pomale nabyhani windows
Napsal: 03 úno 2011 10:26
zdravim mel jsem v pc dost haveti ale porad mi nabihaji windows stylem najede pozadi a po asi 5 minutach zahraje melodii a jde s tim neco delat. Uz si s tim nevim rady. log z rsit
Logfile of random's system information tool 1.08 (written by random/random)
Run by xxx at 2011-02-03 10:23:38
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 63 GB (82%) free of 76 GB
Total RAM: 503 MB (46% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Smapp"=C:\Program Files\Analog Devices\SoundMAX\SMTray.exe [2003-07-30 143360]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2010-05-31 63048]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-11-02 32768]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2007-01-13 163840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2007-01-13 131072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
C:\Documents and Settings\xxx\weejqdq.exe \u []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\WINDOWS\system32\igfxpers.exe [2007-01-13 135168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0bxss6e.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0bxss6e.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0ggbssn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0ggbssn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0tpkk6w.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0tpkk6w.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^9a1wssn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\9a1wssn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^arhhxd60.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\arhhxd60.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^bssneezqqlc.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\bssneezqqlc.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^bxss6ee6.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\bxss6ee6.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^cxoojaav.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\cxoojaav.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^dzpplbbx.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\dzpplbbx.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^dzpplbbxnn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\dzpplbbxnn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^lm70njee6q.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\lm70njee6q.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^neezqqlccxo.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\neezqqlccxo.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^nii6uu6gg.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\nii6uu6gg.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^qmmhyytkkf.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\qmmhyytkkf.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rm0dy0pk0r.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rm0dy0pk0r.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rm1ieezqql.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rm1ieezqql.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rw86i81ufg.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rw86i81ufg.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^s6ee6qq6.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\s6ee6qq6.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-01-13 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LMIinit]
C:\WINDOWS\system32\LMIinit.dll [2010-12-16 87424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Documents and Settings\xxx\Plocha\facebook-pic00005267(2).exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2011-02-03 10:16:36 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-02-03 10:16:36 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-02-03 10:06:54 ----RA---- C:\WINDOWS\system32\drivers\SbFw.sys
2011-02-03 10:06:54 ----A---- C:\WINDOWS\system32\drivers\SbFwIm.sys
2011-02-03 10:06:50 ----D---- C:\Program Files\Sunbelt Software
2011-02-03 10:03:40 ----SHD---- C:\RECYCLER
2011-02-03 10:03:30 ----D---- C:\Program Files\CCleaner
2011-02-03 09:18:56 ----D---- C:\Documents and Settings\xxx\Data aplikací\Malwarebytes
2011-02-03 09:18:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-02-03 09:18:49 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-02-03 09:18:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-03 09:18:46 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-02-03 08:57:10 ----D---- C:\rsit
2011-02-03 08:57:10 ----D---- C:\Program Files\trend micro
2011-02-02 14:34:05 ----D---- C:\WINDOWS\temp
2011-02-02 14:34:04 ----A---- C:\ComboFix.txt
2011-02-02 14:22:32 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-02-02 14:22:32 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MSVCR71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MSVCP71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MFC71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-02-02 14:04:48 ----A---- C:\Boot.bak
2011-02-02 14:04:45 ----RASHD---- C:\cmdcons
2011-02-02 14:02:50 ----A---- C:\WINDOWS\zip.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWSC.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWREG.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\sed.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\PEV.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\NIRCMD.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\MBR.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\grep.exe
2011-02-02 13:56:24 ----AH---- C:\Documents and Settings\xxx\Data aplikací\HhdFJl61DD.txt
2011-02-02 13:52:04 ----D---- C:\WINDOWS\ERDNT
2011-02-02 13:51:57 ----D---- C:\Qoobox
2011-02-02 13:44:52 ----A---- C:\WINDOWS\system32\drivers\pcszsglm.sys
2011-02-02 13:41:05 ----D---- C:\WINDOWS\pss
2011-02-02 13:37:41 ----A---- C:\WINDOWS\system32\drivers\yyzyv.sys
2011-01-29 14:01:10 ----A---- C:\WINDOWS\system32\drivers\lbrtfdc.sys
2011-01-29 14:01:09 ----A---- C:\WINDOWS\system32\drivers\i2omgmt.sys
2011-01-29 14:01:08 ----A---- C:\WINDOWS\system32\drivers\changer.sys
2011-01-27 08:03:39 ----AH---- C:\Documents and Settings\xxx\Data aplikací\n1cLg8mgHL.txt
2011-01-27 08:03:36 ----A---- C:\m23w.exe
2011-01-05 16:30:00 ----A---- C:\WINDOWS\ODBC.INI
2011-01-05 16:29:52 ----A---- C:\WINDOWS\system32\mdimon.dll
2011-01-05 16:29:02 ----D---- C:\Program Files\Microsoft.NET
2011-01-05 16:28:27 ----D---- C:\Program Files\Common Files\DESIGNER
2011-01-05 16:28:06 ----D---- C:\WINDOWS\SHELLNEW
2011-01-05 16:28:02 ----D---- C:\Program Files\Microsoft Office
2011-01-05 16:26:31 ----RD---- C:\MSOCache
2011-01-05 16:25:51 ----D---- C:\Documents and Settings\xxx\Data aplikací\WinRAR
2011-01-05 16:13:37 ----D---- C:\Program Files\WinRAR
2011-01-05 16:05:33 ----D---- C:\WINDOWS\system32\appmgmt
======List of files/folders modified in the last 1 months======
2011-02-03 10:16:36 ----D---- C:\WINDOWS\system32\drivers
2011-02-03 10:16:12 ----D---- C:\WINDOWS\system32
2011-02-03 10:10:11 ----D---- C:\WINDOWS
2011-02-03 10:07:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-02-03 10:07:02 ----SHD---- C:\WINDOWS\Installer
2011-02-03 10:06:57 ----HD---- C:\WINDOWS\inf
2011-02-03 10:06:55 ----D---- C:\WINDOWS\system32\CatRoot2
2011-02-03 10:06:50 ----RD---- C:\Program Files
2011-02-03 10:03:40 ----D---- C:\WINDOWS\Minidump
2011-02-03 10:03:40 ----D---- C:\WINDOWS\Debug
2011-02-03 08:53:59 ----D---- C:\WINDOWS\Prefetch
2011-02-03 08:52:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\LogMeIn
2011-02-02 14:32:31 ----A---- C:\WINDOWS\system.ini
2011-02-02 14:30:57 ----D---- C:\WINDOWS\AppPatch
2011-02-02 14:30:54 ----D---- C:\Program Files\Common Files
2011-02-02 14:26:45 ----D---- C:\WINDOWS\system32\config
2011-02-02 14:22:26 ----D---- C:\Program Files\Alwil Software
2011-02-02 14:08:22 ----D---- C:\WINDOWS\system32\drivers\etc
2011-02-02 14:04:49 ----RASH---- C:\boot.ini
2011-02-02 13:47:44 ----A---- C:\WINDOWS\win.ini
2011-02-02 13:33:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2011-01-29 14:01:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-01-27 15:45:56 ----D---- C:\Program Files\Ask.com
2011-01-25 22:38:43 ----RSD---- C:\WINDOWS\Fonts
2011-01-13 17:19:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-01-06 20:33:51 ----SD---- C:\Documents and Settings\xxx\Data aplikací\Microsoft
2011-01-05 16:29:08 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-01-05 16:28:08 ----D---- C:\Program Files\Common Files\System
2011-01-05 16:28:02 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-01-05 16:28:02 ----D---- C:\WINDOWS\pchealth
2011-01-05 16:26:35 ----D---- C:\WINDOWS\system
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 SbFw;SbFw; C:\WINDOWS\system32\drivers\SbFw.sys [2008-10-31 270888]
R1 sbhips;Sunbelt HIPS Driver; C:\WINDOWS\system32\drivers\sbhips.sys [2008-06-21 66600]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\WINDOWS\system32\drivers\LMIRfsDriver.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-10-23 100384]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-01-13 5672032]
R3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2010-05-31 10144]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Miniport; C:\WINDOWS\system32\DRIVERS\sbfwim.sys [2008-06-21 65576]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2004-04-15 612416]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
S3 catchme;catchme; \??\C:\DOCUME~1\xxx\LOCALS~1\Temp\catchme.sys []
S3 cdnvorme;cdnvorme; \??\C:\WINDOWS\System32\Drivers\cdnvorme.sys []
S3 gayhjmem;gayhjmem; \??\C:\WINDOWS\System32\Drivers\gayhjmem.sys []
S3 hzigaoxl;hzigaoxl; \??\C:\WINDOWS\System32\Drivers\hzigaoxl.sys []
S3 jnckoxip;jnckoxip; \??\C:\WINDOWS\System32\Drivers\jnckoxip.sys []
S3 msyktsat;msyktsat; \??\C:\WINDOWS\System32\Drivers\msyktsat.sys []
S3 nwhpnlbd;nwhpnlbd; \??\C:\WINDOWS\System32\Drivers\nwhpnlbd.sys []
S3 pcszsglm;pcszsglm; \??\C:\WINDOWS\System32\Drivers\pcszsglm.sys []
S3 tzxhyhiz;tzxhyhiz; \??\C:\WINDOWS\System32\Drivers\tzxhyhiz.sys []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\WINDOWS\system32\drivers\LMIRfsClientNP.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe [2010-12-16 374152]
R2 LMIMaint;LogMeIn Maintenance Service; C:\Program Files\LogMeIn\x86\RaMaint.exe [2010-12-16 136584]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2010-12-16 390528]
R2 SbPF.Launcher;SbPF.Launcher; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe [2008-10-31 95528]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 SPF4;Sunbelt Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe [2008-10-31 1365288]
S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by xxx at 2011-02-03 10:23:38
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 63 GB (82%) free of 76 GB
Total RAM: 503 MB (46% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Smapp"=C:\Program Files\Analog Devices\SoundMAX\SMTray.exe [2003-07-30 143360]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2010-05-31 63048]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-11-02 32768]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\system32\hkcmd.exe [2007-01-13 163840]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\system32\igfxtray.exe [2007-01-13 131072]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSConfig]
C:\Documents and Settings\xxx\weejqdq.exe \u []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\WINDOWS\system32\igfxpers.exe [2007-01-13 135168]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0bxss6e.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0bxss6e.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0ggbssn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0ggbssn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^0tpkk6w.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\0tpkk6w.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^9a1wssn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\9a1wssn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^arhhxd60.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\arhhxd60.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^bssneezqqlc.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\bssneezqqlc.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^bxss6ee6.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\bxss6ee6.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^cxoojaav.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\cxoojaav.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^dzpplbbx.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\dzpplbbx.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^dzpplbbxnn.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\dzpplbbxnn.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^lm70njee6q.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\lm70njee6q.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^neezqqlccxo.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\neezqqlccxo.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^nii6uu6gg.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\nii6uu6gg.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^qmmhyytkkf.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\qmmhyytkkf.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rm0dy0pk0r.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rm0dy0pk0r.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rm1ieezqql.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rm1ieezqql.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^rw86i81ufg.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\rw86i81ufg.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^xxx^Nabídka Start^Programy^Po spuštění^s6ee6qq6.exe]
C:\Documents and Settings\xxx\Nabídka Start\Programy\Po spuštění\s6ee6qq6.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2007-01-13 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LMIinit]
C:\WINDOWS\system32\LMIinit.dll [2010-12-16 87424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Documents and Settings\xxx\Plocha\facebook-pic00005267(2).exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2011-02-03 10:16:36 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-02-03 10:16:36 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-02-03 10:06:54 ----RA---- C:\WINDOWS\system32\drivers\SbFw.sys
2011-02-03 10:06:54 ----A---- C:\WINDOWS\system32\drivers\SbFwIm.sys
2011-02-03 10:06:50 ----D---- C:\Program Files\Sunbelt Software
2011-02-03 10:03:40 ----SHD---- C:\RECYCLER
2011-02-03 10:03:30 ----D---- C:\Program Files\CCleaner
2011-02-03 09:18:56 ----D---- C:\Documents and Settings\xxx\Data aplikací\Malwarebytes
2011-02-03 09:18:49 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-02-03 09:18:49 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-02-03 09:18:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-03 09:18:46 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-02-03 08:57:10 ----D---- C:\rsit
2011-02-03 08:57:10 ----D---- C:\Program Files\trend micro
2011-02-02 14:34:05 ----D---- C:\WINDOWS\temp
2011-02-02 14:34:04 ----A---- C:\ComboFix.txt
2011-02-02 14:22:32 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-02-02 14:22:32 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-02-02 14:22:31 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MSVCR71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MSVCP71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\MFC71.dll
2011-02-02 14:22:28 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-02-02 14:04:48 ----A---- C:\Boot.bak
2011-02-02 14:04:45 ----RASHD---- C:\cmdcons
2011-02-02 14:02:50 ----A---- C:\WINDOWS\zip.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWSC.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\SWREG.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\sed.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\PEV.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\NIRCMD.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\MBR.exe
2011-02-02 14:02:50 ----A---- C:\WINDOWS\grep.exe
2011-02-02 13:56:24 ----AH---- C:\Documents and Settings\xxx\Data aplikací\HhdFJl61DD.txt
2011-02-02 13:52:04 ----D---- C:\WINDOWS\ERDNT
2011-02-02 13:51:57 ----D---- C:\Qoobox
2011-02-02 13:44:52 ----A---- C:\WINDOWS\system32\drivers\pcszsglm.sys
2011-02-02 13:41:05 ----D---- C:\WINDOWS\pss
2011-02-02 13:37:41 ----A---- C:\WINDOWS\system32\drivers\yyzyv.sys
2011-01-29 14:01:10 ----A---- C:\WINDOWS\system32\drivers\lbrtfdc.sys
2011-01-29 14:01:09 ----A---- C:\WINDOWS\system32\drivers\i2omgmt.sys
2011-01-29 14:01:08 ----A---- C:\WINDOWS\system32\drivers\changer.sys
2011-01-27 08:03:39 ----AH---- C:\Documents and Settings\xxx\Data aplikací\n1cLg8mgHL.txt
2011-01-27 08:03:36 ----A---- C:\m23w.exe
2011-01-05 16:30:00 ----A---- C:\WINDOWS\ODBC.INI
2011-01-05 16:29:52 ----A---- C:\WINDOWS\system32\mdimon.dll
2011-01-05 16:29:02 ----D---- C:\Program Files\Microsoft.NET
2011-01-05 16:28:27 ----D---- C:\Program Files\Common Files\DESIGNER
2011-01-05 16:28:06 ----D---- C:\WINDOWS\SHELLNEW
2011-01-05 16:28:02 ----D---- C:\Program Files\Microsoft Office
2011-01-05 16:26:31 ----RD---- C:\MSOCache
2011-01-05 16:25:51 ----D---- C:\Documents and Settings\xxx\Data aplikací\WinRAR
2011-01-05 16:13:37 ----D---- C:\Program Files\WinRAR
2011-01-05 16:05:33 ----D---- C:\WINDOWS\system32\appmgmt
======List of files/folders modified in the last 1 months======
2011-02-03 10:16:36 ----D---- C:\WINDOWS\system32\drivers
2011-02-03 10:16:12 ----D---- C:\WINDOWS\system32
2011-02-03 10:10:11 ----D---- C:\WINDOWS
2011-02-03 10:07:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-02-03 10:07:02 ----SHD---- C:\WINDOWS\Installer
2011-02-03 10:06:57 ----HD---- C:\WINDOWS\inf
2011-02-03 10:06:55 ----D---- C:\WINDOWS\system32\CatRoot2
2011-02-03 10:06:50 ----RD---- C:\Program Files
2011-02-03 10:03:40 ----D---- C:\WINDOWS\Minidump
2011-02-03 10:03:40 ----D---- C:\WINDOWS\Debug
2011-02-03 08:53:59 ----D---- C:\WINDOWS\Prefetch
2011-02-03 08:52:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\LogMeIn
2011-02-02 14:32:31 ----A---- C:\WINDOWS\system.ini
2011-02-02 14:30:57 ----D---- C:\WINDOWS\AppPatch
2011-02-02 14:30:54 ----D---- C:\Program Files\Common Files
2011-02-02 14:26:45 ----D---- C:\WINDOWS\system32\config
2011-02-02 14:22:26 ----D---- C:\Program Files\Alwil Software
2011-02-02 14:08:22 ----D---- C:\WINDOWS\system32\drivers\etc
2011-02-02 14:04:49 ----RASH---- C:\boot.ini
2011-02-02 13:47:44 ----A---- C:\WINDOWS\win.ini
2011-02-02 13:33:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2011-01-29 14:01:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-01-27 15:45:56 ----D---- C:\Program Files\Ask.com
2011-01-25 22:38:43 ----RSD---- C:\WINDOWS\Fonts
2011-01-13 17:19:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-01-06 20:33:51 ----SD---- C:\Documents and Settings\xxx\Data aplikací\Microsoft
2011-01-05 16:29:08 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-01-05 16:28:08 ----D---- C:\Program Files\Common Files\System
2011-01-05 16:28:02 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-01-05 16:28:02 ----D---- C:\WINDOWS\pchealth
2011-01-05 16:26:35 ----D---- C:\WINDOWS\system
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 SbFw;SbFw; C:\WINDOWS\system32\drivers\SbFw.sys [2008-10-31 270888]
R1 sbhips;Sunbelt HIPS Driver; C:\WINDOWS\system32\drivers\sbhips.sys [2008-06-21 66600]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\WINDOWS\system32\drivers\LMIRfsDriver.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-10-23 100384]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2008-07-25 176640]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-01-13 5672032]
R3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2010-05-31 10144]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Miniport; C:\WINDOWS\system32\DRIVERS\sbfwim.sys [2008-06-21 65576]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2004-04-15 612416]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
S3 catchme;catchme; \??\C:\DOCUME~1\xxx\LOCALS~1\Temp\catchme.sys []
S3 cdnvorme;cdnvorme; \??\C:\WINDOWS\System32\Drivers\cdnvorme.sys []
S3 gayhjmem;gayhjmem; \??\C:\WINDOWS\System32\Drivers\gayhjmem.sys []
S3 hzigaoxl;hzigaoxl; \??\C:\WINDOWS\System32\Drivers\hzigaoxl.sys []
S3 jnckoxip;jnckoxip; \??\C:\WINDOWS\System32\Drivers\jnckoxip.sys []
S3 msyktsat;msyktsat; \??\C:\WINDOWS\System32\Drivers\msyktsat.sys []
S3 nwhpnlbd;nwhpnlbd; \??\C:\WINDOWS\System32\Drivers\nwhpnlbd.sys []
S3 pcszsglm;pcszsglm; \??\C:\WINDOWS\System32\Drivers\pcszsglm.sys []
S3 tzxhyhiz;tzxhyhiz; \??\C:\WINDOWS\System32\Drivers\tzxhyhiz.sys []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S4 LMIRfsClientNP;LMIRfsClientNP; C:\WINDOWS\system32\drivers\LMIRfsClientNP.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe [2010-12-16 374152]
R2 LMIMaint;LogMeIn Maintenance Service; C:\Program Files\LogMeIn\x86\RaMaint.exe [2010-12-16 136584]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2010-12-16 390528]
R2 SbPF.Launcher;SbPF.Launcher; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe [2008-10-31 95528]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R2 SPF4;Sunbelt Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe [2008-10-31 1365288]
S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------