Nefunkční Windows SpaceCard, padající IE, VLC,...
Napsal: 26 led 2012 20:40
Zdravím,
včera při prohlížení gelerie na stránkách (autobusy.org), vyskočila hláška od Residentního štítu AVG, že zabránil napadení. Přesunul jsem tedy do virového trezoru, avšak od té doby se počítač chová nestandartně. Při jeho spuštění, mi vyskočí chybná hláška o nemožnosti spuštění, nefunkčnosti Windows CardSpace (Tak nějak se to jmenuje, ještě jsem se s tím nesetkal.) Nejdou mi přehrávat videa ve VLC (zapne se a samo spadne, bez jakékoliv hlášky), IE dělá totéž (zapne se a o pár chvil spadne, bez hlášky), Firefox je jakštakš stabilní, a odpoledne mi nešel ani Salamander, zkrátka se nezapnul. Zdá se mi také, že chvilkama vynechává klávesnice, při psaní textu ve Wordu, jsem si několikrát všiml, že mi nezapsal slovo, jako by se na chvilku zasekl. Nejdříve jsem to přikládal svojí nepozornosti, ale pak mi to přišlo přece jen divné, píšu často a nestává se mi to. Prosím o radu.
Tohle mi vypsal AVG:
Test "Test celého počítače" byl dokončen.
Informace;"5"
Složky vybrané k testování:;"Test celého počítače"
Test zahájen:;"26. ledna 2012, 13:58:14"
Test dokončen:;"26. ledna 2012, 16:00:18 (2 hodin(a) 2 minut(a) 4 sekund(a))"
Celkem otestováno objektů:;"639380"
Uživatel:;"Admin"
Informace
;"Soubor";"Informace";"Výsledek"
;"C:\WINDOWS\_I\SP.XPSP2.CZ\wmp11-windowsxp-x86-CS-CZ.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\SP.XPSP2.CZ\dotnetfx.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\PATCH\q828750.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\PATCH\q330994.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\ie5setup.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation (Europe).";""
A tady mám RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Admin at 2012-01-26 20:37:07
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 406 GB (43%) free of 954 GB
Total RAM: 3053 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:58:02, on 26.11.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\idt\intelxpv_v103\wdm\STacSV.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\VstaScan\VsAccess.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\_I\SALAM15\SALAMANDER.EXE
C:\Pernisovci\Martin\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/sm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [UIWatcher] C:\Pernisovci\Martin\Programy\Ashampoo UnInstaller 4\UIWatcher.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Umax VistaAccess.lnk = ?
O9 - Extra button: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 1793225500
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 3.13.0.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\intelxpv_v103\wdm\STacSV.exe
--
End of file - 6715 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default
prefs.js - "browser.startup.homepage" - "http://start.icq.com/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {800b5000-a755-47e1-992b-48a1c1357f07}:1.3.6, {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1416, {ec9032c7-c20a-464f-7b0e-13a3a9e97385}:1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.3.6&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}
{800b5000-a755-47e1-992b-48a1c1357f07}
{ec9032c7-c20a-464f-7b0e-13a3a9e97385}
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default\searchplugins\
conduit.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.gif
icqplugin.src
icqplugin.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [2011-09-09 2276704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-12-08 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-12-08 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-06-21 1018680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2009-03-12 483422]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-10-16 13851752]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe [2011-09-10 2338656]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2007-06-20 451872]
"ICQ"=C:\Program Files\ICQ7.7\ICQ.exe [2012-01-23 127040]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-01-26 3620352]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Umax VistaAccess.lnk - C:\VstaScan\VsAccess.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Pernisovci\Martin\Programy\uTorrent.exe"="C:\Pernisovci\Martin\Programy\uTorrent.exe:*:Enabled:µTorrent"
"C:\GAMES\Bohemia Interactive\arma2.exe"="C:\GAMES\Bohemia Interactive\arma2.exe:*:Enabled:ArmA 2"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\games\Sports Interactive\Football Manager 2010\fm.exe"="C:\games\Sports Interactive\Football Manager 2010\fm.exe:*:Enabled:Football Manager 2010"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\AVG\AVG10\avgdiagex.exe"="C:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostika 2011"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
======List of files/folders created in the last 1 month======
2012-01-26 20:37:07 ----D---- C:\rsit
2012-01-26 20:14:16 ----A---- C:\ComboFix.txt
2012-01-26 19:34:10 ----A---- C:\WINDOWS\zip.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWXCACLS.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWSC.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWREG.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\sed.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\PEV.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\NIRCMD.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\MBR.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\grep.exe
2012-01-26 19:28:51 ----D---- C:\Qoobox
2012-01-26 12:11:12 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2012-01-26 12:06:04 ----D---- C:\Program Files\DAEMON Tools Lite
2012-01-12 03:06:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 03:06:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 03:05:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 03:01:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 03:00:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2011-12-28 18:33:26 ----D---- C:\Program Files\ICQ7.7
======List of files/folders modified in the last 1 month======
2012-01-26 20:15:32 ----A---- C:\LM9831Log.txt
2012-01-26 20:14:31 ----D---- C:\WINDOWS\Temp
2012-01-26 20:13:37 ----SD---- C:\WINDOWS\Tasks
2012-01-26 20:12:15 ----D---- C:\WINDOWS
2012-01-26 20:12:15 ----A---- C:\WINDOWS\system.ini
2012-01-26 20:12:06 ----D---- C:\WINDOWS\ERDNT
2012-01-26 20:12:00 ----D---- C:\WINDOWS\system32\drivers\etc
2012-01-26 20:01:15 ----D---- C:\WINDOWS\system32\drivers
2012-01-26 20:01:15 ----D---- C:\WINDOWS\system32
2012-01-26 20:01:15 ----D---- C:\WINDOWS\AppPatch
2012-01-26 20:01:12 ----D---- C:\Program Files\Common Files
2012-01-26 19:56:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-01-26 19:52:05 ----D---- C:\WINDOWS\system32\CatRoot2
2012-01-26 19:49:53 ----A---- C:\WINDOWS\vista32.ini
2012-01-26 19:34:05 ----SHD---- C:\System Volume Information
2012-01-26 19:34:05 ----D---- C:\WINDOWS\system32\Restore
2012-01-26 19:22:30 ----D---- C:\WINDOWS\system32\drivers\AVG
2012-01-26 19:17:48 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2012-01-26 16:52:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-01-26 13:12:15 ----HD---- C:\WINDOWS\inf
2012-01-26 13:11:43 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-01-26 12:06:04 ----RD---- C:\Program Files
2012-01-26 11:00:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-26 09:06:01 ----D---- C:\Program Files\Common Files\LightScribe
2012-01-26 01:22:05 ----A---- C:\WINDOWS\explorer.exe
2012-01-26 00:39:44 ----D---- C:\Program Files\Mozilla Firefox
2012-01-25 23:17:20 ----D---- C:\WINDOWS\_I
2012-01-25 23:16:32 ----D---- C:\WINDOWS\system32\XPSViewer
2012-01-25 23:16:32 ----A---- C:\WINDOWS\UNRecode.exe
2012-01-25 23:16:32 ----A---- C:\WINDOWS\UNNeroBackItUp.exe
2012-01-25 23:16:26 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2012-01-25 23:16:26 ----A---- C:\WINDOWS\system32\WudfHost.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wsmprovhost.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wsmanhttpconfig.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wscript.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wscntfy.exe
2012-01-25 23:16:23 ----A---- C:\WINDOWS\system32\wpdshextautoplay.exe
2012-01-25 23:16:20 ----A---- C:\WINDOWS\system32\winrshost.exe
2012-01-25 23:16:20 ----A---- C:\WINDOWS\system32\winrs.exe
2012-01-25 23:16:19 ----A---- C:\WINDOWS\system32\winmsd.exe
2012-01-25 23:16:17 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-01-25 23:16:15 ----D---- C:\WINDOWS\system32\wbem
2012-01-25 23:16:12 ----A---- C:\WINDOWS\system32\winchat.exe
2012-01-25 23:16:10 ----A---- C:\WINDOWS\system32\wextract.exe
2012-01-25 23:16:10 ----A---- C:\WINDOWS\system32\wdfmgr.exe
2012-01-25 23:16:02 ----D---- C:\WINDOWS\system32\usmt
2012-01-25 23:16:02 ----A---- C:\WINDOWS\system32\w32tm.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\vssadmin.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\verifier.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\verclsid.exe
2012-01-25 23:15:59 ----D---- C:\WINDOWS\system32\URTTemp
2012-01-25 23:15:59 ----A---- C:\WINDOWS\system32\uwdf.exe
2012-01-25 23:15:59 ----A---- C:\WINDOWS\system32\usrshuta.exe
2012-01-25 23:15:58 ----A---- C:\WINDOWS\system32\usrprbda.exe
2012-01-25 23:15:58 ----A---- C:\WINDOWS\system32\usrmlnka.exe
2012-01-25 23:15:55 ----A---- C:\WINDOWS\system32\userinit.exe
2012-01-25 23:15:53 ----A---- C:\WINDOWS\system32\upnpcont.exe
2012-01-25 23:15:51 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2012-01-25 23:15:50 ----A---- C:\WINDOWS\system32\tracert6.exe
2012-01-25 23:15:50 ----A---- C:\WINDOWS\system32\tftp.exe
2012-01-25 23:15:49 ----A---- C:\WINDOWS\system32\telnet.exe
2012-01-25 23:15:49 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2012-01-25 23:15:48 ----A---- C:\WINDOWS\system32\taskmgr.exe
2012-01-25 23:15:47 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2012-01-25 23:15:47 ----A---- C:\WINDOWS\system32\syskey.exe
2012-01-25 23:15:46 ----A---- C:\WINDOWS\system32\syncapp.exe
2012-01-25 23:15:45 ----A---- C:\WINDOWS\system32\stacsv.exe
2012-01-25 23:15:36 ----A---- C:\WINDOWS\system32\sort.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\slserv.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\slrundll.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\sigverif.exe
2012-01-25 23:15:27 ----A---- C:\WINDOWS\system32\shrpubw.exe
2012-01-25 23:15:25 ----A---- C:\WINDOWS\system32\setupn.exe
2012-01-25 23:15:24 ----A---- C:\WINDOWS\system32\sethc.exe
2012-01-25 23:15:22 ----A---- C:\WINDOWS\system32\sdbinst.exe
2012-01-25 23:15:20 ----A---- C:\WINDOWS\system32\runonce.exe
2012-01-25 23:15:19 ----A---- C:\WINDOWS\system32\rtcshare.exe
2012-01-25 23:15:17 ----A---- C:\WINDOWS\system32\rsmui.exe
2012-01-25 23:15:17 ----A---- C:\WINDOWS\system32\rsmsink.exe
2012-01-25 23:15:16 ----A---- C:\WINDOWS\system32\rsh.exe
2012-01-25 23:15:16 ----A---- C:\WINDOWS\system32\routemon.exe
2012-01-25 23:15:15 ----A---- C:\WINDOWS\system32\rexec.exe
2012-01-25 23:14:55 ----A---- C:\WINDOWS\system32\regsvr32.exe
2012-01-25 23:14:54 ----A---- C:\WINDOWS\system32\regini.exe
2012-01-25 23:14:53 ----A---- C:\WINDOWS\system32\rdshost.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rdpclip.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rcp.exe
2012-01-25 23:14:51 ----A---- C:\WINDOWS\system32\rasphone.exe
2012-01-25 23:14:50 ----A---- C:\WINDOWS\system32\rasautou.exe
2012-01-25 23:14:48 ----A---- C:\WINDOWS\system32\proquota.exe
2012-01-25 23:14:47 ----A---- C:\WINDOWS\system32\PresentationHost.exe
2012-01-25 23:14:46 ----D---- C:\WINDOWS\system32\oobe
2012-01-25 23:14:46 ----A---- C:\WINDOWS\system32\powercfg.exe
2012-01-25 23:14:46 ----A---- C:\WINDOWS\system32\pintool.exe
2012-01-25 23:14:45 ----A---- C:\WINDOWS\system32\ping6.exe
2012-01-25 23:14:36 ----D---- C:\WINDOWS\system32\npp
2012-01-25 23:14:36 ----A---- C:\WINDOWS\system32\odbcconf.exe
2012-01-25 23:14:34 ----A---- C:\WINDOWS\system32\nvcolor.exe
2012-01-25 23:14:33 ----A---- C:\WINDOWS\system32\ntvdm.exe
2012-01-25 23:14:33 ----A---- C:\WINDOWS\system32\ntsd.exe
2012-01-25 23:14:32 ----A---- C:\WINDOWS\system32\nslookup.exe
2012-01-25 23:14:31 ----A---- C:\WINDOWS\system32\netstat.exe
2012-01-25 23:14:30 ----A---- C:\WINDOWS\system32\netsetup.exe
2012-01-25 23:14:29 ----A---- C:\WINDOWS\system32\net1.exe
2012-01-25 23:14:29 ----A---- C:\WINDOWS\system32\net.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\nbtstat.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\narrator.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\napstat.exe
2012-01-25 23:14:09 ----A---- C:\WINDOWS\system32\mshta.exe
2012-01-25 23:14:07 ----A---- C:\WINDOWS\system32\msg.exe
2012-01-25 23:14:05 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-25 23:14:03 ----A---- C:\WINDOWS\system32\mpnotify.exe
2012-01-25 23:14:03 ----A---- C:\WINDOWS\system32\mplay32.exe
2012-01-25 23:14:01 ----A---- C:\WINDOWS\system32\mmcperf.exe
2012-01-25 23:14:01 ----A---- C:\WINDOWS\system32\migpwd.exe
2012-01-25 23:13:56 ----A---- C:\WINDOWS\system32\logonui.exe
2012-01-25 23:13:55 ----A---- C:\WINDOWS\system32\logman.exe
2012-01-25 23:13:55 ----A---- C:\WINDOWS\system32\logagent.exe
2012-01-25 23:13:54 ----A---- C:\WINDOWS\system32\lnkstub.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\javaws.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\javaw.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\java.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipxroute.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipv6.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipsec6.exe
2012-01-25 23:13:50 ----A---- C:\WINDOWS\system32\ipconfig.exe
2012-01-25 23:13:47 ----A---- C:\WINDOWS\system32\iexpress.exe
2012-01-25 23:13:47 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-01-25 23:13:46 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2012-01-25 23:13:46 ----A---- C:\WINDOWS\system32\icardagt.exe
2012-01-25 23:13:45 ----A---- C:\WINDOWS\system32\hostname.exe
2012-01-25 23:13:44 ----A---- C:\WINDOWS\system32\heciudlg.exe
2012-01-25 23:13:44 ----A---- C:\WINDOWS\system32\grpconv.exe
2012-01-25 23:13:43 ----A---- C:\WINDOWS\system32\ftp.exe
2012-01-25 23:13:42 ----A---- C:\WINDOWS\system32\fsutil.exe
2012-01-25 23:13:42 ----A---- C:\WINDOWS\system32\fsquirt.exe
2012-01-25 23:13:40 ----A---- C:\WINDOWS\system32\fltmc.exe
2012-01-25 23:13:39 ----A---- C:\WINDOWS\system32\finger.exe
2012-01-25 23:13:38 ----A---- C:\WINDOWS\system32\faxpatch.exe
2012-01-25 23:13:37 ----A---- C:\WINDOWS\system32\expand.exe
2012-01-25 23:13:36 ----A---- C:\WINDOWS\system32\eudcedit.exe
2012-01-25 23:13:35 ----A---- C:\WINDOWS\system32\esentutl.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dxdiag.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dwwin.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2012-01-25 23:13:33 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2012-01-25 23:13:30 ----A---- C:\WINDOWS\system32\drmupgds.exe
2012-01-25 23:13:28 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2012-01-25 23:13:27 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2012-01-25 23:13:27 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2012-01-25 23:12:19 ----A---- C:\WINDOWS\system32\diskpart.exe
2012-01-25 23:12:18 ----A---- C:\WINDOWS\system32\diantz.exe
2012-01-25 23:12:18 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2012-01-25 23:12:17 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2012-01-25 23:12:17 ----A---- C:\WINDOWS\system32\defrag.exe
2012-01-25 23:12:15 ----A---- C:\WINDOWS\system32\cscript.exe
2012-01-25 23:12:03 ----D---- C:\WINDOWS\system32\Com
2012-01-25 23:11:58 ----A---- C:\WINDOWS\system32\compact.exe
2012-01-25 23:11:57 ----A---- C:\WINDOWS\system32\cmstp.exe
2012-01-25 23:11:56 ----A---- C:\WINDOWS\system32\cmmon32.exe
2012-01-25 23:11:56 ----A---- C:\WINDOWS\system32\cmdl32.exe
2012-01-25 23:11:55 ----A---- C:\WINDOWS\system32\clipbrd.exe
2012-01-25 23:11:51 ----A---- C:\WINDOWS\system32\cidaemon.exe
2012-01-25 23:11:44 ----A---- C:\WINDOWS\system32\browserchoice.exe
2012-01-25 23:11:43 ----A---- C:\WINDOWS\system32\blastcln.exe
2012-01-25 23:11:40 ----A---- C:\WINDOWS\system32\at.exe
2012-01-25 23:11:40 ----A---- C:\WINDOWS\system32\arp.exe
2012-01-25 23:11:39 ----A---- C:\WINDOWS\system32\ahui.exe
2012-01-25 23:11:32 ----A---- C:\WINDOWS\sttray.exe
2012-01-25 23:11:22 ----A---- C:\WINDOWS\slrundll.exe
2012-01-25 23:09:51 ----N---- C:\WINDOWS\regedit.exe
2012-01-25 23:09:21 ----D---- C:\WINDOWS\network diagnostic
2012-01-25 23:09:19 ----D---- C:\WINDOWS\msagent
2012-01-25 23:09:19 ----D---- C:\WINDOWS\Microsoft.NET
2012-01-25 23:05:36 ----HDC---- C:\WINDOWS\ie8
2012-01-25 22:59:55 ----HDC---- C:\WINDOWS\$NtUninstallKB942288-v3$
2012-01-25 22:59:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-01-25 22:58:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-01-25 22:56:50 ----D---- C:\VstaScan
2012-01-25 22:56:44 ----D---- C:\Program Files\Windows NT
2012-01-25 22:56:42 ----D---- C:\Program Files\Windows Media Player
2012-01-25 22:56:36 ----D---- C:\Program Files\Windows Media Connect 2
2012-01-25 22:55:39 ----D---- C:\Program Files\SystemRequirementsLab
2012-01-25 22:55:35 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-01-25 22:55:11 ----D---- C:\Program Files\Outlook Express
2012-01-25 22:52:33 ----D---- C:\Program Files\NetMeeting
2012-01-25 22:51:39 ----D---- C:\Program Files\Microsoft Silverlight
2012-01-25 22:50:51 ----D---- C:\Program Files\Internet Explorer
2012-01-25 22:48:09 ----D---- C:\Program Files\ICQ6Toolbar
2012-01-25 22:17:20 ----D---- C:\Program Files\Movie Maker
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\sndvol32.exe
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\sndrec32.exe
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\accwiz.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\mstsc.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\mspaint.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\charmap.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\calc.exe
2012-01-25 22:17:14 ----A---- C:\WINDOWS\system32\odbcad32.exe
2012-01-25 22:17:06 ----D---- C:\WINDOWS\Corel
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\winmine.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\spider.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\sol.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\mshearts.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\freecell.exe
2012-01-25 19:00:02 ----A---- C:\WINDOWS\system32\alg.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\utilman.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\osk.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\mobsync.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\magnify.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\cmd.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\vssvc.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\sessmgr.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\scardsvr.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\rsvp.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\locator.exe
2012-01-25 18:15:41 ----A---- C:\WINDOWS\system32\netdde.exe
2012-01-25 18:15:39 ----A---- C:\WINDOWS\system32\msiexec.exe
2012-01-25 18:15:39 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2012-01-25 18:15:30 ----A---- C:\WINDOWS\system32\imapi.exe
2012-01-25 18:15:24 ----A---- C:\WINDOWS\system32\dmadmin.exe
2012-01-25 18:15:13 ----A---- C:\WINDOWS\system32\clipsrv.exe
2012-01-25 18:15:11 ----A---- C:\WINDOWS\system32\cisvc.exe
2012-01-25 14:07:59 ----D---- C:\Documents and Settings\Admin\Data aplikací\ICQ
2012-01-25 13:56:38 ----D---- C:\Documents and Settings\Admin\Data aplikací\vlc
2012-01-25 10:09:23 ----D---- C:\WINDOWS\Prefetch
2012-01-24 13:17:48 ----A---- C:\WINDOWS\NeroDigital.ini
2012-01-22 15:34:24 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2012-01-18 20:42:15 ----SHD---- C:\WINDOWS\Installer
2012-01-12 03:08:01 ----RSD---- C:\WINDOWS\assembly
2012-01-12 03:06:36 ----A---- C:\WINDOWS\imsins.BAK
2012-01-12 03:04:59 ----D---- C:\Config.Msi
2012-01-12 03:03:47 ----D---- C:\WINDOWS\WinSxS
2012-01-12 03:01:52 ----HD---- C:\WINDOWS\$hf_mig$
2012-01-07 14:05:45 ----A---- C:\WINDOWS\win.ini
2011-12-28 18:33:49 ----HD---- C:\Program Files\InstallShield Installation Information
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-04 297168]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2012-01-26 242240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-05-27 134480]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
R3 catchme;catchme; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\catchme.sys []
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2009-08-28 241168]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HECI;Intel(R) Management Engine Interface; C:\WINDOWS\system32\DRIVERS\HECI.sys [2007-07-09 44416]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-10-16 9623680]
R3 STHDA;IDT High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2009-03-12 1550613]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys []
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe [2012-01-26 408576]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-06-21 246584]
R2 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2012-01-25 413696]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-10-16 156776]
R2 STacSV;Audio Service; c:\program files\idt\intelxpv_v103\wdm\STacSV.exe [2009-03-12 254036]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2012-01-25 7532544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-01-25 271872]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 278016]
S2 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2012-01-25 1019904]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-01-26 294912]
S2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2012-01-26 221184]
S2 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2012-01-25 933888]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2012-01-25 172544]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2012-01-25 207872]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 278016]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2012-01-25 1061376]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2012-01-25 894976]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
včera při prohlížení gelerie na stránkách (autobusy.org), vyskočila hláška od Residentního štítu AVG, že zabránil napadení. Přesunul jsem tedy do virového trezoru, avšak od té doby se počítač chová nestandartně. Při jeho spuštění, mi vyskočí chybná hláška o nemožnosti spuštění, nefunkčnosti Windows CardSpace (Tak nějak se to jmenuje, ještě jsem se s tím nesetkal.) Nejdou mi přehrávat videa ve VLC (zapne se a samo spadne, bez jakékoliv hlášky), IE dělá totéž (zapne se a o pár chvil spadne, bez hlášky), Firefox je jakštakš stabilní, a odpoledne mi nešel ani Salamander, zkrátka se nezapnul. Zdá se mi také, že chvilkama vynechává klávesnice, při psaní textu ve Wordu, jsem si několikrát všiml, že mi nezapsal slovo, jako by se na chvilku zasekl. Nejdříve jsem to přikládal svojí nepozornosti, ale pak mi to přišlo přece jen divné, píšu často a nestává se mi to. Prosím o radu.
Tohle mi vypsal AVG:
Test "Test celého počítače" byl dokončen.
Informace;"5"
Složky vybrané k testování:;"Test celého počítače"
Test zahájen:;"26. ledna 2012, 13:58:14"
Test dokončen:;"26. ledna 2012, 16:00:18 (2 hodin(a) 2 minut(a) 4 sekund(a))"
Celkem otestováno objektů:;"639380"
Uživatel:;"Admin"
Informace
;"Soubor";"Informace";"Výsledek"
;"C:\WINDOWS\_I\SP.XPSP2.CZ\wmp11-windowsxp-x86-CS-CZ.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\SP.XPSP2.CZ\dotnetfx.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\PATCH\q828750.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\PATCH\q330994.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation.";""
;"C:\WINDOWS\_I\OFFICE2000\IE55SP2.CZ\ie5setup.exe";"Soubor má poškozený digitální podpis, který vydal(a): Microsoft Corporation (Europe).";""
A tady mám RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Admin at 2012-01-26 20:37:07
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 406 GB (43%) free of 954 GB
Total RAM: 3053 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:58:02, on 26.11.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\idt\intelxpv_v103\wdm\STacSV.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\VstaScan\VsAccess.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\_I\SALAM15\SALAMANDER.EXE
C:\Pernisovci\Martin\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/sm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [UIWatcher] C:\Pernisovci\Martin\Programy\Ashampoo UnInstaller 4\UIWatcher.exe
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Umax VistaAccess.lnk = ?
O9 - Extra button: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.6 - {7644E42D-B096-457F-8B5B-901238FC81AE} - C:\Program Files\ICQ7.6\ICQ.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 1793225500
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 3.13.0.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\program files\idt\intelxpv_v103\wdm\STacSV.exe
--
End of file - 6715 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default
prefs.js - "browser.startup.homepage" - "http://start.icq.com/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {800b5000-a755-47e1-992b-48a1c1357f07}:1.3.6, {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1416, {ec9032c7-c20a-464f-7b0e-13a3a9e97385}:1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.25"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.3.6&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\
"avg@igeared"=C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}
{800b5000-a755-47e1-992b-48a1c1357f07}
{ec9032c7-c20a-464f-7b0e-13a3a9e97385}
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\bziknjzj.default\searchplugins\
conduit.xml
icqplugin-1.xml
icqplugin-10.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin-4.xml
icqplugin-5.xml
icqplugin-6.xml
icqplugin-7.xml
icqplugin-8.xml
icqplugin-9.xml
icqplugin.gif
icqplugin.src
icqplugin.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [2011-09-09 2276704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PERNIS~1\Martin\MALWAR~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-12-08 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-12-08 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-06-21 1018680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2009-03-12 483422]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-10-16 13851752]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe [2011-09-10 2338656]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2007-06-20 451872]
"ICQ"=C:\Program Files\ICQ7.7\ICQ.exe [2012-01-23 127040]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-01-26 3620352]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Umax VistaAccess.lnk - C:\VstaScan\VsAccess.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Pernisovci\Martin\Programy\uTorrent.exe"="C:\Pernisovci\Martin\Programy\uTorrent.exe:*:Enabled:µTorrent"
"C:\GAMES\Bohemia Interactive\arma2.exe"="C:\GAMES\Bohemia Interactive\arma2.exe:*:Enabled:ArmA 2"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\games\Sports Interactive\Football Manager 2010\fm.exe"="C:\games\Sports Interactive\Football Manager 2010\fm.exe:*:Enabled:Football Manager 2010"
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe"="C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth"
"C:\Program Files\AVG\AVG10\avgdiagex.exe"="C:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostika 2011"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ7.7"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
======List of files/folders created in the last 1 month======
2012-01-26 20:37:07 ----D---- C:\rsit
2012-01-26 20:14:16 ----A---- C:\ComboFix.txt
2012-01-26 19:34:10 ----A---- C:\WINDOWS\zip.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWXCACLS.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWSC.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\SWREG.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\sed.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\PEV.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\NIRCMD.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\MBR.exe
2012-01-26 19:34:10 ----A---- C:\WINDOWS\grep.exe
2012-01-26 19:28:51 ----D---- C:\Qoobox
2012-01-26 12:11:12 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2012-01-26 12:06:04 ----D---- C:\Program Files\DAEMON Tools Lite
2012-01-12 03:06:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 03:06:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 03:05:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 03:01:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 03:00:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2011-12-28 18:33:26 ----D---- C:\Program Files\ICQ7.7
======List of files/folders modified in the last 1 month======
2012-01-26 20:15:32 ----A---- C:\LM9831Log.txt
2012-01-26 20:14:31 ----D---- C:\WINDOWS\Temp
2012-01-26 20:13:37 ----SD---- C:\WINDOWS\Tasks
2012-01-26 20:12:15 ----D---- C:\WINDOWS
2012-01-26 20:12:15 ----A---- C:\WINDOWS\system.ini
2012-01-26 20:12:06 ----D---- C:\WINDOWS\ERDNT
2012-01-26 20:12:00 ----D---- C:\WINDOWS\system32\drivers\etc
2012-01-26 20:01:15 ----D---- C:\WINDOWS\system32\drivers
2012-01-26 20:01:15 ----D---- C:\WINDOWS\system32
2012-01-26 20:01:15 ----D---- C:\WINDOWS\AppPatch
2012-01-26 20:01:12 ----D---- C:\Program Files\Common Files
2012-01-26 19:56:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-01-26 19:52:05 ----D---- C:\WINDOWS\system32\CatRoot2
2012-01-26 19:49:53 ----A---- C:\WINDOWS\vista32.ini
2012-01-26 19:34:05 ----SHD---- C:\System Volume Information
2012-01-26 19:34:05 ----D---- C:\WINDOWS\system32\Restore
2012-01-26 19:22:30 ----D---- C:\WINDOWS\system32\drivers\AVG
2012-01-26 19:17:48 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2012-01-26 16:52:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-01-26 13:12:15 ----HD---- C:\WINDOWS\inf
2012-01-26 13:11:43 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-01-26 12:06:04 ----RD---- C:\Program Files
2012-01-26 11:00:45 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-26 09:06:01 ----D---- C:\Program Files\Common Files\LightScribe
2012-01-26 01:22:05 ----A---- C:\WINDOWS\explorer.exe
2012-01-26 00:39:44 ----D---- C:\Program Files\Mozilla Firefox
2012-01-25 23:17:20 ----D---- C:\WINDOWS\_I
2012-01-25 23:16:32 ----D---- C:\WINDOWS\system32\XPSViewer
2012-01-25 23:16:32 ----A---- C:\WINDOWS\UNRecode.exe
2012-01-25 23:16:32 ----A---- C:\WINDOWS\UNNeroBackItUp.exe
2012-01-25 23:16:26 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2012-01-25 23:16:26 ----A---- C:\WINDOWS\system32\WudfHost.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-01-25 23:16:25 ----A---- C:\WINDOWS\system32\wsmprovhost.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wsmanhttpconfig.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wscript.exe
2012-01-25 23:16:24 ----A---- C:\WINDOWS\system32\wscntfy.exe
2012-01-25 23:16:23 ----A---- C:\WINDOWS\system32\wpdshextautoplay.exe
2012-01-25 23:16:20 ----A---- C:\WINDOWS\system32\winrshost.exe
2012-01-25 23:16:20 ----A---- C:\WINDOWS\system32\winrs.exe
2012-01-25 23:16:19 ----A---- C:\WINDOWS\system32\winmsd.exe
2012-01-25 23:16:17 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
2012-01-25 23:16:15 ----D---- C:\WINDOWS\system32\wbem
2012-01-25 23:16:12 ----A---- C:\WINDOWS\system32\winchat.exe
2012-01-25 23:16:10 ----A---- C:\WINDOWS\system32\wextract.exe
2012-01-25 23:16:10 ----A---- C:\WINDOWS\system32\wdfmgr.exe
2012-01-25 23:16:02 ----D---- C:\WINDOWS\system32\usmt
2012-01-25 23:16:02 ----A---- C:\WINDOWS\system32\w32tm.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\vssadmin.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\verifier.exe
2012-01-25 23:16:00 ----A---- C:\WINDOWS\system32\verclsid.exe
2012-01-25 23:15:59 ----D---- C:\WINDOWS\system32\URTTemp
2012-01-25 23:15:59 ----A---- C:\WINDOWS\system32\uwdf.exe
2012-01-25 23:15:59 ----A---- C:\WINDOWS\system32\usrshuta.exe
2012-01-25 23:15:58 ----A---- C:\WINDOWS\system32\usrprbda.exe
2012-01-25 23:15:58 ----A---- C:\WINDOWS\system32\usrmlnka.exe
2012-01-25 23:15:55 ----A---- C:\WINDOWS\system32\userinit.exe
2012-01-25 23:15:53 ----A---- C:\WINDOWS\system32\upnpcont.exe
2012-01-25 23:15:51 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2012-01-25 23:15:50 ----A---- C:\WINDOWS\system32\tracert6.exe
2012-01-25 23:15:50 ----A---- C:\WINDOWS\system32\tftp.exe
2012-01-25 23:15:49 ----A---- C:\WINDOWS\system32\telnet.exe
2012-01-25 23:15:49 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2012-01-25 23:15:48 ----A---- C:\WINDOWS\system32\taskmgr.exe
2012-01-25 23:15:47 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2012-01-25 23:15:47 ----A---- C:\WINDOWS\system32\syskey.exe
2012-01-25 23:15:46 ----A---- C:\WINDOWS\system32\syncapp.exe
2012-01-25 23:15:45 ----A---- C:\WINDOWS\system32\stacsv.exe
2012-01-25 23:15:36 ----A---- C:\WINDOWS\system32\sort.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\slserv.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\slrundll.exe
2012-01-25 23:15:28 ----A---- C:\WINDOWS\system32\sigverif.exe
2012-01-25 23:15:27 ----A---- C:\WINDOWS\system32\shrpubw.exe
2012-01-25 23:15:25 ----A---- C:\WINDOWS\system32\setupn.exe
2012-01-25 23:15:24 ----A---- C:\WINDOWS\system32\sethc.exe
2012-01-25 23:15:22 ----A---- C:\WINDOWS\system32\sdbinst.exe
2012-01-25 23:15:20 ----A---- C:\WINDOWS\system32\runonce.exe
2012-01-25 23:15:19 ----A---- C:\WINDOWS\system32\rtcshare.exe
2012-01-25 23:15:17 ----A---- C:\WINDOWS\system32\rsmui.exe
2012-01-25 23:15:17 ----A---- C:\WINDOWS\system32\rsmsink.exe
2012-01-25 23:15:16 ----A---- C:\WINDOWS\system32\rsh.exe
2012-01-25 23:15:16 ----A---- C:\WINDOWS\system32\routemon.exe
2012-01-25 23:15:15 ----A---- C:\WINDOWS\system32\rexec.exe
2012-01-25 23:14:55 ----A---- C:\WINDOWS\system32\regsvr32.exe
2012-01-25 23:14:54 ----A---- C:\WINDOWS\system32\regini.exe
2012-01-25 23:14:53 ----A---- C:\WINDOWS\system32\rdshost.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rdpclip.exe
2012-01-25 23:14:52 ----A---- C:\WINDOWS\system32\rcp.exe
2012-01-25 23:14:51 ----A---- C:\WINDOWS\system32\rasphone.exe
2012-01-25 23:14:50 ----A---- C:\WINDOWS\system32\rasautou.exe
2012-01-25 23:14:48 ----A---- C:\WINDOWS\system32\proquota.exe
2012-01-25 23:14:47 ----A---- C:\WINDOWS\system32\PresentationHost.exe
2012-01-25 23:14:46 ----D---- C:\WINDOWS\system32\oobe
2012-01-25 23:14:46 ----A---- C:\WINDOWS\system32\powercfg.exe
2012-01-25 23:14:46 ----A---- C:\WINDOWS\system32\pintool.exe
2012-01-25 23:14:45 ----A---- C:\WINDOWS\system32\ping6.exe
2012-01-25 23:14:36 ----D---- C:\WINDOWS\system32\npp
2012-01-25 23:14:36 ----A---- C:\WINDOWS\system32\odbcconf.exe
2012-01-25 23:14:34 ----A---- C:\WINDOWS\system32\nvcolor.exe
2012-01-25 23:14:33 ----A---- C:\WINDOWS\system32\ntvdm.exe
2012-01-25 23:14:33 ----A---- C:\WINDOWS\system32\ntsd.exe
2012-01-25 23:14:32 ----A---- C:\WINDOWS\system32\nslookup.exe
2012-01-25 23:14:31 ----A---- C:\WINDOWS\system32\netstat.exe
2012-01-25 23:14:30 ----A---- C:\WINDOWS\system32\netsetup.exe
2012-01-25 23:14:29 ----A---- C:\WINDOWS\system32\net1.exe
2012-01-25 23:14:29 ----A---- C:\WINDOWS\system32\net.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\nbtstat.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\narrator.exe
2012-01-25 23:14:28 ----A---- C:\WINDOWS\system32\napstat.exe
2012-01-25 23:14:09 ----A---- C:\WINDOWS\system32\mshta.exe
2012-01-25 23:14:07 ----A---- C:\WINDOWS\system32\msg.exe
2012-01-25 23:14:05 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-25 23:14:03 ----A---- C:\WINDOWS\system32\mpnotify.exe
2012-01-25 23:14:03 ----A---- C:\WINDOWS\system32\mplay32.exe
2012-01-25 23:14:01 ----A---- C:\WINDOWS\system32\mmcperf.exe
2012-01-25 23:14:01 ----A---- C:\WINDOWS\system32\migpwd.exe
2012-01-25 23:13:56 ----A---- C:\WINDOWS\system32\logonui.exe
2012-01-25 23:13:55 ----A---- C:\WINDOWS\system32\logman.exe
2012-01-25 23:13:55 ----A---- C:\WINDOWS\system32\logagent.exe
2012-01-25 23:13:54 ----A---- C:\WINDOWS\system32\lnkstub.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\javaws.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\javaw.exe
2012-01-25 23:13:52 ----A---- C:\WINDOWS\system32\java.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipxroute.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipv6.exe
2012-01-25 23:13:51 ----A---- C:\WINDOWS\system32\ipsec6.exe
2012-01-25 23:13:50 ----A---- C:\WINDOWS\system32\ipconfig.exe
2012-01-25 23:13:47 ----A---- C:\WINDOWS\system32\iexpress.exe
2012-01-25 23:13:47 ----A---- C:\WINDOWS\system32\ieudinit.exe
2012-01-25 23:13:46 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2012-01-25 23:13:46 ----A---- C:\WINDOWS\system32\icardagt.exe
2012-01-25 23:13:45 ----A---- C:\WINDOWS\system32\hostname.exe
2012-01-25 23:13:44 ----A---- C:\WINDOWS\system32\heciudlg.exe
2012-01-25 23:13:44 ----A---- C:\WINDOWS\system32\grpconv.exe
2012-01-25 23:13:43 ----A---- C:\WINDOWS\system32\ftp.exe
2012-01-25 23:13:42 ----A---- C:\WINDOWS\system32\fsutil.exe
2012-01-25 23:13:42 ----A---- C:\WINDOWS\system32\fsquirt.exe
2012-01-25 23:13:40 ----A---- C:\WINDOWS\system32\fltmc.exe
2012-01-25 23:13:39 ----A---- C:\WINDOWS\system32\finger.exe
2012-01-25 23:13:38 ----A---- C:\WINDOWS\system32\faxpatch.exe
2012-01-25 23:13:37 ----A---- C:\WINDOWS\system32\expand.exe
2012-01-25 23:13:36 ----A---- C:\WINDOWS\system32\eudcedit.exe
2012-01-25 23:13:35 ----A---- C:\WINDOWS\system32\esentutl.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dxdiag.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dwwin.exe
2012-01-25 23:13:34 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2012-01-25 23:13:33 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2012-01-25 23:13:30 ----A---- C:\WINDOWS\system32\drmupgds.exe
2012-01-25 23:13:28 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2012-01-25 23:13:27 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2012-01-25 23:13:27 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2012-01-25 23:12:19 ----A---- C:\WINDOWS\system32\diskpart.exe
2012-01-25 23:12:18 ----A---- C:\WINDOWS\system32\diantz.exe
2012-01-25 23:12:18 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2012-01-25 23:12:17 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2012-01-25 23:12:17 ----A---- C:\WINDOWS\system32\defrag.exe
2012-01-25 23:12:15 ----A---- C:\WINDOWS\system32\cscript.exe
2012-01-25 23:12:03 ----D---- C:\WINDOWS\system32\Com
2012-01-25 23:11:58 ----A---- C:\WINDOWS\system32\compact.exe
2012-01-25 23:11:57 ----A---- C:\WINDOWS\system32\cmstp.exe
2012-01-25 23:11:56 ----A---- C:\WINDOWS\system32\cmmon32.exe
2012-01-25 23:11:56 ----A---- C:\WINDOWS\system32\cmdl32.exe
2012-01-25 23:11:55 ----A---- C:\WINDOWS\system32\clipbrd.exe
2012-01-25 23:11:51 ----A---- C:\WINDOWS\system32\cidaemon.exe
2012-01-25 23:11:44 ----A---- C:\WINDOWS\system32\browserchoice.exe
2012-01-25 23:11:43 ----A---- C:\WINDOWS\system32\blastcln.exe
2012-01-25 23:11:40 ----A---- C:\WINDOWS\system32\at.exe
2012-01-25 23:11:40 ----A---- C:\WINDOWS\system32\arp.exe
2012-01-25 23:11:39 ----A---- C:\WINDOWS\system32\ahui.exe
2012-01-25 23:11:32 ----A---- C:\WINDOWS\sttray.exe
2012-01-25 23:11:22 ----A---- C:\WINDOWS\slrundll.exe
2012-01-25 23:09:51 ----N---- C:\WINDOWS\regedit.exe
2012-01-25 23:09:21 ----D---- C:\WINDOWS\network diagnostic
2012-01-25 23:09:19 ----D---- C:\WINDOWS\msagent
2012-01-25 23:09:19 ----D---- C:\WINDOWS\Microsoft.NET
2012-01-25 23:05:36 ----HDC---- C:\WINDOWS\ie8
2012-01-25 22:59:55 ----HDC---- C:\WINDOWS\$NtUninstallKB942288-v3$
2012-01-25 22:59:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-01-25 22:58:58 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-01-25 22:56:50 ----D---- C:\VstaScan
2012-01-25 22:56:44 ----D---- C:\Program Files\Windows NT
2012-01-25 22:56:42 ----D---- C:\Program Files\Windows Media Player
2012-01-25 22:56:36 ----D---- C:\Program Files\Windows Media Connect 2
2012-01-25 22:55:39 ----D---- C:\Program Files\SystemRequirementsLab
2012-01-25 22:55:35 ----D---- C:\Program Files\Spybot - Search & Destroy
2012-01-25 22:55:11 ----D---- C:\Program Files\Outlook Express
2012-01-25 22:52:33 ----D---- C:\Program Files\NetMeeting
2012-01-25 22:51:39 ----D---- C:\Program Files\Microsoft Silverlight
2012-01-25 22:50:51 ----D---- C:\Program Files\Internet Explorer
2012-01-25 22:48:09 ----D---- C:\Program Files\ICQ6Toolbar
2012-01-25 22:17:20 ----D---- C:\Program Files\Movie Maker
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\sndvol32.exe
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\sndrec32.exe
2012-01-25 22:17:17 ----A---- C:\WINDOWS\system32\accwiz.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\mstsc.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\mspaint.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\charmap.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2012-01-25 22:17:16 ----A---- C:\WINDOWS\system32\calc.exe
2012-01-25 22:17:14 ----A---- C:\WINDOWS\system32\odbcad32.exe
2012-01-25 22:17:06 ----D---- C:\WINDOWS\Corel
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\winmine.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\spider.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\sol.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\mshearts.exe
2012-01-25 22:17:06 ----A---- C:\WINDOWS\system32\freecell.exe
2012-01-25 19:00:02 ----A---- C:\WINDOWS\system32\alg.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\utilman.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\osk.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\mobsync.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\magnify.exe
2012-01-25 18:15:58 ----A---- C:\WINDOWS\system32\cmd.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\vssvc.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\sessmgr.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\scardsvr.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\rsvp.exe
2012-01-25 18:15:43 ----A---- C:\WINDOWS\system32\locator.exe
2012-01-25 18:15:41 ----A---- C:\WINDOWS\system32\netdde.exe
2012-01-25 18:15:39 ----A---- C:\WINDOWS\system32\msiexec.exe
2012-01-25 18:15:39 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2012-01-25 18:15:30 ----A---- C:\WINDOWS\system32\imapi.exe
2012-01-25 18:15:24 ----A---- C:\WINDOWS\system32\dmadmin.exe
2012-01-25 18:15:13 ----A---- C:\WINDOWS\system32\clipsrv.exe
2012-01-25 18:15:11 ----A---- C:\WINDOWS\system32\cisvc.exe
2012-01-25 14:07:59 ----D---- C:\Documents and Settings\Admin\Data aplikací\ICQ
2012-01-25 13:56:38 ----D---- C:\Documents and Settings\Admin\Data aplikací\vlc
2012-01-25 10:09:23 ----D---- C:\WINDOWS\Prefetch
2012-01-24 13:17:48 ----A---- C:\WINDOWS\NeroDigital.ini
2012-01-22 15:34:24 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2012-01-18 20:42:15 ----SHD---- C:\WINDOWS\Installer
2012-01-12 03:08:01 ----RSD---- C:\WINDOWS\assembly
2012-01-12 03:06:36 ----A---- C:\WINDOWS\imsins.BAK
2012-01-12 03:04:59 ----D---- C:\Config.Msi
2012-01-12 03:03:47 ----D---- C:\WINDOWS\WinSxS
2012-01-12 03:01:52 ----HD---- C:\WINDOWS\$hf_mig$
2012-01-07 14:05:45 ----A---- C:\WINDOWS\win.ini
2011-12-28 18:33:49 ----HD---- C:\Program Files\InstallShield Installation Information
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-04 297168]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2012-01-26 242240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-05-27 134480]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
R3 catchme;catchme; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\catchme.sys []
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2009-08-28 241168]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HECI;Intel(R) Management Engine Interface; C:\WINDOWS\system32\DRIVERS\HECI.sys [2007-07-09 44416]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-10-16 9623680]
R3 STHDA;IDT High Definition Audio CODEC; C:\WINDOWS\system32\drivers\sthda.sys [2009-03-12 1550613]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 cpudrv;cpudrv; \??\C:\Program Files\SystemRequirementsLab\cpudrv.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys []
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe [2012-01-26 408576]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-06-21 246584]
R2 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2012-01-25 413696]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-10-16 156776]
R2 STacSV;Audio Service; c:\program files\idt\intelxpv_v103\wdm\STacSV.exe [2009-03-12 254036]
S2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2012-01-25 7532544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-01-25 271872]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 278016]
S2 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2012-01-25 1019904]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-01-26 294912]
S2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2012-01-26 221184]
S2 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2012-01-25 933888]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2012-01-25 172544]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2012-01-25 207872]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-25 278016]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2012-01-25 1061376]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2012-01-25 894976]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------