Stránka 1 z 1

Preventivka

Napsal: 17 úno 2011 12:40
od morbe
Logfile of random's system information tool 1.08 (written by random/random)
Run by morbe at 2011-02-17 12:50:48
Microsoft® Windows Vista™ Business Service Pack 2
System drive C: has 93 GB (15%) free of 610 GB
Total RAM: 3326 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:50:50, on 17.2.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19019)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\Six Engine\SixEngine.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Vtelevizi.cz reminder\VtvReminder.exe
C:\Program Files\Evernote\Evernote\EvernoteClipper.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Program Files\Winamp\winamp.exe
C:\Windows\system32\conime.exe
C:\Users\morbe\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\morbe\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\morbe\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\morbe\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\morbe\Downloads\RSIT.exe
C:\Program Files\trend micro\morbe.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://webtv.starnet.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [CmUsbSound] RunDll32 cmcnfgu.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Vtelevizi.cz Reminder] C:\Program Files\Vtelevizi.cz reminder\VtvReminder.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Evernote Clipper.lnk = ?
O8 - Extra context menu item: Add to Evernote 4.0 - res://C:\Program Files\Evernote\Evernote\EvernoteIE.dll/204
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: CT Device Query service (CTDevice_Srv) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTDevSrv.exe
O23 - Service: Creative Centrale Media Server (CTUPnPSv) - Creative Technology Ltd - C:\Program Files\Creative\Creative Centrale\CTUPnPSv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe

--
End of file - 6514 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3115684867-1554512148-76294249-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3115684867-1554512148-76294249-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-12-10 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-05-20 6144000]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-19 2548552]
"CmUsbSound"=RunDll32 cmcnfgu.cpl,CMICtrlWnd []
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 336384]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-12-20 443728]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files\Steam\steam.exe [2010-11-30 1242448]
"Vtelevizi.cz Reminder"=C:\Program Files\Vtelevizi.cz reminder\VtvReminder.exe [2009-08-23 64000]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Evernote Clipper.lnk - C:\Windows\Installer\{F761359C-9CED-45AE-9A51-9D6605CD55C4}\Evernote.ico

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"EnableLinkedConnections"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-02-17 12:43:19 ----D---- C:\rsit
2011-02-17 12:42:23 ----SHD---- C:\Config.Msi
2011-02-17 12:38:29 ----D---- C:\Program Files\HJT
2011-02-10 08:16:03 ----D---- C:\Users\morbe\AppData\Roaming\Dropbox
2011-02-10 01:05:38 ----A---- C:\Windows\system32\win32k.sys
2011-02-10 01:05:34 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-02-10 01:05:34 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-02-10 01:05:34 ----A---- C:\Windows\system32\ntdll.dll
2011-02-10 01:05:28 ----A---- C:\Windows\system32\MFH264Dec.dll
2011-02-10 01:05:28 ----A---- C:\Windows\system32\FntCache.dll
2011-02-10 01:05:28 ----A---- C:\Windows\system32\DWrite.dll
2011-02-10 01:05:28 ----A---- C:\Windows\system32\d3d10warp.dll
2011-02-10 01:05:28 ----A---- C:\Windows\system32\d2d1.dll
2011-02-10 01:05:27 ----A---- C:\Windows\system32\xpsservices.dll
2011-02-10 01:05:27 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-02-10 01:05:27 ----A---- C:\Windows\system32\XpsPrint.dll
2011-02-10 01:05:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-02-10 01:05:27 ----A---- C:\Windows\system32\MFHEAACdec.dll
2011-02-10 01:05:26 ----A---- C:\Windows\system32\OpcServices.dll
2011-02-10 01:05:26 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-02-10 01:05:26 ----A---- C:\Windows\system32\mfmp4src.dll
2011-02-10 01:05:26 ----A---- C:\Windows\system32\dxgi.dll
2011-02-10 01:05:26 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-02-10 01:05:26 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-02-10 01:05:25 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2011-02-10 01:05:25 ----A---- C:\Windows\system32\mf.dll
2011-02-10 01:05:25 ----A---- C:\Windows\system32\d3d10_1.dll
2011-02-10 01:05:25 ----A---- C:\Windows\system32\d3d10.dll
2011-02-10 01:05:24 ----A---- C:\Windows\system32\stobject.dll
2011-02-10 01:05:24 ----A---- C:\Windows\system32\shdocvw.dll
2011-02-10 01:05:24 ----A---- C:\Windows\system32\mfplat.dll
2011-02-10 01:05:24 ----A---- C:\Windows\system32\d3d10level9.dll
2011-02-10 01:05:24 ----A---- C:\Windows\system32\d3d10core.dll
2011-02-10 01:05:19 ----A---- C:\Windows\system32\cdd.dll
2011-02-10 01:05:18 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2011-02-10 01:05:18 ----A---- C:\Windows\system32\mfps.dll
2011-02-10 01:05:13 ----A---- C:\Windows\system32\mshtml.dll
2011-02-10 01:05:12 ----A---- C:\Windows\system32\ieframe.dll
2011-02-10 01:05:11 ----A---- C:\Windows\system32\wininet.dll
2011-02-10 01:05:11 ----A---- C:\Windows\system32\urlmon.dll
2011-02-10 01:05:11 ----A---- C:\Windows\system32\msfeeds.dll
2011-02-10 01:05:11 ----A---- C:\Windows\system32\iertutil.dll
2011-02-10 01:05:10 ----A---- C:\Windows\system32\occache.dll
2011-02-10 01:05:10 ----A---- C:\Windows\system32\mstime.dll
2011-02-10 01:05:10 ----A---- C:\Windows\system32\iedkcs32.dll
2011-02-10 01:05:09 ----A---- C:\Windows\system32\mshtmled.dll
2011-02-10 01:05:09 ----A---- C:\Windows\system32\ieUnatt.exe
2011-02-10 01:05:09 ----A---- C:\Windows\system32\ieui.dll
2011-02-10 01:05:09 ----A---- C:\Windows\system32\iesysprep.dll
2011-02-10 01:05:09 ----A---- C:\Windows\system32\iesetup.dll
2011-02-10 01:05:09 ----A---- C:\Windows\system32\iepeers.dll
2011-02-10 01:05:08 ----A---- C:\Windows\system32\msfeedssync.exe
2011-02-10 01:05:08 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-02-10 01:05:08 ----A---- C:\Windows\system32\licmgr10.dll
2011-02-10 01:05:08 ----A---- C:\Windows\system32\jsproxy.dll
2011-02-10 01:05:08 ----A---- C:\Windows\system32\iernonce.dll
2011-02-10 01:05:08 ----A---- C:\Windows\system32\ie4uinit.exe
2011-02-10 01:05:06 ----A---- C:\Windows\system32\shell32.dll
2011-02-10 01:05:05 ----A---- C:\Windows\system32\shlwapi.dll
2011-02-10 01:05:00 ----A---- C:\Windows\system32\atmfd.dll
2011-02-10 01:04:59 ----A---- C:\Windows\system32\atmlib.dll
2011-02-07 18:58:18 ----D---- C:\Program Files\Warcraft III
2011-02-07 14:58:46 ----D---- C:\Windows\Eurobattle.net
2011-02-07 14:51:53 ----D---- C:\Program Files\Garena
2011-02-01 21:57:34 ----D---- C:\Program Files\CamStudio 2.6b
2011-02-01 21:57:34 ----A---- C:\Windows\system32\CamCodec.dll
2011-02-01 21:43:42 ----D---- C:\Users\morbe\AppData\Roaming\skypePM
2011-02-01 21:41:33 ----D---- C:\Program Files\Common Files\Skype
2011-02-01 21:41:32 ----RD---- C:\Program Files\Skype
2011-02-01 21:41:32 ----D---- C:\Users\morbe\AppData\Roaming\Skype
2011-01-31 20:24:22 ----D---- C:\ProgramData\Apple Computer
2011-01-31 20:24:13 ----D---- C:\Program Files\Common Files\Apple
2011-01-31 02:18:32 ----D---- C:\Program Files\Hardcoded Software
2011-01-28 16:18:36 ----D---- C:\Program Files\Evernote
2011-01-28 06:35:05 ----D---- C:\Users\morbe\AppData\Roaming\Stardock
2011-01-28 06:34:31 ----HDC---- C:\ProgramData\~0
2011-01-28 06:34:25 ----D---- C:\Program Files\Stardock
2011-01-26 15:10:38 ----D---- C:\Program Files\Vtelevizi.cz reminder
2011-01-25 11:56:42 ----D---- C:\Program Files\Intel
2011-01-24 19:49:32 ----D---- C:\Program Files\AMX Mod X
2011-01-20 14:19:16 ----SD---- C:\Program Files\HLSW
2011-01-20 14:19:16 ----D---- C:\Users\morbe\AppData\Roaming\HLSW
2011-01-19 11:46:46 ----A---- C:\Windows\system32\HUFFYUV.DLL
2011-01-18 19:06:08 ----D---- C:\ProgramData\pI3_lic_file
2011-01-18 13:46:43 ----D---- C:\Program Files\particleIllusion_3

======List of files/folders modified in the last 1 months======

2011-02-17 12:50:49 ----D---- C:\Program Files\trend micro
2011-02-17 12:49:23 ----D---- C:\Windows\Prefetch
2011-02-17 12:42:24 ----SHD---- C:\Windows\Installer
2011-02-17 12:42:24 ----RSD---- C:\Windows\assembly
2011-02-17 12:42:24 ----HD---- C:\ProgramData
2011-02-17 12:38:29 ----SD---- C:\Users\morbe\AppData\Roaming\Microsoft
2011-02-17 12:38:29 ----D---- C:\Program Files
2011-02-17 12:38:11 ----D---- C:\Windows\System32
2011-02-17 12:38:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-02-17 12:38:10 ----D---- C:\Windows\inf
2011-02-17 12:33:15 ----D---- C:\Windows\Temp
2011-02-17 12:32:03 ----D---- C:\Program Files\Steam
2011-02-17 12:31:39 ----D---- C:\Windows\system32\catroot2
2011-02-17 12:30:06 ----D---- C:\Users\morbe\AppData\Roaming\ICQ
2011-02-17 08:31:26 ----D---- C:\Users\morbe\AppData\Roaming\Winamp
2011-02-17 07:04:27 ----D---- C:\Program Files\download
2011-02-17 06:03:46 ----D---- C:\Users\morbe\AppData\Roaming\vlc
2011-02-17 05:02:09 ----D---- C:\Users\morbe\AppData\Roaming\uTorrent
2011-02-16 11:05:08 ----D---- C:\Program Files\K-Lite Codec Pack
2011-02-16 11:02:48 ----D---- C:\Windows
2011-02-16 02:34:41 ----D---- C:\Program Files\Music
2011-02-15 04:12:18 ----D---- C:\Program Files\Sony
2011-02-15 01:26:11 ----D---- C:\Windows\Tasks
2011-02-15 01:26:11 ----D---- C:\Windows\system32\Tasks
2011-02-13 04:41:10 ----D---- C:\Program Files\Pics
2011-02-10 18:28:20 ----D---- C:\Windows\Debug
2011-02-10 11:43:02 ----D---- C:\Windows\rescache
2011-02-10 11:39:03 ----D---- C:\Windows\winsxs
2011-02-10 11:28:55 ----D---- C:\Windows\system32\catroot
2011-02-10 11:22:21 ----D---- C:\Program Files\Windows Mail
2011-02-10 11:22:20 ----D---- C:\Windows\system32\migration
2011-02-10 11:22:20 ----D---- C:\Windows\system32\drivers
2011-02-10 11:22:20 ----D---- C:\Program Files\Internet Explorer
2011-02-10 03:00:47 ----A---- C:\Windows\system32\mrt.exe
2011-02-10 00:46:48 ----D---- C:\Program Files\Others
2011-02-07 15:34:39 ----D---- C:\Warcraft III
2011-02-07 15:04:12 ----A---- C:\Windows\War3Unin.exe
2011-02-03 21:03:18 ----D---- C:\Users\morbe\AppData\Roaming\FileZilla
2011-02-01 23:50:23 ----D---- C:\Program Files\TeamViewer
2011-02-01 21:41:33 ----D---- C:\Program Files\Common Files
2011-01-31 20:24:39 ----D---- C:\Program Files\QuickTime
2011-01-30 22:16:42 ----D---- C:\Users\morbe\AppData\Roaming\foobar2000
2011-01-29 08:31:42 ----D---- C:\Users\morbe\AppData\Roaming\dvdcss
2011-01-29 07:48:56 ----D---- C:\Program Files\foobar2000
2011-01-29 05:22:11 ----D---- C:\Program Files\Videos
2011-01-29 00:59:56 ----D---- C:\Program Files\CCleaner
2011-01-29 00:07:39 ----D---- C:\Program Files\RocketDock
2011-01-28 16:57:24 ----D---- C:\Program Files\utorrent-portable
2011-01-27 06:12:25 ----D---- C:\Windows\system32\drivers\UMDF
2011-01-26 21:45:48 ----D---- C:\ProgramData\Sony
2011-01-25 12:11:44 ----A---- C:\Windows\Ascd_log.ini
2011-01-25 12:11:36 ----HD---- C:\Program Files\InstallShield Installation Information
2011-01-25 12:11:36 ----D---- C:\Program Files\Common Files\InstallShield
2011-01-25 12:11:36 ----D---- C:\Program Files\ASUS
2011-01-25 12:06:26 ----A---- C:\Windows\DIFxAPI.dll
2011-01-25 11:55:49 ----A---- C:\Windows\Ascd_tmp.ini
2011-01-25 07:41:56 ----D---- C:\Windows\twain_32
2011-01-25 02:38:44 ----D---- C:\Program Files\WMCap
2011-01-23 21:29:49 ----RSD---- C:\Windows\Fonts
2011-01-23 17:34:30 ----D---- C:\Program Files\Common Files\Steam
2011-01-20 12:18:53 ----D---- C:\Program Files\JDownloader

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 mv61xx;mv61xx; C:\Windows\system32\DRIVERS\mv61xx.sys [2008-06-23 150568]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-04-15 691696]
R1 AsIO;AsIO; C:\Windows\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2011-01-12 17256]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2011-01-12 236600]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2011-01-12 34744]
R1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2011-01-12 80064]
R2 cpuz134;cpuz134; \??\C:\Windows\system32\drivers\cpuz134_x32.sys [2010-07-09 20328]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-11-26 6650368]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-11-26 231936]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdLH3.sys [2010-11-17 97296]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-05-20 2143136]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2008-06-30 47616]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2010-12-20 20952]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [2010-02-25 10064]
S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 105488]
S3 awyceces;awyceces; C:\Windows\system32\drivers\awyceces.sys []
S3 cmudau32;C-Media USB UDA Sound Interface; C:\Windows\system32\drivers\cmudaxu.sys [2006-08-09 1419840]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena\safedrv.sys []
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\lvusbsta.sys [2005-01-19 22016]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 PID_0928;Labtec WebCam(PID_0928); C:\Windows\system32\DRIVERS\LV561AV.SYS [2005-01-19 211712]
S3 usbaudio;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-11-26 176128]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-19 1803224]
R2 CTDevice_Srv;CT Device Query service; C:\Program Files\Creative\Shared Files\CTDevSrv.exe [2007-04-02 61440]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-12-20 363344]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-03-25 490280]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-09-23 935208]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-01-07 75064]
R2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2010-12-07 2228008]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2010-05-07 1051976]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 CTUPnPSv;Creative Centrale Media Server; C:\Program Files\Creative\Creative Centrale\CTUPnPSv.exe [2008-05-21 64000]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2010-03-31 3518392]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-01-10 407336]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TuneUp.Defrag;@C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1; C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe [2010-06-13 435016]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

-----------------EOF-----------------


Diky

Re: Preventivka

Napsal: 17 úno 2011 12:52
od Asar
Log vypadá čistý. Jen pro příště vkládejte log z RSIT, který HJT také obsahuje a poví nám toho o pc mnohem víc.

Re: Preventivka

Napsal: 17 úno 2011 12:53
od morbe
Asar píše:Log vypadá čistý. Jen pro příště vkládejte log z RSIT, který HJT také obsahuje a poví nám toho o pc mnohem víc.
Ok, dik. Akorat jsem editnul post pred vasim ;).

Re: Preventivka

Napsal: 17 úno 2011 13:06
od Asar
i RSIT je čistý.