Počítač se zbláznil
Napsal: 11 říj 2011 20:10
Dobrý den prosím o kontrolu blbne mi PC dělám ve finanční poradenství a programy mi ukazují nesmyslné částky a při zapnutí pc mi nabiha windows znělka zvuku na začátku se přehraje do pulky a pak jako by vapadly ovladače od zvukovky zvuk nejede až po reinstalaci zvukove karty děkuji za vyřešení.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Gonycz at 2011-10-11 21:06:03
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 42 GB (32%) free of 131 GB
Total RAM: 2047 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06, on 2011-10-11
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\kxmixer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Programy\SlimDrivers\SlimDrivers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Firebird\bin\fbguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Firebird\bin\fbserver.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Gonycz\Plocha\SpywareTerminator.exe
C:\DOCUME~1\Gonycz\LOCALS~1\Temp\is-H5301.tmp\SpywareTerminator.tmp
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Gonycz\Plocha\RSIT.exe
C:\Program Files\trend micro\Gonycz.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zaparit.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [kX Mixer] C:\WINDOWS\system32\kxmixer.exe --startup
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SlimDrivers] "C:\Programy\SlimDrivers\SlimDrivers.exe" -boot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\bin\fbserver.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\WINDOWS\system32\SUPDSvc.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
--
End of file - 5461 bytes
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Gonycz\Data aplikací\Mozilla\Firefox\Profiles\i5bmeela.default
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Gonycz\Data aplikací\Mozilla\Firefox\Profiles\i5bmeela.default\extensions\
battlefieldplay4free@ea.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-19 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-07-19 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-02-10 61440]
"kX Mixer"=C:\WINDOWS\system32\kxmixer.exe [2004-02-17 438784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2011-08-29 399736]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"SlimDrivers"=C:\Programy\SlimDrivers\SlimDrivers.exe [2011-08-01 26441568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AudioDeck]
C:\Program Files\VIAudioi\SBADeck\ADeck.exe [2000-01-01 540672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\kX Mixer]
kxmixer --startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SlimDrivers]
C:\Programy\SlimDrivers\SlimDrivers.exe [2011-08-01 26441568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\Steam.exe [2011-09-04 1242448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Gonycz^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2
"wscsvc"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Hry\APB Reloaded\Binaries\APB.exe"="C:\Hry\APB Reloaded\Binaries\APB.exe:*:Enabled:APB: APB.exe"
"C:\Hry\APB Reloaded\Binaries\VivoxVoiceService.exe"="C:\Hry\APB Reloaded\Binaries\VivoxVoiceService.exe:*:Enabled:APB: VivoxVoiceService.exe"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\SUPDSvc.exe"="C:\WINDOWS\system32\SUPDSvc.exe:*:Enabled:Samsung UPD Service"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe"="C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe:*:Enabled:Age of Empires Online"
"C:\Hry\CrimeCraft\ClientLauncher.exe"="C:\Hry\CrimeCraft\ClientLauncher.exe:*:Enabled:CrimeCraft Launcher"
"C:\Hry\CrimeCraft\Binaries\CrimeCraft.exe"="C:\Hry\CrimeCraft\Binaries\CrimeCraft.exe:*:Enabled:CrimeCraft"
"C:\Program Files\Electronic Arts\BattleForge\Bootstrapper.exe"="C:\Program Files\Electronic Arts\BattleForge\Bootstrapper.exe:*:Enabled:BattleForge™ Launcher"
"C:\Program Files\Electronic Arts\BattleForge\BattleForge.exe"="C:\Program Files\Electronic Arts\BattleForge\BattleForge.exe:*:Enabled:BattleForge™"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======List of files/folders created in the last 1 month======
2011-10-11 21:06:04 ----D---- C:\Program Files\trend micro
2011-10-11 21:06:03 ----D---- C:\rsit
2011-10-11 20:57:33 ----A---- C:\ComboFix.txt
2011-10-11 16:52:34 ----D---- C:\WINDOWS\LastGood
2011-10-10 19:37:58 ----D---- C:\Program Files\Simulace_PCS
2011-10-09 21:56:33 ----D---- C:\Program Files\kX Project
2011-10-09 20:27:03 ----D---- C:\Program Files\Plus500
2011-10-09 08:04:33 ----A---- C:\WINDOWS\system32\dxva_sig.txt
2011-10-06 13:47:17 ----D---- C:\Program Files\EA Games
2011-10-06 13:17:33 ----D---- C:\Program Files\Electronic Arts
2011-10-06 10:49:00 ----A---- C:\WINDOWS\system32\drivers\teamviewervpn.sys
2011-10-06 10:48:59 ----D---- C:\Program Files\TeamViewer
2011-10-06 10:44:59 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\TeamViewer
2011-10-02 00:19:01 ----D---- C:\X360HP Temp
2011-10-02 00:17:23 ----D---- C:\WINDOWS\Xbox 360 Hack Pack RC1
2011-09-28 10:05:58 ----D---- C:\WINDOWS\Minidump
2011-09-27 19:55:35 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2011-09-27 19:55:34 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2011-09-27 19:55:19 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\TuneUp Software
2011-09-27 19:55:07 ----D---- C:\Program Files\TuneUp Utilities 2011
2011-09-27 19:54:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2011-09-27 19:54:53 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-09-25 11:08:21 ----D---- C:\WINDOWS\pss
2011-09-25 08:48:05 ----D---- C:\Program Files\CSS_Monitor
2011-09-25 08:24:24 ----D---- C:\WINDOWS\system32\appmgmt
2011-09-24 20:21:25 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\eM Client
2011-09-24 20:20:34 ----D---- C:\Program Files\eM Client
2011-09-24 20:18:08 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\The Bat!
2011-09-24 20:18:03 ----A---- C:\Documents and Settings\Gonycz\Data aplikací\ex_log.txt
2011-09-24 20:17:54 ----D---- C:\Program Files\The Bat!
2011-09-24 20:05:38 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\ERGOM
2011-09-24 20:05:24 ----D---- C:\Program Files\Business Objects
2011-09-24 20:04:56 ----D---- C:\Program Files\Ergom
2011-09-24 16:47:29 ----D---- C:\Program Files\Microsoft XNA
2011-09-24 16:47:23 ----A---- C:\WINDOWS\system32\msvcr100.dll
2011-09-24 16:47:23 ----A---- C:\WINDOWS\system32\msvcp100.dll
2011-09-24 14:08:22 ----D---- C:\Program Files\Zaparit
2011-09-24 13:54:02 ----D---- C:\Program Files\Counter-Strike Source
2011-09-24 08:40:48 ----D---- C:\Program Files\SendMails
2011-09-24 08:40:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\SendMails
2011-09-24 08:37:32 ----A---- C:\WINDOWS\system32\FODBCLib.dll
2011-09-24 08:37:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft NT Ident
2011-09-23 19:57:37 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\Serif
2011-09-22 07:47:02 ----D---- C:\Program Files\Microsoft Silverlight
2011-09-21 15:12:57 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\ImgBurn
2011-09-21 15:12:20 ----D---- C:\Program Files\ImgBurn
2011-09-21 14:39:46 ----D---- C:\Program Files\Zrychleni Pocitace
2011-09-21 14:38:52 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\OpenCandy
2011-09-21 14:38:50 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2011-09-21 14:38:32 ----D---- C:\Program Files\DAEMON Tools Lite
2011-09-21 14:38:15 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\DAEMON Tools Lite
2011-09-21 14:38:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2011-09-18 15:02:48 ----D---- C:\Program Files\SpeedFan
2011-09-17 15:09:45 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-09-17 08:50:39 ----A---- C:\WINDOWS\PEV.exe
2011-09-17 08:50:39 ----A---- C:\WINDOWS\MBR.exe
2011-09-17 08:35:08 ----A---- C:\Boot.bak
2011-09-17 08:35:05 ----RASHD---- C:\cmdcons
2011-09-17 08:33:21 ----A---- C:\WINDOWS\zip.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWSC.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWREG.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\sed.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\NIRCMD.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\grep.exe
2011-09-17 08:32:50 ----D---- C:\WINDOWS\ERDNT
2011-09-17 08:32:47 ----D---- C:\Qoobox
2011-09-15 17:46:38 ----D---- C:\Program Files\Firebird
2011-09-15 17:45:38 ----D---- C:\TEMP
2011-09-14 18:50:57 ----D---- C:\Program Files\Microsoft Synchronization Services
2011-09-14 18:50:57 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2011-09-14 18:47:02 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\Simulace_2009
2011-09-14 18:46:45 ----D---- C:\Kalkulatory
2011-09-14 18:36:38 ----D---- C:\Program Files\Microsoft.NET
2011-09-12 21:09:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2011-09-12 21:09:45 ----D---- C:\Program Files\IObit
2011-09-12 21:06:59 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\EMCO
======List of files/folders modified in the last 1 month======
2011-10-11 21:06:04 ----RD---- C:\Program Files
2011-10-11 21:05:55 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\uTorrent
2011-10-11 20:56:15 ----D---- C:\WINDOWS
2011-10-11 20:56:15 ----A---- C:\WINDOWS\system.ini
2011-10-11 20:56:10 ----D---- C:\WINDOWS\system32\drivers\etc
2011-10-11 20:55:51 ----D---- C:\WINDOWS\system32
2011-10-11 20:55:51 ----D---- C:\WINDOWS\ehome
2011-10-11 20:54:10 ----D---- C:\WINDOWS\system32\drivers
2011-10-11 20:54:10 ----D---- C:\WINDOWS\AppPatch
2011-10-11 20:54:07 ----D---- C:\Program Files\Common Files
2011-10-11 20:50:22 ----D---- C:\WINDOWS\Temp
2011-10-11 20:49:42 ----D---- C:\WINDOWS\system32\CatRoot2
2011-10-11 20:47:01 ----D---- C:\WINDOWS\Prefetch
2011-10-11 09:20:53 ----D---- C:\Program Files\DreamCom
2011-10-10 19:43:31 ----SHD---- C:\WINDOWS\Installer
2011-10-10 19:36:03 ----D---- C:\Program Files\PowerArchiver
2011-10-10 16:45:46 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\FileZilla
2011-10-09 21:56:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-10-09 21:56:43 ----HD---- C:\WINDOWS\inf
2011-10-09 21:55:10 ----HD---- C:\Program Files\InstallShield Installation Information
2011-10-09 21:42:18 ----D---- C:\Hry
2011-10-07 08:01:27 ----D---- C:\WINDOWS\Microsoft.NET
2011-10-06 20:09:43 ----RSD---- C:\WINDOWS\assembly
2011-10-06 20:09:06 ----D---- C:\WINDOWS\WinSxS
2011-10-06 20:09:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-10-06 20:08:50 ----D---- C:\WINDOWS\system32\en-US
2011-10-06 20:06:21 ----D---- C:\WINDOWS\Logs
2011-10-06 17:20:28 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2011-10-06 17:09:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-10-06 14:43:12 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2011-10-06 13:17:32 ----D---- C:\WINDOWS\system32\DirectX
2011-10-06 11:04:12 ----D---- C:\Program Files\Mozilla Firefox
2011-09-28 10:38:05 ----D---- C:\Program Files\Steam
2011-09-28 10:38:04 ----D---- C:\WINDOWS\SoftwareDistribution
2011-09-27 19:55:36 ----D---- C:\WINDOWS\system32\config
2011-09-25 11:21:24 ----RASH---- C:\boot.ini
2011-09-25 11:21:24 ----A---- C:\WINDOWS\win.ini
2011-09-24 11:52:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\TmForever
2011-09-24 08:39:39 ----D---- C:\Programy
2011-09-23 19:56:28 ----RSD---- C:\WINDOWS\Fonts
2011-09-21 14:40:05 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-09-15 17:45:38 ----D---- C:\WINDOWS\system
2011-09-14 18:46:47 ----SD---- C:\Documents and Settings\Gonycz\Data aplikací\Microsoft
2011-09-12 20:46:36 ----D---- C:\WINDOWS\network diagnostic
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\System32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2011-03-18 25240]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2000-01-01 9216]
R0 xfilt;VIA SATA IDE Hot-plug Driver; C:\WINDOWS\system32\DRIVERS\xfilt.sys [2000-01-01 17920]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 232512]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-11 3565056]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 kxwdmdrv;kX WDM Driver Service; C:\WINDOWS\system32\drivers\kx.sys [2004-02-17 571776]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 vulfnths;VIA USB Host Controller Lower Filter; C:\WINDOWS\System32\Drivers\vulfnth.sys [2000-01-01 6912]
R3 vulfntrs;VIA USB Roothub Lower Filter; C:\WINDOWS\System32\Drivers\vulfntr.sys [2000-01-01 11264]
S3 catchme;catchme; \??\C:\DOCUME~1\Gonycz\LOCALS~1\Temp\catchme.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 IObitUnlocker;IObitUnlocker; \??\C:\Program Files\IObit\IObit Unlocker\IObitUnlocker.sys []
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2011-10-11 12984]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2000-01-01 204160]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-11 602112]
R2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files\Firebird\bin\fbguard.exe [2007-12-12 65536]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-07-19 153376]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-10-06 75136]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2011-09-01 1526080]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files\Firebird\bin\fbserver.exe [2007-12-12 1531989]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Samsung UPD Service;Samsung UPD Service; C:\WINDOWS\system32\SUPDSvc.exe [2010-08-09 131888]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Gonycz at 2011-10-11 21:06:03
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 42 GB (32%) free of 131 GB
Total RAM: 2047 MB (69% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06, on 2011-10-11
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\kxmixer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Programy\SlimDrivers\SlimDrivers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Firebird\bin\fbguard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Firebird\bin\fbserver.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Gonycz\Plocha\SpywareTerminator.exe
C:\DOCUME~1\Gonycz\LOCALS~1\Temp\is-H5301.tmp\SpywareTerminator.tmp
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Gonycz\Plocha\RSIT.exe
C:\Program Files\trend micro\Gonycz.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zaparit.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [kX Mixer] C:\WINDOWS\system32\kxmixer.exe --startup
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SlimDrivers] "C:\Programy\SlimDrivers\SlimDrivers.exe" -boot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files\Firebird\bin\fbserver.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\WINDOWS\system32\SUPDSvc.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
--
End of file - 5461 bytes
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Gonycz\Data aplikací\Mozilla\Firefox\Profiles\i5bmeela.default
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Gonycz\Data aplikací\Mozilla\Firefox\Profiles\i5bmeela.default\extensions\
battlefieldplay4free@ea.com
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-19 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-07-19 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-02-10 61440]
"kX Mixer"=C:\WINDOWS\system32\kxmixer.exe [2004-02-17 438784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2011-08-29 399736]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"SlimDrivers"=C:\Programy\SlimDrivers\SlimDrivers.exe [2011-08-01 26441568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AudioDeck]
C:\Program Files\VIAudioi\SBADeck\ADeck.exe [2000-01-01 540672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\kX Mixer]
kxmixer --startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SlimDrivers]
C:\Programy\SlimDrivers\SlimDrivers.exe [2011-08-01 26441568]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\Steam.exe [2011-09-04 1242448]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Gonycz^Nabídka Start^Programy^Po spuštění^OpenOffice.org 3.3.lnk]
C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE [2010-12-13 1198592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=2
"wscsvc"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Hry\APB Reloaded\Binaries\APB.exe"="C:\Hry\APB Reloaded\Binaries\APB.exe:*:Enabled:APB: APB.exe"
"C:\Hry\APB Reloaded\Binaries\VivoxVoiceService.exe"="C:\Hry\APB Reloaded\Binaries\VivoxVoiceService.exe:*:Enabled:APB: VivoxVoiceService.exe"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\SUPDSvc.exe"="C:\WINDOWS\system32\SUPDSvc.exe:*:Enabled:Samsung UPD Service"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe"="C:\Program Files\Microsoft Games\Age of Empires Online\Spartan.exe:*:Enabled:Age of Empires Online"
"C:\Hry\CrimeCraft\ClientLauncher.exe"="C:\Hry\CrimeCraft\ClientLauncher.exe:*:Enabled:CrimeCraft Launcher"
"C:\Hry\CrimeCraft\Binaries\CrimeCraft.exe"="C:\Hry\CrimeCraft\Binaries\CrimeCraft.exe:*:Enabled:CrimeCraft"
"C:\Program Files\Electronic Arts\BattleForge\Bootstrapper.exe"="C:\Program Files\Electronic Arts\BattleForge\Bootstrapper.exe:*:Enabled:BattleForge™ Launcher"
"C:\Program Files\Electronic Arts\BattleForge\BattleForge.exe"="C:\Program Files\Electronic Arts\BattleForge\BattleForge.exe:*:Enabled:BattleForge™"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======List of files/folders created in the last 1 month======
2011-10-11 21:06:04 ----D---- C:\Program Files\trend micro
2011-10-11 21:06:03 ----D---- C:\rsit
2011-10-11 20:57:33 ----A---- C:\ComboFix.txt
2011-10-11 16:52:34 ----D---- C:\WINDOWS\LastGood
2011-10-10 19:37:58 ----D---- C:\Program Files\Simulace_PCS
2011-10-09 21:56:33 ----D---- C:\Program Files\kX Project
2011-10-09 20:27:03 ----D---- C:\Program Files\Plus500
2011-10-09 08:04:33 ----A---- C:\WINDOWS\system32\dxva_sig.txt
2011-10-06 13:47:17 ----D---- C:\Program Files\EA Games
2011-10-06 13:17:33 ----D---- C:\Program Files\Electronic Arts
2011-10-06 10:49:00 ----A---- C:\WINDOWS\system32\drivers\teamviewervpn.sys
2011-10-06 10:48:59 ----D---- C:\Program Files\TeamViewer
2011-10-06 10:44:59 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\TeamViewer
2011-10-02 00:19:01 ----D---- C:\X360HP Temp
2011-10-02 00:17:23 ----D---- C:\WINDOWS\Xbox 360 Hack Pack RC1
2011-09-28 10:05:58 ----D---- C:\WINDOWS\Minidump
2011-09-27 19:55:35 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2011-09-27 19:55:34 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2011-09-27 19:55:19 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\TuneUp Software
2011-09-27 19:55:07 ----D---- C:\Program Files\TuneUp Utilities 2011
2011-09-27 19:54:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
2011-09-27 19:54:53 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-09-25 11:08:21 ----D---- C:\WINDOWS\pss
2011-09-25 08:48:05 ----D---- C:\Program Files\CSS_Monitor
2011-09-25 08:24:24 ----D---- C:\WINDOWS\system32\appmgmt
2011-09-24 20:21:25 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\eM Client
2011-09-24 20:20:34 ----D---- C:\Program Files\eM Client
2011-09-24 20:18:08 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\The Bat!
2011-09-24 20:18:03 ----A---- C:\Documents and Settings\Gonycz\Data aplikací\ex_log.txt
2011-09-24 20:17:54 ----D---- C:\Program Files\The Bat!
2011-09-24 20:05:38 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\ERGOM
2011-09-24 20:05:24 ----D---- C:\Program Files\Business Objects
2011-09-24 20:04:56 ----D---- C:\Program Files\Ergom
2011-09-24 16:47:29 ----D---- C:\Program Files\Microsoft XNA
2011-09-24 16:47:23 ----A---- C:\WINDOWS\system32\msvcr100.dll
2011-09-24 16:47:23 ----A---- C:\WINDOWS\system32\msvcp100.dll
2011-09-24 14:08:22 ----D---- C:\Program Files\Zaparit
2011-09-24 13:54:02 ----D---- C:\Program Files\Counter-Strike Source
2011-09-24 08:40:48 ----D---- C:\Program Files\SendMails
2011-09-24 08:40:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\SendMails
2011-09-24 08:37:32 ----A---- C:\WINDOWS\system32\FODBCLib.dll
2011-09-24 08:37:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft NT Ident
2011-09-23 19:57:37 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\Serif
2011-09-22 07:47:02 ----D---- C:\Program Files\Microsoft Silverlight
2011-09-21 15:12:57 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\ImgBurn
2011-09-21 15:12:20 ----D---- C:\Program Files\ImgBurn
2011-09-21 14:39:46 ----D---- C:\Program Files\Zrychleni Pocitace
2011-09-21 14:38:52 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\OpenCandy
2011-09-21 14:38:50 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2011-09-21 14:38:32 ----D---- C:\Program Files\DAEMON Tools Lite
2011-09-21 14:38:15 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\DAEMON Tools Lite
2011-09-21 14:38:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2011-09-18 15:02:48 ----D---- C:\Program Files\SpeedFan
2011-09-17 15:09:45 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-09-17 08:50:39 ----A---- C:\WINDOWS\PEV.exe
2011-09-17 08:50:39 ----A---- C:\WINDOWS\MBR.exe
2011-09-17 08:35:08 ----A---- C:\Boot.bak
2011-09-17 08:35:05 ----RASHD---- C:\cmdcons
2011-09-17 08:33:21 ----A---- C:\WINDOWS\zip.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWSC.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\SWREG.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\sed.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\NIRCMD.exe
2011-09-17 08:33:21 ----A---- C:\WINDOWS\grep.exe
2011-09-17 08:32:50 ----D---- C:\WINDOWS\ERDNT
2011-09-17 08:32:47 ----D---- C:\Qoobox
2011-09-15 17:46:38 ----D---- C:\Program Files\Firebird
2011-09-15 17:45:38 ----D---- C:\TEMP
2011-09-14 18:50:57 ----D---- C:\Program Files\Microsoft Synchronization Services
2011-09-14 18:50:57 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2011-09-14 18:47:02 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\Simulace_2009
2011-09-14 18:46:45 ----D---- C:\Kalkulatory
2011-09-14 18:36:38 ----D---- C:\Program Files\Microsoft.NET
2011-09-12 21:09:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2011-09-12 21:09:45 ----D---- C:\Program Files\IObit
2011-09-12 21:06:59 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\EMCO
======List of files/folders modified in the last 1 month======
2011-10-11 21:06:04 ----RD---- C:\Program Files
2011-10-11 21:05:55 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\uTorrent
2011-10-11 20:56:15 ----D---- C:\WINDOWS
2011-10-11 20:56:15 ----A---- C:\WINDOWS\system.ini
2011-10-11 20:56:10 ----D---- C:\WINDOWS\system32\drivers\etc
2011-10-11 20:55:51 ----D---- C:\WINDOWS\system32
2011-10-11 20:55:51 ----D---- C:\WINDOWS\ehome
2011-10-11 20:54:10 ----D---- C:\WINDOWS\system32\drivers
2011-10-11 20:54:10 ----D---- C:\WINDOWS\AppPatch
2011-10-11 20:54:07 ----D---- C:\Program Files\Common Files
2011-10-11 20:50:22 ----D---- C:\WINDOWS\Temp
2011-10-11 20:49:42 ----D---- C:\WINDOWS\system32\CatRoot2
2011-10-11 20:47:01 ----D---- C:\WINDOWS\Prefetch
2011-10-11 09:20:53 ----D---- C:\Program Files\DreamCom
2011-10-10 19:43:31 ----SHD---- C:\WINDOWS\Installer
2011-10-10 19:36:03 ----D---- C:\Program Files\PowerArchiver
2011-10-10 16:45:46 ----D---- C:\Documents and Settings\Gonycz\Data aplikací\FileZilla
2011-10-09 21:56:53 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-10-09 21:56:43 ----HD---- C:\WINDOWS\inf
2011-10-09 21:55:10 ----HD---- C:\Program Files\InstallShield Installation Information
2011-10-09 21:42:18 ----D---- C:\Hry
2011-10-07 08:01:27 ----D---- C:\WINDOWS\Microsoft.NET
2011-10-06 20:09:43 ----RSD---- C:\WINDOWS\assembly
2011-10-06 20:09:06 ----D---- C:\WINDOWS\WinSxS
2011-10-06 20:09:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-10-06 20:08:50 ----D---- C:\WINDOWS\system32\en-US
2011-10-06 20:06:21 ----D---- C:\WINDOWS\Logs
2011-10-06 17:20:28 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2011-10-06 17:09:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-10-06 14:43:12 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2011-10-06 13:17:32 ----D---- C:\WINDOWS\system32\DirectX
2011-10-06 11:04:12 ----D---- C:\Program Files\Mozilla Firefox
2011-09-28 10:38:05 ----D---- C:\Program Files\Steam
2011-09-28 10:38:04 ----D---- C:\WINDOWS\SoftwareDistribution
2011-09-27 19:55:36 ----D---- C:\WINDOWS\system32\config
2011-09-25 11:21:24 ----RASH---- C:\boot.ini
2011-09-25 11:21:24 ----A---- C:\WINDOWS\win.ini
2011-09-24 11:52:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\TmForever
2011-09-24 08:39:39 ----D---- C:\Programy
2011-09-23 19:56:28 ----RSD---- C:\WINDOWS\Fonts
2011-09-21 14:40:05 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-09-15 17:45:38 ----D---- C:\WINDOWS\system
2011-09-14 18:46:47 ----SD---- C:\Documents and Settings\Gonycz\Data aplikací\Microsoft
2011-09-12 20:46:36 ----D---- C:\WINDOWS\network diagnostic
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\System32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2011-03-18 25240]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2000-01-01 9216]
R0 xfilt;VIA SATA IDE Hot-plug Driver; C:\WINDOWS\system32\DRIVERS\xfilt.sys [2000-01-01 17920]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-09-21 232512]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-11 3565056]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 kxwdmdrv;kX WDM Driver Service; C:\WINDOWS\system32\drivers\kx.sys [2004-02-17 571776]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 vulfnths;VIA USB Host Controller Lower Filter; C:\WINDOWS\System32\Drivers\vulfnth.sys [2000-01-01 6912]
R3 vulfntrs;VIA USB Roothub Lower Filter; C:\WINDOWS\System32\Drivers\vulfntr.sys [2000-01-01 11264]
S3 catchme;catchme; \??\C:\DOCUME~1\Gonycz\LOCALS~1\Temp\catchme.sys []
S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 IObitUnlocker;IObitUnlocker; \??\C:\Program Files\IObit\IObit Unlocker\IObitUnlocker.sys []
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2011-10-11 12984]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2000-01-01 204160]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-11 602112]
R2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance; C:\Program Files\Firebird\bin\fbguard.exe [2007-12-12 65536]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-07-19 153376]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-10-06 75136]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2011-09-01 1526080]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance; C:\Program Files\Firebird\bin\fbserver.exe [2007-12-12 1531989]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Samsung UPD Service;Samsung UPD Service; C:\WINDOWS\system32\SUPDSvc.exe [2010-08-09 131888]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-03-16 407336]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------