Stránka 1 z 1

pomalý a zavírený PC

Napsal: 18 úno 2011 09:35
od PLUTONIUM
zdravím potreboval by som pomôcť s odvírovaným PC sám si sním už neviem rady, často zamrzáva, dlho sa zapína a pracuje pomaly, používam AV - AD-AWARE a AVAST, pripájam LOG z RSIT

Logfile of random's system information tool 1.08 (written by random/random)
Run by rxx at 2011-02-18 09:22:55
Systém Microsoft Windows XP Professional Service Pack 3, v.3311
System drive C: has 23 GB (47%) free of 50 GB
Total RAM: 2046 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:23:03, on 18.2.2011
Platform: Windows XP SP3, v.3311 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.3311)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
H:\RSIT.exe
C:\Program Files\trend micro\rxx.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
R3 - URLSearchHook: {1A03F196-9617-4CA0-842B-A83CEECB022B} - - (no file)
R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)
O1 - Hosts: 85.25.73.109 l2authd.lineage2.com
O1 - Hosts: 85.25.73.109 l2testauthd.lineage2.com
O2 - BHO: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - (value not set) (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: ToggleEN Toolbar - {038cb5c7-48ea-4af9-94e0-a1646542e62b} - C:\Program Files\ToggleEN\tbTog1.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\\PSDrvCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Startup Cleaner] C:\Program Files\CM Data Software\CM DiskCleaner\Startup Cleaner.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\RunOnce: [InstallShieldSetup] "C:\Documents and Settings\rxx\Application Data\InstallShield Installation Information\{974C4B12-4D02-4879-85E0-61C95CC63E9E}\setup.exe" -reboot"C:\Documents and Settings\rxx\Application Data\InstallShield Installation Information\{974C4B12-4D02-4879-85E0-61C95CC63E9E}\reboot.ini"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Dropbox.lnk = C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User 'SYSTEM')
O4 - S-1-5-18 Startup: PowerReg Scheduler V3.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Dropbox.lnk = C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe (User 'Default user')
O4 - .DEFAULT Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User 'Default user')
O4 - .DEFAULT Startup: PowerReg Scheduler V3.exe (User 'Default user')
O4 - Startup: Dropbox.lnk = C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O4 - Startup: PowerReg Scheduler V3.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: QIP 2005 - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\WINDOWS\system32\shdocvw.dll (HKCU)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Google Update Service (gupdate1c9acaafa341a8a) (gupdate1c9acaafa341a8a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 9940 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{038cb5c7-48ea-4af9-94e0-a1646542e62b}]
ToggleEN Toolbar - C:\Program Files\ToggleEN\tbTog1.dll [2011-01-18 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - (value not set) []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-12 63128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngin0.dll [2011-01-18 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-11-20 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-11-20 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-09-06 1048888]
{038cb5c7-48ea-4af9-94e0-a1646542e62b} - ToggleEN Toolbar - C:\Program Files\ToggleEN\tbTog1.dll [2011-01-18 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngin0.dll [2011-01-18 3911776]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WinFastDTV"=C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2007-11-16 90112]
"WinFast Schedule"=C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2007-11-15 2850816]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-02-19 49152]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE [2005-01-19 221184]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2007-09-25 93208]
"PinnacleDriverCheck"=C:\WINDOWS\system32\\PSDrvCheck.exe [2004-03-10 406016]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-05-16 98304]
"Startup Cleaner"=C:\Program Files\CM Data Software\CM DiskCleaner\Startup Cleaner.exe [2006-10-08 122880]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2011-01-07 111208]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-01-07 13880424]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2010-11-04 1753192]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-01-13 3396624]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-02-12 1695232]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"AdobeBridge"= []
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"InstallShieldSetup"=C:\Documents and Settings\rxx\Application Data\InstallShield Installation Information\{974C4B12-4D02-4879-85E0-61C95CC63E9E}\setup.exe -rebootC:\Documents and Settings\rxx\Application Data\InstallShield Installation Information\{974C4B12-4D02-4879-85E0-61C95CC63E9E}\reboot.ini []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-02-12 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2011-01-07 13880424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2011-01-07 111208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-08-10 16384000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2010-09-02 13351304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-08-03 1826816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2006-09-26 35328]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [2005-09-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^InterVideo WinCinema Manager.lnk]
C:\PROGRA~1\INTERV~1\Common\Bin\WINCIN~1.EXE [2004-07-12 237568]

C:\Documents and Settings\rxx\Start Menu\Programs\Startup
Dropbox.lnk - C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe
hamachi.lnk - C:\Program Files\Hamachi\hamachi.exe
PowerReg Scheduler V3.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\InterVideo\DVD6\WinDVD.exe"="C:\Program Files\InterVideo\DVD6\WinDVD.exe:*:Enabled:WinDVD"
"D:\cs\Valve\hl.exe"="D:\cs\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"D:\cs\Valve\cstrike.exe"="D:\cs\Valve\cstrike.exe:*:Enabled:Counter-Strike Launcher"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe"="C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Program Files\EA GAMES\Nightfire\Bond.exe"="C:\Program Files\EA GAMES\Nightfire\Bond.exe:*:Disabled:Bond"
"C:\Program Files\WinFast\WFDTV\DVBTAP.exe"="C:\Program Files\WinFast\WFDTV\DVBTAP.exe:*:Enabled:WinFast DTV Application"
"D:\cs\Valve\hlds.exe"="D:\cs\Valve\hlds.exe:*:Enabled:HLDS Launcher"
"C:\HLServer\hlds.exe"="C:\HLServer\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Programmi\Activision\Rome - Total War\RomeTW.exe"="C:\Programmi\Activision\Rome - Total War\RomeTW.exe:*:Enabled:Rome: Total War"
"C:\Program Files\Pando Networks\Pando\pando.exe"="C:\Program Files\Pando Networks\Pando\pando.exe:*:Enabled:Pando Application"
"C:\Documents and Settings\rxx\Desktop\SAMP server\samp-server.exe"="C:\Documents and Settings\rxx\Desktop\SAMP server\samp-server.exe:*:Enabled:samp-server"
"C:\Documents and Settings\rxx\Desktop\Sammp seeerver\samp-server.exe"="C:\Documents and Settings\rxx\Desktop\Sammp seeerver\samp-server.exe:*:Enabled:samp-server"
"C:\Program Files\EA GAMES\MOHAA\MOHAA.exe"="C:\Program Files\EA GAMES\MOHAA\MOHAA.exe:*:Enabled:Medal of Honor Allied Assault"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Croteam\Serious Sam - The Second Encounter\Bin\SeriousSam.exe"="C:\Program Files\Croteam\Serious Sam - The Second Encounter\Bin\SeriousSam.exe:*:Enabled:SeriousSam"
"C:\Flatout\flatout.exe"="C:\Flatout\flatout.exe:*:Enabled:flatout"
"C:\Program Files\Valve\hlds.exe"="C:\Program Files\Valve\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Counter-Strike Source\hl2.exe"="C:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Warcraft III\Warcraft III.exe"="C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Program Files\DsNET Corp\aTube Catcher 1.0\smh.exe"="C:\Program Files\DsNET Corp\aTube Catcher 1.0\smh.exe:*:Disabled:Smart Media Hunter 0.7"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Xfire\xfire.exe"="C:\Program Files\Xfire\xfire.exe:*:Enabled:Xfire"
"C:\Program Files\HLSW\hlsw.exe"="C:\Program Files\HLSW\hlsw.exe:*:Enabled:HLSW"
"C:\Program Files\Ubisoft\Pacific Fighters\pf.exe"="C:\Program Files\Ubisoft\Pacific Fighters\pf.exe:*:Enabled:pf"
"C:\GMOD10\hl2.exe"="C:\GMOD10\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Activision\Rome - Total War\RomeTW.exe"="C:\Program Files\Activision\Rome - Total War\RomeTW.exe:*:Enabled:Rome: Total War"
"C:\Program Files\Warcraft III\War3.exe"="C:\Program Files\Warcraft III\War3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Ubisoft\Splinter Cell Pandora Tomorrow MultiPlayer Demo\online\System\PandoraMultiPlayerDemo.exe"="C:\Program Files\Ubisoft\Splinter Cell Pandora Tomorrow MultiPlayer Demo\online\System\PandoraMultiPlayerDemo.exe:*:Enabled:PandoraMultiPlayerDemo"
"C:\Documents and Settings\rxx\Desktop\hnhhn\samp-server.exe"="C:\Documents and Settings\rxx\Desktop\hnhhn\samp-server.exe:*:Enabled:samp-server"
"H:\Hry\Microsoft Games\Rise of Nations\rise.exe"="H:\Hry\Microsoft Games\Rise of Nations\rise.exe:*:Enabled:Rise of Nations"
"H:\Hry\EA GAMES\Battlefield 1942\BF1942.exe"="H:\Hry\EA GAMES\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"H:\Hry\Counter-Strike Source\hl2.exe"="H:\Hry\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"H:\Hry\Westwood\RA2\GAME.EXE"="H:\Hry\Westwood\RA2\GAME.EXE:*:Enabled:Main executable for Red Alert 2"
"H:\Hry\Valve\hlds.exe"="H:\Hry\Valve\hlds.exe:*:Enabled:HLDS Launcher"
"H:\Hry\FlightGear\bin\win32\fgfs.exe"="H:\Hry\FlightGear\bin\win32\fgfs.exe:*:Enabled:fgfs"
"H:\HLSW\hlsw.exe"="H:\HLSW\hlsw.exe:*:Enabled:HLSW Application"
"H:\Hry\Valve\hl.exe"="H:\Hry\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"H:\Hry\Counter-Strike\hl.exe"="H:\Hry\Counter-Strike\hl.exe:*:Enabled:Half-Life Launcher"
"H:\Hry\Counter-Strike\hlds.exe"="H:\Hry\Counter-Strike\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Valve\hlds.exe"="C:\Valve\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Valve\hl.exe"="C:\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Hamachi\hamachi.exe"="C:\Program Files\Hamachi\hamachi.exe:*:Enabled:Hamachi Client"
"C:\Program Files\Silkroad\SilkErrSender.exe"="C:\Program Files\Silkroad\SilkErrSender.exe:*:Enabled:FTPSender MFC ?? ????"
"H:\Postal2STP\System\Postal2MP.exe"="H:\Postal2STP\System\Postal2MP.exe:*:Enabled:Postal2MP"
"H:\Hry\Garrys mod\hl2.exe"="H:\Hry\Garrys mod\hl2.exe:*:Enabled:hl2"
"H:\Hry\Microsoft Games\Rise of Nations\nations.exe"="H:\Hry\Microsoft Games\Rise of Nations\nations.exe:*:Enabled:Rise of Nations"
"H:\Hry\Counter-Strike Source\srcds.exe"="H:\Hry\Counter-Strike Source\srcds.exe:*:Enabled:srcds"
"H:\Hry\Zoo tycon\zt.exe"="H:\Hry\Zoo tycon\zt.exe:*:Enabled:Zoo Tycoon 2 Executable"
"H:\Hry\EA GAMES\Medal of Honor\MOHAA.exe"="H:\Hry\EA GAMES\Medal of Honor\MOHAA.exe:*:Enabled:Medal of Honor Allied Assault"
"H:\Hry\Activision\Rome - Total War\RomeTW.exe"="H:\Hry\Activision\Rome - Total War\RomeTW.exe:*:Enabled:Rome: Total War"
"H:\Hry\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\XR_3DA.exe"="H:\Hry\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\XR_3DA.exe:*:Enabled:S.T.A.L.K.E.R. - Shadow of Chernobyl (CLI)"
"H:\Hry\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\dedicated\XR_3DA.exe"="H:\Hry\THQ\S.T.A.L.K.E.R. - Shadow of Chernobyl\bin\dedicated\XR_3DA.exe:*:Enabled:S.T.A.L.K.E.R. - Shadow of Chernobyl (SRV)"
"H:\Hry\Croteam\Serious Sam - The Second Encounter\Bin\SeriousSam.exe"="H:\Hry\Croteam\Serious Sam - The Second Encounter\Bin\SeriousSam.exe:*:Enabled:SeriousSam"
"H:\Hry\EA GAMES\Battlefield 1942\BF1942_w32ded.exe"="H:\Hry\EA GAMES\Battlefield 1942\BF1942_w32ded.exe:*:Enabled:BF1942_w32ded"
"H:\Hry\halflife\SIERRA\Half-Life\hlds.exe"="H:\Hry\halflife\SIERRA\Half-Life\hlds.exe:*:Enabled:hlds"
"H:\Hry\halflife\SIERRA\Half-Life\hl.exe"="H:\Hry\halflife\SIERRA\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"H:\Program Files\Deep Silver\S.T.A.L.K.E.R. - Clear Sky\bin\xrEngine.exe"="H:\Program Files\Deep Silver\S.T.A.L.K.E.R. - Clear Sky\bin\xrEngine.exe:*:Enabled:S.T.A.L.K.E.R. - Clear Sky (CLI)"
"H:\Program Files\Deep Silver\S.T.A.L.K.E.R. - Clear Sky\bin\dedicated\xrEngine.exe"="H:\Program Files\Deep Silver\S.T.A.L.K.E.R. - Clear Sky\bin\dedicated\xrEngine.exe:*:Enabled:S.T.A.L.K.E.R. - Clear Sky (SRV)"
"C:\Program Files\Pinnacle\Studio 10\programs\RM.exe"="C:\Program Files\Pinnacle\Studio 10\programs\RM.exe:*:Enabled:Render Manager"
"C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe"="C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe:*:Enabled:Studio"
"C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe"="C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe:*:Enabled:PMSRegisterFile"
"C:\Program Files\Pinnacle\Studio 10\programs\umi.exe"="C:\Program Files\Pinnacle\Studio 10\programs\umi.exe:*:Enabled:umi"
"H:\Hry\Electronic Arts\Battlefield 2142\BF2142.exe"="H:\Hry\Electronic Arts\Battlefield 2142\BF2142.exe:*:Enabled:Battlefield 2"
"H:\Roockstar games 4\Grand Theft Auto IV\LaunchGTAIV.exe"="H:\Roockstar games 4\Grand Theft Auto IV\LaunchGTAIV.exe:*:Enabled:Grand Theft Auto IV"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\WINDOWS\system32\dpnsvr.exe"="C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"H:\Hry\S.T.A.L.K.E.R. - Clear Sky\bin\xrEngine.exe"="H:\Hry\S.T.A.L.K.E.R. - Clear Sky\bin\xrEngine.exe:*:Enabled:S.T.A.L.K.E.R. - Clear Sky (CLI)"
"H:\Hry\S.T.A.L.K.E.R. - Clear Sky\bin\dedicated\xrEngine.exe"="H:\Hry\S.T.A.L.K.E.R. - Clear Sky\bin\dedicated\xrEngine.exe:*:Enabled:S.T.A.L.K.E.R. - Clear Sky (SRV)"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe"="C:\Documents and Settings\rxx\Application Data\Dropbox\bin\Dropbox.exe:*:Enabled:Dropbox"
"C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\NGM.exe"="C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"H:\Hry\Combat Arms EU\CombatArms.exe"="H:\Hry\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"H:\Hry\Combat Arms EU\Engine.exe"="H:\Hry\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
"H:\Hry\Combat Arms EU\NMService.exe"="H:\Hry\Combat Arms EU\NMService.exe:*:Enabled:Nexon Messenger Core"
"C:\Program Files\Autodesk\backburner\monitor.exe"="C:\Program Files\Autodesk\backburner\monitor.exe:*:Enabled:backburner 2.3 monitor"
"C:\Program Files\Autodesk\backburner\manager.exe"="C:\Program Files\Autodesk\backburner\manager.exe:*:Enabled:backburner 2.3 manager"
"C:\Program Files\Autodesk\backburner\server.exe"="C:\Program Files\Autodesk\backburner\server.exe:*:Enabled:backburner 2.3 server"
"C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"
"H:\Hry\Grand Theft Auto IV\Grand Theft Auto IV\LaunchGTAIV.exe"="H:\Hry\Grand Theft Auto IV\Grand Theft Auto IV\LaunchGTAIV.exe:*:Enabled:Grand Theft Auto IV"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"H:\Hry\Combat Arms EU\CombatArms.exe"="H:\Hry\Combat Arms EU\CombatArms.exe:*Enabled:CombatArms.exe"
"H:\Hry\Combat Arms EU\Engine.exe"="H:\Hry\Combat Arms EU\Engine.exe:*Enabled:Engine.exe"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"

======List of files/folders created in the last 1 months======

2011-02-18 09:22:55 ----D---- C:\rsit
2011-02-18 09:22:55 ----D---- C:\Program Files\trend micro
2011-02-16 22:41:03 ----A---- C:\WINDOWS\system32\lsdelete.exe
2011-02-16 19:56:07 ----A---- C:\WINDOWS\system32\drivers\Lbd.sys
2011-02-16 19:55:33 ----HDC---- C:\Documents and Settings\All Users\Application Data\{589802B2-1BF3-4609-9ADE-CF6E6608D06D}
2011-02-16 19:55:12 ----D---- C:\Program Files\Lavasoft
2011-02-16 09:35:20 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-02-16 09:35:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-02-16 09:35:18 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-02-16 09:35:18 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-02-16 09:35:17 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-02-16 09:35:17 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-02-16 09:35:17 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-02-16 09:35:05 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-02-16 09:34:59 ----D---- C:\Program Files\Alwil Software
2011-02-16 09:22:20 ----D---- C:\Program Files\PC Tools Security
2011-02-15 21:12:11 ----D---- C:\Program Files\TrendMicro
2011-02-09 10:22:03 ----D---- C:\Program Files\Abacus
2011-01-27 15:11:08 ----D---- C:\Program Files\upnito.sk manager
2011-01-27 10:07:16 ----A---- C:\WINDOWS\system32\nvgenco32hda.dll
2011-01-27 10:07:14 ----A---- C:\WINDOWS\system32\OpenCL.dll
2011-01-27 10:07:14 ----A---- C:\WINDOWS\system32\nvgenco322040.dll
2011-01-27 10:07:14 ----A---- C:\WINDOWS\system32\nvdispco322090.dll
2011-01-27 10:07:13 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2011-01-27 09:31:18 ----D---- C:\Program Files\SystemRequirementsLab
2011-01-27 09:31:16 ----D---- C:\Documents and Settings\rxx\Application Data\SystemRequirementsLab
2011-01-20 19:46:26 ----D---- C:\Program Files\Sony Ericsson

======List of files/folders modified in the last 1 months======

2011-02-18 09:23:02 ----D---- C:\WINDOWS\Prefetch
2011-02-18 09:22:55 ----D---- C:\Program Files
2011-02-18 09:17:10 ----D---- C:\WINDOWS\Temp
2011-02-18 09:05:44 ----SD---- C:\WINDOWS\Tasks
2011-02-18 09:04:39 ----D---- C:\Documents and Settings\rxx\Application Data\Skype
2011-02-18 09:04:35 ----D---- C:\Documents and Settings\rxx\Application Data\Dropbox
2011-02-18 09:04:32 ----D---- C:\Documents and Settings\rxx\Application Data\Hamachi
2011-02-18 09:03:06 ----D---- C:\WINDOWS\system32\CatRoot2
2011-02-18 09:02:45 ----D---- C:\Program Files\Common Files\Akamai
2011-02-18 00:39:05 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-02-17 17:59:59 ----D---- C:\Documents and Settings\rxx\Application Data\skypePM
2011-02-17 17:44:12 ----D---- C:\WINDOWS\system32\drivers
2011-02-17 15:33:55 ----D---- C:\Program Files\DOSBox-0.72
2011-02-17 15:02:29 ----A---- C:\WINDOWS\wincmd.ini
2011-02-17 14:57:47 ----A---- C:\WINDOWS\level.ini
2011-02-17 11:11:32 ----SHD---- C:\WINDOWS
2011-02-17 09:51:19 ----D---- C:\WINDOWS\system32
2011-02-17 09:01:52 ----D---- C:\Program Files\Total Video Converter
2011-02-16 19:59:11 ----HD---- C:\WINDOWS\inf
2011-02-16 19:56:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-02-16 19:55:33 ----SHD---- C:\WINDOWS\Installer
2011-02-16 19:55:33 ----HD---- C:\Config.Msi
2011-02-16 19:55:06 ----D---- C:\WINDOWS\WinSxS
2011-02-16 19:55:01 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2011-02-16 09:34:59 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software
2011-02-16 09:30:39 ----D---- C:\Program Files\Common Files
2011-02-16 09:30:38 ----SHD---- C:\System Volume Information
2011-02-16 09:28:27 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2011-02-16 09:17:51 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2011-02-15 21:42:02 ----A---- C:\WINDOWS\ntbtlog.txt
2011-02-15 12:40:09 ----HD---- C:\Program Files\InstallShield Installation Information
2011-02-15 10:05:14 ----A---- C:\WINDOWS\NeroDigital.ini
2011-02-15 09:56:13 ----D---- C:\WINDOWS\Downloaded Installations
2011-02-15 09:50:49 ----D---- C:\Program Files\Pivot Stickfigure Animator
2011-02-15 09:47:31 ----D---- C:\Program Files\Google
2011-02-15 08:46:04 ----D---- C:\WINDOWS\vbSkinner
2011-02-15 07:47:51 ----D---- C:\Program Files\Mozilla Firefox
2011-02-11 09:16:12 ----D---- C:\WINDOWS\system32\DirectX
2011-02-10 18:14:44 ----D---- C:\Documents and Settings\rxx\Application Data\Power Sound Editor Free
2011-01-28 20:10:31 ----D---- C:\Documents and Settings\All Users\Application Data\TrackMania
2011-01-27 10:09:09 ----D---- C:\WINDOWS\Help
2011-01-27 10:09:03 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-01-27 10:08:23 ----D---- C:\Program Files\NVIDIA Corporation
2011-01-27 10:07:20 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-27 09:54:33 ----D---- C:\NVIDIA

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys [2010-11-22 64288]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2004-07-19 7040]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-03-21 43528]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-08-10 50688]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\WINDOWS\System32\drivers\sfvfs02.sys [2005-11-03 63488]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-05-02 691696]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-01-13 29392]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-01-13 23632]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-01-13 294608]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-01-13 47440]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys []
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-02-12 14592]
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R1 prodrv03;Star Force copy protection driver v3; C:\WINDOWS\System32\drivers\prodrv03.sys [2008-06-28 115968]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-02-12 8832]
R2 acedrv11;acedrv11; \??\C:\WINDOWS\system32\drivers\acedrv11.sys []
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-01-13 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-01-13 100176]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-02-12 279712]
R2 CX23880;WinFast CX2388x WDM Video Capture.; C:\WINDOWS\system32\drivers\cx88vid.sys [2006-10-18 162944]
R2 CXAVXBAR;WinFast CX2388x WDM Crossbar.; C:\WINDOWS\system32\drivers\cxavxbar.sys [2006-10-18 9728]
R2 CXTUNE;WinFast CX2388x WDM TVTuner.; C:\WINDOWS\system32\drivers\CX88TUNE.sys [2006-10-18 50816]
R2 Hardlock;Hardlock; \??\C:\WINDOWS\system32\drivers\hardlock.sys []
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-02-12 25888]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\System32\Drivers\ASAPIW2K.sys [2004-03-10 11264]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-01-10 25280]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-02-12 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-08-10 4603904]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2004-06-21 78976]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-01-08 9888672]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-03-06 58752]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda32.sys [2010-11-12 100456]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-03-06 19968]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2008-04-17 47360]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-02-12 32128]
R3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS []
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\WmBEnum.sys [2007-09-14 19352]
R3 WmXlCore;Logitech Translation Layer Driver; C:\WINDOWS\system32\drivers\WmXlCore.sys [2007-09-14 51608]
S3 aiurhohm;aiurhohm; C:\WINDOWS\system32\drivers\aiurhohm.sys []
S3 av06xtsa;av06xtsa; C:\WINDOWS\system32\drivers\av06xtsa.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-02-12 17024]
S3 cimo;cimo; \??\C:\WINDOWS\system32\cimo.sys []
S3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2010-05-16 223128]
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 GarenaPEngine;GarenaPEngine; \??\C:\DOCUME~1\rxx\LOCALS~1\Temp\AGU85F.tmp []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-12 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-12 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-12 21568]
S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys []
S3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-19 22016]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-02-12 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-02-12 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-02-12 10880]
S3 PID_0928;Labtec WebCam(PID_0928); C:\WINDOWS\system32\DRIVERS\LV561AV.SYS [2005-01-19 211712]
S3 PnkBstrK;PnkBstrK; \??\C:\WINDOWS\system32\drivers\PnkBstrK.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-02-12 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-02-12 15232]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-02-12 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-02-12 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-02-12 26368]
S3 w200bus;Sony Ericsson W200 driver (WDM); C:\WINDOWS\system32\DRIVERS\w200bus.sys [2006-11-07 61504]
S3 WmFilter;Logitech Gaming HID Filter Driver; C:\WINDOWS\system32\drivers\WmFilter.sys [2007-09-14 29976]
S3 WmHidLo;Logitech Gaming USB Filter Driver; C:\WINDOWS\system32\drivers\WmHidLo.sys [2007-09-14 29208]
S3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\WmVirHid.sys [2007-09-14 14744]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-02-12 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 WS2IFSL;Prostredie podpory poskytovateľa služby Windows Socket 2.0 Non-IFS Service; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Akamai;Akamai NetSession Interface; C:\WINDOWS\System32\svchost.exe [2008-02-12 14336]
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2010-08-24 72704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-01-13 40384]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-09-06 247096]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-20 153376]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-11-22 1375992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2011-01-07 156776]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-08-25 75064]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2010-09-26 189480]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2005-01-31 49152]
S2 gupdate1c9acaafa341a8a;Google Update Service (gupdate1c9acaafa341a8a); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-24 133104]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-01-08 72704]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-02-12 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: pomalý a zavírený PC

Napsal: 18 úno 2011 18:55
od Rudy
Nic nebezpečného v logu nevidím. Vyčistěte PC od balastu CCleanerem: http://www.viry.cz/forum/viewtopic.php?f=46&t=7478 a pak dejte log z kompletního skenu MBAM: http://www.malwarebytes.org/mbam.php . Předem nic nemažte.

Re: pomalý a zavírený PC

Napsal: 19 úno 2011 16:07
od PLUTONIUM
rozumiem tak spravil som to všetko ako ste vraveli, a tu je ten log z toho MBAM

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Verzia databázy: 5804

Windows 5.1.2600 Service Pack 3, v.3311
Internet Explorer 6.0.2900.3311

19.2.2011 15:59:36
mbam-log-2011-02-19 (15-59-29).txt

Typ kontroly: Úplná kontrola (C:\|D:\|H:\|)
Objektov kontrolovaných: 873569
Uplynutý čas: 6 hod, 14 min, 51 sek

Infikované služby pamäte: 0
Infikované moduly pamäte: 0
Infikované registračné kľúče: 6
Infikované registračné hodnoty: 0
Infikované položky registračných dát: 0
Infikované priečinky: 0
Infikované súbory: 226

Infikované služby pamäte:
(Škodlivé položky neboli zistené)

Infikované moduly pamäte:
(Škodlivé položky neboli zistené)

Infikované registračné kľúče:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{055FD26D-3A88-4e15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{77D6DDFA-7834-4541-B2B3-A8B0FB0E3924} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00.1 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\ToolBand.XTTBPos00 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D} (Trojan.BHO) -> No action taken.

Infikované registračné hodnoty:
(Škodlivé položky neboli zistené)

Infikované položky registračných dát:
(Škodlivé položky neboli zistené)

Infikované priečinky:
(Škodlivé položky neboli zistené)

Infikované súbory:
d:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322874.exe (HackTool.Agent) -> No action taken.
d:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322877.exe (Worm.Magania) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322890.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322891.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322892.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322893.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322894.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322895.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322896.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322897.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322898.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322899.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322900.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322901.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322902.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322903.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322904.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322906.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322907.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322908.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322909.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322910.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322911.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322912.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322913.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322914.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322915.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322916.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322917.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322918.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322919.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322920.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322921.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322922.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322924.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322925.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322926.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322927.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322928.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322929.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322930.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322931.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322932.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322933.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322934.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322935.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322936.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322937.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322938.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322939.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322940.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322942.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322943.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322944.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322945.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322946.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322947.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322948.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322949.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322950.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322951.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322952.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322953.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322954.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322955.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322956.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322957.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322958.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322960.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322961.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322962.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322963.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322964.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322965.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322966.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322967.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322968.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322969.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322970.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322971.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322972.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322973.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322974.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322975.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322976.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322905.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322923.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322941.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322959.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322977.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322995.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323013.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322978.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322979.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322980.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322981.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322982.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322983.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322984.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322985.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322986.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322987.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322988.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322989.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322990.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322991.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322992.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322993.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322994.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322996.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322997.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322998.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0322999.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323000.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323001.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323002.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323003.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323004.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323005.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323006.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323007.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323008.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323009.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323010.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323011.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323012.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323014.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323015.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323016.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323017.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323018.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323019.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323020.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323021.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323022.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323023.exe (Trojan.Agent) -> No action taken.
h:\system volume information\_restore{80e36c42-18e0-4f04-aeb9-f05bb547d505}\RP1002\A0323024.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\GameData\knightsoftheforce\multiplayer\serverconfig_edit.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backdec.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep1.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep1sec3.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep2.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep2sec2.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep3.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep3sec3.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep3sec4.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep3sec4b.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep4.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep5.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backep6.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backepisodes.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\help.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\helpopstart.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\help_back.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\jango.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\killprogress.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\kotfcdmenu_mp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\kotfcdmenu_sp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backmp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backnpc.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backnpc_big.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backsp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backsp1.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backsp2.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\backtosp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\blood_off.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\blood_on.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\bugfix_spmenu.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\clones212.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\decmenu.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\default_grip.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\default_protect.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\dismemberment_off.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\dismemberment_on.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episode2.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episode4.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episode5.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episode6.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\execute66.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\exit.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_english.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_french.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_german.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_lang.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_portugues.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_spanish.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\first_turkish.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_english.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_french.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_german.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episode3.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\grievousvsobi.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_portugues.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\Mpmenu.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_spanish.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lang_to_turkish.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\lan_dedicated.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\maulattacks.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\maxwindow.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\minwindow.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\mission.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\net_dedicated.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\npc.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\npc_exit.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\options.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\remove_grip.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\remove_protect.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\resetconfig.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\resetconfig_mp.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\serverconfig_edit.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\skinok.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\skinok_big.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\sp1start.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\vehicle.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\vehicleno.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep1sec3a.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep1sec3b.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep2sec2a.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep3sec3a.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep3sec3b.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\menucmds\episodes\ep3sec4b.exe (Trojan.Agent) -> No action taken.
h:\star wars jedi knight jedi academy\kotf jedi academy expansion pack\src\cmds\npcmds\inhand.exe (Trojan.Agent) -> No action taken.
c:\documents and settings\rxx\application data\wiaserva.log (Malware.Trace) -> No action taken.
c:\WINDOWS\system32xcvu.001 (Malware.Trace) -> No action taken.
c:\WINDOWS\system32xcvu.002 (Malware.Trace) -> No action taken.

Re: pomalý a zavírený PC

Napsal: 19 úno 2011 18:33
od Rudy
Vše, co MBAM nalezl, smažte.

Re: pomalý a zavírený PC

Napsal: 19 úno 2011 23:08
od PLUTONIUM
rozumiem, spravil som ako ste povedali, teraz by to malo byť dobre? alebo ešte niečo bude treba spraviť?

Re: pomalý a zavírený PC

Napsal: 20 úno 2011 11:03
od Rudy
Nastala nějaká změna?

Re: pomalý a zavírený PC

Napsal: 20 úno 2011 11:34
od PLUTONIUM
aj áno, pc som nechal v bežnom stave a procesor už nepracuje tak ako vtedy zvykol,

Re: pomalý a zavírený PC

Napsal: 20 úno 2011 12:06
od Rudy
Takže vše v pořádku?

Re: pomalý a zavírený PC

Napsal: 20 úno 2011 12:11
od PLUTONIUM
myslím že áno, ale mám taký problém že na disku C:, som vymazal všetky inštalované programy, a stále 20GB miesta mi niečo zaberá, a aj defragmentovať mi nejde, po 13% mi to ukončí

Re: pomalý a zavírený PC

Napsal: 20 úno 2011 12:16
od Rudy
Zkuste provést checkdisk (kontrola konzistence) s opravou chyb. Před akcí doporučuji zálohovat důležitá data.