---- C:\Program Files (x86)\Google
2009-11-04 00:04:48 ----RD---- C:\Program Files (x86)
2009-11-03 23:58:36 ----D---- C:\Windows\system32\drivers
2009-11-03 23:55:32 ----HD---- C:\ProgramData
2009-11-03 23:55:32 ----D---- C:\Program Files (x86)\Common Files
2009-11-03 23:55:31 ----AD---- C:\ProgramData\TEMP
2009-11-03 23:50:05 ----D---- C:\Program Files (x86)\DivX
2009-11-03 23:49:32 ----D---- C:\Windows\SysWOW64
2009-11-03 23:42:32 ----D---- C:\ProgramData\VMware
2009-11-03 23:41:51 ----D---- C:\Windows\system32\catroot
2009-11-03 23:36:30 ----D---- C:\Program Files (x86)\The KMPlayer
2009-11-03 23:36:15 ----D---- C:\Windows\system32\Tasks
2009-11-03 23:35:47 ----D---- C:\Windows\winsxs
2009-11-03 23:12:02 ----D---- C:\Users\Jeník\AppData\Roaming\Adobe
2009-11-03 23:09:35 ----D---- C:\Program Files (x86)\Adobe
2009-11-03 22:46:59 ----D---- C:\ProgramData\Adobe
2009-11-03 19:12:03 ----D---- C:\ProgramData\WinZip
2009-11-03 18:56:55 ----D---- C:\Program Files\Common Files\Adobe
2009-11-03 18:52:21 ----RSD---- C:\Windows\Fonts
2009-11-03 18:48:22 ----D---- C:\Program Files\Common Files
2009-11-03 00:06:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2009-10-28 18:24:00 ----D---- C:\Users\Jeník\AppData\Roaming\dvdcss
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2006-11-02 138856]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2009-06-28 871408]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2010-03-03 19760]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-03-03 216456]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-03-03 33128]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-03-03 84616]
R2 47504;47504; \??\C:\Windows\System32\47504.sys [2001-10-21 6136]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R3 3xHybr64;3xHybrid service; C:\Windows\system32\DRIVERS\3xHybr64.sys [2007-04-20 873216]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\l160x64.sys [2007-12-17 56832]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 19304]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2007-10-02 1227160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-11-01 15680]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2010-04-03 13807976]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 108032]
S2 TBPanel;TBPanel; C:\Windows\system32\drivers\TBPanel.sys []
S3 aj3kb61n;aj3kb61n; C:\Windows\system32\drivers\aj3kb61n.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 6144]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 273920]
S3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys []
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 11008]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 7040]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 6656]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 7936]
S3 radpms;Driver for RADPMS Device; C:\Windows\system32\DRIVERS\radpms.sys []
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2008-10-01 40448]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\winusb.sys [2006-11-02 36864]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2006-11-02 46080]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
R2 CLPSLS;COMODO livePCsupport Service; C:\Program Files (x86)\COMODO\COMODO livePCsupport\CLPSLS.exe [2010-02-12 148744]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-04-03 159336]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2006-11-02 26624]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-04-03 240232]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2006-11-02 26624]
S2 cmdAgent;COMODO Internet Security Helper Service; E:\instalacky\comodo\COMODO\COMODO Internet Security\cmdagent.exe [2010-03-03 1220688]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-04 136176]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2009-11-03 1038088]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-08-09 655624]
S3 iPod Service;iPod Service; C:\Program Files (x86)\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------