Stránka 1 z 1

Prosím o kontrolu ;)

Napsal: 18 srp 2011 14:59
od daveing
Zdravím tu je log s RSIT tak prosím o kontrolu ;)


Logfile of random's system information tool 1.09 (written by random/random)
Run by Daveing at 2011-08-18 15:56:44
Microsoft Windows 7 Professional
System drive C: has 47 GB (44%) free of 106 GB
Total RAM: 1790 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:57:05, on 18.8.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\COMODO\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Lenovo\Energy Management\utility.exe
C:\Program Files\Lenovo\Energy Management\Energy Management.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Users\Daveing\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Users\Daveing\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Daveing\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Daveing\Downloads\RSIT.exe
C:\Program Files\trend micro\Daveing.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [COMODO] C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe
O4 - HKLM\..\Run: [CPA] C:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe
O4 - HKLM\..\Run: [Chrome3] ;;; C:\Program Files\s3graphics\chrome3\Chrome3.exe -chkautorun
O4 - HKLM\..\Run: [VTTimer] ;;; VTTimer.exe
O4 - HKLM\..\Run: [EnergyUtility] C:\Program Files\Lenovo\Energy Management\utility.exe
O4 - HKLM\..\Run: [Energy Management] C:\Program Files\Lenovo\Energy Management\Energy Management.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [Google Update] "C:\Users\Daveing\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Users\Daveing\Desktop\Prog\OpenOffice.org 3\program\quickstart.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} (IASRunner Class) - http://support.lenovo.com/Resources/Len ... etect2.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{48BA78D6-6D3F-4B1C-9CCD-4ECFF6BA3F30}: NameServer = 156.154.70.25,156.154.71.25
O17 - HKLM\System\CCS\Services\Tcpip\..\{9B025F8A-13B0-444A-9429-1BF256DEFC92}: NameServer = 156.154.70.25,156.154.71.25
O20 - AppInit_DLLs: C:\Windows\system32\guard32.dll
O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: S3Funkey - Unknown owner - C:\Program.exe (file missing)
O23 - Service: S3LoadSv - Unknown owner - C:\Program.exe (file missing)

--
End of file - 4778 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO"=C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [2011-05-26 208184]
"CPA"=C:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [2011-05-26 182584]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO\COMODO Internet Security\cfp.exe [2011-06-30 2554696]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-06-16 7547424]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-06-16 1833504]
"Chrome3"=;;; C:\Program Files\s3graphics\chrome3\Chrome3.exe -chkautorun []
"VTTimer"=;;; VTTimer.exe []
"EnergyUtility"=C:\Program Files\Lenovo\Energy Management\utility.exe [2009-05-27 4077384]
"Energy Management"=C:\Program Files\Lenovo\Energy Management\Energy Management.exe [2009-05-22 5064520]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-03-31 2221352]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2011-07-06 449584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Daveing\AppData\Local\Google\Update\GoogleUpdate.exe [2011-08-15 136176]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"FileHippo.com"=C:\Program Files\FileHippo.com\UpdateChecker.exe [2010-08-09 248832]

C:\Users\Daveing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.2.lnk - C:\Users\Daveing\Desktop\Prog\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FFDS"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-08-18 15:56:46 ----D---- C:\Program Files\trend micro
2011-08-18 15:56:44 ----D---- C:\rsit
2011-08-18 15:24:06 ----D---- C:\Windows\system32\appmgmt
2011-08-18 15:11:39 ----D---- C:\Users\Daveing\AppData\Roaming\Malwarebytes
2011-08-18 15:11:25 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-08-18 15:11:21 ----D---- C:\ProgramData\Malwarebytes
2011-08-18 15:11:16 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-08-18 15:11:15 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-08-18 14:42:06 ----D---- C:\Windows\system32\SPReview
2011-08-18 14:39:48 ----D---- C:\Windows\system32\EventProviders
2011-08-17 10:18:52 ----D---- C:\ProgramData\PCDr
2011-08-17 10:18:35 ----D---- C:\Program Files\PC-Doctor
2011-08-17 10:15:33 ----D---- C:\Users\Daveing\AppData\Roaming\Update
2011-08-17 10:14:04 ----D---- C:\Users\Daveing\AppData\Roaming\PCDr
2011-08-17 09:45:57 ----D---- C:\Windows\system32\sda
2011-08-17 09:45:56 ----A---- C:\Windows\system32\drivers\RTSTOR.sys
2011-08-17 09:33:37 ----A---- C:\Windows\system32\SimpleExt.dll
2011-08-17 09:33:36 ----A---- C:\Windows\system32\IcnOvrly.dll
2011-08-17 09:33:34 ----A---- C:\Windows\system32\EncIcons.dll
2011-08-17 09:33:22 ----A---- C:\Windows\system32\biologon.dll
2011-08-17 09:33:21 ----A---- C:\Windows\system32\PicNotify.dll
2011-08-17 09:33:21 ----A---- C:\Windows\system32\Imagereog.dll
2011-08-17 09:33:21 ----A---- C:\Windows\system32\CamOpEx.dll
2011-08-17 09:33:21 ----A---- C:\Windows\system32\Apblend.dll
2011-08-17 09:32:53 ----A---- C:\Windows\system32\ILUT.dll
2011-08-17 09:32:53 ----A---- C:\Windows\system32\ILU.dll
2011-08-17 09:32:53 ----A---- C:\Windows\system32\DevIL.dll
2011-08-17 09:32:53 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-08-17 09:32:53 ----A---- C:\Windows\system32\3DImageRenderer.dll
2011-08-16 13:31:22 ----A---- C:\Windows\system32\DWrite.dll
2011-08-16 13:31:19 ----A---- C:\Windows\system32\FntCache.dll
2011-08-16 13:31:16 ----A---- C:\Windows\system32\d2d1.dll
2011-08-16 13:28:19 ----D---- C:\Users\Daveing\AppData\Roaming\OpenOffice.org
2011-08-16 13:06:01 ----A---- C:\Windows\system32\wininet.dll
2011-08-16 13:06:01 ----A---- C:\Windows\system32\urlmon.dll
2011-08-16 13:06:01 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-08-16 13:06:01 ----A---- C:\Windows\system32\msls31.dll
2011-08-16 13:06:00 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-16 13:06:00 ----A---- C:\Windows\system32\iertutil.dll
2011-08-16 13:05:59 ----A---- C:\Windows\system32\msrating.dll
2011-08-16 13:05:59 ----A---- C:\Windows\system32\msfeedssync.exe
2011-08-16 13:05:59 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-08-16 13:05:59 ----A---- C:\Windows\system32\IEAdvpack.dll
2011-08-16 13:05:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2011-08-16 13:05:58 ----A---- C:\Windows\system32\mshtmler.dll
2011-08-16 13:05:58 ----A---- C:\Windows\system32\iesysprep.dll
2011-08-16 13:05:58 ----A---- C:\Windows\system32\ieakeng.dll
2011-08-16 13:05:57 ----A---- C:\Windows\system32\ieui.dll
2011-08-16 13:05:57 ----A---- C:\Windows\system32\ieframe.dll
2011-08-16 13:05:55 ----A---- C:\Windows\system32\ieapfltr.dll
2011-08-16 13:05:55 ----A---- C:\Windows\system32\ieapfltr.dat
2011-08-16 13:05:55 ----A---- C:\Windows\system32\dxtrans.dll
2011-08-16 13:05:55 ----A---- C:\Windows\system32\dxtmsft.dll
2011-08-16 13:05:54 ----A---- C:\Windows\system32\url.dll
2011-08-16 13:05:54 ----A---- C:\Windows\system32\iesetup.dll
2011-08-16 13:05:54 ----A---- C:\Windows\system32\iernonce.dll
2011-08-16 13:05:54 ----A---- C:\Windows\system32\ie4uinit.exe
2011-08-16 13:05:54 ----A---- C:\Windows\system32\icardie.dll
2011-08-16 13:05:53 ----A---- C:\Windows\system32\webcheck.dll
2011-08-16 13:05:53 ----A---- C:\Windows\system32\licmgr10.dll
2011-08-16 13:05:53 ----A---- C:\Windows\system32\iedkcs32.dll
2011-08-16 13:05:52 ----A---- C:\Windows\system32\wextract.exe
2011-08-16 13:05:52 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-16 13:05:52 ----A---- C:\Windows\system32\inseng.dll
2011-08-16 13:05:52 ----A---- C:\Windows\system32\iexpress.exe
2011-08-16 13:05:51 ----A---- C:\Windows\system32\vbscript.dll
2011-08-16 13:05:51 ----A---- C:\Windows\system32\mshtml.dll
2011-08-16 13:05:51 ----A---- C:\Windows\system32\msfeeds.dll
2011-08-16 13:05:50 ----A---- C:\Windows\system32\pngfilt.dll
2011-08-16 13:05:50 ----A---- C:\Windows\system32\occache.dll
2011-08-16 13:05:50 ----A---- C:\Windows\system32\mshta.exe
2011-08-16 13:05:50 ----A---- C:\Windows\system32\ieUnatt.exe
2011-08-16 13:05:50 ----A---- C:\Windows\system32\admparse.dll
2011-08-16 13:05:49 ----A---- C:\Windows\system32\jscript9.dll
2011-08-16 13:05:49 ----A---- C:\Windows\system32\jscript.dll
2011-08-16 13:05:49 ----A---- C:\Windows\system32\ieakui.dll
2011-08-16 13:05:49 ----A---- C:\Windows\system32\ieaksie.dll
2011-08-16 13:05:48 ----A---- C:\Windows\system32\imgutil.dll
2011-08-16 13:05:48 ----A---- C:\Windows\system32\iepeers.dll
2011-08-16 13:02:25 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-08-16 12:47:58 ----A---- C:\Windows\system32\NVUNINST.EXE
2011-08-16 12:27:30 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-08-16 12:27:29 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-08-16 12:27:27 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-08-16 12:27:26 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-08-16 12:27:24 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-08-16 12:27:24 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-08-16 12:27:24 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-08-16 12:27:15 ----A---- C:\Windows\system32\drivers\bthport.sys
2011-08-16 12:27:14 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2011-08-16 12:22:51 ----D---- C:\Program Files\Microsoft Windows 7 Upgrade Advisor
2011-08-16 12:13:57 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-08-16 10:14:13 ----D---- C:\Program Files\FileHippo.com
2011-08-16 09:33:28 ----A---- C:\Windows\system32\drivers\DrvAgent32.sys
2011-08-15 20:21:08 ----D---- C:\Program Files\DAEMON Tools Lite
2011-08-15 20:01:30 ----D---- C:\ProgramData\s3graphics
2011-08-15 16:47:07 ----D---- C:\Program Files\Microsoft Games
2011-08-15 16:47:01 ----D---- C:\Windows\system32\Wat
2011-08-15 15:58:02 ----A---- C:\Windows\system32\msv1_0.dll
2011-08-15 15:42:34 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-08-15 15:42:34 ----A---- C:\Windows\system32\PresentationHost.exe
2011-08-15 15:42:34 ----A---- C:\Windows\system32\netfxperf.dll
2011-08-15 15:42:34 ----A---- C:\Windows\system32\mscoree.dll
2011-08-15 15:42:34 ----A---- C:\Windows\system32\dfshim.dll
2011-08-15 14:55:27 ----A---- C:\Windows\system32\browserchoice.exe
2011-08-15 14:50:35 ----A---- C:\Windows\system32\MRT.exe
2011-08-15 14:43:13 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2011-08-15 14:43:12 ----A---- C:\Windows\system32\drivers\ks.sys
2011-08-15 14:42:17 ----A---- C:\Windows\system32\wcncsvc.dll
2011-08-15 13:44:42 ----D---- C:\Users\Daveing\AppData\Roaming\enchant
2011-08-15 13:44:20 ----D---- C:\Users\Daveing\AppData\Roaming\.purple
2011-08-15 13:43:21 ----D---- C:\Program Files\Pidgin
2011-08-15 13:43:00 ----A---- C:\Windows\system32\prevhost.exe
2011-08-15 13:39:42 ----A---- C:\Windows\system32\CertEnroll.dll
2011-08-15 13:39:40 ----A---- C:\Windows\system32\winload.exe
2011-08-15 13:39:37 ----A---- C:\Windows\system32\winresume.exe
2011-08-15 13:39:28 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-15 13:39:21 ----A---- C:\Windows\system32\ole32.dll
2011-08-15 13:35:46 ----A---- C:\Windows\system32\drivers\afd.sys
2011-08-15 13:34:52 ----A---- C:\Windows\system32\drivers\srv.sys
2011-08-15 13:34:48 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-08-15 13:34:46 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-08-15 13:34:38 ----A---- C:\Windows\system32\spoolsv.exe
2011-08-15 13:34:22 ----A---- C:\Windows\system32\atmfd.dll
2011-08-15 13:34:17 ----A---- C:\Windows\system32\atmlib.dll
2011-08-15 13:34:04 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-08-15 13:34:03 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-15 13:33:17 ----A---- C:\Windows\system32\msdri.dll
2011-08-15 13:33:08 ----A---- C:\Windows\system32\psisdecd.dll
2011-08-15 13:32:41 ----A---- C:\Windows\system32\dnsapi.dll
2011-08-15 13:32:39 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-08-15 13:32:38 ----A---- C:\Windows\system32\dnscacheugc.exe
2011-08-15 13:31:40 ----A---- C:\Windows\system32\lsasrv.dll
2011-08-15 13:31:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2011-08-15 13:31:25 ----A---- C:\Windows\system32\winlogon.exe
2011-08-15 13:31:14 ----A---- C:\Windows\system32\schedsvc.dll
2011-08-15 13:31:12 ----A---- C:\Windows\system32\taskschd.dll
2011-08-15 13:31:11 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-08-15 13:31:10 ----A---- C:\Windows\system32\taskeng.exe
2011-08-15 13:31:09 ----A---- C:\Windows\system32\taskcomp.dll
2011-08-15 13:31:06 ----A---- C:\Windows\system32\schtasks.exe
2011-08-15 13:30:51 ----A---- C:\Windows\system32\kerberos.dll
2011-08-15 13:30:38 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-15 13:30:31 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-08-15 13:30:30 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-08-15 13:30:03 ----A---- C:\Windows\system32\odbc32.dll
2011-08-15 13:26:56 ----A---- C:\Windows\system32\XpsPrint.dll
2011-08-15 13:26:49 ----A---- C:\Windows\system32\mfc40.dll
2011-08-15 13:26:48 ----A---- C:\Windows\system32\mfc40u.dll
2011-08-15 13:26:42 ----A---- C:\Windows\system32\tquery.dll
2011-08-15 13:26:42 ----A---- C:\Windows\system32\mssrch.dll
2011-08-15 13:26:30 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-08-15 13:26:27 ----A---- C:\Windows\system32\mssvp.dll
2011-08-15 13:26:23 ----A---- C:\Windows\system32\mssph.dll
2011-08-15 13:26:18 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-08-15 13:26:17 ----A---- C:\Windows\system32\mssphtb.dll
2011-08-15 13:26:15 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-08-15 13:26:12 ----A---- C:\Windows\system32\msscntrs.dll
2011-08-15 13:25:57 ----A---- C:\Windows\system32\FXSCOVER.exe
2011-08-15 13:25:48 ----A---- C:\Windows\system32\apphelp.dll
2011-08-15 13:25:41 ----A---- C:\Windows\system32\wmp.dll
2011-08-15 13:25:30 ----A---- C:\Windows\system32\wmploc.DLL
2011-08-15 13:25:16 ----A---- C:\Windows\explorer.exe
2011-08-15 13:24:59 ----A---- C:\Windows\system32\CPFilters.dll
2011-08-15 13:24:56 ----A---- C:\Windows\system32\EncDec.dll
2011-08-15 13:24:52 ----A---- C:\Windows\system32\sbe.dll
2011-08-15 13:24:22 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-08-15 13:24:12 ----A---- C:\Windows\system32\shell32.dll
2011-08-15 13:24:06 ----A---- C:\Windows\system32\quartz.dll
2011-08-15 13:24:05 ----A---- C:\Windows\system32\msvidc32.dll
2011-08-15 13:24:05 ----A---- C:\Windows\system32\mciavi32.dll
2011-08-15 13:24:04 ----A---- C:\Windows\system32\iyuv_32.dll
2011-08-15 13:24:04 ----A---- C:\Windows\system32\avifil32.dll
2011-08-15 13:24:03 ----A---- C:\Windows\system32\tsbyuv.dll
2011-08-15 13:24:03 ----A---- C:\Windows\system32\msyuv.dll
2011-08-15 13:24:03 ----A---- C:\Windows\system32\msrle32.dll
2011-08-15 13:23:56 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-15 13:23:54 ----A---- C:\Windows\system32\kernel32.dll
2011-08-15 13:23:45 ----A---- C:\Windows\system32\conhost.exe
2011-08-15 13:23:44 ----A---- C:\Windows\system32\winsrv.dll
2011-08-15 13:23:43 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-15 13:23:24 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-15 13:23:22 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-15 13:23:22 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-15 13:23:20 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-15 13:23:19 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-15 13:23:18 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-15 13:23:17 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-15 13:23:14 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-15 13:23:12 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-15 13:23:10 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-15 13:23:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-15 13:23:04 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-15 13:23:02 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-15 13:23:00 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-15 13:22:58 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-15 13:22:56 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-15 13:22:54 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-15 13:22:52 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-15 13:22:50 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-15 13:22:48 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-15 13:22:46 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-15 13:22:45 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-15 13:22:43 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-15 13:22:42 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-15 13:22:41 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-15 13:22:41 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-15 13:22:39 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-15 13:22:21 ----A---- C:\Windows\system32\mstscax.dll
2011-08-15 13:22:18 ----A---- C:\Windows\system32\mstsc.exe
2011-08-15 13:22:00 ----A---- C:\Windows\system32\odbcjt32.dll
2011-08-15 13:21:57 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-15 13:21:56 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-15 13:21:55 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-15 13:21:52 ----A---- C:\Windows\system32\odbctrac.dll
2011-08-15 13:21:39 ----A---- C:\Windows\system32\win32k.sys
2011-08-15 13:21:33 ----A---- C:\Windows\system32\upnp.dll
2011-08-15 13:21:32 ----A---- C:\Windows\system32\msxml6.dll
2011-08-15 13:21:30 ----A---- C:\Windows\system32\msxml3.dll
2011-08-15 13:21:29 ----A---- C:\Windows\system32\WebClnt.dll
2011-08-15 13:21:29 ----A---- C:\Windows\system32\davclnt.dll
2011-08-15 13:21:28 ----A---- C:\Windows\system32\wscapi.dll
2011-08-15 13:21:28 ----A---- C:\Windows\system32\winhttp.dll
2011-08-15 13:21:28 ----A---- C:\Windows\system32\slwga.dll
2011-08-15 13:21:27 ----A---- C:\Windows\system32\wscsvc.dll
2011-08-15 13:21:23 ----A---- C:\Windows\system32\d3d10warp.dll
2011-08-15 13:21:20 ----A---- C:\Windows\system32\mf.dll
2011-08-15 13:21:17 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-08-15 13:21:16 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-08-15 13:21:14 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-08-15 13:21:14 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-08-15 13:21:12 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-08-15 13:21:08 ----A---- C:\Windows\system32\srvsvc.dll
2011-08-15 13:21:02 ----A---- C:\Windows\system32\ntdll.dll
2011-08-15 13:20:55 ----A---- C:\Windows\system32\secproc_isv.dll
2011-08-15 13:20:54 ----A---- C:\Windows\system32\secproc.dll
2011-08-15 13:20:53 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-08-15 13:20:53 ----A---- C:\Windows\system32\RMActivate.exe
2011-08-15 13:20:52 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-08-15 13:20:52 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-08-15 13:20:49 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-08-15 13:20:48 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-08-15 13:20:01 ----A---- C:\Windows\system32\drivers\bowser.sys
2011-08-15 13:19:37 ----A---- C:\Windows\system32\mfc42.dll
2011-08-15 13:19:33 ----A---- C:\Windows\system32\mfc42u.dll
2011-08-15 13:17:38 ----A---- C:\Windows\system32\inetcomm.dll
2011-08-15 13:17:17 ----A---- C:\Windows\system32\oleaut32.dll
2011-08-15 13:16:52 ----A---- C:\Windows\system32\poqexec.exe
2011-08-15 13:11:06 ----A---- C:\Windows\system32\schannel.dll
2011-08-15 13:11:02 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-08-15 13:10:49 ----A---- C:\Windows\system32\tzres.dll
2011-08-15 13:10:26 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-08-15 13:10:15 ----A---- C:\Windows\system32\d3d10_1.dll
2011-08-15 13:10:02 ----A---- C:\Windows\system32\webio.dll
2011-08-15 13:09:53 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-08-15 13:09:44 ----A---- C:\Windows\system32\iccvid.dll
2011-08-15 13:09:43 ----A---- C:\Windows\system32\ir32_32.dll
2011-08-15 13:09:39 ----A---- C:\Windows\system32\comctl32.dll
2011-08-15 13:09:36 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-08-15 13:09:35 ----A---- C:\Windows\system32\t2embed.dll
2011-08-15 13:09:33 ----A---- C:\Windows\system32\rtutils.dll
2011-08-15 13:09:31 ----A---- C:\Windows\system32\wmpmde.dll
2011-08-15 13:09:29 ----A---- C:\Windows\system32\fontsub.dll
2011-08-15 13:09:27 ----A---- C:\Windows\system32\xmllite.dll
2011-08-15 13:09:24 ----A---- C:\Windows\system32\consent.exe
2011-08-15 13:09:23 ----A---- C:\Windows\system32\asycfilt.dll
2011-08-15 13:09:21 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-08-15 13:09:18 ----A---- C:\Windows\system32\msasn1.dll
2011-08-15 12:59:08 ----D---- C:\Users\Daveing\AppData\Roaming\DAEMON Tools Lite
2011-08-15 12:59:04 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-08-15 12:58:15 ----D---- C:\Program Files\CCleaner
2011-08-15 12:57:15 ----D---- C:\Users\Daveing\AppData\Roaming\DAEMON Tools Pro
2011-08-15 12:57:15 ----D---- C:\ProgramData\DAEMON Tools Pro
2011-08-15 12:40:33 ----D---- C:\Program Files\CoreAVC Pro
2011-08-15 12:32:50 ----D---- C:\Program Files\Combined Community Codec Pack
2011-08-15 12:30:38 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-08-15 12:30:31 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-08-15 12:30:30 ----A---- C:\Windows\system32\cdd.dll
2011-08-15 12:27:47 ----D---- C:\Users\Daveing\AppData\Roaming\BSplayer Pro
2011-08-15 12:27:47 ----D---- C:\Users\Daveing\AppData\Roaming\BSplayer
2011-08-15 12:27:46 ----D---- C:\Program Files\BSplayer
2011-08-15 12:24:15 ----D---- C:\Users\Daveing\AppData\Roaming\Synaptics
2011-08-15 12:05:27 ----D---- C:\Program Files\VIA
2011-08-15 11:48:43 ----A---- C:\Windows\system32\BisonCoi.dll
2011-08-15 11:48:42 ----A---- C:\Windows\system32\drivers\BisonC07.sys
2011-08-15 11:48:42 ----A---- C:\Windows\system32\BisonR07.dll
2011-08-15 11:48:42 ----A---- C:\Windows\M3000Twn.src
2011-08-15 11:48:42 ----A---- C:\Windows\M3000Twn.ini
2011-08-15 11:44:42 ----D---- C:\ProgramData\Synaptics
2011-08-15 11:44:42 ----D---- C:\Program Files\Synaptics
2011-08-15 11:44:33 ----A---- C:\Windows\system32\WdfCoInstaller01009.dll
2011-08-15 11:44:30 ----A---- C:\Windows\system32\SynTPCo9.dll
2011-08-15 11:44:30 ----A---- C:\Windows\system32\SynTPAPI.dll
2011-08-15 11:44:30 ----A---- C:\Windows\system32\SynCtrl.dll
2011-08-15 11:44:30 ----A---- C:\Windows\system32\SynCOM.dll
2011-08-15 11:44:30 ----A---- C:\Windows\system32\drivers\SynTP.sys
2011-08-15 11:38:27 ----D---- C:\Windows\Panther
2011-08-15 11:35:46 ----A---- C:\Windows\system32\drivers\BCMWL6.SYS
2011-08-15 11:35:46 ----A---- C:\Windows\system32\bcmwlcoi.dll
2011-08-15 11:35:46 ----A---- C:\Windows\system32\bcmihvui.dll
2011-08-15 11:35:46 ----A---- C:\Windows\system32\bcmihvsrv.dll
2011-08-15 11:35:45 ----D---- C:\Program Files\Broadcom 11g
2011-08-15 11:35:36 ----D---- C:\Users\Daveing\AppData\Roaming\InstallShield
2011-08-15 11:34:16 ----D---- C:\Program Files\Broadcom
2011-08-15 11:32:13 ----D---- C:\Program Files\Lenovo
2011-08-15 11:32:13 ----A---- C:\Windows\system32\drivers\LenovoVCD.sys
2011-08-15 11:30:33 ----D---- C:\Program Files\S3
2011-08-15 11:30:28 ----D---- C:\Program Files\s3graphics
2011-08-15 11:29:24 ----D---- C:\Windows.old
2011-08-15 11:29:05 ----D---- C:\Windows\system32\RTCOM
2011-08-15 11:28:24 ----A---- C:\Windows\system32\WavesLib.dll
2011-08-15 11:28:24 ----A---- C:\Windows\system32\SRSWOW.dll
2011-08-15 11:28:24 ----A---- C:\Windows\system32\SRSTSXT.dll
2011-08-15 11:28:24 ----A---- C:\Windows\system32\SRSTSHD.dll
2011-08-15 11:28:24 ----A---- C:\Windows\system32\SRSHP360.dll
2011-08-15 11:28:23 ----A---- C:\Windows\system32\RtkPgExt.dll
2011-08-15 11:28:23 ----A---- C:\Windows\system32\RtkCoInst.dll
2011-08-15 11:28:23 ----A---- C:\Windows\system32\RtkApoApi.dll
2011-08-15 11:28:23 ----A---- C:\Windows\system32\RtkAPO.dll
2011-08-15 11:28:23 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2011-08-15 11:28:22 ----A---- C:\Windows\system32\RP3DHT32.dll
2011-08-15 11:28:22 ----A---- C:\Windows\system32\RP3DAA32.dll
2011-08-15 11:28:22 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2011-08-15 11:28:22 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2011-08-15 11:28:22 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2011-08-15 11:28:21 ----D---- C:\Program Files\Realtek
2011-08-15 11:28:21 ----A---- C:\Windows\system32\FMAPO.dll
2011-08-15 11:28:21 ----A---- C:\Windows\system32\AERTARen.dll
2011-08-15 11:28:21 ----A---- C:\Windows\system32\AERTACap.dll
2011-08-15 11:28:20 ----HD---- C:\Program Files\InstallShield Installation Information
2011-08-15 11:28:18 ----HD---- C:\Program Files\Temp
2011-08-15 11:28:18 ----A---- C:\Windows\RtlExUpd.dll
2011-08-15 11:28:06 ----D---- C:\Program Files\Common Files\InstallShield
2011-08-15 11:19:22 ----D---- C:\Users\Daveing\AppData\Roaming\Macromedia
2011-08-15 11:19:22 ----D---- C:\Users\Daveing\AppData\Roaming\Adobe
2011-08-15 11:10:46 ----A---- C:\Windows\system32\wintrust.dll
2011-08-15 11:10:45 ----A---- C:\Windows\system32\cabview.dll
2011-08-15 11:09:18 ----A---- C:\Windows\system32\drivers\sfi.dat
2011-08-15 11:07:02 ----SHD---- C:\Windows\Installer
2011-08-15 11:07:02 ----D---- C:\ProgramData\Comodo
2011-08-15 11:06:58 ----D---- C:\Program Files\COMODO
2011-08-15 11:06:58 ----A---- C:\Windows\system32\msvcr71.dll
2011-08-15 11:06:58 ----A---- C:\Windows\system32\mfc71.dll
2011-08-15 11:06:58 ----A---- C:\Windows\system32\gdiplus.dll
2011-08-15 11:06:28 ----D---- C:\ProgramData\Comodo Downloader
2011-08-15 11:03:13 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-08-15 10:59:01 ----D---- C:\Users\Daveing\AppData\Roaming\Identities
2011-08-15 10:58:43 ----SD---- C:\Users\Daveing\AppData\Roaming\Microsoft
2011-08-15 10:58:43 ----D---- C:\Users\Daveing\AppData\Roaming\Media Center Programs
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Šablony
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Plocha
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Oblíbené položky
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Nabídka Start
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Dokumenty
2011-08-15 10:58:27 ----SHD---- C:\ProgramData\Data aplikací
2011-08-15 10:43:27 ----D---- C:\Windows\SoftwareDistribution
2011-08-15 10:39:35 ----D---- C:\Windows\Prefetch
2011-08-15 10:39:26 ----ASH---- C:\hiberfil.sys
2011-08-13 16:11:31 ----D---- C:\Intel
2011-07-27 15:56:26 ----SD---- C:\ComboFix
2011-07-27 13:44:27 ----D---- C:\Qoobox
2011-07-19 12:33:28 ----D---- C:\yBook

======List of files/folders modified in the last 1 month======

2011-08-18 15:56:46 ----RD---- C:\Program Files
2011-08-18 15:56:06 ----D---- C:\Windows\system32\config
2011-08-18 15:46:02 ----D---- C:\Windows\system32\LogFiles
2011-08-18 15:45:51 ----D---- C:\Windows
2011-08-18 15:34:10 ----D---- C:\Windows\winsxs
2011-08-18 15:24:06 ----D---- C:\Windows\System32
2011-08-18 15:22:59 ----SHD---- C:\System Volume Information
2011-08-18 15:19:36 ----HD---- C:\ProgramData
2011-08-18 15:19:15 ----D---- C:\Windows\system32\Tasks
2011-08-18 15:19:13 ----D---- C:\Windows\Temp
2011-08-18 15:11:25 ----D---- C:\Windows\system32\drivers
2011-08-18 15:08:25 ----D---- C:\Windows\Tasks
2011-08-18 14:27:46 ----D---- C:\Windows\inf
2011-08-18 09:26:42 ----SD---- C:\ProgramData\Microsoft
2011-08-18 09:26:37 ----D---- C:\Windows\system32\drivers\UMDF
2011-08-18 09:24:30 ----D---- C:\Windows\system32\wdi
2011-08-17 18:16:00 ----D---- C:\Windows\Logs
2011-08-17 11:00:17 ----RSD---- C:\Windows\Media
2011-08-17 10:59:20 ----D---- C:\Windows\system32\catroot
2011-08-17 10:59:15 ----D---- C:\Windows\system32\DriverStore
2011-08-17 10:58:17 ----D---- C:\Windows\system
2011-08-17 10:11:20 ----D---- C:\Windows\Downloaded Program Files
2011-08-17 09:44:53 ----D---- C:\Drivers
2011-08-16 14:12:42 ----D---- C:\Windows\system32\catroot2
2011-08-16 13:10:10 ----D---- C:\Windows\system32\cs-CZ
2011-08-16 13:10:05 ----D---- C:\Program Files\Internet Explorer
2011-08-16 13:09:57 ----D---- C:\Windows\PolicyDefinitions
2011-08-16 13:09:56 ----D---- C:\Windows\system32\migration
2011-08-16 13:09:53 ----D---- C:\Windows\system32\en-US
2011-08-16 12:52:57 ----D---- C:\Windows\AppPatch
2011-08-16 12:20:39 ----RSD---- C:\Windows\assembly
2011-08-15 18:29:14 ----D---- C:\Windows\Microsoft.NET
2011-08-15 16:47:25 ----D---- C:\Program Files\Windows Mail
2011-08-15 16:47:24 ----RSD---- C:\Windows\Fonts
2011-08-15 16:47:24 ----D---- C:\Windows\ehome
2011-08-15 16:47:16 ----D---- C:\Windows\system32\Boot
2011-08-15 16:47:15 ----D---- C:\Program Files\Windows Media Player
2011-08-15 15:31:07 ----D---- C:\Windows\debug
2011-08-15 11:48:44 ----A---- C:\Windows\win.ini
2011-08-15 11:48:41 ----D---- C:\Windows\twain_32
2011-08-15 11:38:22 ----RASH---- C:\BOOTSECT.BAK
2011-08-15 11:38:20 ----SHD---- C:\Boot
2011-08-15 11:32:28 ----A---- C:\AtmApInit.txt
2011-08-15 11:28:06 ----D---- C:\Program Files\Common Files
2011-08-15 11:07:40 ----D---- C:\Windows\system32\restore
2011-08-15 11:02:10 ----D---- C:\Windows\system32\wbem
2011-08-15 10:58:58 ----SHD---- C:\$Recycle.Bin
2011-08-15 10:58:43 ----RD---- C:\Users
2011-08-15 10:58:28 ----SHD---- C:\Recovery
2011-08-15 10:58:27 ----D---- C:\Windows\system32\Recovery
2011-08-15 10:58:27 ----D---- C:\Program Files\Windows NT
2011-08-15 10:56:23 ----D---- C:\Windows\rescache
2011-08-15 10:49:17 ----D---- C:\Windows\system32\CodeIntegrity
2011-08-15 10:44:01 ----D---- C:\Windows\system32\sysprep
2011-08-15 10:40:48 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\Windows\System32\DRIVERS\cmderd.sys [2011-06-30 19088]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2011-06-30 238960]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-08-16 232512]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2010-01-20 23136]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-06-30 2505720]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-06-16 2375776]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-07-06 22712]
R3 S3GIGP;S3GIGP; C:\Windows\system32\DRIVERS\VTGKModeDX32.sys [2009-09-18 978944]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-03-31 1335472]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 Cam5607;Lenovo EasyCamera ; C:\Windows\System32\Drivers\BisonC07.sys [2009-07-29 1182320]
S3 DrvAgent32;DrvAgent32; \??\C:\Windows\system32\Drivers\DrvAgent32.sys [2011-08-16 23456]
S3 LenovoVCD;LenovoVCD; \??\C:\Program Files\Lenovo\Energy Management\LenovoVCD.sys [2009-02-14 16200]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 vcrdrx32;VIA MSP Cardreader Host Controller; C:\Windows\system32\DRIVERS\vcrdrx32.sys []
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S4 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 CLPSLS;COMODO livePCsupport Service; C:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-05-26 154424]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO\COMODO Internet Security\cmdagent.exe [2011-06-30 1793712]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2011-07-06 366640]
R2 S3Funkey;S3Funkey; C:\Program Files\s3graphics\chrome3\s3funkey.svc [2009-09-10 469504]
R2 S3LoadSv;S3LoadSv; C:\Program Files\s3graphics\chrome3\s3loadsv.svc [2009-09-10 417280]
R3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-08-15 1343400]

-----------------EOF-----------------

Re: Prosím o kontrolu ;)

Napsal: 18 srp 2011 15:42
od Mc_Murphy
Zdravím. :bye:

Momentík, hnedle se na to mrknu.

Re: Prosím o kontrolu ;)

Napsal: 18 srp 2011 16:26
od Mc_Murphy
Log vypadá čistý. :thumbsup:

Každopádně tu máme několik zbytečností a spoustu otazníků.


:arrow: Stáhni si utilitu OTM z jednoho z těchto odkazů: Ulož ji na Plochu a dvojklikem spusť.

Do levého okna Paste Instructions for Items to be Moved zkopíruj tento script:

Kód: Vybrat vše

:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Chrome3"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=-
"DAEMON Tools Lite"=-
"FileHippo.com"=-
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"=-
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"=-

:Files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000UA.job
C:\Users\Daveing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk

:Commands
[Purity]
[ResetHosts]
[EmptyTemp]
[ClearAllRestorePoints]
Nyní klikni na tlačítko [MoveIt!], čímž vše spustíš.
Po restartu mi sem hoď log, který najdeš v C:\_OTM\MovedFiles\


Obrázek DOPORUČENÍ:

:!: Nainstaluj si Win7 Service Pack 1!
:!: Máš tam zbytky po ComboFixu, copak jsi s ním prováděl?!
:arrow: Malwarebytes' Anti-Malware bych zrušil ze spouštění po startu, je to zbytečné. Nech si to na občasné scany.
:???: Hele, toho PC-Doctora asi nemáš koupeného, co? Jestli ne, tak ale honem s ním pryč. ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 08:34
od daveing
Díky, ale chrome3 je grafika, nevím, jestli bych to měl mazat?

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 08:39
od Mc_Murphy
Ale to se Ti je spouští po startu nějaký její manafer nebo tak něco, ne?
Pokud to opravdu nějak využíváš, umaž ze scriptu řádky:

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Chrome3"=-

Ale nemyslím si, že by v tom měl být nějaký problém. ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 08:58
od daveing
Mno, tak tu je ten log, ale začali se mi zobrazovat skryté soubory, třeba na ploše mám dva soubory desktop.ini

All processes killed
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Chrome3 deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP7021.tmp folder moved successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder moved successfully.
C:\Windows\Installer\MSI269.tmp moved successfully.
C:\Windows\Installer\MSI300.tmp moved successfully.
C:\Windows\Installer\MSI364.tmp moved successfully.
C:\Windows\Installer\MSI883.tmp moved successfully.
C:\Windows\Installer\MSI8AA7.tmp moved successfully.
C:\Windows\Installer\MSI8C0F.tmp moved successfully.
C:\Windows\Installer\MSI964D.tmp moved successfully.
C:\Windows\Installer\MSIF1F4.tmp moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000Core.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3431227033-1830868847-110622664-1000UA.job moved successfully.
C:\Users\Daveing\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk moved successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Daveing
->Temp folder emptied: 7072664 bytes
->Temporary Internet Files folder emptied: 49554 bytes
->Google Chrome cache emptied: 13783512 bytes
->Flash cache emptied: 16650 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 20,00 mb




OTM by OldTimer - Version 3.1.18.0 log created on 08192011_095219

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:00
od daveing
tak už jsem si je zase skryl :), jináč PC doktora jsem si tam nedával, to byl program od Lenova, na zjišťování update a aktualizací a tak a ten je free, jináč jsem si PC doktora nikdy neinstalovat ;) spíše věřím na své schopnosti a dovednosti a věřím tak maximálně ccleanru, i když je to téže program, který zasahuje do registrů a je lepší to čistit ručně ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:05
od Mc_Murphy
To je v poho, to skryjeme. ;)

Jdi do Ovládací panely >> Možnosti složky >> záložka Zobrazení a tam zaškrtni Skrýt chráněné soubory operačního systému (doporučeno) a Nezobrazovat skryté soubory a složky. Mělo by se to vrátit do původního stavu.
Nemám Visty, jsem na XP, ale mělo by to být stejně nebo aspoň hodně podobně. :)


Ještě dočistíme a máme hoťovo:

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stáhni a spusť.
  • Klikni na CleanUp a potvrď YES.
  • Program uklidí a restartuje PC.

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stáhni a spusť.
  • Klikni na Start a potvrď OK.
  • Program uklidí a restartuje PC.
  • Po použití utilitu smaž.
:arrow: Pokud nemáš, stáhni CCleaner z tohoto odkazu.
  • Panel čistič
  • Vše nech jak je, jen dej Analyzovat a poté Spustit CCleaner.
  • Panel registry
  • Klikni na Hledej problémy.
  • Následně na Opravit problémy - zálohu registrů doporučuji udělat, oprav všechny problémy.
  • Postup opakuj, dokud nebude bez problémů - většinou cca 3x.
  • Panel nástroje
  • Zde můžeš odinstalovat nepotřebné programy.
CCleaner doporučuji používat cca jednou za týden.

A nezapomeň na má doporučení! ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:06
od Mc_Murphy
daveing píše:tak už jsem si je zase skryl :), jináč PC doktora jsem si tam nedával, to byl program od Lenova, na zjišťování update a aktualizací a tak a ten je free, jináč jsem si PC doktora nikdy neinstalovat ;) spíše věřím na své schopnosti a dovednosti a věřím tak maximálně ccleanru, i když je to téže program, který zasahuje do registrů a je lepší to čistit ručně ;)
OK, v pohodě, chtěl jsem se jen ujistit. ;)
Skrytí jsi už zvládl, super. Tak proveď zbytek čištění, aktualizace a doporučení a jsme hotovi. ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:16
od daveing
Ccleaner používám, celkem se osvědčil, díky za pomoc, Jináč ten SP1 jsem se snažil nainstalovat, ale vždycky to skončilo failed.

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:21
od Mc_Murphy
daveing píše:Ccleaner používám, celkem se osvědčil, díky za pomoc, Jináč ten SP1 jsem se snažil nainstalovat, ale vždycky to skončilo failed.
CCleaner je opravdu dobrý, je dobře, že ho používáš. ;)
Na ten Service Pack 1 sem pošlu kolegu, ten si s tím jistě poradí, já jsem spíše na XP. ;)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:26
od daveing
Jo díky, zatím to zkouším stáhnout ze stránek Microsoftu,tak uvidím

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:27
od chodnik74
Zdravím :welcome:

:arrow: Stáhněte si Service Pack 1 manuálně :)

Odkaz č.1

Odkaz č.2

:!: Pokud nainstalování nějakým způsobem selže,vypíše vám to hlášku či chybu,tu sem vložte ať víme z jakého důvodu se nám nedaří nainstalovat SP 1 :)

Re: Prosím o kontrolu ;)

Napsal: 19 srp 2011 09:29
od daveing
Jasně, už to stahuji, šak se ukáže kdo vyhraje jestli majkrošrot, či já :-D :-D