Pomalý chod programů, grafika blbně
Napsal: 07 zář 2012 21:10
Dobrý den, před měsícem jsem dostal do pc škodlivý kód. Dostal jsem se do nouzáku, ale špatně se zobrazovala nabídka. Nebo patrné která možnost je zaškrtnutá. Oprava OS byla provedena. Ale po instalaci programu na údržbu. Brzdilo chod počítače. Otestoval jsem GK ale kousl se mi program a hlásilo chybu u ATI. Stáhl nejnovější SW, ale zapomněl jsem odinstalovat ty předešlé. Ale novější verze nevyřešil problém s GK. DX běží OK ale v zátěžovém testu se při přetížení cpu a gpu restartoval. Přepsal atioglxx.dll ale nelze spustit test pod OGL 2.0. RAM ok, CPU Ok, v jiném programu se jeví ok. Sken v rootkit ok, spybot ok, adware ok, mwav ok, spyware ok.
pokusil jsem se nainstaloval os na nový disk ale grafika stejně blbla? Nevím nejlepší bude format c,d ale nevím jestli se mi nedostal škodlivý program někam kde mi uniká. Protože novější CCC Ati pořád hlásí chybu. Program na monitor teplot padá pod vlivem ATiOglxx.dll. Prohlížeč se přestavuje podle svého. ActiveX a obrázky se vypínají v IE, Program na zvýšení otáček GK nejde zvýšit, protože program hlásí chybu kernelu. Pravděpodobně to chce přeinstalovat systém, ale přesto tam nebude nějaký problém v havěti nebo v biosu? Podobný problém je i u druhého pc, ale tam přeinstalace vyřešila vše. Ovšem MB asi dosloužívá, tak moje je novější přesto blbne. Našel jsem u rodiče v pc dva rootkity! Děkuji
Logfile of random's system information tool 1.09 (written by random/random)
Run by Hans Peter Geerdes at 2012-09-07 21:24:19
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 47 GB (31%) free of 153 GB
Total RAM: 3582 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:27:21, on 7.9.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\SpeedFan\speedfan.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Hans Peter Geerdes\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Hans Peter Geerdes.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wchoppers.com/index.php?nv=d ... 1329174160
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [avp] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
O9 - Extra button: &Virtuální klávesnice - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: &Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan ... stubie.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553530000} - https://download.macromedia.com/pub/sho ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{255349B3-9540-411C-94D9-1CDEDD200EED}: NameServer = 10.0.0.138
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security (avp) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
O23 - Service: Google Update Service (gupdate1ca6c77910a2670) (gupdate1ca6c77910a2670) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - c:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
--
End of file - 7517 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-343818398-1647877149-725345543-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-343818398-1647877149-725345543-1003.job
C:\WINDOWS\tasks\SmartDefrag.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default
prefs.js - "browser.startup.homepage" - "http://www.arccosine.com/"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.4.2&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.3.300.271 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandasecurity.com/activescan]
"Description"=Panda ActiveScan 2.0
"Path"=C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.709]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=1.0.3.709]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.709]
"Description"=6.0.12.709
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
linkfilter@kaspersky.ru
{58018443-644d-0bb0-9b4f-4c48d704ded6}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
npwachk.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npdjvu.dll
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll
npwachk.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
arccosine.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default\extensions\
staged
{20a82645-c095-46ed-80e3-08825760534b}
{800b5000-a755-47e1-992b-48a1c1357f07}
{ef62e1ce-d2a4-4cdd-b7ec-92b120366b66}
C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default\searchplugins\
icqplugin-1.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin.xml
Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll [2009-10-20 68112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-06 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll [2009-10-20 268816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-06 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-01-03 13508608]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-01-03 86016]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
"avp"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe [2012-03-08 340520]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-03-12 417792]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"WINDVDPatch"=C:\WINDOWS\system32\CTHELPER.EXE [2002-02-07 40960]
"UpdReg"=C:\WINDOWS\UpdReg.EXE [2000-05-11 90112]
"Jet Detection"=C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe [2001-10-04 28672]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-03 98304]
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-10-20 219664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-17 239616]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\PC Oscilloscope\pcscope.exe"="C:\Program Files\PC Oscilloscope\pcscope.exe:*:Enabled:PC Oscilloscope"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.6\ICQ.exe"="C:\Program Files\ICQ7.6\ICQ.exe:*:Enabled:ICQ7.6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.6\ICQ.exe"="C:\Program Files\ICQ7.6\ICQ.exe:*:Enabled:ICQ7.6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"VIDC.FPS1"=frapsvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
======List of files/folders created in the last 1 month======
2012-09-07 21:24:27 ----D---- C:\Program Files\trend micro
2012-09-07 21:24:19 ----D---- C:\rsit
2012-09-07 14:58:00 ----ASH---- C:\pagefile.sys
2012-09-07 13:43:49 ----D---- C:\WINDOWS\Prefetch
2012-09-07 13:24:13 ----A---- C:\WINDOWS\pnplog.txt
2012-09-07 13:07:57 ----A---- C:\WINDOWS\system32\spxcoins.dll
2012-09-07 13:07:57 ----A---- C:\WINDOWS\system32\irclass.dll
2012-09-07 13:07:37 ----RA---- C:\WINDOWS\SET55.tmp
2012-09-07 13:07:34 ----RA---- C:\WINDOWS\SET49.tmp
2012-09-07 13:07:32 ----RA---- C:\WINDOWS\SET46.tmp
2012-09-06 20:14:29 ----A---- C:\WINDOWS\system32\drivers\AvgArCln.sys
2012-09-06 19:04:14 ----D---- C:\0a109e3b06f8f61f6c914b
2012-09-06 18:58:11 ----D---- C:\6c98aff78ab5def6d47d037bf3
2012-09-06 18:46:39 ----D---- C:\4ce403cfa0aa6609d6c34047ba
2012-09-04 21:18:19 ----A---- C:\WINDOWS\003220_.tmp
2012-09-04 19:04:34 ----A---- C:\WINDOWS\OEWABLog.txt
2012-09-04 18:55:03 ----A---- C:\WINDOWS\system32\drivers\ctlface.sys
2012-09-04 18:28:39 ----A---- C:\WINDOWS\imsins.BAK
2012-09-04 18:28:00 ----RA---- C:\WINDOWS\SET6D.tmp
2012-09-04 18:27:56 ----RA---- C:\WINDOWS\SET61.tmp
2012-09-04 18:27:53 ----RA---- C:\WINDOWS\SET5E.tmp
2012-09-04 18:26:57 ----A---- C:\WINDOWS\setuplog.txt
2012-09-04 17:56:08 ----D---- C:\Program Files\Driver Sweeper
2012-09-04 15:23:04 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\GlarySoft
2012-09-03 20:06:09 ----D---- C:\Samsung
2012-09-03 19:05:26 ----D---- C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
2012-09-03 14:00:25 ----D---- C:\Program Files\ATITool
2012-09-02 21:08:45 ----D---- C:\Program Files\SpeedFan
2012-09-02 16:00:01 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\atitray
2012-09-01 20:38:18 ----A---- C:\Program Files\ERRORLOG.TXT
2012-09-01 20:11:13 ----D---- C:\Program Files\AMD APP
2012-09-01 19:34:17 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ATI
2012-09-01 19:17:43 ----A---- C:\WINDOWS\system32\ativva6x.dat
2012-09-01 19:17:43 ----A---- C:\WINDOWS\system32\ATIDEMGX.dll
2012-09-01 19:17:41 ----A---- C:\WINDOWS\system32\atioglxx.dll
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\ativva5x.dat
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\atiicdxx.dat
2012-09-01 19:15:24 ----D---- C:\Program Files\ATI
2012-09-01 19:14:19 ----D---- C:\Program Files\ATI Technologies
2012-09-01 19:09:18 ----D---- C:\AMD
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\Nucleus.dll
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\dxgi.dll
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\d3dx10d_33.dll
2012-09-01 13:23:19 ----D---- C:\WINDOWS\system32\zálohadx
2012-09-01 13:22:47 ----A---- C:\WINDOWS\system32\d3dx10.dll
2012-09-01 13:22:47 ----A---- C:\WINDOWS\system32\d3d10.dll
2012-08-31 22:16:47 ----A---- C:\WINDOWS\dxsdkuninst.exe
2012-08-31 15:02:19 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\FreeStone Group
2012-08-12 15:34:47 ----A---- C:\WINDOWS\system32\lsdelete.exe
2012-08-12 14:25:01 ----A---- C:\WINDOWS\system32\drivers\Lbd.sys
2012-08-12 09:58:15 ----AD---- C:\WINDOWS\rundll16.exe
2012-08-12 09:58:15 ----AD---- C:\WINDOWS\logo1_.exe
2012-08-09 19:16:14 ----RA---- C:\WINDOWS\system32\tmp1FA.tmp
2012-08-09 19:16:14 ----RA---- C:\WINDOWS\system32\tmp1F9.tmp
======List of files/folders modified in the last 1 month======
2012-09-07 21:24:27 ----RD---- C:\Program Files
2012-09-07 21:09:55 ----D---- C:\WINDOWS\Temp
2012-09-07 17:05:30 ----A---- C:\WINDOWS\WINCMD.INI
2012-09-07 15:19:18 ----D---- C:\WINDOWS\system32\CatRoot2
2012-09-07 15:03:56 ----D---- C:\WINDOWS\system32\Setup
2012-09-07 15:03:47 ----D---- C:\WINDOWS\system32\usmt
2012-09-07 15:03:37 ----D---- C:\WINDOWS\AppPatch
2012-09-07 15:03:36 ----D---- C:\WINDOWS\ehome
2012-09-07 15:03:35 ----D---- C:\WINDOWS\ime
2012-09-07 15:03:34 ----RSD---- C:\WINDOWS\Fonts
2012-09-07 15:03:33 ----D---- C:\WINDOWS\Media
2012-09-07 15:03:20 ----D---- C:\WINDOWS\PeerNet
2012-09-07 15:03:04 ----D---- C:\WINDOWS\system32\npp
2012-09-07 15:02:57 ----D---- C:\WINDOWS\msagent
2012-09-07 15:00:51 ----D---- C:\WINDOWS\system32\1029
2012-09-07 15:00:42 ----D---- C:\WINDOWS\twain_32
2012-09-07 15:00:27 ----D---- C:\WINDOWS\system32\icsxml
2012-09-07 14:59:49 ----D---- C:\WINDOWS\system32\1033
2012-09-07 14:58:00 ----D---- C:\WINDOWS\Driver Cache
2012-09-07 14:32:30 ----SHD---- C:\WINDOWS\Installer
2012-09-07 13:55:12 ----D---- C:\WINDOWS
2012-09-07 13:54:58 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Kaspersky Lab
2012-09-07 13:51:08 ----D---- C:\WINDOWS\security
2012-09-07 13:51:05 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-09-07 13:47:51 ----D---- C:\WINDOWS\Registration
2012-09-07 13:47:46 ----D---- C:\WINDOWS\system32
2012-09-07 13:47:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-09-07 13:47:04 ----HD---- C:\WINDOWS\inf
2012-09-07 13:45:13 ----SHD---- C:\System Volume Information
2012-09-07 13:45:13 ----D---- C:\WINDOWS\system32\Restore
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\inetsrv
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\drivers
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\config
2012-09-07 13:39:57 ----D---- C:\WINDOWS\repair
2012-09-07 13:38:29 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-09-07 13:34:48 ----D---- C:\Program Files\Windows Media Player
2012-09-07 13:34:45 ----D---- C:\WINDOWS\Help
2012-09-07 13:33:55 ----A---- C:\WINDOWS\ODBCINST.INI
2012-09-07 13:33:40 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2012-09-07 13:33:36 ----D---- C:\WINDOWS\system32\ias
2012-09-07 13:33:04 ----RD---- C:\WINDOWS\Web
2012-09-07 13:32:53 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2012-09-07 13:32:40 ----A---- C:\WINDOWS\win.ini
2012-09-07 13:32:34 ----D---- C:\WINDOWS\system32\oobe
2012-09-07 13:32:33 ----D---- C:\WINDOWS\srchasst
2012-09-07 13:32:25 ----D---- C:\Program Files\Movie Maker
2012-09-07 13:32:14 ----D---- C:\Program Files\NetMeeting
2012-09-07 13:32:11 ----D---- C:\Program Files\Outlook Express
2012-09-07 13:32:10 ----D---- C:\Program Files\Common Files\System
2012-09-07 13:31:57 ----D---- C:\Program Files\Internet Explorer
2012-09-07 13:30:52 ----D---- C:\WINDOWS\system32\Com
2012-09-07 13:30:21 ----D---- C:\WINDOWS\system32\wbem
2012-09-07 13:30:18 ----D---- C:\Program Files\Windows NT
2012-09-07 13:28:33 ----SH---- C:\boot.ini
2012-09-07 13:09:09 ----D---- C:\WINDOWS\system32\CatRoot
2012-09-07 13:08:09 ----A---- C:\WINDOWS\system.ini
2012-09-07 13:07:57 ----D---- C:\WINDOWS\system
2012-09-07 13:07:47 ----ASH---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\desktop.ini
2012-09-06 21:53:27 ----D---- C:\Program Files\Mozilla Firefox
2012-09-04 21:51:45 ----A---- C:\Program Files\GPU-Z Sensor Log.txt
2012-09-04 21:18:02 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-09-04 20:08:56 ----D---- C:\Program Files\HijackThis
2012-09-04 19:04:27 ----D---- C:\WINDOWS\Debug
2012-09-04 16:16:25 ----AD---- C:\Program Files\Guru3D.com
2012-09-03 14:53:28 ----D---- C:\WINDOWS\system32\drivers\etc
2012-09-03 14:14:31 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2012-09-01 20:53:55 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-09-01 20:23:11 ----D---- C:\Program Files\Common Files\InstallShield
2012-09-01 20:20:56 ----D---- C:\WINDOWS\system32\DirectX
2012-08-31 22:24:03 ----D---- C:\WINDOWS\WinSxS
2012-08-31 22:19:48 ----RSD---- C:\WINDOWS\assembly
2012-08-30 22:12:36 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BOINC
2012-08-27 22:51:35 ----HD---- C:\WINDOWS\system32\GroupPolicy
2012-08-27 22:15:41 ----D---- C:\Program Files\Common Files\Adobe AIR
2012-08-27 22:05:43 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-08-27 21:52:39 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Adobe
2012-08-27 21:52:31 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-08-23 10:54:05 ----SD---- C:\WINDOWS\Tasks
2012-08-22 12:19:32 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\vlc
2012-08-19 21:21:44 ----D---- C:\Program Files\3DSimED_v.1.14b+Trk_Maker_v.1.07
2012-08-19 21:21:44 ----A---- C:\WINDOWS\3DSIMED.INI
2012-08-18 15:27:51 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\ICQ
2012-08-18 15:27:45 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Skype
2012-08-13 21:04:57 ----D---- C:\WINDOWS\pss
2012-08-12 18:20:00 ----D---- C:\WINDOWS\SxsCaPendDel
2012-08-12 14:21:28 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Lavasoft
2012-08-09 19:16:14 ----D---- C:\Program Files\OpenAL
2012-08-09 19:16:14 ----A---- C:\WINDOWS\system32\OpenAL32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-03 42368]
R0 AVG Anti-Rootkit;AVG Anti-Rootkit; C:\WINDOWS\System32\DRIVERS\avgarkt.sys [2007-01-31 5632]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 klbg;Kaspersky Lab Boot Guard Driver; C:\WINDOWS\system32\drivers\klbg.sys [2009-10-14 36880]
R0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-10-28 64512]
R0 pavboot;pavboot; C:\WINDOWS\system32\drivers\pavboot.sys [2009-06-30 28552]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2011-03-18 25240]
R0 Vax347b;Vax347b; C:\WINDOWS\system32\DRIVERS\Vax347b.sys [2005-04-25 159616]
R0 Vax347s;Vax347s; C:\WINDOWS\System32\Drivers\Vax347s.sys [2004-04-30 5248]
R1 AvgArCln;Avg Anti-Rootkit Clean Driver; C:\WINDOWS\System32\DRIVERS\AvgArCln.sys [2007-01-18 3968]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2009-11-11 315408]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R2 cpuz134;cpuz134; \??\C:\WINDOWS\system32\drivers\cpuz134_x32.sys []
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\PfModNT.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
R3 E1000;Intel(R) PRO/1000 Adapter Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2003-10-28 130048]
R3 emu10k;Creative SB Live! Value (WDM); C:\WINDOWS\system32\drivers\emu10k1f.sys [2001-08-14 775296]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlface.sys [1999-09-01 9612]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\WINDOWS\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfman.sys [2001-08-31 36992]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\system32\DRIVERS\ATITool.sys [2006-11-10 24064]
S3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\System32\drivers\ctac32k.sys [2002-03-22 114944]
S3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2002-03-22 835636]
S3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
S3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\System32\drivers\ctprxy2k.sys [2002-03-22 11068]
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\System32\drivers\ctsfm2k.sys [2002-03-22 211724]
S3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\System32\drivers\emupia2k.sys [2002-03-22 156604]
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2002-03-22 991656]
S3 hidgame;Microsoft Hid to Joystick Port Enabler; C:\WINDOWS\system32\DRIVERS\hidgame.sys [2001-10-25 8576]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2002-03-22 195432]
S3 RivaTuner32;RivaTuner32; \??\C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys []
S3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
R2 avp;Kaspersky Internet Security; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe [2012-03-08 340520]
R2 StarWindService;StarWind iSCSI Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe [2005-04-02 217600]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-27 250568]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdate1ca6c77910a2670;Google Update Service (gupdate1ca6c77910a2670); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-03 133104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-03 133104]
S3 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-05-06 153376]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
S3 NetSvc;Intel NCS NetService; c:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe [2003-10-30 143360]
S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 Apache2.2;Apache2.2; C:\Program Files\xampp\apache\bin\httpd.exe [2009-12-20 29416]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Lavasoft\Ad-Aware\AAWService.exe [2012-08-12 2152720]
S4 MySQL;MySQL; C:\Program Files\xampp\mysql\bin\mysqld.exe [2009-12-20 6095504]
S4 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-05 774144]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S4 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-01-03 155716]
-----------------EOF-----------------
pokusil jsem se nainstaloval os na nový disk ale grafika stejně blbla? Nevím nejlepší bude format c,d ale nevím jestli se mi nedostal škodlivý program někam kde mi uniká. Protože novější CCC Ati pořád hlásí chybu. Program na monitor teplot padá pod vlivem ATiOglxx.dll. Prohlížeč se přestavuje podle svého. ActiveX a obrázky se vypínají v IE, Program na zvýšení otáček GK nejde zvýšit, protože program hlásí chybu kernelu. Pravděpodobně to chce přeinstalovat systém, ale přesto tam nebude nějaký problém v havěti nebo v biosu? Podobný problém je i u druhého pc, ale tam přeinstalace vyřešila vše. Ovšem MB asi dosloužívá, tak moje je novější přesto blbne. Našel jsem u rodiče v pc dva rootkity! Děkuji
Logfile of random's system information tool 1.09 (written by random/random)
Run by Hans Peter Geerdes at 2012-09-07 21:24:19
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 47 GB (31%) free of 153 GB
Total RAM: 3582 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:27:21, on 7.9.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\SpeedFan\speedfan.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Hans Peter Geerdes\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Hans Peter Geerdes.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wchoppers.com/index.php?nv=d ... 1329174160
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [avp] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: Přidat do Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
O9 - Extra button: &Virtuální klávesnice - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: &Kontrola adres URL - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan ... stubie.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553530000} - https://download.macromedia.com/pub/sho ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{255349B3-9540-411C-94D9-1CDEDD200EED}: NameServer = 10.0.0.138
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security (avp) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
O23 - Service: Google Update Service (gupdate1ca6c77910a2670) (gupdate1ca6c77910a2670) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - c:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
--
End of file - 7517 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-343818398-1647877149-725345543-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-343818398-1647877149-725345543-1003.job
C:\WINDOWS\tasks\SmartDefrag.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default
prefs.js - "browser.startup.homepage" - "http://www.arccosine.com/"
prefs.js - "keyword.URL" - "http://search.icq.com/search/afe_result ... r=1.4.2&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.3.300.271 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1166636.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandasecurity.com/activescan]
"Description"=Panda ActiveScan 2.0
"Path"=C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.709]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=1.0.3.709]
"Description"=RealJukebox Netscape Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.709]
"Description"=6.0.12.709
"Path"=c:\program files\real\realplayer\Netscape6\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
linkfilter@kaspersky.ru
{58018443-644d-0bb0-9b4f-4c48d704ded6}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nppl3260.xpt
npwachk.xpt
nsJSRealPlayerPlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npdjvu.dll
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll
npwachk.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
arccosine.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default\extensions\
staged
{20a82645-c095-46ed-80e3-08825760534b}
{800b5000-a755-47e1-992b-48a1c1357f07}
{ef62e1ce-d2a4-4cdd-b7ec-92b120366b66}
C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Mozilla\Firefox\Profiles\7lrfbsbf.default\searchplugins\
icqplugin-1.xml
icqplugin-2.xml
icqplugin-3.xml
icqplugin.xml
Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27 63944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll [2009-10-20 68112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-06 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll [2009-10-20 268816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-06 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-01-03 13508608]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-01-03 86016]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
"avp"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe [2012-03-08 340520]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-03-12 417792]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27 919008]
"WINDVDPatch"=C:\WINDOWS\system32\CTHELPER.EXE [2002-02-07 40960]
"UpdReg"=C:\WINDOWS\UpdReg.EXE [2000-05-11 90112]
"Jet Detection"=C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe [2001-10-04 28672]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-03 98304]
C:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-10-20 219664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-17 239616]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=153
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\PC Oscilloscope\pcscope.exe"="C:\Program Files\PC Oscilloscope\pcscope.exe:*:Enabled:PC Oscilloscope"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.6\ICQ.exe"="C:\Program Files\ICQ7.6\ICQ.exe:*:Enabled:ICQ7.6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.6\ICQ.exe"="C:\Program Files\ICQ7.6\ICQ.exe:*:Enabled:ICQ7.6"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"VIDC.FPS1"=frapsvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
======List of files/folders created in the last 1 month======
2012-09-07 21:24:27 ----D---- C:\Program Files\trend micro
2012-09-07 21:24:19 ----D---- C:\rsit
2012-09-07 14:58:00 ----ASH---- C:\pagefile.sys
2012-09-07 13:43:49 ----D---- C:\WINDOWS\Prefetch
2012-09-07 13:24:13 ----A---- C:\WINDOWS\pnplog.txt
2012-09-07 13:07:57 ----A---- C:\WINDOWS\system32\spxcoins.dll
2012-09-07 13:07:57 ----A---- C:\WINDOWS\system32\irclass.dll
2012-09-07 13:07:37 ----RA---- C:\WINDOWS\SET55.tmp
2012-09-07 13:07:34 ----RA---- C:\WINDOWS\SET49.tmp
2012-09-07 13:07:32 ----RA---- C:\WINDOWS\SET46.tmp
2012-09-06 20:14:29 ----A---- C:\WINDOWS\system32\drivers\AvgArCln.sys
2012-09-06 19:04:14 ----D---- C:\0a109e3b06f8f61f6c914b
2012-09-06 18:58:11 ----D---- C:\6c98aff78ab5def6d47d037bf3
2012-09-06 18:46:39 ----D---- C:\4ce403cfa0aa6609d6c34047ba
2012-09-04 21:18:19 ----A---- C:\WINDOWS\003220_.tmp
2012-09-04 19:04:34 ----A---- C:\WINDOWS\OEWABLog.txt
2012-09-04 18:55:03 ----A---- C:\WINDOWS\system32\drivers\ctlface.sys
2012-09-04 18:28:39 ----A---- C:\WINDOWS\imsins.BAK
2012-09-04 18:28:00 ----RA---- C:\WINDOWS\SET6D.tmp
2012-09-04 18:27:56 ----RA---- C:\WINDOWS\SET61.tmp
2012-09-04 18:27:53 ----RA---- C:\WINDOWS\SET5E.tmp
2012-09-04 18:26:57 ----A---- C:\WINDOWS\setuplog.txt
2012-09-04 17:56:08 ----D---- C:\Program Files\Driver Sweeper
2012-09-04 15:23:04 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\GlarySoft
2012-09-03 20:06:09 ----D---- C:\Samsung
2012-09-03 19:05:26 ----D---- C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
2012-09-03 14:00:25 ----D---- C:\Program Files\ATITool
2012-09-02 21:08:45 ----D---- C:\Program Files\SpeedFan
2012-09-02 16:00:01 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\atitray
2012-09-01 20:38:18 ----A---- C:\Program Files\ERRORLOG.TXT
2012-09-01 20:11:13 ----D---- C:\Program Files\AMD APP
2012-09-01 19:34:17 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\ATI
2012-09-01 19:17:43 ----A---- C:\WINDOWS\system32\ativva6x.dat
2012-09-01 19:17:43 ----A---- C:\WINDOWS\system32\ATIDEMGX.dll
2012-09-01 19:17:41 ----A---- C:\WINDOWS\system32\atioglxx.dll
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\ativva5x.dat
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2012-09-01 19:17:40 ----A---- C:\WINDOWS\system32\atiicdxx.dat
2012-09-01 19:15:24 ----D---- C:\Program Files\ATI
2012-09-01 19:14:19 ----D---- C:\Program Files\ATI Technologies
2012-09-01 19:09:18 ----D---- C:\AMD
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\Nucleus.dll
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\dxgi.dll
2012-09-01 13:27:33 ----A---- C:\WINDOWS\system32\d3dx10d_33.dll
2012-09-01 13:23:19 ----D---- C:\WINDOWS\system32\zálohadx
2012-09-01 13:22:47 ----A---- C:\WINDOWS\system32\d3dx10.dll
2012-09-01 13:22:47 ----A---- C:\WINDOWS\system32\d3d10.dll
2012-08-31 22:16:47 ----A---- C:\WINDOWS\dxsdkuninst.exe
2012-08-31 15:02:19 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\FreeStone Group
2012-08-12 15:34:47 ----A---- C:\WINDOWS\system32\lsdelete.exe
2012-08-12 14:25:01 ----A---- C:\WINDOWS\system32\drivers\Lbd.sys
2012-08-12 09:58:15 ----AD---- C:\WINDOWS\rundll16.exe
2012-08-12 09:58:15 ----AD---- C:\WINDOWS\logo1_.exe
2012-08-09 19:16:14 ----RA---- C:\WINDOWS\system32\tmp1FA.tmp
2012-08-09 19:16:14 ----RA---- C:\WINDOWS\system32\tmp1F9.tmp
======List of files/folders modified in the last 1 month======
2012-09-07 21:24:27 ----RD---- C:\Program Files
2012-09-07 21:09:55 ----D---- C:\WINDOWS\Temp
2012-09-07 17:05:30 ----A---- C:\WINDOWS\WINCMD.INI
2012-09-07 15:19:18 ----D---- C:\WINDOWS\system32\CatRoot2
2012-09-07 15:03:56 ----D---- C:\WINDOWS\system32\Setup
2012-09-07 15:03:47 ----D---- C:\WINDOWS\system32\usmt
2012-09-07 15:03:37 ----D---- C:\WINDOWS\AppPatch
2012-09-07 15:03:36 ----D---- C:\WINDOWS\ehome
2012-09-07 15:03:35 ----D---- C:\WINDOWS\ime
2012-09-07 15:03:34 ----RSD---- C:\WINDOWS\Fonts
2012-09-07 15:03:33 ----D---- C:\WINDOWS\Media
2012-09-07 15:03:20 ----D---- C:\WINDOWS\PeerNet
2012-09-07 15:03:04 ----D---- C:\WINDOWS\system32\npp
2012-09-07 15:02:57 ----D---- C:\WINDOWS\msagent
2012-09-07 15:00:51 ----D---- C:\WINDOWS\system32\1029
2012-09-07 15:00:42 ----D---- C:\WINDOWS\twain_32
2012-09-07 15:00:27 ----D---- C:\WINDOWS\system32\icsxml
2012-09-07 14:59:49 ----D---- C:\WINDOWS\system32\1033
2012-09-07 14:58:00 ----D---- C:\WINDOWS\Driver Cache
2012-09-07 14:32:30 ----SHD---- C:\WINDOWS\Installer
2012-09-07 13:55:12 ----D---- C:\WINDOWS
2012-09-07 13:54:58 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Kaspersky Lab
2012-09-07 13:51:08 ----D---- C:\WINDOWS\security
2012-09-07 13:51:05 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-09-07 13:47:51 ----D---- C:\WINDOWS\Registration
2012-09-07 13:47:46 ----D---- C:\WINDOWS\system32
2012-09-07 13:47:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2012-09-07 13:47:04 ----HD---- C:\WINDOWS\inf
2012-09-07 13:45:13 ----SHD---- C:\System Volume Information
2012-09-07 13:45:13 ----D---- C:\WINDOWS\system32\Restore
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\inetsrv
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\drivers
2012-09-07 13:42:54 ----D---- C:\WINDOWS\system32\config
2012-09-07 13:39:57 ----D---- C:\WINDOWS\repair
2012-09-07 13:38:29 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-09-07 13:34:48 ----D---- C:\Program Files\Windows Media Player
2012-09-07 13:34:45 ----D---- C:\WINDOWS\Help
2012-09-07 13:33:55 ----A---- C:\WINDOWS\ODBCINST.INI
2012-09-07 13:33:40 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2012-09-07 13:33:36 ----D---- C:\WINDOWS\system32\ias
2012-09-07 13:33:04 ----RD---- C:\WINDOWS\Web
2012-09-07 13:32:53 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2012-09-07 13:32:40 ----A---- C:\WINDOWS\win.ini
2012-09-07 13:32:34 ----D---- C:\WINDOWS\system32\oobe
2012-09-07 13:32:33 ----D---- C:\WINDOWS\srchasst
2012-09-07 13:32:25 ----D---- C:\Program Files\Movie Maker
2012-09-07 13:32:14 ----D---- C:\Program Files\NetMeeting
2012-09-07 13:32:11 ----D---- C:\Program Files\Outlook Express
2012-09-07 13:32:10 ----D---- C:\Program Files\Common Files\System
2012-09-07 13:31:57 ----D---- C:\Program Files\Internet Explorer
2012-09-07 13:30:52 ----D---- C:\WINDOWS\system32\Com
2012-09-07 13:30:21 ----D---- C:\WINDOWS\system32\wbem
2012-09-07 13:30:18 ----D---- C:\Program Files\Windows NT
2012-09-07 13:28:33 ----SH---- C:\boot.ini
2012-09-07 13:09:09 ----D---- C:\WINDOWS\system32\CatRoot
2012-09-07 13:08:09 ----A---- C:\WINDOWS\system.ini
2012-09-07 13:07:57 ----D---- C:\WINDOWS\system
2012-09-07 13:07:47 ----ASH---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\desktop.ini
2012-09-06 21:53:27 ----D---- C:\Program Files\Mozilla Firefox
2012-09-04 21:51:45 ----A---- C:\Program Files\GPU-Z Sensor Log.txt
2012-09-04 21:18:02 ----D---- C:\WINDOWS\system32\ReinstallBackups
2012-09-04 20:08:56 ----D---- C:\Program Files\HijackThis
2012-09-04 19:04:27 ----D---- C:\WINDOWS\Debug
2012-09-04 16:16:25 ----AD---- C:\Program Files\Guru3D.com
2012-09-03 14:53:28 ----D---- C:\WINDOWS\system32\drivers\etc
2012-09-03 14:14:31 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Spybot - Search & Destroy
2012-09-01 20:53:55 ----DC---- C:\WINDOWS\system32\DRVSTORE
2012-09-01 20:23:11 ----D---- C:\Program Files\Common Files\InstallShield
2012-09-01 20:20:56 ----D---- C:\WINDOWS\system32\DirectX
2012-08-31 22:24:03 ----D---- C:\WINDOWS\WinSxS
2012-08-31 22:19:48 ----RSD---- C:\WINDOWS\assembly
2012-08-30 22:12:36 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\BOINC
2012-08-27 22:51:35 ----HD---- C:\WINDOWS\system32\GroupPolicy
2012-08-27 22:15:41 ----D---- C:\Program Files\Common Files\Adobe AIR
2012-08-27 22:05:43 ----SD---- C:\WINDOWS\Downloaded Program Files
2012-08-27 21:52:39 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Adobe
2012-08-27 21:52:31 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-08-23 10:54:05 ----SD---- C:\WINDOWS\Tasks
2012-08-22 12:19:32 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\vlc
2012-08-19 21:21:44 ----D---- C:\Program Files\3DSimED_v.1.14b+Trk_Maker_v.1.07
2012-08-19 21:21:44 ----A---- C:\WINDOWS\3DSIMED.INI
2012-08-18 15:27:51 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\ICQ
2012-08-18 15:27:45 ----D---- C:\Documents and Settings\Hans Peter Geerdes\Data aplikací\Skype
2012-08-13 21:04:57 ----D---- C:\WINDOWS\pss
2012-08-12 18:20:00 ----D---- C:\WINDOWS\SxsCaPendDel
2012-08-12 14:21:28 ----D---- C:\Documents and Settings\All Users.WINDOWS\Data aplikací\Lavasoft
2012-08-09 19:16:14 ----D---- C:\Program Files\OpenAL
2012-08-09 19:16:14 ----A---- C:\WINDOWS\system32\OpenAL32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtr Intel sběrnice AGP; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-03 42368]
R0 AVG Anti-Rootkit;AVG Anti-Rootkit; C:\WINDOWS\System32\DRIVERS\avgarkt.sys [2007-01-31 5632]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 klbg;Kaspersky Lab Boot Guard Driver; C:\WINDOWS\system32\drivers\klbg.sys [2009-10-14 36880]
R0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-10-28 64512]
R0 pavboot;pavboot; C:\WINDOWS\system32\drivers\pavboot.sys [2009-06-30 28552]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2011-03-18 25240]
R0 Vax347b;Vax347b; C:\WINDOWS\system32\DRIVERS\Vax347b.sys [2005-04-25 159616]
R0 Vax347s;Vax347s; C:\WINDOWS\System32\Drivers\Vax347s.sys [2004-04-30 5248]
R1 AvgArCln;Avg Anti-Rootkit Clean Driver; C:\WINDOWS\System32\DRIVERS\AvgArCln.sys [2007-01-18 3968]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2009-11-11 315408]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R2 cpuz134;cpuz134; \??\C:\WINDOWS\system32\drivers\cpuz134_x32.sys []
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\PfModNT.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
R3 E1000;Intel(R) PRO/1000 Adapter Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2003-10-28 130048]
R3 emu10k;Creative SB Live! Value (WDM); C:\WINDOWS\system32\drivers\emu10k1f.sys [2001-08-14 775296]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlface.sys [1999-09-01 9612]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\WINDOWS\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfman.sys [2001-08-31 36992]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\system32\DRIVERS\ATITool.sys [2006-11-10 24064]
S3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\System32\drivers\ctac32k.sys [2002-03-22 114944]
S3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2002-03-22 835636]
S3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
S3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\System32\drivers\ctprxy2k.sys [2002-03-22 11068]
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\System32\drivers\ctsfm2k.sys [2002-03-22 211724]
S3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\System32\drivers\emupia2k.sys [2002-03-22 156604]
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2002-03-22 991656]
S3 hidgame;Microsoft Hid to Joystick Port Enabler; C:\WINDOWS\system32\DRIVERS\hidgame.sys [2001-10-25 8576]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2002-03-22 195432]
S3 RivaTuner32;RivaTuner32; \??\C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys []
S3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
R2 avp;Kaspersky Internet Security; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe [2012-03-08 340520]
R2 StarWindService;StarWind iSCSI Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe [2005-04-02 217600]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-27 250568]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdate1ca6c77910a2670;Google Update Service (gupdate1ca6c77910a2670); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-03 133104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-03 133104]
S3 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-05-06 153376]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
S3 NetSvc;Intel NCS NetService; c:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe [2003-10-30 143360]
S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 Apache2.2;Apache2.2; C:\Program Files\xampp\apache\bin\httpd.exe [2009-12-20 29416]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Lavasoft\Ad-Aware\AAWService.exe [2012-08-12 2152720]
S4 MySQL;MySQL; C:\Program Files\xampp\mysql\bin\mysqld.exe [2009-12-20 6095504]
S4 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-05 774144]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S4 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-01-03 155716]
-----------------EOF-----------------