Stránka 1 z 1

prosím o kontrolu

Napsal: 09 bře 2011 16:28
od ja55ko
Logfile of random's system information tool 1.08 (written by random/random)
Run by Jana Koláčková at 2011-03-09 08:47:37
Microsoft Windows 7 Home Premium
System drive C: has 106 GB (82%) free of 130 GB
Total RAM: 1014 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:47:45, on 9.3.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Safe mode with network support

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Windows\system32\mmc.exe
C:\Windows\System32\dinotify.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\Jana Koláčková\Downloads\RSIT.exe
C:\Program Files\trend micro\Jana Koláčková.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2786678
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Jana Koláčková\Downloads\utorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

--
End of file - 7015 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-11-10 393600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}]
uTorrentBar Toolbar - C:\Program Files\uTorrentBar\tbuTor.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar BHO - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - uTorrentBar Toolbar - C:\Program Files\uTorrentBar\tbuTor.dll [2010-12-09 3911776]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-12-09 3911776]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
""= []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-23 815104]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-02-23 3451496]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"OfficeSyncProcess"=C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [2010-03-16 718208]
"uTorrent"=C:\Users\Jana Koláčková\Downloads\utorrent.exe [2011-01-15 395128]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files\uTorrent\uTorrent.exe [2011-03-05 395128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-03-09 08:47:37 ----D---- C:\rsit
2011-03-09 08:47:37 ----D---- C:\Program Files\trend micro
2011-03-09 08:16:38 ----A---- C:\Windows\ntbtlog.txt
2011-03-09 08:08:13 ----A---- C:\Windows\system32\rpcnetp.exe
2011-03-05 17:56:23 ----D---- C:\Program Files\Conduit
2011-03-05 17:56:20 ----D---- C:\Program Files\ConduitEngine
2011-03-05 17:56:10 ----D---- C:\Program Files\uTorrentBar
2011-03-02 09:38:50 ----N---- C:\Windows\system32\ctrestrt.exe
2011-03-02 06:14:39 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2011-02-25 16:44:54 ----A---- C:\Windows\system32\wcncsvc.dll
2011-02-23 08:30:02 ----A---- C:\Windows\system32\XpsPrint.dll
2011-02-23 08:30:01 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-02-10 13:44:10 ----A---- C:\Windows\system32\win32k.sys
2011-02-10 13:44:07 ----A---- C:\Windows\system32\kerberos.dll
2011-02-10 13:44:05 ----A---- C:\Windows\system32\vbscript.dll
2011-02-10 13:44:05 ----A---- C:\Windows\system32\jscript.dll
2011-02-10 13:43:57 ----A---- C:\Windows\system32\mshtml.dll
2011-02-10 13:43:50 ----A---- C:\Windows\system32\msfeeds.dll
2011-02-10 13:43:49 ----A---- C:\Windows\system32\mstime.dll
2011-02-10 13:43:49 ----A---- C:\Windows\system32\iedkcs32.dll
2011-02-10 13:43:48 ----A---- C:\Windows\system32\mshtmled.dll
2011-02-10 13:43:48 ----A---- C:\Windows\system32\iertutil.dll
2011-02-10 13:43:48 ----A---- C:\Windows\system32\iepeers.dll
2011-02-10 13:43:47 ----A---- C:\Windows\system32\msfeedssync.exe
2011-02-10 13:43:47 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-02-10 13:43:47 ----A---- C:\Windows\system32\licmgr10.dll
2011-02-10 13:43:42 ----A---- C:\Windows\system32\atmfd.dll
2011-02-10 13:43:41 ----A---- C:\Windows\system32\atmlib.dll
2011-02-10 13:43:37 ----A---- C:\Windows\system32\upnp.dll
2011-02-10 13:43:36 ----A---- C:\Windows\system32\urlmon.dll
2011-02-10 13:43:36 ----A---- C:\Windows\system32\msxml6.dll
2011-02-10 13:43:35 ----A---- C:\Windows\system32\wininet.dll
2011-02-10 13:43:35 ----A---- C:\Windows\system32\msxml3.dll
2011-02-10 13:43:34 ----A---- C:\Windows\system32\ieframe.dll
2011-02-10 13:43:33 ----A---- C:\Windows\system32\wscapi.dll
2011-02-10 13:43:33 ----A---- C:\Windows\system32\winhttp.dll
2011-02-10 13:43:33 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-10 13:43:33 ----A---- C:\Windows\system32\slwga.dll
2011-02-10 13:43:33 ----A---- C:\Windows\system32\davclnt.dll
2011-02-10 13:43:32 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-10 13:43:26 ----A---- C:\Windows\system32\ntdll.dll
2011-02-10 13:43:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-02-10 13:43:25 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-02-10 13:43:22 ----A---- C:\Windows\system32\drivers\dxgmms1.sys

======List of files/folders modified in the last 1 months======

2011-03-09 08:47:37 ----RD---- C:\Program Files
2011-03-09 08:46:36 ----D---- C:\Windows\Temp
2011-03-09 08:16:38 ----D---- C:\Windows
2011-03-09 08:08:53 ----D---- C:\Users\Jana Koláčková\AppData\Roaming\uTorrent
2011-03-09 08:08:13 ----D---- C:\Windows\System32
2011-03-09 08:07:11 ----D---- C:\Windows\Prefetch
2011-03-09 08:02:20 ----D---- C:\Windows\system32\catroot2
2011-03-09 08:02:20 ----D---- C:\Windows\system32\catroot
2011-03-09 08:01:52 ----D---- C:\Windows\winsxs
2011-03-09 07:59:34 ----SHD---- C:\System Volume Information
2011-03-09 07:58:14 ----D---- C:\Windows\system32\config
2011-03-07 15:32:21 ----A---- C:\Windows\system32\agremove.exe
2011-03-07 15:30:08 ----HD---- C:\ProgramData
2011-03-07 06:31:21 ----D---- C:\Program Files\Mozilla Firefox
2011-03-05 17:55:36 ----D---- C:\Program Files\uTorrent
2011-03-05 17:53:09 ----D---- C:\Program Files\K-Lite Codec Pack
2011-03-02 06:16:27 ----D---- C:\Program Files\Microsoft Silverlight
2011-03-02 06:15:11 ----SHD---- C:\Windows\Installer
2011-03-02 06:14:39 ----D---- C:\Windows\system32\drivers
2011-02-23 16:04:17 ----A---- C:\Windows\system32\aswBoot.exe
2011-02-19 12:38:10 ----D---- C:\Windows\debug
2011-02-11 18:42:51 ----D---- C:\Program Files\Internet Explorer
2011-02-11 18:27:21 ----D---- C:\ProgramData\Microsoft Help
2011-02-11 18:24:15 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-02-23 25432]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-14 37376]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-23 179896]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-12-27 691696]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-02-23 371544]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-02-23 301528]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-02-23 49240]
S1 lenovo.smi;Lenovo System Interface Driver; C:\Windows\system32\DRIVERS\smiif32.sys [2008-05-12 13480]
S1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
S1 MpKsl06119b84;MpKsl06119b84; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{36F70315-F0AC-4EFA-97AB-D212774911E8}\MpKsl06119b84.sys []
S1 MpKsl2d38a66e;MpKsl2d38a66e; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5529BBA2-3B17-4D40-97E1-9725ECEE177C}\MpKsl2d38a66e.sys []
S1 MpKsl2eb187ed;MpKsl2eb187ed; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7CA7D91C-397D-46CE-881C-08D1747F8933}\MpKsl2eb187ed.sys []
S1 MpKsl3359663f;MpKsl3359663f; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2F25C36B-893A-4103-AD3E-FDF8E05AFE9E}\MpKsl3359663f.sys []
S1 MpKsl3359c3cf;MpKsl3359c3cf; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8D789A34-8B77-4B83-A3AF-86BEA0B9DACA}\MpKsl3359c3cf.sys []
S1 MpKsl3eb1788c;MpKsl3eb1788c; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AA2D3DBC-F5B4-4293-8F3B-D509EE5EC284}\MpKsl3eb1788c.sys []
S1 MpKsl462f5f0b;MpKsl462f5f0b; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{00589F07-0E5F-4481-8261-B93165E3831F}\MpKsl462f5f0b.sys []
S1 MpKsl47761a3d;MpKsl47761a3d; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2F25C36B-893A-4103-AD3E-FDF8E05AFE9E}\MpKsl47761a3d.sys []
S1 MpKsl529c707b;MpKsl529c707b; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2F25C36B-893A-4103-AD3E-FDF8E05AFE9E}\MpKsl529c707b.sys []
S1 MpKsl5c420a14;MpKsl5c420a14; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B75D6BBA-F0CB-46FD-B109-EEB1715EC2F6}\MpKsl5c420a14.sys []
S1 MpKsl5e0245b0;MpKsl5e0245b0; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5240911B-3BAC-4FAA-9CD3-D3ACDF14F004}\MpKsl5e0245b0.sys []
S1 MpKsl69dd7d32;MpKsl69dd7d32; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5529BBA2-3B17-4D40-97E1-9725ECEE177C}\MpKsl69dd7d32.sys []
S1 MpKsl8fa29167;MpKsl8fa29167; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2F25C36B-893A-4103-AD3E-FDF8E05AFE9E}\MpKsl8fa29167.sys []
S1 MpKslad1bc5b2;MpKslad1bc5b2; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0DF46734-8D0F-440F-BC59-C86F86CA10B2}\MpKslad1bc5b2.sys []
S1 MpKslc2b02323;MpKslc2b02323; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8D789A34-8B77-4B83-A3AF-86BEA0B9DACA}\MpKslc2b02323.sys []
S1 MpKslcb649332;MpKslcb649332; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1C26D8C0-5DA6-4953-9AD6-A6B32427B0D6}\MpKslcb649332.sys []
S1 MpKslcce792fd;MpKslcce792fd; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DB18ACBA-E09A-4EE1-A133-175794521C25}\MpKslcce792fd.sys []
S1 MpKslda0fa8ab;MpKslda0fa8ab; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7CA7D91C-397D-46CE-881C-08D1747F8933}\MpKslda0fa8ab.sys []
S1 MpKsldb88e10f;MpKsldb88e10f; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8D789A34-8B77-4B83-A3AF-86BEA0B9DACA}\MpKsldb88e10f.sys []
S1 MpKsldeb020e6;MpKsldeb020e6; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B75D6BBA-F0CB-46FD-B109-EEB1715EC2F6}\MpKsldeb020e6.sys []
S1 MpKsle5664523;MpKsle5664523; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{984FA421-C6E1-45E4-A6C3-6A5F1253C78B}\MpKsle5664523.sys []
S1 MpKslf4202910;MpKslf4202910; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2F25C36B-893A-4103-AD3E-FDF8E05AFE9E}\MpKslf4202910.sys []
S1 MpKslf4d21a54;MpKslf4d21a54; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7CA7D91C-397D-46CE-881C-08D1747F8933}\MpKslf4d21a54.sys []
S1 MpKslf78d64cf;MpKslf78d64cf; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0DF46734-8D0F-440F-BC59-C86F86CA10B2}\MpKslf78d64cf.sys []
S1 MpKslfa542525;MpKslfa542525; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7C7612DB-7132-46C9-B2CD-E5C70C8D597B}\MpKslfa542525.sys []
S1 MpKslfdc8e437;MpKslfdc8e437; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7CA7D91C-397D-46CE-881C-08D1747F8933}\MpKslfdc8e437.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-02-23 19544]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-02-23 53592]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2009-07-13 1035776]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2009-03-31 147200]
S3 ATSwpWDF;AuthenTec TruePrint USB WBF WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2009-12-03 625224]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 392704]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 58880]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2010-10-24 43392]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2010-10-24 54144]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-10-10 84992]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-02-23 42184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NisSrv;@C:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 206360]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-27 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]

-----------------EOF-----------------

Re: prosím o kontrolu

Napsal: 09 bře 2011 19:35
od Roli
Zdravím, tyhle zbytečnosti fixni v HJT :

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT2786678
R3 - URLSearchHook: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll
O3 - Toolbar: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')


HJTnajdeš zde :

C:\Program Files\trend micro\Jana Koláčková.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Jinak nic špatného nevidím.

Re: prosím o kontrolu

Napsal: 10 bře 2011 07:05
od ja55ko
Děkuji - provedla jsem přesně podle pokynů - fakticky mooooooooooooooooooooooooc dík.
Jana

Re: prosím o kontrolu

Napsal: 10 bře 2011 18:14
od Roli
Není zač princezno.