Prosím o kontrolu
Napsal: 19 lis 2010 16:51
Logfile of random's system information tool 1.08 (written by random/random)
Run by Hana at 2010-11-19 10:06:32
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 5 GB (16%) free of 30 GB
Total RAM: 959 MB (61% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - C:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-08-13 757192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2005-09-22 90112]
"NvCplDaemon"=C:\WINDOWS\System32\NvCpl.dll [2005-10-10 7286784]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\System32\NvMcTray.dll [2005-10-10 86016]
"NVRTCLK"=C:\WINDOWS\System32\NVRTCLK\NVRTClk.exe [2003-12-30 24576]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2003-10-31 32768]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe [2005-11-29 40960]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-06-29 286720]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2006-12-08 241664]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe -hide -runkey []
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-26 81920]
"selejoo"=C:\WINDOWS\system32\dyzyvow.exe [2010-11-12 201216]
"Windows Firewall"=C:\DOCUME~1\Hana\LOCALS~1\Temp\lsass.exe [2010-11-15 57344]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-07-19 78008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-17 1667584]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"fsm"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-26 81920]
"Windows Firewall"=C:\DOCUME~1\Hana\LOCALS~1\Temp\lsass.exe [2010-11-15 57344]
"MSConfig"=C:\Documents and Settings\Hana\dgupts.exe [2010-11-15 19456]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
C:\Documents and Settings\Hana\Nabídka Start\Programy\Po spuštění
0c3oo3a.exe
0dzuk6w.exe
0epqb0x.exe
0idt9pq.exe
0jee6qq.exe
0jfavmm.exe
0nnezzq.exe
0oojaav.exe
0uupggb.exe
1gccxi3.exe
1ze1aww.exe
3gg3ss3.exe
3kkfwwr.exe
3mm7dze.exe
3uupggb.exe
3zpqq72.exe
4hdttpf.exe
5hcnoe0.exe
5jp5fwm.exe
5p1gbm5.exe
60u3gg3.exe
675tka5.exe
6cc6oo6.exe
6ee6qq6.exe
6oo6aa6.exe
6w9i70j.exe
70vrmm6.exe
7pqq720.exe
870lhcc.exe
870rcii.exe
8e0u3gg.exe
9i1eaav.exe
9i70jfa.exe
9whnyye.exe
aa6mm6otp.exe
bw9i70jfa.exe
c3oo3aa3.exe
cidzkav3rc.exe
cyytkkfwwr.exe
d75k70lhcc.exe
due4bmhhyt.exe
duupggbs.exe
ee6qq6cc6.exe
ekffwrrid.exe
ekqwcd5f.exe
f6lcxxoo9.exe
fa1wssneez.exe
faa6mm6yy.exe
ffbrrnddzpp.exe
g3i70jfaa6m.exe
g5h0dyeu.exe
g6ss6ee6.exe
gwhnyyekw.exe
hhi70jfaa6m.exe
hsnnezzql.exe
hxxtjjfv.exe
i3kkfwwriid.exe
i60pawr2.exe
i70jfaa6m.exe
idzkav3r.exe
io5p1gbm.exe
jfvvmrni.exe
jfvvrhhdtt.exe
jtepqb0x0n.exe
k70lhcc6o.exe
lm0c30u3.exe
lm70njee6q.exe
m1d3ka5l.exe
m75y76975.exe
mhyytkkf.exe
mmxojekq3.exe
n0jzf3l0h.exe
n23uu3gh.exe
nddep723.exe
neezqqlccxo.exe
njue4bmhhy.exe
nntzavbg.exe
no5p1gbm5n.exe
no70plgg6s.exe
ntjk0a3mm3.exe
ny3kfq91s.exe
o0pawr26o.exe
o5p0llcxxo.exe
oj3aqg0iio.exe
oojaavmm.exe
pffbrrnd.exe
pfg0w3itjk.exe
pggbssneezq.exe
pkk6ww6ii6u.exe
ppqq720215f.exe
qbc0yyekwm.exe
qq3cc30u3aa.exe
qq6sc3oo3aa.exe
riiduupggbs.exe
rinjzzvl.exe
rm1ieezqql.exe
rnddzppl.exe
s3uu5v0rrid.exe
sy5pkll0.exe
t0zkfwwri.exe
too6aa6ch.exe
tpkk6ww6.exe
ttpffbrrndd.exe
tze1awwrii.exe
u1qmmhyytk.exe
uka006u3k9.exe
upggbsstek.exe
v0rriddup.exe
va3mm3yy.exe
vbrs0jj60a.exe
vmmhyytk.exe
vq1cnii3uu.exe
vq1miiduup.exe
w1soojaa.exe
wr0nnezzql.exe
xd0zzqllc.exe
xoojaa5b0xx.exe
xtjjfvvm.exe
xtoo6aa6.exe
y5p0vmm5n0.exe
ydezpqb0xs.exe
yjpu3gg3ss.exe
z26wrrid.exe
zkffwrrid.exe
zuu6gg6ss6e.exe
zvllhxxt.exe
zvqq6cc6.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sarjuozb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\zulyvxsb.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sarjuozb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\zulyvxsb.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQLite\ICQLite.exe"="C:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"C:\Documents and Settings\Hana\Plocha\incredimail_install.exe"="C:\Documents and Settings\Hana\Plocha\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe"="C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI"
"C:\Program Files\uTorrent\utorrent.exe"="C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Hana\Local Settings\Temporary Internet Files\Content.IE5\Z7WADBEK\P17535732.JPG-www.facebook[1].exe"="C:\WINDOWS\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-11-19 10:06:32 ----D---- C:\rsit
2010-11-19 10:06:32 ----D---- C:\Program Files\trend micro
2010-11-17 17:26:31 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2010-11-17 17:26:31 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2010-11-17 17:26:30 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2010-11-17 17:20:35 ----A---- C:\setupcze.exe
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2010-11-17 17:16:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-11-17 16:54:05 ----A---- C:\WINDOWS\ntbtlog.txt
2010-11-16 17:34:39 ----A---- C:\WINDOWS\system32\drivers\pkk3b5f.sys
2010-11-16 17:29:09 ----A---- C:\WINDOWS\system32\drivers\ppj8673.sys
2010-11-16 17:23:31 ----A---- C:\WINDOWS\system32\drivers\ttabhycv.sys
2010-11-16 12:46:37 ----A---- C:\WINDOWS\system32\drivers\onn233f.sys
2010-11-16 07:24:36 ----A---- C:\WINDOWS\system32\drivers\sarjuozb.sys
2010-11-16 05:45:11 ----A---- C:\winnt7.exe
2010-11-16 05:44:05 ----A---- C:\WINDOWS\system32\roorotatouj.exe
2010-11-15 19:57:02 ----A---- C:\WINDOWS\system32\drivers\zulyvxsb.sys
2010-11-12 21:26:51 ----A---- C:\WINDOWS\system32\jemmequypuqu.exe
2010-11-12 21:26:29 ----A---- C:\WINDOWS\system32\dyzyvow.exe
2010-11-12 21:25:28 ----RSH---- C:\Documents and Settings\Hana\Data aplikací\juzjf.exe
2010-11-12 21:25:08 ----A---- C:\min32.exe
2010-10-26 20:59:02 ----RSH---- C:\WINDOWS\nvsvc32.exe
======List of files/folders modified in the last 1 months======
2010-11-19 10:06:32 ----RD---- C:\Program Files
2010-11-19 10:05:56 ----AD---- C:\WINDOWS\Temp
2010-11-19 09:44:08 ----RSHD---- C:\RECYCLER
2010-11-19 09:41:56 ----D---- C:\WINDOWS
2010-11-19 09:41:39 ----D---- C:\Documents and Settings\Hana\Data aplikací\Skype
2010-11-17 17:26:31 ----D---- C:\WINDOWS\system32\drivers
2010-11-17 17:21:41 ----AC---- C:\WINDOWS\NeroDigital.ini
2010-11-17 17:16:55 ----D---- C:\WINDOWS\system32
2010-11-17 17:16:38 ----D---- C:\WINDOWS\Prefetch
2010-11-17 16:58:15 ----D---- C:\Program Files\Software Informer
2010-11-17 16:54:29 ----D---- C:\Documents and Settings
2010-11-17 16:34:57 ----D---- C:\WINDOWS\Debug
2010-11-17 16:27:21 ----D---- C:\Program Files\CCleaner
2010-11-16 08:11:50 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-10-31 20:06:43 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-10-31 20:05:28 ----D---- C:\Documents and Settings\Hana\Data aplikací\skypePM
2010-10-29 17:10:26 ----D---- C:\Program Files\Mozilla Firefox
2010-10-29 10:03:49 ----HD---- C:\WINDOWS\inf
2010-10-29 10:03:47 ----D---- C:\WINDOWS\system32\CatRoot2
2010-10-26 20:59:04 ----SD---- C:\WINDOWS\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-04-23 36624]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-04-04 48640]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-02-23 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2005-04-14 19968]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-08-24 717296]
R0 zulyvxsb;zulyvxsb; C:\WINDOWS\System32\Drivers\zulyvxsb.sys [2010-11-15 40128]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-07-19 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-07-19 42912]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-03-25 151216]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-09-10 5632]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-07-19 94416]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-09-22 3727680]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-07-19 23152]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2006-07-14 14848]
R3 gMouUsb;USB Mouse Device Drv; C:\WINDOWS\system32\DRIVERS\gMouUsb.sys [2006-07-14 9984]
R3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2005-10-10 3530432]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [2005-07-29 34048]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [2005-07-29 12928]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S1 onn233f;onn233f; C:\WINDOWS\System32\drivers\onn233f.sys [2010-11-16 138272]
S2 sarjuozb;sarjuozb; C:\WINDOWS\system32\drivers\sarjuozb.sys [2010-11-16 82944]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 gMouPS2;PS2 Scroll Mouse Device; C:\WINDOWS\system32\DRIVERS\gMouPS2.sys [2006-07-12 17408]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 SNPSTD3;USB PC Camera (SNPSTD3); C:\WINDOWS\system32\DRIVERS\snpstd3.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-07-19 16056]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-07-19 147640]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\System32\nvsvc32.exe [2005-10-10 131139]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-07-19 250040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-07-19 348344]
S2 eiiau5yqpeaeyuop;Blue Coat K9 Web Protection; C:\WINDOWS\system32\jemmequypuqu.exe [2010-11-12 201216]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
S4 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2010-03-25 17904]
-----------------EOF-----------------
Run by Hana at 2010-11-19 10:06:32
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 5 GB (16%) free of 30 GB
Total RAM: 959 MB (61% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - C:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-08-13 757192]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2005-09-22 90112]
"NvCplDaemon"=C:\WINDOWS\System32\NvCpl.dll [2005-10-10 7286784]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\System32\NvMcTray.dll [2005-10-10 86016]
"NVRTCLK"=C:\WINDOWS\System32\NVRTCLK\NVRTClk.exe [2003-12-30 24576]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2003-10-31 32768]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe [2005-11-29 40960]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2007-06-29 286720]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2006-12-08 241664]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe -hide -runkey []
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-26 81920]
"selejoo"=C:\WINDOWS\system32\dyzyvow.exe [2010-11-12 201216]
"Windows Firewall"=C:\DOCUME~1\Hana\LOCALS~1\Temp\lsass.exe [2010-11-15 57344]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-07-19 78008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-17 1667584]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"fsm"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-26 81920]
"Windows Firewall"=C:\DOCUME~1\Hana\LOCALS~1\Temp\lsass.exe [2010-11-15 57344]
"MSConfig"=C:\Documents and Settings\Hana\dgupts.exe [2010-11-15 19456]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
C:\Documents and Settings\Hana\Nabídka Start\Programy\Po spuštění
0c3oo3a.exe
0dzuk6w.exe
0epqb0x.exe
0idt9pq.exe
0jee6qq.exe
0jfavmm.exe
0nnezzq.exe
0oojaav.exe
0uupggb.exe
1gccxi3.exe
1ze1aww.exe
3gg3ss3.exe
3kkfwwr.exe
3mm7dze.exe
3uupggb.exe
3zpqq72.exe
4hdttpf.exe
5hcnoe0.exe
5jp5fwm.exe
5p1gbm5.exe
60u3gg3.exe
675tka5.exe
6cc6oo6.exe
6ee6qq6.exe
6oo6aa6.exe
6w9i70j.exe
70vrmm6.exe
7pqq720.exe
870lhcc.exe
870rcii.exe
8e0u3gg.exe
9i1eaav.exe
9i70jfa.exe
9whnyye.exe
aa6mm6otp.exe
bw9i70jfa.exe
c3oo3aa3.exe
cidzkav3rc.exe
cyytkkfwwr.exe
d75k70lhcc.exe
due4bmhhyt.exe
duupggbs.exe
ee6qq6cc6.exe
ekffwrrid.exe
ekqwcd5f.exe
f6lcxxoo9.exe
fa1wssneez.exe
faa6mm6yy.exe
ffbrrnddzpp.exe
g3i70jfaa6m.exe
g5h0dyeu.exe
g6ss6ee6.exe
gwhnyyekw.exe
hhi70jfaa6m.exe
hsnnezzql.exe
hxxtjjfv.exe
i3kkfwwriid.exe
i60pawr2.exe
i70jfaa6m.exe
idzkav3r.exe
io5p1gbm.exe
jfvvmrni.exe
jfvvrhhdtt.exe
jtepqb0x0n.exe
k70lhcc6o.exe
lm0c30u3.exe
lm70njee6q.exe
m1d3ka5l.exe
m75y76975.exe
mhyytkkf.exe
mmxojekq3.exe
n0jzf3l0h.exe
n23uu3gh.exe
nddep723.exe
neezqqlccxo.exe
njue4bmhhy.exe
nntzavbg.exe
no5p1gbm5n.exe
no70plgg6s.exe
ntjk0a3mm3.exe
ny3kfq91s.exe
o0pawr26o.exe
o5p0llcxxo.exe
oj3aqg0iio.exe
oojaavmm.exe
pffbrrnd.exe
pfg0w3itjk.exe
pggbssneezq.exe
pkk6ww6ii6u.exe
ppqq720215f.exe
qbc0yyekwm.exe
qq3cc30u3aa.exe
qq6sc3oo3aa.exe
riiduupggbs.exe
rinjzzvl.exe
rm1ieezqql.exe
rnddzppl.exe
s3uu5v0rrid.exe
sy5pkll0.exe
t0zkfwwri.exe
too6aa6ch.exe
tpkk6ww6.exe
ttpffbrrndd.exe
tze1awwrii.exe
u1qmmhyytk.exe
uka006u3k9.exe
upggbsstek.exe
v0rriddup.exe
va3mm3yy.exe
vbrs0jj60a.exe
vmmhyytk.exe
vq1cnii3uu.exe
vq1miiduup.exe
w1soojaa.exe
wr0nnezzql.exe
xd0zzqllc.exe
xoojaa5b0xx.exe
xtjjfvvm.exe
xtoo6aa6.exe
y5p0vmm5n0.exe
ydezpqb0xs.exe
yjpu3gg3ss.exe
z26wrrid.exe
zkffwrrid.exe
zuu6gg6ss6e.exe
zvllhxxt.exe
zvqq6cc6.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sarjuozb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\zulyvxsb.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sarjuozb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\zulyvxsb.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQLite\ICQLite.exe"="C:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"C:\Documents and Settings\Hana\Plocha\incredimail_install.exe"="C:\Documents and Settings\Hana\Plocha\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe"="C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI"
"C:\Program Files\uTorrent\utorrent.exe"="C:\Program Files\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\Hana\Local Settings\Temporary Internet Files\Content.IE5\Z7WADBEK\P17535732.JPG-www.facebook[1].exe"="C:\WINDOWS\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-11-19 10:06:32 ----D---- C:\rsit
2010-11-19 10:06:32 ----D---- C:\Program Files\trend micro
2010-11-17 17:26:31 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2010-11-17 17:26:31 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2010-11-17 17:26:30 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2010-11-17 17:20:35 ----A---- C:\setupcze.exe
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2010-11-17 17:16:55 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2010-11-17 17:16:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-11-17 16:54:05 ----A---- C:\WINDOWS\ntbtlog.txt
2010-11-16 17:34:39 ----A---- C:\WINDOWS\system32\drivers\pkk3b5f.sys
2010-11-16 17:29:09 ----A---- C:\WINDOWS\system32\drivers\ppj8673.sys
2010-11-16 17:23:31 ----A---- C:\WINDOWS\system32\drivers\ttabhycv.sys
2010-11-16 12:46:37 ----A---- C:\WINDOWS\system32\drivers\onn233f.sys
2010-11-16 07:24:36 ----A---- C:\WINDOWS\system32\drivers\sarjuozb.sys
2010-11-16 05:45:11 ----A---- C:\winnt7.exe
2010-11-16 05:44:05 ----A---- C:\WINDOWS\system32\roorotatouj.exe
2010-11-15 19:57:02 ----A---- C:\WINDOWS\system32\drivers\zulyvxsb.sys
2010-11-12 21:26:51 ----A---- C:\WINDOWS\system32\jemmequypuqu.exe
2010-11-12 21:26:29 ----A---- C:\WINDOWS\system32\dyzyvow.exe
2010-11-12 21:25:28 ----RSH---- C:\Documents and Settings\Hana\Data aplikací\juzjf.exe
2010-11-12 21:25:08 ----A---- C:\min32.exe
2010-10-26 20:59:02 ----RSH---- C:\WINDOWS\nvsvc32.exe
======List of files/folders modified in the last 1 months======
2010-11-19 10:06:32 ----RD---- C:\Program Files
2010-11-19 10:05:56 ----AD---- C:\WINDOWS\Temp
2010-11-19 09:44:08 ----RSHD---- C:\RECYCLER
2010-11-19 09:41:56 ----D---- C:\WINDOWS
2010-11-19 09:41:39 ----D---- C:\Documents and Settings\Hana\Data aplikací\Skype
2010-11-17 17:26:31 ----D---- C:\WINDOWS\system32\drivers
2010-11-17 17:21:41 ----AC---- C:\WINDOWS\NeroDigital.ini
2010-11-17 17:16:55 ----D---- C:\WINDOWS\system32
2010-11-17 17:16:38 ----D---- C:\WINDOWS\Prefetch
2010-11-17 16:58:15 ----D---- C:\Program Files\Software Informer
2010-11-17 16:54:29 ----D---- C:\Documents and Settings
2010-11-17 16:34:57 ----D---- C:\WINDOWS\Debug
2010-11-17 16:27:21 ----D---- C:\Program Files\CCleaner
2010-11-16 08:11:50 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-10-31 20:06:43 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-10-31 20:05:28 ----D---- C:\Documents and Settings\Hana\Data aplikací\skypePM
2010-10-29 17:10:26 ----D---- C:\Program Files\Mozilla Firefox
2010-10-29 10:03:49 ----HD---- C:\WINDOWS\inf
2010-10-29 10:03:47 ----D---- C:\WINDOWS\system32\CatRoot2
2010-10-26 20:59:04 ----SD---- C:\WINDOWS\Tasks
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-04-23 36624]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-04-04 48640]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-02-23 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2005-04-14 19968]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-08-24 717296]
R0 zulyvxsb;zulyvxsb; C:\WINDOWS\System32\Drivers\zulyvxsb.sys [2010-11-15 40128]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-07-19 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-07-19 42912]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-03-25 151216]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-09-10 5632]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-07-19 94416]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2005-09-22 3727680]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-07-19 23152]
R3 gHidPnp;USB Device Enhanced Function Driver; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [2006-07-14 14848]
R3 gMouUsb;USB Mouse Device Drv; C:\WINDOWS\system32\DRIVERS\gMouUsb.sys [2006-07-14 9984]
R3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2005-10-10 3530432]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [2005-07-29 34048]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [2005-07-29 12928]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S1 onn233f;onn233f; C:\WINDOWS\System32\drivers\onn233f.sys [2010-11-16 138272]
S2 sarjuozb;sarjuozb; C:\WINDOWS\system32\drivers\sarjuozb.sys [2010-11-16 82944]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 gMouPS2;PS2 Scroll Mouse Device; C:\WINDOWS\system32\DRIVERS\gMouPS2.sys [2006-07-12 17408]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 SNPSTD3;USB PC Camera (SNPSTD3); C:\WINDOWS\system32\DRIVERS\snpstd3.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-07-19 16056]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-07-19 147640]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\System32\nvsvc32.exe [2005-10-10 131139]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-07-19 250040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-07-19 348344]
S2 eiiau5yqpeaeyuop;Blue Coat K9 Web Protection; C:\WINDOWS\system32\jemmequypuqu.exe [2010-11-12 201216]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
S4 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2010-03-25 17904]
-----------------EOF-----------------