Stránka 1 z 1

Prosím o preventivní kontrolu

Napsal: 27 lis 2011 17:24
od William_CZ
Dobrý den, prosím o preventivní kontrolu a posouzení dostatečnosti zabezpečení PC. Používám free AVAst a Comodo firewall.

Log:

Logfile of random's system information tool 1.09 (written by random/random)
Run by William at 2011-11-27 17:23:11
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 49 GB (61%) free of 80 GB
Total RAM: 3036 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:23:34, on 27.11.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\LSI SoftModem\agrsmsvc.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\TeamViewer\Version7\tv_w32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\ADVANC~1\wh_exec.exe
C:\Documents and Settings\All Users\Data aplikací\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
C:\Program Files\Notebook Hardware Control\nhc.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\System Explorer\SystemExplorer.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\RocketDock\RocketDock.exe
D:\Programy\hotkeyp\HotkeyP.exe
C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAir.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\Sound Station\SNXUACP.exe
C:\Program Files\Translate Client\translateclient.exe
D:\LiberKey\LiberKeyTools\LiberKeyMenu\LiberKeyMenu.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\LiberKey\LiberKeyTools\KeyFileAssoc\KeyFileAssoc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Program Files\DreamCom\DreamCom.exe
C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\LiberKey\LiberKeyTools\LiberKeyPortabilizer\LiberKeyPortabilizer.exe
D:\LiberKey\Apps\CCleaner\App\CCleaner\CCleaner.exe
D:\Programy\RSIT.exe
C:\Program Files\trend micro\William.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://tr.v9.com/sof/sof_1318776668_558623
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O4 - HKLM\..\Run: [zCpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files\Hewlett-Packard\HP Webcam" UpdateWithCreateOnce "Software\CyberLink\HP Webcam\1.0"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [EPSON Stylus DX5000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "C:\WINDOWS\TEMP\E_SB4.tmp" /EF "HKLM"
O4 - HKLM\..\Run: [B2C_AGENT] C:\Documents and Settings\All Users\Data aplikací\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
O4 - HKLM\..\Run: [NotebookHardwareControl] "C:\Program Files\Notebook Hardware Control\nhc.exe" -quiet
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SystemExplorerAutoStart] "C:\Program Files\System Explorer\SystemExplorer.exe" /TRAY
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [HotkeyP] D:\Programy\hotkeyp\HotkeyP.exe 0
O4 - HKCU\..\Run: [LG LinkAir] C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAir.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: SystemExplorerDisabled
O4 - Global Startup: imo.lnk = ?
O4 - Global Startup: LiberKey.lnk = D:\LiberKey\LiberKey.exe
O4 - Global Startup: Sound Station.lnk = C:\Program Files\Sound Station\SNXUACP.exe
O4 - Global Startup: SystemExplorerDisabled
O4 - Global Startup: Translate Client.lnk = C:\Program Files\Translate Client\translateclient.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Image - res://C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/206
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Memo - res://C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/208
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Text file - res://C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/210
O8 - Extra context menu item: LG Air Sync (R-Click) - Set as Mobile Wallpaper - res://C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/205
O8 - Extra context menu item: LG Air Sync Option - res://C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/209
O8 - Extra context menu item: Odeslat do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat do zařízení Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Program Files\LSI SoftModem\agrsmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe

--
End of file - 13682 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-823518204-1972579041-725345543-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-823518204-1972579041-725345543-1003.job
C:\WINDOWS\tasks\WGASetup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]
QuickStores-Toolbar - C:\WINDOWS\system32\mscoree.dll [2010-03-18 297808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2010-09-16 35688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2011-09-30 414416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2011-11-09 57224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - QuickStores-Toolbar - C:\WINDOWS\system32\mscoree.dll [2010-03-18 297808]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"zCpqset"=C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe [2008-12-11 81920]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-02-18 177720]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-06 1430824]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2009-01-16 1044480]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2008-07-25 888832]
"HPCam_Menu"=c:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-02-03 61440]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-03-10 506936]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-10-20 2497352]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2008-10-08 147456]
"EPSON Stylus DX5000 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE [2006-02-14 131072]
"B2C_AGENT"=C:\Documents and Settings\All Users\Data aplikací\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe [2011-09-28 404568]
"NotebookHardwareControl"=C:\Program Files\Notebook Hardware Control\nhc.exe [2007-05-04 2629632]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-09-06 3722416]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SystemExplorerAutoStart"=C:\Program Files\System Explorer\SystemExplorer.exe [2011-11-19 2500424]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]
"RocketDock"=C:\Program Files\RocketDock\RocketDock.exe [2007-09-02 495616]
"HotkeyP"=D:\Programy\hotkeyp\HotkeyP.exe [2011-07-30 60928]
"LG LinkAir"=C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAir.exe [2010-09-16 2440552]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
imo.lnk - C:\Documents and Settings\William\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
LiberKey.lnk - D:\LiberKey\LiberKey.exe
Sound Station.lnk - C:\Program Files\Sound Station\SNXUACP.exe
SystemExplorerDisabled
Translate Client.lnk - C:\Program Files\Translate Client\translateclient.exe

C:\Documents and Settings\William\Nabídka Start\Programy\Po spuštění
SystemExplorerDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-02-03 155648]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\TeamViewer\Version7\TeamViewer.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\Program Files\cacaoweb\cacaoweb.exe"="C:\Program Files\cacaoweb\cacaoweb.exe:*:Enabled:cacaoweb"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe]
"Debugger=""C:\Program Files\System Explorer\SystemExplorer.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-11-23 19:21:09 ----D---- C:\WINDOWS\system32\LogFiles
2011-11-23 19:00:59 ----D---- C:\Program Files\Network Stumbler
2011-11-22 15:37:09 ----A---- C:\WINDOWS\system32\bdwmapi.dll
2011-11-21 19:40:20 ----D---- C:\Documents and Settings\William\Data aplikací\cacaoweb
2011-11-21 19:40:11 ----D---- C:\Program Files\cacaoweb
2011-11-21 15:59:19 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2011-11-21 15:59:19 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2011-11-21 15:59:19 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2011-11-21 15:59:18 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2011-11-21 15:59:17 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2011-11-21 15:59:16 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2011-11-21 15:59:16 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2011-11-21 15:59:14 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2011-11-21 15:59:14 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2011-11-21 15:59:14 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2011-11-21 15:59:13 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2011-11-21 15:59:12 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2011-11-21 15:59:10 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2011-11-21 15:59:10 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2011-11-21 15:59:09 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2011-11-21 15:59:06 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2011-11-21 15:59:04 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2011-11-21 15:59:04 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2011-11-21 15:59:01 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2011-11-21 15:59:01 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2011-11-21 15:59:01 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2011-11-21 15:58:59 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2011-11-21 15:58:58 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2011-11-21 15:58:58 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2011-11-21 15:58:56 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2011-11-21 15:58:55 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2011-11-21 15:58:53 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2011-11-21 15:58:52 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2011-11-21 15:58:52 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2011-11-21 15:58:51 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2011-11-21 15:58:51 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2011-11-21 15:58:50 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2011-11-21 15:58:49 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2011-11-21 15:58:48 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2011-11-21 15:58:48 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2011-11-21 15:58:47 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2011-11-21 15:58:46 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2011-11-21 15:58:46 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2011-11-21 15:58:44 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2011-11-21 15:58:44 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2011-11-21 15:58:44 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2011-11-21 15:58:43 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2011-11-21 15:58:42 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2011-11-21 15:58:41 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2011-11-21 15:58:41 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2011-11-21 15:58:41 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2011-11-21 15:58:39 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2011-11-21 15:58:39 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2011-11-21 15:58:38 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2011-11-21 15:58:38 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2011-11-21 15:58:37 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2011-11-21 15:58:35 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2011-11-21 15:58:35 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2011-11-21 15:58:33 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2011-11-21 15:58:33 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2011-11-21 15:58:33 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2011-11-21 15:58:32 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2011-11-21 15:58:31 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2011-11-21 15:58:25 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2011-11-21 15:58:23 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2011-11-21 15:58:22 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2011-11-21 15:58:22 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2011-11-21 15:58:22 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2011-11-21 15:58:21 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2011-11-21 15:58:21 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2011-11-21 15:58:21 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2011-11-21 15:58:20 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2011-11-21 15:58:20 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2011-11-21 15:58:20 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2011-11-21 15:58:19 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2011-11-21 15:58:19 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2011-11-21 15:58:15 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2011-11-21 15:58:15 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2011-11-21 15:58:15 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2011-11-21 15:58:14 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2011-11-21 15:58:14 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2011-11-21 15:58:14 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2011-11-21 15:58:13 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2011-11-21 15:58:13 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2011-11-21 15:58:12 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2011-11-21 15:58:12 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2011-11-21 15:55:39 ----D---- C:\WINDOWS\Logs
2011-11-20 20:29:58 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-11-20 20:29:57 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-11-20 20:29:56 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-11-20 20:29:55 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-11-20 20:29:55 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-11-20 20:29:54 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-11-20 20:29:54 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-11-20 20:29:54 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-11-20 20:29:09 ----A---- C:\WINDOWS\avastSS.scr
2011-11-20 20:29:08 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-11-20 20:18:38 ----D---- C:\WINDOWS\system32\appmgmt
2011-11-19 14:17:48 ----HD---- C:\VritualRoot
2011-11-16 00:56:41 ----A---- C:\WINDOWS\system32\drivers\TVMonitor.sys
2011-11-16 00:56:41 ----A---- C:\WINDOWS\system32\drivers\teamviewervpn.sys
2011-11-16 00:53:53 ----A---- C:\WINDOWS\wininit.ini
2011-11-13 12:03:12 ----D---- C:\Program Files\AVAST Software
2011-11-13 12:03:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-11-12 12:17:47 ----D---- C:\Documents and Settings\William\Data aplikací\AVG2012
2011-11-10 17:55:09 ----D---- C:\Documents and Settings\William\Data aplikací\Mozilla
2011-11-09 16:52:13 ----A---- C:\WINDOWS\system32\javaws.exe
2011-11-09 16:52:13 ----A---- C:\WINDOWS\system32\javaw.exe
2011-11-09 16:52:12 ----A---- C:\WINDOWS\system32\java.exe
2011-11-09 16:51:48 ----D---- C:\Program Files\Java
2011-10-30 10:26:02 ----A---- C:\WINDOWS\system32\HHACTIVEX.DLL
2011-10-30 10:25:25 ----D---- C:\Program Files\SolidCAM2011 Demo
2011-10-30 09:39:06 ----A---- C:\WINDOWS\eDrawingOfficeAutomator.INI
2011-10-30 09:32:45 ----D---- C:\Documents and Settings\William\Data aplikací\DassaultSystemes
2011-10-30 09:32:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\DassaultSystemes
2011-10-30 09:21:59 ----D---- C:\Program Files\NVIDIA Corporation
2011-10-30 09:21:54 ----D---- C:\SolidWorks Data
2011-10-30 09:21:52 ----D---- C:\Program Files\SolidWorks Corp
2011-10-30 09:21:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\SolidWorks
2011-10-30 09:17:14 ----D---- C:\Program Files\Common Files\Designer
2011-10-30 09:16:32 ----D---- C:\Program Files\Microsoft Visual Studio 8
2011-10-30 09:16:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2011-10-30 09:15:29 ----N---- C:\WINDOWS\system32\spmsg2.dll
2011-10-30 09:15:24 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2011-10-30 09:10:37 ----D---- C:\WINDOWS\system32\XPSViewer
2011-10-30 09:10:28 ----D---- C:\Program Files\MSBuild
2011-10-30 09:10:14 ----D---- C:\Program Files\Reference Assemblies
2011-10-30 09:08:53 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2011-10-30 09:08:53 ----N---- C:\WINDOWS\system32\prntvpt.dll
2011-10-30 09:08:52 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2011-10-30 08:58:18 ----D---- C:\Program Files\Microsoft Office
2011-10-30 08:58:08 ----D---- C:\Program Files\MSECache
2011-10-30 08:57:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\FLEXnet
2011-10-30 08:57:20 ----D---- C:\Program Files\Common Files\SolidWorks Shared
2011-10-30 08:57:17 ----D---- C:\Program Files\Common Files\Macrovision Shared
2011-10-30 08:55:03 ----D---- C:\Program Files\Common Files\Manažer instalací SolidWorks
2011-10-30 08:53:57 ----D---- C:\WINDOWS\SolidWorks
2011-10-30 08:53:43 ----D---- C:\Documents and Settings\William\Data aplikací\SolidWorks

======List of files/folders modified in the last 1 month======

2011-11-27 17:23:17 ----D---- C:\Program Files\trend micro
2011-11-27 17:23:09 ----D---- C:\WINDOWS\Prefetch
2011-11-27 17:20:27 ----D---- C:\WINDOWS\system32\config
2011-11-27 16:40:35 ----SD---- C:\WINDOWS\Tasks
2011-11-27 15:40:34 ----D---- C:\WINDOWS\Temp
2011-11-27 15:39:15 ----D---- C:\WINDOWS\Microsoft.NET
2011-11-27 11:34:11 ----A---- C:\Documents and Settings\All Users\Data aplikací\HPWALog.txt
2011-11-27 10:16:26 ----D---- C:\WINDOWS\system32\CatRoot2
2011-11-27 10:14:27 ----D---- C:\Documents and Settings\William\Data aplikací\translateclient
2011-11-27 10:13:36 ----D---- C:\WINDOWS\system32
2011-11-27 10:13:35 ----A---- C:\WINDOWS\system32\lgAxconfig.ini
2011-11-27 10:12:32 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-11-26 18:39:36 ----D---- C:\Program Files\The KMPlayer
2011-11-25 18:09:21 ----D---- C:\Documents and Settings\William\Data aplikací\vlc
2011-11-24 21:32:02 ----D---- C:\Program Files\System Explorer
2011-11-23 21:59:21 ----D---- C:\WINDOWS
2011-11-23 19:00:59 ----RD---- C:\Program Files
2011-11-22 21:26:58 ----D---- C:\WINDOWS\system32\drivers
2011-11-22 21:26:47 ----HD---- C:\WINDOWS\inf
2011-11-22 21:26:41 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-11-22 15:37:10 ----D---- C:\Program Files\Common Files
2011-11-22 15:36:54 ----A---- C:\WINDOWS\system32\unins000.exe
2011-11-21 16:00:20 ----SHD---- C:\WINDOWS\Installer
2011-11-21 16:00:20 ----D---- C:\Config.Msi
2011-11-21 16:00:18 ----D---- C:\WINDOWS\WinSxS
2011-11-21 15:59:22 ----D---- C:\WINDOWS\system32\DirectX
2011-11-21 15:58:19 ----RSD---- C:\WINDOWS\assembly
2011-11-21 15:53:22 ----D---- C:\Documents and Settings\William\Data aplikací\DAEMON Tools Lite
2011-11-20 21:20:57 ----D---- C:\Program Files\RocketDock
2011-11-20 20:15:37 ----D---- C:\WINDOWS\system32\CatRoot
2011-11-19 20:42:21 ----D---- C:\Documents and Settings\William\Data aplikací\TeamViewer
2011-11-19 17:32:12 ----D---- C:\Program Files\JDownloader
2011-11-19 14:30:12 ----D---- C:\Program Files\Google
2011-11-16 00:56:38 ----D---- C:\Program Files\TeamViewer
2011-11-13 11:45:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\MFAData
2011-11-13 11:44:29 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-11-13 11:42:42 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-11-10 15:43:14 ----D---- C:\WINDOWS\Minidump
2011-11-09 16:51:52 ----A---- C:\WINDOWS\system32\deployJava1.dll
2011-11-07 15:57:08 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-11-03 00:49:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\LGMOBILEAX
2011-10-30 10:29:30 ----RSD---- C:\WINDOWS\Fonts
2011-10-30 10:25:22 ----HD---- C:\Program Files\InstallShield Installation Information
2011-10-30 09:41:14 ----SD---- C:\Documents and Settings\William\Data aplikací\Microsoft
2011-10-30 09:21:59 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-10-30 09:18:20 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-10-30 09:14:53 ----D---- C:\WINDOWS\system32\cs-cz
2011-10-30 09:14:06 ----D---- C:\WINDOWS\system32\mui
2011-10-30 09:10:31 ----D---- C:\WINDOWS\system32\en-US
2011-10-30 09:09:44 ----D---- C:\WINDOWS\system32\spool
2011-10-30 09:03:16 ----D---- C:\Program Files\Internet Explorer
2011-10-30 08:58:18 ----D---- C:\Program Files\Microsoft.NET
2011-10-29 11:42:35 ----D---- C:\Program Files\DreamCom

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\System32\DRIVERS\inspect.sys [2011-10-07 97760]
R0 SFAUDIO;Sonic Focus DSP Driver; C:\WINDOWS\system32\drivers\sfaudio.sys [2008-03-28 24064]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-09-06 30808]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-09-06 34392]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-09-06 442200]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-09-06 320856]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-09-06 52568]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-10-07 492768]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2011-10-07 31704]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-08-05 232512]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-09-06 20568]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-09-06 110552]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2009-01-16 339456]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2008-10-29 1204128]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-02-04 3488768]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2009-04-01 93184]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2011-08-04 2697600]
R3 btaudio;Zvukové zařízení Bluetooth; C:\WINDOWS\system32\drivers\btaudio.sys [2009-01-14 534568]
R3 BTDriver;Ovladač virtuálních komunikací Bluetooth; C:\WINDOWS\system32\DRIVERS\btport.sys [2009-01-14 37160]
R3 BTKRNL;Enumenátor sběrnice Bluetooth; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2009-01-14 991656]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2009-01-14 47272]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\WINDOWS\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 LgBttPort;LGE Bluetooth TransPort; C:\WINDOWS\system32\DRIVERS\lgbtport.sys [2009-09-29 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\lgbtbus.sys [2009-09-29 10496]
R3 LGVMODEM;LGE Virtual Modem; C:\WINDOWS\system32\DRIVERS\lgvmodem.sys [2009-09-29 12928]
R3 MonitorFunction;Driver for Monitor; C:\WINDOWS\system32\DRIVERS\TVMonitor.sys [2011-11-11 13304]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nhcDriverDevice;Notebook Hardware Control Driver; \??\C:\WINDOWS\system32\drivers\nhcDriver.sys []
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [2009-03-26 1765168]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-02-06 205232]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\WINDOWS\system32\DRIVERS\teamviewervpn.sys [2011-11-11 25088]
R3 uafilter;uafilter; C:\WINDOWS\System32\DRIVERS\uafilter.sys [2003-09-18 9874]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
R3 whfltr2k;WheelMouse USB Lower Filter Driver; C:\WINDOWS\system32\DRIVERS\whfltr2k.sys [2007-01-25 6784]
R3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2009-03-16 58208]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2008-11-24 296320]
S3 Andbus;LGE Android Platform Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgandbus.sys [2010-08-02 14336]
S3 AndDiag;LGE Android Platform USB Serial Port; C:\WINDOWS\system32\DRIVERS\lganddiag.sys [2010-08-02 20864]
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\WINDOWS\system32\DRIVERS\lgandgps.sys [2010-08-02 19968]
S3 ANDModem;LGE Android Platform USB Modem; C:\WINDOWS\system32\DRIVERS\lgandmodem.sys [2010-08-02 24960]
S3 androidusb;ADB Interface Driver; C:\WINDOWS\System32\Drivers\lgandadb.sys [2010-08-02 25728]
S3 BTWDNDIS;Server pro přístup k síti LAN Bluetooth; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2009-01-14 156816]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\NSNDIS5.SYS []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2011-07-14 104752]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys []
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [2008-08-26 14336]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-02-03 602112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-09-06 44768]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-11 346720]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-10-07 1883328]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2011-11-09 161664]
R2 TeamViewer7;TeamViewer 7; C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe [2011-11-14 2855808]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-12-04 222512]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-21 228656]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-08-08 136176]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2011-01-08 87336]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-10-30 1044816]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-08-08 136176]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2011-10-30 79360]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 msvsmon80;Visual Studio 2005 Remote Debugger; C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2005-09-23 2799808]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Prosím o preventivní kontrolu

Napsal: 27 lis 2011 20:19
od Roli
Zdravím, tyhle zbytečnosti fixni v HJT :

O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')


HJT najdeš zde :

C:\Program Files\trend micro\William.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Přes Start >> Spustit >> napiš - services.msc >> OK. Najdi službu :

Služba Google Update (gupdate)

Služba Google Update (gupdatem)

Google Updater Service (gusvc)


klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.


Jinak vše v pořádku a zabezpečení dostatečné.