prosím o kontrolu blbne mi notebook
Napsal: 22 lis 2010 17:10
Logfile of random's system information tool 1.06 (written by random/random)
Run by Hana Pojmonová at 2010-11-22 16:58:01
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 6 GB (42%) free of 15 GB
Total RAM: 1012 MB (56% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-05-15 16862720]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"AzMixerSel"=C:\Program Files\Realtek\Audio\InstallShield\AzMixerSel.exe [2006-07-17 53248]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-24 1044480]
"LManager"=C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE [2008-05-13 821768]
"M3000Mnt"=M3000Rmv.dll ,WinMainRmv /StartStillMnt []
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-17 62464]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-17 62464]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-11 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStart]
C:\DOCUME~1\HANAPO~1\LOCALS~1\Temp\9141.exe [2010-11-20 31232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\boodak]
C:\WINDOWS\system32\jofebe.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2008-04-14 208952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcagent_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
C:\Documents and Settings\Hana Pojmonová\fxyw.exe [2010-11-18 19456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2008-04-14 59392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-14 455168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-14 455168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProductReg]
C:\Program Files\Acer\WR_PopUp\ProductReg.exe [2008-09-23 6144]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-04-10 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Firewall]
C:\DOCUME~1\HANAPO~1\LOCALS~1\Temp\lsass.exe [2010-11-14 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0hxd66k.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0hxd66k.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0pfl60n.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0pfl60n.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0zu0lg0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0zu0lg0.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^15k7brh.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\15k7brh.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^1yze3a1.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\1yze3a1.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^66k81wh.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\66k81wh.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^6douu5v.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\6douu5v.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^6s86e3a.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\6s86e3a.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^70aaqg0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\70aaqg0.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^bg8703ek5f.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\bg8703ek5f.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^c1yo1klq.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\c1yo1klq.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^fqlgmm3yy.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\fqlgmm3yy.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^g81sdezf66w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\g81sdezf66w.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^grniojf66w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\grniojf66w.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^j5k7brh3.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\j5k7brh3.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^jkf081mx.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\jkf081mx.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^l03c6duk5.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\l03c6duk5.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^mhn66e3a1w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\mhn66e3a1w.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^n0jo81lghm8.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\n0jo81lghm8.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^q3cxnoz081g.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\q3cxnoz081g.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qgmm3yy7.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qgmm3yy7.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qlr66i86u8.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qlr66i86u8.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qmrnddze86g.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qmrnddze86g.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qq6m8703u.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qq6m8703u.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s0o31gb0m7.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s0o31gb0m7.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s1zjfabg.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s1zjfabg.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s3o1klq8703.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s3o1klq8703.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^tu6ag3w5.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\tu6ag3w5.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^ty86k870.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\ty86k870.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^u5vgrsnt60.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\u5vgrsnt60.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^up081whidtu.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\up081whidtu.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^w2xyt03k0lw.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\w2xyt03k0lw.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^wx1oo6u0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\wx1oo6u0.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^x081epqlr.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\x081epqlr.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^xsjzzffgbr.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\xsjzzffgbr.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^y5k7brh3ez.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\y5k7brh3ez.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^yejuk780c.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\yejuk780c.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^zuva86m81y.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\zuva86m81y.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"MSK80Service"=2
"MpfService"=2
"mnmsrvc"=3
"McSysmon"=3
"McShield"=2
"McProxy"=2
"McODS"=3
"McNASvc"=2
"mcmscsvc"=2
"McAfee SiteAdvisor Service"=2
"gusvc"=3
"GoogleDesktopManager-080708-050100"=3
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění
6douu5v.exe
fqlgmm3yy.exe
qgmm3yy7.exe
wx1oo6u0.exe
15k7brh.exe
s0o31gb0m7.exe
j5k7brh3.exe
y5k7brh3ez.exe
6s86e3a.exe
g81sdezf66w.exe
0hxd66k.exe
w2xyt03k0lw.exe
x081epqlr.exe
ty86k870.exe
qlr66i86u8.exe
s1zjfabg.exe
n0jo81lghm8.exe
qq6m8703u.exe
l03c6duk5.exe
bg8703ek5f.exe
qmrnddze86g.exe
70aaqg0.exe
0zu0lg0.exe
jkf081mx.exe
0pfl60n.exe
zuva86m81y.exe
1yze3a1.exe
mhn66e3a1w.exe
s3o1klq8703.exe
66k81wh.exe
tu6ag3w5.exe
yejuk780c.exe
c1yo1klq.exe
grniojf66w.exe
q3cxnoz081g.exe
up081whidtu.exe
xsjzzffgbr.exe
u5vgrsnt60.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-02-14 208896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tvvalvlx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\tvvalvlx.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\Hana Pojmonová\Plocha\P1753577.JPG-www.facebook.exe"="C:\WINDOWS\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cb4ca8e2-f648-11df-a645-00242bbd3bb8}]
shell\AutoRun\command - D:\TTHDHGC\DFG-2352-66235-2352322-634621321-6662355\364855.exe
shell\open\command - D:\TTHDHGC\DFG-2352-66235-2352322-634621321-6662355\364855.exe
======List of files/folders created in the last 1 months======
2010-11-22 16:58:01 ----D---- C:\rsit
2010-11-22 16:58:01 ----D---- C:\Program Files\trend micro
2010-11-22 16:47:15 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\HEXelon
2010-11-22 16:42:31 ----D---- C:\Program Files\TC UP
2010-11-22 15:58:56 ----D---- C:\Program Files\Yahoo!
2010-11-22 15:58:45 ----D---- C:\Program Files\CCleaner
2010-11-21 19:23:41 ----RA---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\k6jLC.txt
2010-11-20 19:30:28 ----A---- C:\wifi32.exe
2010-11-18 20:19:33 ----A---- C:\nlw.exe
2010-11-18 19:28:32 ----SHD---- C:\FOUND.000
2010-11-17 18:22:23 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\BSplayer
2010-11-17 15:59:32 ----D---- C:\Program Files\Conduit
2010-11-17 15:59:11 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\BSplayer Pro
2010-11-17 15:59:05 ----D---- C:\Program Files\Webteh
2010-11-16 19:52:51 ----A---- C:\winn27.exe
2010-11-14 09:17:37 ----RSHD---- C:\RECYCLER
2010-11-13 19:58:42 ----RSH---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\juzjf.exe
2010-11-13 19:58:22 ----A---- C:\t6.exe
======List of files/folders modified in the last 1 months======
2010-11-22 16:36:40 ----RASH---- C:\boot.ini
2010-11-22 16:36:40 ----A---- C:\WINDOWS\win.ini
2010-11-22 16:36:40 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-02-05 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-02-05 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-02-05 51376]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-02-05 94032]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2008-05-20 1312576]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-02-05 23152]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\DKbFltr.sys [2004-12-07 16896]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-02-14 5854752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-05-20 4800000]
R3 M3000Srv;Acer Crystal Eye webcam Driver; C:\WINDOWS\System32\Drivers\M3000KNT.sys [2008-08-06 151936]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-08-07 111360]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2008-04-24 225024]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 qcj265c;qcj265c; C:\WINDOWS\System32\drivers\qcj265c.sys [2010-11-16 138272]
S1 VD_FileDisk;VD_FileDisk; C:\WINDOWS\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 int15.sys;int15.sys; \??\c:\acernb\int15.sys []
S3 JMCR;JMCR; C:\WINDOWS\system32\DRIVERS\jmcr.sys [2008-07-07 96856]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Ovladač filtru Obnovy systému; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73344]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
S2 f5wmaeu4;RUMBA AS/400 Shared Folders; C:\Documents and Settings\Hana Pojmonová\Data aplikací\Microsoft\roulyke.exe [2010-11-19 201216]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268288]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Run by Hana Pojmonová at 2010-11-22 16:58:01
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 6 GB (42%) free of 15 GB
Total RAM: 1012 MB (56% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-05-15 16862720]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"AzMixerSel"=C:\Program Files\Realtek\Audio\InstallShield\AzMixerSel.exe [2006-07-17 53248]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-24 1044480]
"LManager"=C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE [2008-05-13 821768]
"M3000Mnt"=M3000Rmv.dll ,WinMainRmv /StartStillMnt []
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-17 62464]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"NVIDIA driver monitor"=C:\WINDOWS\nvsvc32.exe [2010-10-17 62464]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-11 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AutoStart]
C:\DOCUME~1\HANAPO~1\LOCALS~1\Temp\9141.exe [2010-11-20 31232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\boodak]
C:\WINDOWS\system32\jofebe.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2008-04-14 208952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcagent_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
C:\Documents and Settings\Hana Pojmonová\fxyw.exe [2010-11-18 19456]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSPY2002]
C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2008-04-14 59392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-14 455168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2008-04-14 455168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ProductReg]
C:\Program Files\Acer\WR_PopUp\ProductReg.exe [2008-09-23 6144]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-04-10 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Firewall]
C:\DOCUME~1\HANAPO~1\LOCALS~1\Temp\lsass.exe [2010-11-14 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0hxd66k.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0hxd66k.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0pfl60n.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0pfl60n.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^0zu0lg0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\0zu0lg0.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^15k7brh.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\15k7brh.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^1yze3a1.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\1yze3a1.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^66k81wh.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\66k81wh.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^6douu5v.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\6douu5v.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^6s86e3a.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\6s86e3a.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^70aaqg0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\70aaqg0.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^bg8703ek5f.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\bg8703ek5f.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^c1yo1klq.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\c1yo1klq.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^fqlgmm3yy.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\fqlgmm3yy.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^g81sdezf66w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\g81sdezf66w.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^grniojf66w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\grniojf66w.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^j5k7brh3.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\j5k7brh3.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^jkf081mx.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\jkf081mx.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^l03c6duk5.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\l03c6duk5.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^mhn66e3a1w.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\mhn66e3a1w.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^n0jo81lghm8.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\n0jo81lghm8.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^q3cxnoz081g.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\q3cxnoz081g.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qgmm3yy7.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qgmm3yy7.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qlr66i86u8.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qlr66i86u8.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qmrnddze86g.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qmrnddze86g.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^qq6m8703u.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\qq6m8703u.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s0o31gb0m7.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s0o31gb0m7.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s1zjfabg.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s1zjfabg.exe [2010-11-17 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^s3o1klq8703.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\s3o1klq8703.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^tu6ag3w5.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\tu6ag3w5.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^ty86k870.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\ty86k870.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^u5vgrsnt60.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\u5vgrsnt60.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^up081whidtu.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\up081whidtu.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^w2xyt03k0lw.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\w2xyt03k0lw.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^wx1oo6u0.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\wx1oo6u0.exe [2010-11-14 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^x081epqlr.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\x081epqlr.exe [2010-11-16 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^xsjzzffgbr.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\xsjzzffgbr.exe [2010-11-20 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^y5k7brh3ez.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\y5k7brh3ez.exe [2010-11-15 60416]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^yejuk780c.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\yejuk780c.exe [2010-11-19 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Hana Pojmonová^Nabídka Start^Programy^Po spuštění^zuva86m81y.exe]
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění\zuva86m81y.exe [2010-11-18 43008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"MSK80Service"=2
"MpfService"=2
"mnmsrvc"=3
"McSysmon"=3
"McShield"=2
"McProxy"=2
"McODS"=3
"McNASvc"=2
"mcmscsvc"=2
"McAfee SiteAdvisor Service"=2
"gusvc"=3
"GoogleDesktopManager-080708-050100"=3
C:\Documents and Settings\Hana Pojmonová\Nabídka Start\Programy\Po spuštění
6douu5v.exe
fqlgmm3yy.exe
qgmm3yy7.exe
wx1oo6u0.exe
15k7brh.exe
s0o31gb0m7.exe
j5k7brh3.exe
y5k7brh3ez.exe
6s86e3a.exe
g81sdezf66w.exe
0hxd66k.exe
w2xyt03k0lw.exe
x081epqlr.exe
ty86k870.exe
qlr66i86u8.exe
s1zjfabg.exe
n0jo81lghm8.exe
qq6m8703u.exe
l03c6duk5.exe
bg8703ek5f.exe
qmrnddze86g.exe
70aaqg0.exe
0zu0lg0.exe
jkf081mx.exe
0pfl60n.exe
zuva86m81y.exe
1yze3a1.exe
mhn66e3a1w.exe
s3o1klq8703.exe
66k81wh.exe
tu6ag3w5.exe
yejuk780c.exe
c1yo1klq.exe
grniojf66w.exe
q3cxnoz081g.exe
up081whidtu.exe
xsjzzffgbr.exe
u5vgrsnt60.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2008-02-14 208896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tvvalvlx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\tvvalvlx.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\Hana Pojmonová\Plocha\P1753577.JPG-www.facebook.exe"="C:\WINDOWS\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cb4ca8e2-f648-11df-a645-00242bbd3bb8}]
shell\AutoRun\command - D:\TTHDHGC\DFG-2352-66235-2352322-634621321-6662355\364855.exe
shell\open\command - D:\TTHDHGC\DFG-2352-66235-2352322-634621321-6662355\364855.exe
======List of files/folders created in the last 1 months======
2010-11-22 16:58:01 ----D---- C:\rsit
2010-11-22 16:58:01 ----D---- C:\Program Files\trend micro
2010-11-22 16:47:15 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\HEXelon
2010-11-22 16:42:31 ----D---- C:\Program Files\TC UP
2010-11-22 15:58:56 ----D---- C:\Program Files\Yahoo!
2010-11-22 15:58:45 ----D---- C:\Program Files\CCleaner
2010-11-21 19:23:41 ----RA---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\k6jLC.txt
2010-11-20 19:30:28 ----A---- C:\wifi32.exe
2010-11-18 20:19:33 ----A---- C:\nlw.exe
2010-11-18 19:28:32 ----SHD---- C:\FOUND.000
2010-11-17 18:22:23 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\BSplayer
2010-11-17 15:59:32 ----D---- C:\Program Files\Conduit
2010-11-17 15:59:11 ----D---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\BSplayer Pro
2010-11-17 15:59:05 ----D---- C:\Program Files\Webteh
2010-11-16 19:52:51 ----A---- C:\winn27.exe
2010-11-14 09:17:37 ----RSHD---- C:\RECYCLER
2010-11-13 19:58:42 ----RSH---- C:\Documents and Settings\Hana Pojmonová\Data aplikací\juzjf.exe
2010-11-13 19:58:22 ----A---- C:\t6.exe
======List of files/folders modified in the last 1 months======
2010-11-22 16:36:40 ----RASH---- C:\boot.ini
2010-11-22 16:36:40 ----A---- C:\WINDOWS\win.ini
2010-11-22 16:36:40 ----A---- C:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-02-05 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-02-05 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-02-05 51376]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-02-05 94032]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2008-05-20 1312576]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-02-05 23152]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\DKbFltr.sys [2004-12-07 16896]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-02-14 5854752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-05-20 4800000]
R3 M3000Srv;Acer Crystal Eye webcam Driver; C:\WINDOWS\System32\Drivers\M3000KNT.sys [2008-08-06 151936]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-08-07 111360]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2008-04-24 225024]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 qcj265c;qcj265c; C:\WINDOWS\System32\drivers\qcj265c.sys [2010-11-16 138272]
S1 VD_FileDisk;VD_FileDisk; C:\WINDOWS\system32\drivers\VD_FileDisk.sys [2006-01-13 15872]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 int15.sys;int15.sys; \??\c:\acernb\int15.sys []
S3 JMCR;JMCR; C:\WINDOWS\system32\DRIVERS\jmcr.sys [2008-07-07 96856]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Ovladač filtru Obnovy systému; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73344]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
S2 f5wmaeu4;RUMBA AS/400 Shared Folders; C:\Documents and Settings\Hana Pojmonová\Data aplikací\Microsoft\roulyke.exe [2010-11-19 201216]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268288]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------