Sekání se počítače a zpomalení internetu
Napsal: 03 črc 2011 17:10
Dobrý den.Nějak se to chová divně .Děkuji za ochotu.
Logfile of random's system information tool 1.08 (written by random/random)
Run by čenda at 2011-07-03 18:08:28
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 21 GB (69%) free of 30 GB
Total RAM: 631 MB (41% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:09:04, on 3.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17098)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASC.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\čenda\Plocha\Stahování z internetu\RSIT.exe
C:\Program Files\trend micro\čenda.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.speedbit.com/?aff=105
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 5544179468
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Advanced SystemCare Service (AdvancedSystemCareService) - IObit - C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 4803 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\ASC4_AutoSweep.job
C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
C:\WINDOWS\tasks\AWC AutoSweep.job
C:\WINDOWS\tasks\AWC Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-725345543-1292428093-2147082517-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-725345543-1292428093-2147082517-1003UA.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 4"=C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe [2011-05-28 412560]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
[]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-04-05 131072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoInstrumentation"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-07-03 18:08:29 ----DC---- C:\Program Files\trend micro
2011-07-03 18:08:28 ----DC---- C:\rsit
2011-07-03 17:00:20 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Malwarebytes
2011-07-03 17:00:09 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-02 16:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-07-02 12:53:29 ----AC---- C:\WINDOWS\BDTSupport.dll
2011-07-02 12:53:28 ----AC---- C:\WINDOWS\SGDetectionTool.dll
2011-07-02 12:53:25 ----AC---- C:\WINDOWS\PCTBDRes.dll
2011-07-02 12:53:25 ----AC---- C:\WINDOWS\PCTBDCore.dll
2011-07-02 12:45:33 ----DC---- C:\Documents and Settings\All Users\Data aplikací\PC Tools
2011-07-02 10:54:39 ----DC---- C:\Documents and Settings\čenda\Data aplikací\dvdcss
2011-06-20 18:06:47 ----DC---- C:\Program Files\FileHippo.com
2011-06-19 11:05:44 ----DC---- C:\WINDOWS\system32\WindowsPowerShell
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\winrm
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\GroupPolicy
2011-06-19 11:05:28 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2011-06-19 11:05:26 ----DC---- C:\WINDOWS\$NtUninstallKB968930$
2011-06-18 14:17:56 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-06-18 14:17:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-06-18 14:17:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-06-18 14:12:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-06-18 14:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-06-18 13:57:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-06-12 19:53:16 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Canon
2011-06-12 08:39:14 ----DC---- C:\WINDOWS\system32\XPSViewer
2011-06-12 08:38:14 ----C---- C:\WINDOWS\system32\xpsshhdr.dll
2011-06-12 08:38:14 ----C---- C:\WINDOWS\system32\prntvpt.dll
2011-06-12 08:38:13 ----C---- C:\WINDOWS\system32\xpssvcs.dll
2011-06-09 18:36:55 ----DC---- C:\WINDOWS\system32\en-US
2011-06-09 18:36:41 ----DC---- C:\Program Files\Reference Assemblies
2011-06-08 21:09:40 ----DC---- C:\Documents and Settings\čenda\Data aplikací\IObit
2011-06-08 20:42:59 ----DC---- C:\Program Files\IObit
2011-06-08 20:26:55 ----DC---- C:\WINDOWS\system32\appmgmt
2011-06-08 20:16:09 ----DC---- C:\WINDOWS\pss
======List of files/folders modified in the last 1 months======
2011-07-03 18:08:34 ----DC---- C:\WINDOWS\Prefetch
2011-07-03 18:08:29 ----RDC---- C:\Program Files
2011-07-03 17:59:20 ----DC---- C:\WINDOWS\Temp
2011-07-03 17:59:20 ----DC---- C:\WINDOWS
2011-07-03 17:02:50 ----DC---- C:\WINDOWS\system32\drivers
2011-07-03 16:59:18 ----SDC---- C:\WINDOWS\Tasks
2011-07-03 11:36:49 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-07-03 11:22:25 ----DC---- C:\WINDOWS\system32\CatRoot2
2011-07-03 11:21:55 ----DC---- C:\WINDOWS\system32
2011-07-02 16:41:24 ----HDC---- C:\WINDOWS\inf
2011-07-02 16:41:18 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-02 13:36:48 ----SHDC---- C:\WINDOWS\Installer
2011-07-02 13:36:48 ----DC---- C:\WINDOWS\WinSxS
2011-07-02 13:36:42 ----DC---- C:\Program Files\Common Files\Microsoft Shared
2011-07-02 13:26:40 ----SHD---- C:\System Volume Information
2011-07-02 13:26:40 ----DC---- C:\Program Files\Common Files
2011-07-02 13:25:39 ----ADC---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-02 10:24:56 ----HDC---- C:\WINDOWS\$hf_mig$
2011-06-20 16:06:26 ----DC---- C:\WINDOWS\system32\config
2011-06-19 11:33:14 ----RSDC---- C:\WINDOWS\assembly
2011-06-19 11:29:13 ----DC---- C:\WINDOWS\Microsoft.NET
2011-06-19 11:12:21 ----DC---- C:\WINDOWS\security
2011-06-19 11:05:49 ----DC---- C:\WINDOWS\Help
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\wbem
2011-06-19 11:04:39 ----DC---- C:\WINDOWS\Debug
2011-06-19 10:40:40 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-18 14:23:49 ----DC---- C:\WINDOWS\system32\cs-cz
2011-06-18 14:23:49 ----DC---- C:\Program Files\Internet Explorer
2011-06-18 14:23:04 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-06-18 14:19:44 ----AC---- C:\WINDOWS\system32\MRT.exe
2011-06-18 14:19:38 ----DC---- C:\WINDOWS\system32\CatRoot
2011-06-12 08:39:12 ----DC---- C:\Program Files\MSBuild
2011-06-12 08:39:10 ----RSDC---- C:\WINDOWS\Fonts
2011-06-12 08:38:37 ----DC---- C:\WINDOWS\system32\spool
2011-06-09 20:05:07 ----DC---- C:\Program Files\Spyware Terminator
2011-06-09 20:02:40 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-06-09 18:33:59 ----DC---- C:\WINDOWS\system32\mui
2011-06-09 16:26:24 ----DC---- C:\Program Files\WinClamAVShield
2011-06-09 16:25:09 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Spyware Terminator
2011-06-08 21:11:25 ----DC---- C:\TEMP
2011-06-08 21:08:23 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Google
2011-06-08 20:38:17 ----DC---- C:\WINDOWS\Cursors
2011-06-08 20:38:12 ----DC---- C:\Program Files\Windows NT
2011-06-08 20:38:03 ----DC---- C:\WINDOWS\system32\inetsrv
2011-06-08 20:17:50 ----SHC---- C:\boot.ini
2011-06-08 20:17:50 ----AC---- C:\WINDOWS\win.ini
2011-06-08 20:17:50 ----AC---- C:\WINDOWS\system.ini
2011-06-08 19:49:16 ----SDC---- C:\Documents and Settings\čenda\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 MpKsl18cd9f9f;MpKsl18cd9f9f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C49E54CF-E4C9-4FF7-A175-88742F5B8D75}\MpKsl18cd9f9f.sys []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2005-03-04 127872]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2003-03-04 145408]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-04-05 830684]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2005-10-27 393088]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-03-28 220992]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S1 MpKsl0455eb01;MpKsl0455eb01; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{432AF755-E589-4FD3-96E9-3A0B49348A94}\MpKsl0455eb01.sys []
S1 MpKsl37eb5d56;MpKsl37eb5d56; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{39B78CAF-69EC-4F31-A5C6-48A470FC9ADA}\MpKsl37eb5d56.sys []
S1 MpKsl43510b46;MpKsl43510b46; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{CD2179DE-7FCF-418C-A07E-F69A1067E662}\MpKsl43510b46.sys []
S1 MpKsld235d673;MpKsld235d673; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C0232B03-9562-43EB-A213-8BC64A085604}\MpKsld235d673.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdvancedSystemCareService;Advanced SystemCare Service; C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe [2011-05-28 353168]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-30 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-01-21 496128]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by čenda at 2011-07-03 18:08:28
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 21 GB (69%) free of 30 GB
Total RAM: 631 MB (41% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:09:04, on 3.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17098)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASC.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\čenda\Plocha\Stahování z internetu\RSIT.exe
C:\Program Files\trend micro\čenda.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.speedbit.com/?aff=105
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {472734EA-242A-422b-ADF8-83D1E48CC825} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKCU\..\Run: [Advanced SystemCare 4] C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 5544179468
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Advanced SystemCare Service (AdvancedSystemCareService) - IObit - C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
--
End of file - 4803 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\ASC4_AutoSweep.job
C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
C:\WINDOWS\tasks\AWC AutoSweep.job
C:\WINDOWS\tasks\AWC Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-725345543-1292428093-2147082517-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-725345543-1292428093-2147082517-1003UA.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 4"=C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe [2011-05-28 412560]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
[]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-04-05 131072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoInstrumentation"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoResolveSearch"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-07-03 18:08:29 ----DC---- C:\Program Files\trend micro
2011-07-03 18:08:28 ----DC---- C:\rsit
2011-07-03 17:00:20 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Malwarebytes
2011-07-03 17:00:09 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-02 16:41:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-07-02 12:53:29 ----AC---- C:\WINDOWS\BDTSupport.dll
2011-07-02 12:53:28 ----AC---- C:\WINDOWS\SGDetectionTool.dll
2011-07-02 12:53:25 ----AC---- C:\WINDOWS\PCTBDRes.dll
2011-07-02 12:53:25 ----AC---- C:\WINDOWS\PCTBDCore.dll
2011-07-02 12:45:33 ----DC---- C:\Documents and Settings\All Users\Data aplikací\PC Tools
2011-07-02 10:54:39 ----DC---- C:\Documents and Settings\čenda\Data aplikací\dvdcss
2011-06-20 18:06:47 ----DC---- C:\Program Files\FileHippo.com
2011-06-19 11:05:44 ----DC---- C:\WINDOWS\system32\WindowsPowerShell
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\winrm
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\GroupPolicy
2011-06-19 11:05:28 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2011-06-19 11:05:26 ----DC---- C:\WINDOWS\$NtUninstallKB968930$
2011-06-18 14:17:56 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-06-18 14:17:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-06-18 14:17:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-06-18 14:12:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-06-18 14:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-06-18 13:57:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-06-12 19:53:16 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Canon
2011-06-12 08:39:14 ----DC---- C:\WINDOWS\system32\XPSViewer
2011-06-12 08:38:14 ----C---- C:\WINDOWS\system32\xpsshhdr.dll
2011-06-12 08:38:14 ----C---- C:\WINDOWS\system32\prntvpt.dll
2011-06-12 08:38:13 ----C---- C:\WINDOWS\system32\xpssvcs.dll
2011-06-09 18:36:55 ----DC---- C:\WINDOWS\system32\en-US
2011-06-09 18:36:41 ----DC---- C:\Program Files\Reference Assemblies
2011-06-08 21:09:40 ----DC---- C:\Documents and Settings\čenda\Data aplikací\IObit
2011-06-08 20:42:59 ----DC---- C:\Program Files\IObit
2011-06-08 20:26:55 ----DC---- C:\WINDOWS\system32\appmgmt
2011-06-08 20:16:09 ----DC---- C:\WINDOWS\pss
======List of files/folders modified in the last 1 months======
2011-07-03 18:08:34 ----DC---- C:\WINDOWS\Prefetch
2011-07-03 18:08:29 ----RDC---- C:\Program Files
2011-07-03 17:59:20 ----DC---- C:\WINDOWS\Temp
2011-07-03 17:59:20 ----DC---- C:\WINDOWS
2011-07-03 17:02:50 ----DC---- C:\WINDOWS\system32\drivers
2011-07-03 16:59:18 ----SDC---- C:\WINDOWS\Tasks
2011-07-03 11:36:49 ----AC---- C:\WINDOWS\NeroDigital.ini
2011-07-03 11:22:25 ----DC---- C:\WINDOWS\system32\CatRoot2
2011-07-03 11:21:55 ----DC---- C:\WINDOWS\system32
2011-07-02 16:41:24 ----HDC---- C:\WINDOWS\inf
2011-07-02 16:41:18 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-02 13:36:48 ----SHDC---- C:\WINDOWS\Installer
2011-07-02 13:36:48 ----DC---- C:\WINDOWS\WinSxS
2011-07-02 13:36:42 ----DC---- C:\Program Files\Common Files\Microsoft Shared
2011-07-02 13:26:40 ----SHD---- C:\System Volume Information
2011-07-02 13:26:40 ----DC---- C:\Program Files\Common Files
2011-07-02 13:25:39 ----ADC---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-02 10:24:56 ----HDC---- C:\WINDOWS\$hf_mig$
2011-06-20 16:06:26 ----DC---- C:\WINDOWS\system32\config
2011-06-19 11:33:14 ----RSDC---- C:\WINDOWS\assembly
2011-06-19 11:29:13 ----DC---- C:\WINDOWS\Microsoft.NET
2011-06-19 11:12:21 ----DC---- C:\WINDOWS\security
2011-06-19 11:05:49 ----DC---- C:\WINDOWS\Help
2011-06-19 11:05:43 ----DC---- C:\WINDOWS\system32\wbem
2011-06-19 11:04:39 ----DC---- C:\WINDOWS\Debug
2011-06-19 10:40:40 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-06-18 14:23:49 ----DC---- C:\WINDOWS\system32\cs-cz
2011-06-18 14:23:49 ----DC---- C:\Program Files\Internet Explorer
2011-06-18 14:23:04 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-06-18 14:19:44 ----AC---- C:\WINDOWS\system32\MRT.exe
2011-06-18 14:19:38 ----DC---- C:\WINDOWS\system32\CatRoot
2011-06-12 08:39:12 ----DC---- C:\Program Files\MSBuild
2011-06-12 08:39:10 ----RSDC---- C:\WINDOWS\Fonts
2011-06-12 08:38:37 ----DC---- C:\WINDOWS\system32\spool
2011-06-09 20:05:07 ----DC---- C:\Program Files\Spyware Terminator
2011-06-09 20:02:40 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-06-09 18:33:59 ----DC---- C:\WINDOWS\system32\mui
2011-06-09 16:26:24 ----DC---- C:\Program Files\WinClamAVShield
2011-06-09 16:25:09 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Spyware Terminator
2011-06-08 21:11:25 ----DC---- C:\TEMP
2011-06-08 21:08:23 ----DC---- C:\Documents and Settings\čenda\Data aplikací\Google
2011-06-08 20:38:17 ----DC---- C:\WINDOWS\Cursors
2011-06-08 20:38:12 ----DC---- C:\Program Files\Windows NT
2011-06-08 20:38:03 ----DC---- C:\WINDOWS\system32\inetsrv
2011-06-08 20:17:50 ----SHC---- C:\boot.ini
2011-06-08 20:17:50 ----AC---- C:\WINDOWS\win.ini
2011-06-08 20:17:50 ----AC---- C:\WINDOWS\system.ini
2011-06-08 19:49:16 ----SDC---- C:\Documents and Settings\čenda\Data aplikací\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
R1 MpKsl18cd9f9f;MpKsl18cd9f9f; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C49E54CF-E4C9-4FF7-A175-88742F5B8D75}\MpKsl18cd9f9f.sys []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2005-03-04 127872]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2003-03-04 145408]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-04-05 830684]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-18 12160]
R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2005-10-27 393088]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-03-28 220992]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S1 MpKsl0455eb01;MpKsl0455eb01; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{432AF755-E589-4FD3-96E9-3A0B49348A94}\MpKsl0455eb01.sys []
S1 MpKsl37eb5d56;MpKsl37eb5d56; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{39B78CAF-69EC-4F31-A5C6-48A470FC9ADA}\MpKsl37eb5d56.sys []
S1 MpKsl43510b46;MpKsl43510b46; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{CD2179DE-7FCF-418C-A07E-F69A1067E662}\MpKsl43510b46.sys []
S1 MpKsld235d673;MpKsld235d673; \??\C:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{C0232B03-9562-43EB-A213-8BC64A085604}\MpKsld235d673.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-18 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdvancedSystemCareService;Advanced SystemCare Service; C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe [2011-05-28 353168]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-30 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-01-21 496128]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------