Stránka 1 z 1

Prosím o konrolu log.

Napsal: 19 pro 2011 16:55
od petasmu
Logfile of random's system information tool 1.09 (written by random/random)
Run by peta at 2011-12-19 13:33:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (30%) free of 13 GB
Total RAM: 448 MB (22% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:33:43, on 19.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\3COM\3Com Wireless 108 Mbps 11g USB Utility \lcs.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\sistray.exe
C:\utility\Eject.exe
C:\utility\MouseWheelVolume\mwvolume.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Defraggler\Defraggler.exe
C:\Documents and Settings\peta\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\peta.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpyEmergency] C:\Program Files\NETGATE\Spy Emergency 2009\SpyEmergency.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Zástupce - Eject.lnk = C:\utility\Eject.exe
O4 - Startup: Zástupce - mwvolume.lnk = C:\utility\MouseWheelVolume\mwvolume.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: 3Com Configuration Service (LCS) - Unknown owner - C:\Program Files\3COM\3Com Wireless 108 Mbps 11g USB Utility \lcs.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency 2009\SpyEmergencySrv.exe

--
End of file - 3183 bytes

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\peta\Data aplikací\Mozilla\Firefox\Profiles\dkiw1n50.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://seznam.cz/"
prefs.js - "extensions.enabledItems" - "{ea614400-e918-4741-9a97-7a972ff7c30b}:2.0.10, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.9"
prefs.js - "keyword.URL" - "http://search.seznam.cz/?sourceid=FF_5&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat

C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
firmycz.xml
mapycz.xml
seznam-cz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2000-01-01 577536]
"SiSPower"=SiSPower.dll,ModeAgent []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SpyEmergency"=C:\Program Files\NETGATE\Spy Emergency 2009\SpyEmergency.exe [2011-05-27 1940024]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Utility Tray.lnk - C:\WINDOWS\system32\sistray.exe

C:\Documents and Settings\peta\Nabídka Start\Programy\Po spuštění
Zástupce - Eject.lnk - C:\utility\Eject.exe
Zástupce - mwvolume.lnk - C:\utility\MouseWheelVolume\mwvolume.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2020-05-27 15:53:00 ----AC---- C:\WINDOWS\vypalovac.ini
2020-05-27 15:52:50 ----D---- C:\Program Files\Vypalovač
2011-12-19 13:19:48 ----D---- C:\Program Files\Defraggler
2011-12-19 12:21:39 ----A---- C:\WINDOWS\system32\PerfStringBackup.TMP
2011-12-19 12:09:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-12-19 12:09:02 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-12-19 12:08:48 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-12-19 12:08:25 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-12-19 12:07:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-12-19 12:07:14 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-12-19 12:06:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-12-19 12:06:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-12-19 12:06:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2011-12-19 12:06:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-12-19 12:06:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-12-19 12:05:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-12-19 12:05:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-12-19 12:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-12-19 12:05:03 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-12-19 12:04:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-12-19 12:04:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-12-19 12:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-12-19 12:03:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-12-19 12:03:29 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-12-19 12:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-12-19 12:02:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-12-19 12:02:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2639417$
2011-12-19 12:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-12-19 12:01:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-12-19 12:01:41 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-12-19 12:01:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-12-19 12:01:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-12-19 12:00:47 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-12-19 12:00:35 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-12-19 12:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-12-19 12:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2011-12-19 11:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-12-19 11:59:30 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-12-19 11:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2011-12-19 11:58:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-12-19 11:58:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-12-19 11:58:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-12-19 11:57:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-12-19 11:57:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-12-19 11:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-12-19 11:56:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-12-19 11:56:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-12-19 11:55:58 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-12-19 11:55:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-12-19 11:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2011-12-19 11:55:14 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-12-19 11:55:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-12-19 11:54:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-12-19 11:54:23 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-12-19 11:54:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-12-19 11:53:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2011-12-19 11:53:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-12-19 11:53:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-12-19 11:52:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-12-19 11:43:39 ----A---- C:\WINDOWS\system32\MRT.exe
2011-12-19 11:43:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-12-19 11:42:42 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2011-12-19 11:42:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-12-19 11:42:11 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-12-19 11:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-12-19 11:41:32 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-12-19 11:41:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2011-12-19 11:41:06 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-12-19 11:40:42 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-12-19 11:40:31 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-12-19 11:40:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2011-12-19 11:40:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-12-19 11:39:57 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2011-12-19 11:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2011-12-19 11:38:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-12-19 11:38:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-12-19 11:38:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-12-19 11:38:13 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-12-19 11:37:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2011-12-19 11:37:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-12-19 11:37:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2011-12-19 11:37:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2011-12-19 11:37:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-12-19 11:36:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2011-12-19 11:36:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-12-19 11:36:24 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-12-19 11:36:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-12-19 11:36:02 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-12-19 11:35:49 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-12-19 11:35:38 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-12-19 11:35:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-12-19 11:35:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2011-12-19 11:34:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2618444$
2011-12-19 11:34:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-12-19 11:33:39 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-12-19 11:33:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-12-19 11:32:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-12-19 11:23:54 ----SHDC---- C:\Config.Msi
2011-12-19 10:23:13 ----ASH---- C:\hiberfil.sys
2011-12-19 10:19:40 ----D---- C:\WINDOWS\system32\trayres
2011-12-19 10:19:35 ----D---- C:\WINDOWS\SiS
2011-12-19 10:19:35 ----D---- C:\Program Files\SiS VGA Utilities V3.71
2011-12-19 09:34:57 ----DC---- C:\a09ed8c46c7711fdcb
2011-12-19 09:34:35 ----D---- C:\bbbe2db35dddd3e1a51716aa
2011-12-18 23:49:09 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-12-18 23:48:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-12-18 23:48:35 ----DC---- C:\WINDOWS\$NtUninstallKB2544521$
2011-12-18 23:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-12-18 23:47:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-12-18 23:47:34 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-12-18 23:47:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2011-12-18 23:47:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-12-18 23:46:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2633171$
2011-12-18 23:46:20 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-12-18 23:45:59 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-12-18 23:45:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-12-18 23:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-12-18 23:38:27 ----D---- C:\Program Files\trend micro
2011-12-18 23:38:20 ----D---- C:\rsit
2011-12-18 23:16:26 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2011-12-18 22:51:19 ----D---- C:\WINDOWS\system32\PreInstall
2011-12-18 22:51:18 ----N---- C:\WINDOWS\system32\spmsg.dll
2011-12-18 22:51:18 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-12-18 22:51:16 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2011-12-18 22:51:16 ----HD---- C:\WINDOWS\$hf_mig$
2011-12-18 21:36:21 ----D---- C:\Program Files\sisagp
2011-12-18 21:36:17 ----N---- C:\WINDOWS\system32\TVMode.dll
2011-12-18 21:36:17 ----N---- C:\WINDOWS\system32\SiSHook.dll
2011-12-18 21:36:16 ----A---- C:\WINDOWS\system32\sistray.exe
2011-12-18 21:36:14 ----A---- C:\WINDOWS\VGAsetup.ini
2011-12-18 21:36:08 ----A---- C:\WINDOWS\system32\SiSPower.dll
2011-12-18 21:36:08 ----A---- C:\WINDOWS\system32\SiSBase.dll
2011-12-18 21:36:08 ----A---- C:\WINDOWS\InstFunc.exe
2011-12-18 21:36:08 ----A---- C:\WINDOWS\InstFunc.dll
2011-12-18 21:35:20 ----A---- C:\WINDOWS\system32\drivers\srvkp.sys
2011-12-18 21:35:17 ----A---- C:\WINDOWS\system32\SiSPInst.dll
2011-12-18 21:16:27 ----ASH---- C:\pagefile.sys
2011-12-18 20:56:06 ----D---- C:\WINDOWS\Prefetch
2011-12-18 20:27:27 ----A---- C:\WINDOWS\system32\irclass.dll
2011-12-18 20:27:26 ----A---- C:\WINDOWS\system32\spxcoins.dll
2011-12-18 20:26:59 ----RA---- C:\WINDOWS\SET33.tmp
2011-12-18 20:26:49 ----RA---- C:\WINDOWS\SET27.tmp
2011-12-18 20:26:45 ----RA---- C:\WINDOWS\SET24.tmp

======List of files/folders modified in the last 1 month======

2011-12-19 13:31:52 ----A---- C:\WINDOWS\KA.ini
2011-12-19 13:31:50 ----RD---- C:\Program Files
2011-12-19 13:15:14 ----D---- C:\Program Files\Mozilla Firefox
2011-12-19 13:14:46 ----D---- C:\Documents and Settings\peta\Data aplikací\Spy Emergency
2011-12-19 13:14:10 ----D---- C:\WINDOWS\Temp
2011-12-19 13:08:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-12-19 12:21:39 ----D---- C:\WINDOWS\system32
2011-12-19 12:17:24 ----D---- C:\WINDOWS
2011-12-19 12:16:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-12-19 12:16:45 ----D---- C:\WINDOWS\AppPatch
2011-12-19 12:16:44 ----D---- C:\WINDOWS\system32\wbem
2011-12-19 12:16:43 ----HD---- C:\WINDOWS\inf
2011-12-19 12:15:41 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-19 12:09:24 ----D---- C:\WINDOWS\system32\drivers
2011-12-19 12:09:10 ----A---- C:\WINDOWS\imsins.BAK
2011-12-19 12:08:28 ----D---- C:\Program Files\Messenger
2011-12-19 12:05:35 ----D---- C:\WINDOWS\WinSxS
2011-12-19 11:44:01 ----D---- C:\WINDOWS\Debug
2011-12-19 11:36:40 ----D---- C:\Program Files\Outlook Express
2011-12-19 11:35:52 ----D---- C:\Program Files\Movie Maker
2011-12-19 11:23:59 ----SHD---- C:\WINDOWS\Installer
2011-12-19 11:07:33 ----D---- C:\WINDOWS\system32\CatRoot
2011-12-19 10:22:23 ----D---- C:\WINDOWS\system32\config
2011-12-19 10:21:42 ----D---- C:\WINDOWS\Registration
2011-12-19 10:20:41 ----D---- C:\WINDOWS\system32\mui
2011-12-19 10:20:41 ----D---- C:\Program Files\Internet Explorer
2011-12-19 10:16:54 ----D---- C:\WINDOWS\system32\Restore
2011-12-19 09:48:20 ----RSD---- C:\WINDOWS\assembly
2011-12-19 09:45:04 ----HD---- C:\Program Files\InstallShield Installation Information
2011-12-18 22:46:33 ----D---- C:\WINDOWS\SoftwareDistribution
2011-12-18 22:46:30 ----D---- C:\WINDOWS\Help
2011-12-18 21:55:03 ----SD---- C:\WINDOWS\Tasks
2011-12-18 21:37:02 ----A---- C:\WINDOWS\system32\VGAunistlog.ini
2011-12-18 21:36:34 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-12-18 21:23:22 ----D---- C:\WINDOWS\system
2011-12-18 21:23:21 ----D---- C:\WINDOWS\system32\Setup
2011-12-18 21:22:58 ----D---- C:\WINDOWS\L2Schemas
2011-12-18 21:22:56 ----D---- C:\WINDOWS\system32\usmt
2011-12-18 21:22:41 ----D---- C:\WINDOWS\ehome
2011-12-18 21:22:40 ----D---- C:\WINDOWS\ime
2011-12-18 21:22:39 ----RSD---- C:\WINDOWS\Fonts
2011-12-18 21:22:38 ----D---- C:\WINDOWS\Media
2011-12-18 21:22:37 ----D---- C:\WINDOWS\Network Diagnostic
2011-12-18 21:22:33 ----D---- C:\WINDOWS\system32\cs-cz
2011-12-18 21:22:17 ----D---- C:\WINDOWS\PeerNet
2011-12-18 21:21:58 ----D---- C:\WINDOWS\system32\npp
2011-12-18 21:21:47 ----D---- C:\WINDOWS\msagent
2011-12-18 21:21:40 ----D---- C:\WINDOWS\system32\cs
2011-12-18 21:18:57 ----D---- C:\WINDOWS\system32\1029
2011-12-18 21:18:50 ----D---- C:\WINDOWS\twain_32
2011-12-18 21:18:29 ----D---- C:\WINDOWS\system32\icsxml
2011-12-18 21:17:42 ----D---- C:\WINDOWS\system32\1033
2011-12-18 21:16:27 ----D---- C:\WINDOWS\Driver Cache
2011-12-18 21:09:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-12-18 20:58:55 ----A---- C:\WINDOWS\setuplog.txt
2011-12-18 20:56:59 ----SHD---- C:\System Volume Information
2011-12-18 20:49:23 ----D---- C:\WINDOWS\security
2011-12-18 20:49:00 ----A---- C:\WINDOWS\OEWABLog.txt
2011-12-18 20:48:52 ----A---- C:\WINDOWS\ODBCINST.INI
2011-12-18 20:48:17 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2011-12-18 20:48:11 ----D---- C:\WINDOWS\system32\ias
2011-12-18 20:47:23 ----RD---- C:\WINDOWS\Web
2011-12-18 20:47:09 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2011-12-18 20:46:52 ----A---- C:\WINDOWS\win.ini
2011-12-18 20:46:42 ----D---- C:\WINDOWS\system32\oobe
2011-12-18 20:45:24 ----D---- C:\WINDOWS\system32\Com
2011-12-18 20:43:26 ----SHC---- C:\boot.ini
2011-12-18 20:27:38 ----A---- C:\WINDOWS\system.ini
2011-12-18 20:27:13 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2011-12-16 19:32:37 ----D---- C:\WINDOWS\Minidump

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 sisagp;SiS AGP Filter; C:\WINDOWS\system32\DRIVERS\SISAGPX.sys [2000-01-01 36992]
R0 SiSide;SiSide; C:\WINDOWS\system32\DRIVERS\siside.sys [2000-01-01 4096]
R0 sisidex;sisidex; C:\WINDOWS\system32\drivers\sisidex.sys [2000-01-01 49024]
R0 sisperf;Add Performance Filter Driver; C:\WINDOWS\system32\drivers\sisperf.sys [2000-01-01 9472]
R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2000-01-01 12032]
R1 SpyEmrg;Spy Emergency Driver; C:\WINDOWS\System32\Drivers\spyemrg.sys [2009-02-04 12344]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.10; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2011-09-14 15890]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2000-01-01 4122368]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 rtl8139;Realtek RTL8139/810X Family PCI Fast Ethernet NIC NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2000-01-01 25434]
R3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2000-01-01 239104]
R3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\WINDOWS\System32\Drivers\spyemrg_access.sys [2009-04-21 18232]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\WINDOWS\System32\Drivers\spyemrg_guard.sys [2009-02-04 14392]
S1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-14 46592]
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-10-24 117760]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt []
S3 i81x;i81x; C:\WINDOWS\system32\DRIVERS\i81xnt5.sys [2004-08-03 161020]
S3 iAimFP0;iAimFP0; C:\WINDOWS\system32\DRIVERS\wADV01nt.sys [2004-08-03 12415]
S3 iAimFP1;iAimFP1; C:\WINDOWS\system32\DRIVERS\wADV02NT.sys [2004-08-03 12127]
S3 iAimFP2;iAimFP2; C:\WINDOWS\system32\DRIVERS\wADV05NT.sys [2004-08-03 11775]
S3 iAimFP3;iAimFP3; C:\WINDOWS\system32\DRIVERS\wSiINTxx.sys [2004-08-03 12063]
S3 iAimFP4;iAimFP4; C:\WINDOWS\system32\DRIVERS\wVchNTxx.sys [2004-08-03 19455]
S3 iAimFP5;iAimFP5; C:\WINDOWS\system32\DRIVERS\wADV07nt.sys [2004-08-03 11807]
S3 iAimFP6;iAimFP6; C:\WINDOWS\system32\DRIVERS\wADV08nt.sys [2004-08-03 11295]
S3 iAimFP7;iAimFP7; C:\WINDOWS\system32\DRIVERS\wADV09nt.sys [2004-08-03 11871]
S3 iAimTV0;iAimTV0; C:\WINDOWS\system32\DRIVERS\wATV01nt.sys [2004-08-03 29311]
S3 iAimTV1;iAimTV1; C:\WINDOWS\system32\DRIVERS\wATV02NT.sys [2004-08-03 19551]
S3 iAimTV3;iAimTV3; C:\WINDOWS\system32\DRIVERS\wATV04nt.sys [2004-08-03 33599]
S3 iAimTV4;iAimTV4; C:\WINDOWS\system32\DRIVERS\wCh7xxNT.sys [2004-08-03 23615]
S3 iAimTV5;iAimTV5; C:\WINDOWS\system32\DRIVERS\wATV10nt.sys [2004-08-03 25471]
S3 iAimTV6;iAimTV6; C:\WINDOWS\system32\DRIVERS\wATV06nt.sys [2004-08-03 22271]
S3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 sermouse;Ovladač sériové myši; C:\WINDOWS\system32\DRIVERS\sermouse.sys [2001-10-25 17664]
S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\sisnic.sys [2008-04-13 32768]
S3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 LCS;3Com Configuration Service; C:\Program Files\3COM\3Com Wireless 108 Mbps 11g USB Utility \lcs.exe [2004-12-27 36864]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency 2009\SpyEmergencySrv.exe [2009-04-22 1788472]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]

-----------------EOF-----------------

Re: Prosím o konrolu log.

Napsal: 19 pro 2011 22:10
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\peta.exe spusťte HijackThis.Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
a klikněte na >Fix checked<. Restartujte PC . Jde pouze o zbytečnosti.