preventivka
Napsal: 25 čer 2012 14:12
Dobrý den,prosim o kontrolu logu,děkuji
Logfile of random's system information tool 1.09 (written by random/random)
Run by dom at 2012-06-25 15:08:40
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (69%) free of 66 GB
Total RAM: 2047 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:08:49, on 25.6.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\WINDOWS\system32\AEADISRV.EXE
C:\Program Files\Comodo\Dragon\dragon_updater.exe
C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe
C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe
C:\Program Files\FarStone\RestoreIT 7\IBP\VBPTask.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe
C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\dom\Plocha\RSIT.exe
C:\Program Files\trend micro\dom.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [EaseUs Watch] "C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O9 - Extra button: Steganos Password Manager - {024538B9-3F39-49FF-9503-975F743210FA} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.google-analytics.com
O15 - Trusted Zone: http://*.novastor.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\WINDOWS\system32\AEADISRV.EXE
O23 - Service: Backup Client Agent Service - NovaStor Corporation - C:\Program Files\NovaStor\NovaStor NovaBACKUP\ManagementServer.Agent.Service.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: DriveClone Network Client IBP - Unknown owner - C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe
O23 - Service: EaseUS Agent - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Guard Agent - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iolo System Service (ioloSystemService) - iolo technologies, LLC - C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NovaStor NovaBACKUP Backup/Copy Engine (nsService) - NovaStor - C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 6190 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D0F7BD77-CCB4-4A6F-9796-3E0F6A6FD883}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\dom\Data aplikací\Mozilla\Firefox\Profiles\m2020q5z.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.3.300.257 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm LTD Toolbar Api
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\WINDOWS\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin]
"Description"=SumatraPDF Browser Plugin
"Path"=C:\Program Files\SumatraPDF\npPdfViewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\dom\Data aplikací\Mozilla\Firefox\Profiles\m2020q5z.default\extensions\
firefox@ghostery.com
keyscrambler@qfx.software.corporation
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2B9F5787-88A5-4945-90E7-C4B18563BC5E}]
KeyScramblerBHO Class - C:\Program Files\KeyScrambler\KeyScramblerIE.dll [2012-06-15 918160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-06-15 453104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-06-15 157680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 6749512]
"EaseUs Watch"=C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe [2011-12-22 70792]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-03-07 3117344]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTimounterMonitor]
C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe [2009-11-02 906288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AntiLogger10_Uninstall1]
C:\WINDOWS\system32\winlogon.exe [2008-04-14 507904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Automatic Backup Manager]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cobian Backup 10 Interface]
C:\Program Files\Cobian Backup 10\cbInterface.exe [2010-09-23 3154432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DiscWizardMonitor.exe]
C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe [2009-11-02 1346000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverScanner]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUs Tray]
C:\Program Files\EaseUS\Todo Backup\bin\TrayNotify.exe [2012-03-15 744584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUs Watch]
C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe [2011-12-22 70792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\High Definition Audio Property Page Shortcut]
C:\WINDOWS\system32\HDAShCut.exe [2004-10-27 61952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iolo Startup]
C:\Program Files\iolo\Common\Lib\ioloLManager.exe [2012-04-17 938680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KeePass 2 PreLoad]
C:\Program Files\KeePass Password Safe 2\KeePass.exe [2012-05-01 1895424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-04-04 462408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2012-05-15 15504192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
NvMCTray.dll,NvTaskbarInit -login []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2012-05-15 1634112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Seagate Scheduler2 Service]
C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe [2009-11-02 136544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
C:\Program Files\Analog Devices\SoundMAX\smax4.exe [2005-09-07 716800]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
C:\Program Files\Analog Devices\Core\smax4pnp.exe [2012-01-15 1310720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-05-21 3905920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TB]
C:\Program Files\EaseUS\Todo Backup\bin\XSnapShotTip.exe [2011-12-22 243336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^AdFender.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^alternative flash player auto-updater.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^NovaBACKUP Tray Control.lnk]
C:\PROGRA~1\NovaStor\NOVAST~1\nsCtrl.exe [2011-11-11 222352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_14916961.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_15433183.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_17665752.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_36775014.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_43822013.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_87173346.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"SkypeUpdate"=2
"SharedAccess"=2
"SgtSch2Svc"=3
"RasMan"=3
"nvUpdatusService"=2
"NVSvc"=2
"JavaQuickStarterService"=2
"helpsvc"=2
"ERSvc"=2
"EaseUS Agent"=2
"cbVSCService"=2
"AdobeFlashPlayerUpdateSvc"=3
"DragonUpdater"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04 551296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\prwntdrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro35]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro35.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro36]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro36.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ioloSystemService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PFNet]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\prwntdrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=383
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe:*:Enabled:TbService.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe:*:Enabled:Local TBConsoleUI.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe"="C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe:*:Enabled:Agent.exe"
"D:\Hry instal\PES2012\pes2012.exe"="D:\Hry instal\PES2012\pes2012.exe:*:Enabled:Pro Evolution Soccer 2012"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\RapidSolution\Audials 9\Audials.exe"="C:\Program Files\RapidSolution\Audials 9\Audials.exe:LocalSubNet:Enabled:Audials local subnet"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"VIDC.WMV3"=wmv9vcm.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - open - NOTEPAD.EXE "%1"
.reg - open - NOTEPAD.EXE "%1"
.scr - open - NOTEPAD.EXE "%1"
.vbs - open - NOTEPAD.EXE "%1"
======List of files/folders created in the last 1 month======
2012-06-25 15:08:40 ----D---- C:\rsit
2012-06-19 14:36:49 ----D---- C:\Program Files\Uploader
2012-06-18 15:59:11 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2012-06-18 15:58:53 ----D---- C:\Program Files\RapidSolution
2012-06-18 15:58:53 ----D---- C:\Documents and Settings\All Users\Data aplikací\RapidSolution
2012-06-18 15:58:30 ----N---- C:\WINDOWS\system32\spmsg2.dll
2012-06-18 15:58:26 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2012-06-18 12:09:10 ----D---- C:\Documents and Settings\dom\Data aplikací\Need for Speed World
2012-06-18 10:53:47 ----D---- C:\Program Files\Electronic Arts
2012-06-18 10:53:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2012-06-16 11:03:02 ----A---- C:\repairs_running.dat
2012-06-16 11:01:34 ----D---- C:\WINDOWS\SoftwareDistribution
2012-06-16 10:56:11 ----HD---- C:\Program Files\WindowsUpdate
2012-06-16 10:56:06 ----D---- C:\Program Files\Uninstall Information
2012-06-16 10:48:52 ----A---- C:\subinacl.exe
2012-06-16 10:48:39 ----D---- C:\Reg_Backup
2012-06-16 10:48:38 ----A---- C:\WINDOWS\PSEXESVC.EXE
2012-06-16 10:35:36 ----D---- C:\WINDOWS\system32\appmgmt
2012-06-16 10:32:29 ----D---- C:\Tweaking.com_Windows_Repair_Logs
2012-06-16 10:32:20 ----D---- C:\Program Files\Tweaking.com
2012-06-15 16:07:01 ----A---- C:\WINDOWS\system32\javaws.exe
2012-06-15 16:06:55 ----A---- C:\WINDOWS\system32\javaw.exe
2012-06-15 16:06:55 ----A---- C:\WINDOWS\system32\java.exe
2012-06-15 14:13:41 ----D---- C:\Documents and Settings\dom\Data aplikací\Mozilla
2012-06-15 14:13:32 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-06-15 14:06:55 ----A---- C:\WINDOWS\system32\drivers\keyscrambler.sys
2012-06-15 14:06:54 ----D---- C:\Program Files\KeyScrambler
2012-06-14 02:56:19 ----DC---- C:\WINDOWS\$NtUninstallKB2707511$
2012-06-14 02:46:53 ----DC---- C:\WINDOWS\$NtUninstallKB2685939$
2012-06-14 02:46:02 ----DC---- C:\WINDOWS\$NtUninstallKB2709162$
2012-06-12 09:30:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\NovaStor
2012-06-12 09:30:15 ----D---- C:\Program Files\NovaStor
2012-06-11 12:37:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\KONAMI
2012-06-10 18:15:08 ----D---- C:\Program Files\SUPERAntiSpyware
2012-06-10 18:13:10 ----D---- C:\Documents and Settings\dom\Data aplikací\SUPERAntiSpyware.com
2012-06-10 18:13:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2012-06-07 11:39:18 ----D---- C:\Program Files\ESET
2012-06-07 11:39:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2012-06-04 21:09:15 ----A---- C:\WINDOWS\system32\fbnative.exe
2012-06-04 20:52:20 ----D---- C:\Program Files\Auslogics
2012-06-04 07:43:04 ----DC---- C:\WINDOWS\$NtUninstallKB2718704$
2012-06-01 18:30:47 ----A---- C:\WINDOWS\system32\drivers\prodigy.sys
2012-06-01 18:03:53 ----D---- C:\Program Files\Common Files\PCSuite
2012-06-01 18:03:49 ----D---- C:\Program Files\Common Files\Nokia
2012-06-01 18:02:53 ----D---- C:\Program Files\PC Connectivity Solution
2012-06-01 18:02:37 ----A---- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys
2012-06-01 18:02:35 ----A---- C:\WINDOWS\system32\drivers\nmwcdnsu.sys
2012-06-01 07:55:29 ----A---- C:\WINDOWS\wininit.ini
2012-05-31 11:33:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\ConeXware
2012-05-31 11:32:51 ----D---- C:\Documents and Settings\All Users\Data aplikací\Caphyon
2012-05-31 11:32:42 ----D---- C:\Program Files\PatchBeam
2012-05-31 11:32:29 ----D---- C:\Program Files\PowerArchiver
2012-05-31 08:21:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\FolderPathDetail
2012-05-30 23:06:34 ----A---- C:\WINDOWS\system32\HMIPCore.dll
2012-05-30 14:45:41 ----D---- C:\Documents and Settings\dom\Data aplikací\Digiarty
2012-05-30 14:45:25 ----D---- C:\Program Files\Digiarty
2012-05-30 11:54:31 ----A---- C:\WINDOWS\system32\Incinerator32.dll
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\smrgdf.exe
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\offreg.dll
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\iolobtdfg.exe
2012-05-30 11:54:29 ----D---- C:\Program Files\iolo
2012-05-30 11:53:03 ----D---- C:\iolo
2012-05-30 11:50:29 ----D---- C:\Documents and Settings\dom\Data aplikací\iolo
2012-05-30 11:50:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\iolo
2012-05-28 14:18:36 ----D---- C:\Program Files\KMedia Player
2012-05-26 11:39:32 ----D---- C:\VritualRoot
2012-05-26 09:57:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Comodo
2012-05-26 09:57:35 ----D---- C:\Program Files\Comodo
======List of files/folders modified in the last 1 month======
2012-06-25 15:08:49 ----D---- C:\Program Files\trend micro
2012-06-25 15:08:48 ----D---- C:\WINDOWS\Prefetch
2012-06-25 15:07:54 ----D---- C:\WINDOWS\Temp
2012-06-25 13:41:36 ----A---- C:\WINDOWS\system32\sun_debug1.txt
2012-06-25 13:41:36 ----A---- C:\WINDOWS\system32\sun_debug.txt
2012-06-25 12:33:24 ----D---- C:\WINDOWS
2012-06-25 12:33:24 ----D---- C:\Documents and Settings\dom\Data aplikací\uTorrent
2012-06-25 10:39:29 ----D---- C:\WINDOWS\system32
2012-06-25 10:39:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-06-25 10:35:27 ----D---- C:\WINDOWS\system32\CatRoot2
2012-06-25 10:34:50 ----D---- C:\WINDOWS\Microsoft.NET
2012-06-25 09:27:22 ----N---- C:\WINDOWS\SchedLgU.Txt
2012-06-25 07:55:35 ----A---- C:\WINDOWS\wincmd.ini
2012-06-24 19:59:25 ----D---- C:\Documents and Settings\dom\Data aplikací\vlc
2012-06-22 06:42:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-06-21 13:43:40 ----D---- C:\WINDOWS\inf
2012-06-21 13:43:32 ----D---- C:\WINDOWS\Help
2012-06-21 13:40:42 ----D---- C:\WINDOWS\system32\drivers
2012-06-19 21:14:54 ----SHD---- C:\System Volume Information
2012-06-19 15:31:32 ----D---- C:\Documents and Settings\dom\Data aplikací\KeePass
2012-06-19 14:36:49 ----RD---- C:\Program Files
2012-06-19 14:33:50 ----D---- C:\Program Files\KeePass Password Safe 2
2012-06-19 09:02:33 ----SHD---- C:\WINDOWS\Installer
2012-06-19 09:02:33 ----D---- C:\Config.Msi
2012-06-19 08:57:42 ----RSD---- C:\WINDOWS\assembly
2012-06-19 08:57:39 ----D---- C:\WINDOWS\WinSxS
2012-06-18 15:58:15 ----D---- C:\WINDOWS\system32\XPSViewer
2012-06-18 15:58:15 ----D---- C:\WINDOWS\system32\cs-cz
2012-06-18 15:58:04 ----D---- C:\WINDOWS\system32\mui
2012-06-18 15:57:22 ----RSD---- C:\WINDOWS\Fonts
2012-06-18 15:55:09 ----D---- C:\Program Files\Internet Explorer
2012-06-18 10:36:04 ----D---- C:\Program Files\SecurityKISS Tunnel
2012-06-17 15:50:53 ----D---- C:\Program Files\Mozilla Firefox
2012-06-16 11:35:49 ----D---- C:\WINDOWS\system32\en-US
2012-06-16 11:02:14 ----D---- C:\WINDOWS\Registration
2012-06-16 11:01:24 ----D---- C:\WINDOWS\system32\CatRoot
2012-06-16 11:00:37 ----D---- C:\WINDOWS\system32\drivers\etc
2012-06-16 10:39:18 ----D---- C:\WINDOWS\system32\Restore
2012-06-15 16:09:07 ----D---- C:\Program Files\Defraggler
2012-06-15 16:06:44 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-06-15 16:06:44 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-06-15 16:05:39 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-06-15 14:26:35 ----D---- C:\WINDOWS\Debug
2012-06-15 14:13:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2012-06-15 14:10:49 ----D---- C:\Program Files\Opera
2012-06-14 02:50:04 ----A---- C:\WINDOWS\system32\MRT.exe
2012-06-14 02:46:59 ----D---- C:\WINDOWS\$hf_mig$
2012-06-12 13:12:22 ----D---- C:\WINDOWS\pss
2012-06-11 12:36:21 ----D---- C:\Documents and Settings\dom\Data aplikací\DAEMON Tools Lite
2012-06-07 11:18:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Norton
2012-06-05 08:30:24 ----D---- C:\BOOT
2012-06-05 07:26:38 ----D---- C:\WINDOWS\system32\NtmsData
2012-06-04 21:12:03 ----D---- C:\Program Files\EASEUS
2012-06-04 20:52:28 ----D---- C:\Documents and Settings\dom\Data aplikací\Auslogics
2012-06-02 15:19:44 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2012-06-02 15:19:38 ----A---- C:\WINDOWS\system32\wuweb.dll
2012-06-02 15:19:38 ----A---- C:\WINDOWS\system32\wucltui.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wups2.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wups.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\cdm.dll
2012-06-02 15:19:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2012-06-02 15:19:18 ----A---- C:\WINDOWS\system32\wuaueng.dll
2012-06-02 15:19:02 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2012-06-02 15:18:58 ----A---- C:\WINDOWS\system32\muweb.dll
2012-06-02 15:18:58 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-06-01 18:04:10 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-06-01 18:03:53 ----D---- C:\Program Files\Common Files
2012-06-01 18:03:50 ----D---- C:\Program Files\Nokia
2012-06-01 18:00:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Installations
2012-06-01 12:18:55 ----D---- C:\WINDOWS\Minidump
2012-05-31 15:22:06 ----A---- C:\WINDOWS\system32\crypt32.dll
2012-05-30 23:20:09 ----D---- C:\Program Files\CCleaner
2012-05-30 12:07:39 ----D---- C:\WINDOWS\CSC
2012-05-30 12:07:38 ----D---- C:\WINDOWS\system32\config
2012-05-29 14:16:15 ----ASH---- C:\boot.ini
2012-05-29 14:16:15 ----A---- C:\WINDOWS\win.ini
2012-05-29 14:16:15 ----A---- C:\WINDOWS\system.ini
2012-05-29 13:57:34 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2012-05-29 13:57:18 ----D---- C:\Program Files\SpywareBlaster
2012-05-26 10:04:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\CPA_VA
2012-05-26 09:10:32 ----SD---- C:\WINDOWS\Tasks
2012-05-26 08:48:44 ----D---- C:\WINDOWS\system32\drivers\NAV
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 EUBAKUP;EUBAKUP; C:\WINDOWS\system32\drivers\eubakup.sys [2011-12-22 50312]
R0 EUBKMON;EUBKMON; C:\WINDOWS\system32\drivers\EUBKMON.sys [2012-02-08 40840]
R0 Inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\System32\DRIVERS\inspect.sys [2012-03-11 97760]
R0 m5288;m5288; C:\WINDOWS\system32\DRIVERS\m5288.sys [2005-12-23 210304]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\System32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2012-01-20 170464]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2011-07-26 368480]
R0 timounter;Acronis Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2012-02-24 600928]
R0 VVBackd5;VVBackd5; C:\WINDOWS\system32\drivers\VVBackd5.sys [2011-08-04 141400]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2012-03-11 494968]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2012-03-11 31704]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2012-04-28 242240]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2012-03-14 160816]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 EIO;EIO; \??\C:\WINDOWS\system32\drivers\EIO.sys []
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2012-03-14 104160]
R1 EUDSKACS;EUDSKACS; \??\C:\WINDOWS\system32\drivers\eudskacs.sys []
R1 EUFDDISK;EUFDDISK; \??\C:\WINDOWS\system32\drivers\EuFdDisk.sys []
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 SLEE_17_DRIVER;Steganos Live Encryption Engine 17 [Driver]; \??\C:\WINDOWS\system32\drivers\Sleen17.sys []
R2 ALIEHCD;ULi PCI to USB Enhanced Host Controller; C:\WINDOWS\System32\Drivers\ALIEHCI.sys [2012-01-15 84471]
R2 HCDisk;HCDisk; C:\WINDOWS\system32\drivers\HCDisk.sys [2011-01-05 56920]
R2 tifsfilter;Seagate DiscWizard FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2011-07-26 44384]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2012-01-15 380416]
R3 aliroothub;USB 2.0 Root Hub; C:\WINDOWS\system32\DRIVERS\AliRtHub.sys [2012-01-15 5304]
R3 FARMNTIO;FARMNTIO; \??\c:\windows\system32\drivers\farmntio.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 KeyScrambler;KeyScrambler; C:\WINDOWS\System32\drivers\keyscrambler.sys [2011-12-15 173880]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2012-05-15 14014656]
R3 RRNetCapMP;RRNetCapMP; C:\WINDOWS\system32\DRIVERS\rrnetcap.sys [2012-05-24 31848]
R3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2011-07-01 26624]
R3 tbhsd;Audials Sound Capturing; C:\WINDOWS\system32\drivers\tbhsd.sys [2012-05-24 39016]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\WINDOWS\system32\DRIVERS\vcsvad.sys [2008-12-26 17792]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\System32\DRIVERS\yk51x86.sys [2011-09-14 299424]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\WINDOWS\System32\Drivers\Uim_IM.sys [2011-10-13 441608]
S1 Uim_Vim;UIM Virtual Image Plugin; C:\WINDOWS\System32\Drivers\Uim_Vim.sys [2011-10-13 277576]
S1 UimBus;Universal Image Mounter Controller; C:\WINDOWS\system32\DRIVERS\UimBus.sys [2011-10-13 45240]
S3 alihub;Generic Hub on USB 2.0 Bus; C:\WINDOWS\system32\DRIVERS\AliHub.sys [2012-01-15 32118]
S3 ALSysIO;ALSysIO; \??\C:\DOCUME~1\dom\LOCALS~1\Temp\ALSysIO.sys []
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb.sys [2007-07-12 12416]
S3 bdsandbox;bdsandbox; \??\C:\WINDOWS\system32\drivers\bdsandbox.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-10-27 145920]
S3 L8042Kbd;Logitech SetPoint Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2012-04-19 13440]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2011-11-01 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2011-11-01 8576]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 PRODIGY;PRODIGY; C:\WINDOWS\System32\Drivers\PRODIGY.SYS [2006-08-29 32377]
S3 RRNetCap;RRNetCap Service; C:\WINDOWS\system32\DRIVERS\rrnetcap.sys [2012-05-24 31848]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2012-01-15 50688]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
S3 slicedisk.sys;slicedisk.sys; \??\C:\WINDOWS\system32\slicedisk.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 taphss;Anchorfree HSS Adapter; C:\WINDOWS\system32\DRIVERS\taphss.sys [2012-01-05 32768]
S3 tapoas;TAP-Win32 Adapter OAS; C:\WINDOWS\system32\DRIVERS\tapoas.sys [2011-08-19 26112]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2011-12-19 104752]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys []
S3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D32.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-09-23 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-08-12 116608]
R2 AEADIFilters;Andrea ADI Filters Service; C:\WINDOWS\system32\AEADISRV.EXE [2012-01-15 90112]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-03-11 1983232]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2012-06-12 412304]
R2 DriveClone Network Client IBP;DriveClone Network Client IBP; C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe [2009-08-18 126976]
R2 EaseUS Agent;EaseUS Agent; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [2011-12-22 61064]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-03-07 913144]
R2 Guard Agent;Guard Agent; C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe [2011-12-22 23176]
R2 ioloSystemService;iolo System Service; C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe [2012-04-17 1047336]
R2 nsService;NovaStor NovaBACKUP Backup/Copy Engine; C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe [2011-11-11 371856]
S2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 Backup Client Agent Service;Backup Client Agent Service; C:\Program Files\NovaStor\NovaStor NovaBACKUP\ManagementServer.Agent.Service.exe [2011-11-08 217600]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-01-04 718888]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-15 257224]
S4 cbVSCService;Cobian Backup 10 Volume Shadow Copy service; C:\Program Files\Cobian Backup 10\cbVSCService.exe [2010-09-23 67584]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-06-15 161776]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2012-05-15 164160]
S4 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-05-15 1262400]
S4 SgtSch2Svc;Seagate Scheduler2 Service; C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe [2009-11-02 431456]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-29 158856]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by dom at 2012-06-25 15:08:40
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (69%) free of 66 GB
Total RAM: 2047 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:08:49, on 25.6.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\WINDOWS\system32\AEADISRV.EXE
C:\Program Files\Comodo\Dragon\dragon_updater.exe
C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe
C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe
C:\Program Files\FarStone\RestoreIT 7\IBP\VBPTask.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe
C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\dom\Plocha\RSIT.exe
C:\Program Files\trend micro\dom.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [EaseUs Watch] "C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O9 - Extra button: Steganos Password Manager - {024538B9-3F39-49FF-9503-975F743210FA} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.google-analytics.com
O15 - Trusted Zone: http://*.novastor.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\WINDOWS\system32\AEADISRV.EXE
O23 - Service: Backup Client Agent Service - NovaStor Corporation - C:\Program Files\NovaStor\NovaStor NovaBACKUP\ManagementServer.Agent.Service.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files\Comodo\Dragon\dragon_updater.exe
O23 - Service: DriveClone Network Client IBP - Unknown owner - C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe
O23 - Service: EaseUS Agent - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Guard Agent - CHENGDU YIWO Tech Development Co., Ltd - C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iolo System Service (ioloSystemService) - iolo technologies, LLC - C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NovaStor NovaBACKUP Backup/Copy Engine (nsService) - NovaStor - C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 6190 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D0F7BD77-CCB4-4A6F-9796-3E0F6A6FD883}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\dom\Data aplikací\Mozilla\Firefox\Profiles\m2020q5z.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.3.300.257 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_257.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm LTD Toolbar Api
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.5.0]
"Description"=
"Path"=C:\WINDOWS\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin]
"Description"=SumatraPDF Browser Plugin
"Path"=C:\Program Files\SumatraPDF\npPdfViewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\dom\Data aplikací\Mozilla\Firefox\Profiles\m2020q5z.default\extensions\
firefox@ghostery.com
keyscrambler@qfx.software.corporation
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2B9F5787-88A5-4945-90E7-C4B18563BC5E}]
KeyScramblerBHO Class - C:\Program Files\KeyScrambler\KeyScramblerIE.dll [2012-06-15 918160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-06-15 453104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-06-15 157680]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 6749512]
"EaseUs Watch"=C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe [2011-12-22 70792]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2012-03-07 3117344]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTimounterMonitor]
C:\Program Files\Seagate\DiscWizard\TimounterMonitor.exe [2009-11-02 906288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AntiLogger10_Uninstall1]
C:\WINDOWS\system32\winlogon.exe [2008-04-14 507904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Automatic Backup Manager]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cobian Backup 10 Interface]
C:\Program Files\Cobian Backup 10\cbInterface.exe [2010-09-23 3154432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DiscWizardMonitor.exe]
C:\Program Files\Seagate\DiscWizard\DiscWizardMonitor.exe [2009-11-02 1346000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverScanner]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUs Tray]
C:\Program Files\EaseUS\Todo Backup\bin\TrayNotify.exe [2012-03-15 744584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUs Watch]
C:\Program Files\EaseUS\Todo Backup\bin\EuWatch.exe [2011-12-22 70792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\High Definition Audio Property Page Shortcut]
C:\WINDOWS\system32\HDAShCut.exe [2004-10-27 61952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iolo Startup]
C:\Program Files\iolo\Common\Lib\ioloLManager.exe [2012-04-17 938680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KeePass 2 PreLoad]
C:\Program Files\KeePass Password Safe 2\KeePass.exe [2012-05-01 1895424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware]
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2012-04-04 462408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2012-05-15 15504192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
NvMCTray.dll,NvTaskbarInit -login []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2012-05-15 1634112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Seagate Scheduler2 Service]
C:\Program Files\Common Files\Seagate\Schedule2\schedhlp.exe [2009-11-02 136544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
C:\Program Files\Analog Devices\SoundMAX\smax4.exe [2005-09-07 716800]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
C:\Program Files\Analog Devices\Core\smax4pnp.exe [2012-01-15 1310720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-05-21 3905920]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TB]
C:\Program Files\EaseUS\Todo Backup\bin\XSnapShotTip.exe [2011-12-22 243336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^AdFender.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^alternative flash player auto-updater.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^NovaBACKUP Tray Control.lnk]
C:\PROGRA~1\NovaStor\NOVAST~1\nsCtrl.exe [2011-11-11 222352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_14916961.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_15433183.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_17665752.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_36775014.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_43822013.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^dom^Nabídka Start^Programy^Po spuštění^_uninst_87173346.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"SkypeUpdate"=2
"SharedAccess"=2
"SgtSch2Svc"=3
"RasMan"=3
"nvUpdatusService"=2
"NVSvc"=2
"JavaQuickStarterService"=2
"helpsvc"=2
"ERSvc"=2
"EaseUS Agent"=2
"cbVSCService"=2
"AdobeFlashPlayerUpdateSvc"=3
"DragonUpdater"=2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\guard32.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04 551296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
relog_ap
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\prwntdrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro35]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro35.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro36]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro36.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ioloSystemService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PFNet]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\prwntdrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=383
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TbService.exe:*:Enabled:TbService.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe"="C:\Program Files\EASEUS\Todo Backup\bin\TBConsoleUI.exe:*:Enabled:Local TBConsoleUI.exe"
"C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe"="C:\Program Files\EASEUS\Todo Backup\bin\Agent.exe:*:Enabled:Agent.exe"
"D:\Hry instal\PES2012\pes2012.exe"="D:\Hry instal\PES2012\pes2012.exe:*:Enabled:Pro Evolution Soccer 2012"
"C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe"="C:\Program Files\Opera\pluginwrapper\opera_plugin_wrapper.exe:*:Enabled:Opera Internet Browser - Plugin wrapper"
"C:\Program Files\RapidSolution\Audials 9\Audials.exe"="C:\Program Files\RapidSolution\Audials 9\Audials.exe:LocalSubNet:Enabled:Audials local subnet"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"VIDC.WMV3"=wmv9vcm.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - open - NOTEPAD.EXE "%1"
.reg - open - NOTEPAD.EXE "%1"
.scr - open - NOTEPAD.EXE "%1"
.vbs - open - NOTEPAD.EXE "%1"
======List of files/folders created in the last 1 month======
2012-06-25 15:08:40 ----D---- C:\rsit
2012-06-19 14:36:49 ----D---- C:\Program Files\Uploader
2012-06-18 15:59:11 ----SHD---- C:\WINDOWS\system32\AI_RecycleBin
2012-06-18 15:58:53 ----D---- C:\Program Files\RapidSolution
2012-06-18 15:58:53 ----D---- C:\Documents and Settings\All Users\Data aplikací\RapidSolution
2012-06-18 15:58:30 ----N---- C:\WINDOWS\system32\spmsg2.dll
2012-06-18 15:58:26 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2012-06-18 12:09:10 ----D---- C:\Documents and Settings\dom\Data aplikací\Need for Speed World
2012-06-18 10:53:47 ----D---- C:\Program Files\Electronic Arts
2012-06-18 10:53:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2012-06-16 11:03:02 ----A---- C:\repairs_running.dat
2012-06-16 11:01:34 ----D---- C:\WINDOWS\SoftwareDistribution
2012-06-16 10:56:11 ----HD---- C:\Program Files\WindowsUpdate
2012-06-16 10:56:06 ----D---- C:\Program Files\Uninstall Information
2012-06-16 10:48:52 ----A---- C:\subinacl.exe
2012-06-16 10:48:39 ----D---- C:\Reg_Backup
2012-06-16 10:48:38 ----A---- C:\WINDOWS\PSEXESVC.EXE
2012-06-16 10:35:36 ----D---- C:\WINDOWS\system32\appmgmt
2012-06-16 10:32:29 ----D---- C:\Tweaking.com_Windows_Repair_Logs
2012-06-16 10:32:20 ----D---- C:\Program Files\Tweaking.com
2012-06-15 16:07:01 ----A---- C:\WINDOWS\system32\javaws.exe
2012-06-15 16:06:55 ----A---- C:\WINDOWS\system32\javaw.exe
2012-06-15 16:06:55 ----A---- C:\WINDOWS\system32\java.exe
2012-06-15 14:13:41 ----D---- C:\Documents and Settings\dom\Data aplikací\Mozilla
2012-06-15 14:13:32 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-06-15 14:06:55 ----A---- C:\WINDOWS\system32\drivers\keyscrambler.sys
2012-06-15 14:06:54 ----D---- C:\Program Files\KeyScrambler
2012-06-14 02:56:19 ----DC---- C:\WINDOWS\$NtUninstallKB2707511$
2012-06-14 02:46:53 ----DC---- C:\WINDOWS\$NtUninstallKB2685939$
2012-06-14 02:46:02 ----DC---- C:\WINDOWS\$NtUninstallKB2709162$
2012-06-12 09:30:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\NovaStor
2012-06-12 09:30:15 ----D---- C:\Program Files\NovaStor
2012-06-11 12:37:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\KONAMI
2012-06-10 18:15:08 ----D---- C:\Program Files\SUPERAntiSpyware
2012-06-10 18:13:10 ----D---- C:\Documents and Settings\dom\Data aplikací\SUPERAntiSpyware.com
2012-06-10 18:13:10 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2012-06-07 11:39:18 ----D---- C:\Program Files\ESET
2012-06-07 11:39:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2012-06-04 21:09:15 ----A---- C:\WINDOWS\system32\fbnative.exe
2012-06-04 20:52:20 ----D---- C:\Program Files\Auslogics
2012-06-04 07:43:04 ----DC---- C:\WINDOWS\$NtUninstallKB2718704$
2012-06-01 18:30:47 ----A---- C:\WINDOWS\system32\drivers\prodigy.sys
2012-06-01 18:03:53 ----D---- C:\Program Files\Common Files\PCSuite
2012-06-01 18:03:49 ----D---- C:\Program Files\Common Files\Nokia
2012-06-01 18:02:53 ----D---- C:\Program Files\PC Connectivity Solution
2012-06-01 18:02:37 ----A---- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys
2012-06-01 18:02:35 ----A---- C:\WINDOWS\system32\drivers\nmwcdnsu.sys
2012-06-01 07:55:29 ----A---- C:\WINDOWS\wininit.ini
2012-05-31 11:33:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\ConeXware
2012-05-31 11:32:51 ----D---- C:\Documents and Settings\All Users\Data aplikací\Caphyon
2012-05-31 11:32:42 ----D---- C:\Program Files\PatchBeam
2012-05-31 11:32:29 ----D---- C:\Program Files\PowerArchiver
2012-05-31 08:21:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\FolderPathDetail
2012-05-30 23:06:34 ----A---- C:\WINDOWS\system32\HMIPCore.dll
2012-05-30 14:45:41 ----D---- C:\Documents and Settings\dom\Data aplikací\Digiarty
2012-05-30 14:45:25 ----D---- C:\Program Files\Digiarty
2012-05-30 11:54:31 ----A---- C:\WINDOWS\system32\Incinerator32.dll
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\smrgdf.exe
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\offreg.dll
2012-05-30 11:54:30 ----A---- C:\WINDOWS\system32\iolobtdfg.exe
2012-05-30 11:54:29 ----D---- C:\Program Files\iolo
2012-05-30 11:53:03 ----D---- C:\iolo
2012-05-30 11:50:29 ----D---- C:\Documents and Settings\dom\Data aplikací\iolo
2012-05-30 11:50:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\iolo
2012-05-28 14:18:36 ----D---- C:\Program Files\KMedia Player
2012-05-26 11:39:32 ----D---- C:\VritualRoot
2012-05-26 09:57:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Comodo
2012-05-26 09:57:35 ----D---- C:\Program Files\Comodo
======List of files/folders modified in the last 1 month======
2012-06-25 15:08:49 ----D---- C:\Program Files\trend micro
2012-06-25 15:08:48 ----D---- C:\WINDOWS\Prefetch
2012-06-25 15:07:54 ----D---- C:\WINDOWS\Temp
2012-06-25 13:41:36 ----A---- C:\WINDOWS\system32\sun_debug1.txt
2012-06-25 13:41:36 ----A---- C:\WINDOWS\system32\sun_debug.txt
2012-06-25 12:33:24 ----D---- C:\WINDOWS
2012-06-25 12:33:24 ----D---- C:\Documents and Settings\dom\Data aplikací\uTorrent
2012-06-25 10:39:29 ----D---- C:\WINDOWS\system32
2012-06-25 10:39:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-06-25 10:35:27 ----D---- C:\WINDOWS\system32\CatRoot2
2012-06-25 10:34:50 ----D---- C:\WINDOWS\Microsoft.NET
2012-06-25 09:27:22 ----N---- C:\WINDOWS\SchedLgU.Txt
2012-06-25 07:55:35 ----A---- C:\WINDOWS\wincmd.ini
2012-06-24 19:59:25 ----D---- C:\Documents and Settings\dom\Data aplikací\vlc
2012-06-22 06:42:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-06-21 13:43:40 ----D---- C:\WINDOWS\inf
2012-06-21 13:43:32 ----D---- C:\WINDOWS\Help
2012-06-21 13:40:42 ----D---- C:\WINDOWS\system32\drivers
2012-06-19 21:14:54 ----SHD---- C:\System Volume Information
2012-06-19 15:31:32 ----D---- C:\Documents and Settings\dom\Data aplikací\KeePass
2012-06-19 14:36:49 ----RD---- C:\Program Files
2012-06-19 14:33:50 ----D---- C:\Program Files\KeePass Password Safe 2
2012-06-19 09:02:33 ----SHD---- C:\WINDOWS\Installer
2012-06-19 09:02:33 ----D---- C:\Config.Msi
2012-06-19 08:57:42 ----RSD---- C:\WINDOWS\assembly
2012-06-19 08:57:39 ----D---- C:\WINDOWS\WinSxS
2012-06-18 15:58:15 ----D---- C:\WINDOWS\system32\XPSViewer
2012-06-18 15:58:15 ----D---- C:\WINDOWS\system32\cs-cz
2012-06-18 15:58:04 ----D---- C:\WINDOWS\system32\mui
2012-06-18 15:57:22 ----RSD---- C:\WINDOWS\Fonts
2012-06-18 15:55:09 ----D---- C:\Program Files\Internet Explorer
2012-06-18 10:36:04 ----D---- C:\Program Files\SecurityKISS Tunnel
2012-06-17 15:50:53 ----D---- C:\Program Files\Mozilla Firefox
2012-06-16 11:35:49 ----D---- C:\WINDOWS\system32\en-US
2012-06-16 11:02:14 ----D---- C:\WINDOWS\Registration
2012-06-16 11:01:24 ----D---- C:\WINDOWS\system32\CatRoot
2012-06-16 11:00:37 ----D---- C:\WINDOWS\system32\drivers\etc
2012-06-16 10:39:18 ----D---- C:\WINDOWS\system32\Restore
2012-06-15 16:09:07 ----D---- C:\Program Files\Defraggler
2012-06-15 16:06:44 ----A---- C:\WINDOWS\system32\npdeployJava1.dll
2012-06-15 16:06:44 ----A---- C:\WINDOWS\system32\deployJava1.dll
2012-06-15 16:05:39 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-06-15 14:26:35 ----D---- C:\WINDOWS\Debug
2012-06-15 14:13:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2012-06-15 14:10:49 ----D---- C:\Program Files\Opera
2012-06-14 02:50:04 ----A---- C:\WINDOWS\system32\MRT.exe
2012-06-14 02:46:59 ----D---- C:\WINDOWS\$hf_mig$
2012-06-12 13:12:22 ----D---- C:\WINDOWS\pss
2012-06-11 12:36:21 ----D---- C:\Documents and Settings\dom\Data aplikací\DAEMON Tools Lite
2012-06-07 11:18:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\Norton
2012-06-05 08:30:24 ----D---- C:\BOOT
2012-06-05 07:26:38 ----D---- C:\WINDOWS\system32\NtmsData
2012-06-04 21:12:03 ----D---- C:\Program Files\EASEUS
2012-06-04 20:52:28 ----D---- C:\Documents and Settings\dom\Data aplikací\Auslogics
2012-06-02 15:19:44 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2012-06-02 15:19:38 ----A---- C:\WINDOWS\system32\wuweb.dll
2012-06-02 15:19:38 ----A---- C:\WINDOWS\system32\wucltui.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wups2.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wups.dll
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuauclt.exe
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2012-06-02 15:19:34 ----A---- C:\WINDOWS\system32\cdm.dll
2012-06-02 15:19:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2012-06-02 15:19:18 ----A---- C:\WINDOWS\system32\wuaueng.dll
2012-06-02 15:19:02 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2012-06-02 15:18:58 ----A---- C:\WINDOWS\system32\muweb.dll
2012-06-02 15:18:58 ----A---- C:\WINDOWS\system32\mucltui.dll
2012-06-01 18:04:10 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-06-01 18:03:53 ----D---- C:\Program Files\Common Files
2012-06-01 18:03:50 ----D---- C:\Program Files\Nokia
2012-06-01 18:00:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Installations
2012-06-01 12:18:55 ----D---- C:\WINDOWS\Minidump
2012-05-31 15:22:06 ----A---- C:\WINDOWS\system32\crypt32.dll
2012-05-30 23:20:09 ----D---- C:\Program Files\CCleaner
2012-05-30 12:07:39 ----D---- C:\WINDOWS\CSC
2012-05-30 12:07:38 ----D---- C:\WINDOWS\system32\config
2012-05-29 14:16:15 ----ASH---- C:\boot.ini
2012-05-29 14:16:15 ----A---- C:\WINDOWS\win.ini
2012-05-29 14:16:15 ----A---- C:\WINDOWS\system.ini
2012-05-29 13:57:34 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2012-05-29 13:57:18 ----D---- C:\Program Files\SpywareBlaster
2012-05-26 10:04:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\CPA_VA
2012-05-26 09:10:32 ----SD---- C:\WINDOWS\Tasks
2012-05-26 08:48:44 ----D---- C:\WINDOWS\system32\drivers\NAV
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 EUBAKUP;EUBAKUP; C:\WINDOWS\system32\drivers\eubakup.sys [2011-12-22 50312]
R0 EUBKMON;EUBKMON; C:\WINDOWS\system32\drivers\EUBKMON.sys [2012-02-08 40840]
R0 Inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\System32\DRIVERS\inspect.sys [2012-03-11 97760]
R0 m5288;m5288; C:\WINDOWS\system32\DRIVERS\m5288.sys [2005-12-23 210304]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\System32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 snapman;Acronis Snapshots Manager; C:\WINDOWS\system32\DRIVERS\snapman.sys [2012-01-20 170464]
R0 tdrpman;Acronis Try&Decide and Restore Points filter; C:\WINDOWS\system32\DRIVERS\tdrpman.sys [2011-07-26 368480]
R0 timounter;Acronis Backup Archive Explorer; C:\WINDOWS\system32\DRIVERS\timntr.sys [2012-02-24 600928]
R0 VVBackd5;VVBackd5; C:\WINDOWS\system32\drivers\VVBackd5.sys [2011-08-04 141400]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2012-03-11 494968]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2012-03-11 31704]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2012-04-28 242240]
R1 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2012-03-14 160816]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 EIO;EIO; \??\C:\WINDOWS\system32\drivers\EIO.sys []
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2012-03-14 104160]
R1 EUDSKACS;EUDSKACS; \??\C:\WINDOWS\system32\drivers\eudskacs.sys []
R1 EUFDDISK;EUFDDISK; \??\C:\WINDOWS\system32\drivers\EuFdDisk.sys []
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 SLEE_17_DRIVER;Steganos Live Encryption Engine 17 [Driver]; \??\C:\WINDOWS\system32\drivers\Sleen17.sys []
R2 ALIEHCD;ULi PCI to USB Enhanced Host Controller; C:\WINDOWS\System32\Drivers\ALIEHCI.sys [2012-01-15 84471]
R2 HCDisk;HCDisk; C:\WINDOWS\system32\drivers\HCDisk.sys [2011-01-05 56920]
R2 tifsfilter;Seagate DiscWizard FS Filter; C:\WINDOWS\system32\DRIVERS\tifsfilt.sys [2011-07-26 44384]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2012-01-15 380416]
R3 aliroothub;USB 2.0 Root Hub; C:\WINDOWS\system32\DRIVERS\AliRtHub.sys [2012-01-15 5304]
R3 FARMNTIO;FARMNTIO; \??\c:\windows\system32\drivers\farmntio.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 KeyScrambler;KeyScrambler; C:\WINDOWS\System32\drivers\keyscrambler.sys [2011-12-15 173880]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2012-05-15 14014656]
R3 RRNetCapMP;RRNetCapMP; C:\WINDOWS\system32\DRIVERS\rrnetcap.sys [2012-05-24 31848]
R3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2011-07-01 26624]
R3 tbhsd;Audials Sound Capturing; C:\WINDOWS\system32\drivers\tbhsd.sys [2012-05-24 39016]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM); C:\WINDOWS\system32\DRIVERS\vcsvad.sys [2008-12-26 17792]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\System32\DRIVERS\yk51x86.sys [2011-09-14 299424]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\WINDOWS\System32\Drivers\Uim_IM.sys [2011-10-13 441608]
S1 Uim_Vim;UIM Virtual Image Plugin; C:\WINDOWS\System32\Drivers\Uim_Vim.sys [2011-10-13 277576]
S1 UimBus;Universal Image Mounter Controller; C:\WINDOWS\system32\DRIVERS\UimBus.sys [2011-10-13 45240]
S3 alihub;Generic Hub on USB 2.0 Bus; C:\WINDOWS\system32\DRIVERS\AliHub.sys [2012-01-15 32118]
S3 ALSysIO;ALSysIO; \??\C:\DOCUME~1\dom\LOCALS~1\Temp\ALSysIO.sys []
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys []
S3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\System32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb.sys [2007-07-12 12416]
S3 bdsandbox;bdsandbox; \??\C:\WINDOWS\system32\drivers\bdsandbox.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2004-10-27 145920]
S3 L8042Kbd;Logitech SetPoint Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2012-04-19 13440]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\System32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\WINDOWS\system32\drivers\nmwcdnsu.sys [2011-11-01 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2011-11-01 8576]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 PRODIGY;PRODIGY; C:\WINDOWS\System32\Drivers\PRODIGY.SYS [2006-08-29 32377]
S3 RRNetCap;RRNetCap Service; C:\WINDOWS\system32\DRIVERS\rrnetcap.sys [2012-05-24 31848]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2012-01-15 50688]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
S3 slicedisk.sys;slicedisk.sys; \??\C:\WINDOWS\system32\slicedisk.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 taphss;Anchorfree HSS Adapter; C:\WINDOWS\system32\DRIVERS\taphss.sys [2012-01-05 32768]
S3 tapoas;TAP-Win32 Adapter OAS; C:\WINDOWS\system32\DRIVERS\tapoas.sys [2011-08-19 26112]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2011-12-19 104752]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys []
S3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D32.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2002-09-23 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-08-12 116608]
R2 AEADIFilters;Andrea ADI Filters Service; C:\WINDOWS\system32\AEADISRV.EXE [2012-01-15 90112]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-03-11 1983232]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2012-06-12 412304]
R2 DriveClone Network Client IBP;DriveClone Network Client IBP; C:\Program Files\FarStone\RestoreIT 7\IBP\fsloader.exe [2009-08-18 126976]
R2 EaseUS Agent;EaseUS Agent; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [2011-12-22 61064]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2012-03-07 913144]
R2 Guard Agent;Guard Agent; C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe [2011-12-22 23176]
R2 ioloSystemService;iolo System Service; C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe [2012-04-17 1047336]
R2 nsService;NovaStor NovaBACKUP Backup/Copy Engine; C:\Program Files\NovaStor\NovaStor NovaBACKUP\nsService.exe [2011-11-11 371856]
S2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 Backup Client Agent Service;Backup Client Agent Service; C:\Program Files\NovaStor\NovaStor NovaBACKUP\ManagementServer.Agent.Service.exe [2011-11-08 217600]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-01 113120]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-01-04 718888]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-15 257224]
S4 cbVSCService;Cobian Backup 10 Volume Shadow Copy service; C:\Program Files\Cobian Backup 10\cbVSCService.exe [2010-09-23 67584]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-06-15 161776]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2012-05-15 164160]
S4 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-05-15 1262400]
S4 SgtSch2Svc;Seagate Scheduler2 Service; C:\Program Files\Common Files\Seagate\Schedule2\schedul2.exe [2009-11-02 431456]
S4 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-02-29 158856]
-----------------EOF-----------------