Prosím o preventivku
Napsal: 28 dub 2013 18:11
Zdravím, poprosil bych o preventivku.Díky
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16537 BrowserJavaVersion: 10.9.2
Run by Hans at 19:09:02 on 2013-04-28
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.2044.772 [GMT 2:00]
.
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_991d5ea79febb417\STacSV.exe
C:\Windows\system32\AUDIODG.EXE
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\CyberLink\CyberLink Live\CLSomaMonitorService.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\CyberLink\CyberLink Live\CLPushUpdateService.exe
C:\Program Files\CyberLink\CyberLink Live\CLSomaService.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\The KMPlayer\KMPlayer.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k WerSvcGroup
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.novinky.cz/
BHO: Podpora odkazu pro Adobe PDF Reader: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [PC Suite Tray] "c:\program files\nokia\nokia pc suite 7\PCSuite.exe" -onlytray
uRun: [Zoner Photo Studio Autoupdate] c:\program files\zoner\photo studio 15\program32\ZPSTRAY.EXE
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [NSU_agent] "c:\program files\nokia\nokia software updater\nsu3ui_agent.exe"
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\micros~3\office14\ONBttnIE.dll/105
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
TCP: NameServer = 94.74.192.252 94.74.192.244
TCP: Interfaces\{49975416-1421-4B68-B327-C442D5980BC4} : DHCPNameServer = 94.74.192.252 94.74.192.244
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\hans\appdata\roaming\mozilla\firefox\profiles\7nm9qbik.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.novinky.cz/
FF - plugin: c:\progra~1\common~1\nero\browse~1\npBrowserPlugin.dll
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\users\hans\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_169.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-3-6 242240]
R1 pctgntdi;pctgntdi;c:\windows\system32\drivers\pctgntdi.sys [2012-11-24 233136]
R2 CyberLink Live Monitor Service;CyberLink Live Monitor Service;c:\program files\cyberlink\cyberlink live\CLSomaMonitorService.exe [2008-4-25 171040]
R2 CyberLink Live Push Update Service;CyberLink Live Push Update Service;c:\program files\cyberlink\cyberlink live\CLPushUpdateService.exe [2008-4-25 113696]
R2 CyberLink Live Service;CyberLink Live Service;c:\program files\cyberlink\cyberlink live\CLSomaService.exe [2008-4-25 322592]
R2 eamonm;eamonm;c:\windows\system32\drivers\eamonm.sys [2010-12-21 137144]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2011-1-12 810144]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2010-12-21 95384]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2012-7-13 769432]
R2 PCTAppEvent;PCTAppEvent Driver;c:\windows\system32\drivers\PCTAppEvent.sys [2012-11-24 88040]
R3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R);c:\windows\system32\drivers\e1y6032.sys [2009-7-14 214016]
R3 pctNDIS;PC Tools Driver;c:\windows\system32\drivers\pctNdis.sys [2012-11-24 58816]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-11-9 160944]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter.sys [2012-11-24 70664]
S3 pctplfw;pctplfw;c:\windows\system32\drivers\pctplfw.sys [2012-11-24 115216]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-15 52224]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-11-15 1343400]
.
=============== Created Last 30 ================
.
2013-04-28 16:59:01 -------- d-----w- c:\program files\trend micro
2013-04-26 07:18:03 6906960 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{3ac1bafc-8dee-496d-8744-fc5ec3a43285}\mpengine.dll
2013-04-26 06:19:51 73728 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut47_74B9CE5DF1F4447F982DCA29A461B529.exe
2013-04-26 06:19:51 73728 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut46_74B9CE5DF1F4447F982DCA29A461B529.exe
2013-04-26 06:19:51 53248 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\ARPPRODUCTICON.exe
2013-04-26 06:19:51 49152 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
2013-04-26 06:19:51 49152 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
2013-04-26 06:19:51 -------- d-----w- c:\users\hans\appdata\local\Nokia
2013-04-26 05:38:56 -------- d-----w- c:\program files\common files\PCSuite
2013-04-26 05:38:55 -------- d-----w- c:\program files\common files\Nokia
2013-04-26 05:38:48 19072 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys
2013-04-26 05:38:43 -------- d-----w- c:\program files\PC Connectivity Solution
2013-04-26 05:38:29 -------- d-----w- c:\program files\Nokia
2013-04-26 04:55:31 -------- d-----w- c:\users\hans\appdata\roaming\mp3DirectCut
2013-04-26 04:54:57 -------- d-----w- c:\program files\mp3DirectCut
2013-04-24 17:40:15 -------- d-----w- c:\program files\common files\Mobipocket Shared
2013-04-24 17:40:14 -------- d-----w- c:\program files\Mobipocket.com
2013-04-23 23:01:25 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-20 04:13:32 -------- d-----w- c:\program files\ESET
2013-04-13 18:31:15 -------- d-----w- c:\program files\The Adventure Company
2013-04-13 18:31:03 155648 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iuser.dll
2013-04-13 18:31:02 692224 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iKernel.dll
2013-04-13 18:31:02 57344 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\ctor.dll
2013-04-13 18:31:02 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\DotNetInstaller.exe
2013-04-13 18:31:02 237568 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iscript.dll
2013-04-13 18:30:56 282756 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\setup.dll
2013-04-13 18:30:56 163972 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iGdi.dll
2013-04-12 15:05:25 -------- d-----w- c:\users\hans\appdata\local\Nero_AG
2013-04-12 15:05:03 -------- d-----w- c:\users\hans\appdata\local\Nero
2013-04-10 04:54:53 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-04-10 04:54:50 196328 ----a-w- c:\windows\system32\drivers\fvevol.sys
2013-04-10 04:54:44 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-04-10 04:54:44 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-04-10 04:54:42 69632 ----a-w- c:\windows\system32\smss.exe
2013-04-10 04:54:42 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-04-10 04:54:22 3217408 ----a-w- c:\windows\system32\mstscax.dll
2013-04-10 04:54:21 36864 ----a-w- c:\windows\system32\tsgqec.dll
2013-04-10 04:54:21 131584 ----a-w- c:\windows\system32\aaclient.dll
.
==================== Find3M ====================
.
2013-04-19 02:17:12 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-19 02:17:12 691592 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-15 05:46:27 8952608 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-03-15 05:46:27 892704 ----a-w- c:\windows\system32\nvdispgenco3231422.dll
2013-03-15 05:46:27 7959000 ----a-w- c:\windows\system32\nvcuda.dll
2013-03-15 05:46:27 6271872 ----a-w- c:\windows\system32\nvopencl.dll
2013-03-15 05:46:27 2728736 ----a-w- c:\windows\system32\nvcuvid.dll
2013-03-15 05:46:27 2539128 ----a-w- c:\windows\system32\nvapi.dll
2013-03-15 05:46:27 20542752 ----a-w- c:\windows\system32\nvoglv32.dll
2013-03-15 05:46:27 1995552 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-03-15 05:46:27 17560352 ----a-w- c:\windows\system32\nvcompiler.dll
2013-03-15 05:46:27 15042928 ----a-w- c:\windows\system32\nvd3dum.dll
2013-03-15 05:46:27 13088000 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-03-15 05:46:27 1012512 ----a-w- c:\windows\system32\nvdispco3231422.dll
2013-03-15 02:59:30 4119328 ----a-w- c:\windows\system32\nvcpl.dll
2013-03-15 02:59:30 3014432 ----a-w- c:\windows\system32\nvsvc.dll
2013-03-15 02:59:27 634144 ----a-w- c:\windows\system32\nvvsvc.exe
2013-03-15 02:59:27 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2013-03-15 02:59:26 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-03-15 02:59:26 223008 ----a-w- c:\windows\system32\nvmctray.dll
2013-03-11 23:10:56 237088 ------w- c:\windows\system32\MpSigStub.exe
2013-03-06 10:31:13 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-02-12 04:48:31 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-02-12 03:32:45 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-10 03:20:39 892704 ----a-w- c:\windows\system32\nvdispgenco3220162.dll
2013-02-10 03:20:39 1012512 ----a-w- c:\windows\system32\nvdispco3220294.dll
.
============= FINISH: 19:09:30,85 ===============
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16537 BrowserJavaVersion: 10.9.2
Run by Hans at 19:09:02 on 2013-04-28
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.2044.772 [GMT 2:00]
.
AV: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
SP: ESET NOD32 Antivirus 4.2 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_991d5ea79febb417\STacSV.exe
C:\Windows\system32\AUDIODG.EXE
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\CyberLink\CyberLink Live\CLSomaMonitorService.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\CyberLink\CyberLink Live\CLPushUpdateService.exe
C:\Program Files\CyberLink\CyberLink Live\CLSomaService.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_169.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Program Files\The KMPlayer\KMPlayer.exe
C:\Windows\system32\taskmgr.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k WerSvcGroup
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.novinky.cz/
BHO: Podpora odkazu pro Adobe PDF Reader: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [PC Suite Tray] "c:\program files\nokia\nokia pc suite 7\PCSuite.exe" -onlytray
uRun: [Zoner Photo Studio Autoupdate] c:\program files\zoner\photo studio 15\program32\ZPSTRAY.EXE
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [NSU_agent] "c:\program files\nokia\nokia software updater\nsu3ui_agent.exe"
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\micros~3\office14\ONBttnIE.dll/105
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
TCP: NameServer = 94.74.192.252 94.74.192.244
TCP: Interfaces\{49975416-1421-4B68-B327-C442D5980BC4} : DHCPNameServer = 94.74.192.252 94.74.192.244
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\hans\appdata\roaming\mozilla\firefox\profiles\7nm9qbik.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.novinky.cz/
FF - plugin: c:\progra~1\common~1\nero\browse~1\npBrowserPlugin.dll
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\users\hans\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_169.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-3-6 242240]
R1 pctgntdi;pctgntdi;c:\windows\system32\drivers\pctgntdi.sys [2012-11-24 233136]
R2 CyberLink Live Monitor Service;CyberLink Live Monitor Service;c:\program files\cyberlink\cyberlink live\CLSomaMonitorService.exe [2008-4-25 171040]
R2 CyberLink Live Push Update Service;CyberLink Live Push Update Service;c:\program files\cyberlink\cyberlink live\CLPushUpdateService.exe [2008-4-25 113696]
R2 CyberLink Live Service;CyberLink Live Service;c:\program files\cyberlink\cyberlink live\CLSomaService.exe [2008-4-25 322592]
R2 eamonm;eamonm;c:\windows\system32\drivers\eamonm.sys [2010-12-21 137144]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2011-1-12 810144]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2010-12-21 95384]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2012-7-13 769432]
R2 PCTAppEvent;PCTAppEvent Driver;c:\windows\system32\drivers\PCTAppEvent.sys [2012-11-24 88040]
R3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R);c:\windows\system32\drivers\e1y6032.sys [2009-7-14 214016]
R3 pctNDIS;PC Tools Driver;c:\windows\system32\drivers\pctNdis.sys [2012-11-24 58816]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-11-9 160944]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter.sys [2012-11-24 70664]
S3 pctplfw;pctplfw;c:\windows\system32\drivers\pctplfw.sys [2012-11-24 115216]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-15 52224]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-11-15 1343400]
.
=============== Created Last 30 ================
.
2013-04-28 16:59:01 -------- d-----w- c:\program files\trend micro
2013-04-26 07:18:03 6906960 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{3ac1bafc-8dee-496d-8744-fc5ec3a43285}\mpengine.dll
2013-04-26 06:19:51 73728 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut47_74B9CE5DF1F4447F982DCA29A461B529.exe
2013-04-26 06:19:51 73728 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut46_74B9CE5DF1F4447F982DCA29A461B529.exe
2013-04-26 06:19:51 53248 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\ARPPRODUCTICON.exe
2013-04-26 06:19:51 49152 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
2013-04-26 06:19:51 49152 ----a-r- c:\users\hans\appdata\roaming\microsoft\installer\{7130468a-f53f-4698-8c09-a339ea3b05e6}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
2013-04-26 06:19:51 -------- d-----w- c:\users\hans\appdata\local\Nokia
2013-04-26 05:38:56 -------- d-----w- c:\program files\common files\PCSuite
2013-04-26 05:38:55 -------- d-----w- c:\program files\common files\Nokia
2013-04-26 05:38:48 19072 ----a-w- c:\windows\system32\drivers\pccsmcfd.sys
2013-04-26 05:38:43 -------- d-----w- c:\program files\PC Connectivity Solution
2013-04-26 05:38:29 -------- d-----w- c:\program files\Nokia
2013-04-26 04:55:31 -------- d-----w- c:\users\hans\appdata\roaming\mp3DirectCut
2013-04-26 04:54:57 -------- d-----w- c:\program files\mp3DirectCut
2013-04-24 17:40:15 -------- d-----w- c:\program files\common files\Mobipocket Shared
2013-04-24 17:40:14 -------- d-----w- c:\program files\Mobipocket.com
2013-04-23 23:01:25 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-20 04:13:32 -------- d-----w- c:\program files\ESET
2013-04-13 18:31:15 -------- d-----w- c:\program files\The Adventure Company
2013-04-13 18:31:03 155648 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iuser.dll
2013-04-13 18:31:02 692224 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iKernel.dll
2013-04-13 18:31:02 57344 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\ctor.dll
2013-04-13 18:31:02 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\DotNetInstaller.exe
2013-04-13 18:31:02 237568 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iscript.dll
2013-04-13 18:30:56 282756 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\setup.dll
2013-04-13 18:30:56 163972 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iGdi.dll
2013-04-12 15:05:25 -------- d-----w- c:\users\hans\appdata\local\Nero_AG
2013-04-12 15:05:03 -------- d-----w- c:\users\hans\appdata\local\Nero
2013-04-10 04:54:53 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-04-10 04:54:50 196328 ----a-w- c:\windows\system32\drivers\fvevol.sys
2013-04-10 04:54:44 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-04-10 04:54:44 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-04-10 04:54:42 69632 ----a-w- c:\windows\system32\smss.exe
2013-04-10 04:54:42 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-04-10 04:54:22 3217408 ----a-w- c:\windows\system32\mstscax.dll
2013-04-10 04:54:21 36864 ----a-w- c:\windows\system32\tsgqec.dll
2013-04-10 04:54:21 131584 ----a-w- c:\windows\system32\aaclient.dll
.
==================== Find3M ====================
.
2013-04-19 02:17:12 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-04-19 02:17:12 691592 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-15 05:46:27 8952608 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-03-15 05:46:27 892704 ----a-w- c:\windows\system32\nvdispgenco3231422.dll
2013-03-15 05:46:27 7959000 ----a-w- c:\windows\system32\nvcuda.dll
2013-03-15 05:46:27 6271872 ----a-w- c:\windows\system32\nvopencl.dll
2013-03-15 05:46:27 2728736 ----a-w- c:\windows\system32\nvcuvid.dll
2013-03-15 05:46:27 2539128 ----a-w- c:\windows\system32\nvapi.dll
2013-03-15 05:46:27 20542752 ----a-w- c:\windows\system32\nvoglv32.dll
2013-03-15 05:46:27 1995552 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-03-15 05:46:27 17560352 ----a-w- c:\windows\system32\nvcompiler.dll
2013-03-15 05:46:27 15042928 ----a-w- c:\windows\system32\nvd3dum.dll
2013-03-15 05:46:27 13088000 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-03-15 05:46:27 1012512 ----a-w- c:\windows\system32\nvdispco3231422.dll
2013-03-15 02:59:30 4119328 ----a-w- c:\windows\system32\nvcpl.dll
2013-03-15 02:59:30 3014432 ----a-w- c:\windows\system32\nvsvc.dll
2013-03-15 02:59:27 634144 ----a-w- c:\windows\system32\nvvsvc.exe
2013-03-15 02:59:27 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2013-03-15 02:59:26 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-03-15 02:59:26 223008 ----a-w- c:\windows\system32\nvmctray.dll
2013-03-11 23:10:56 237088 ------w- c:\windows\system32\MpSigStub.exe
2013-03-06 10:31:13 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-02-12 04:48:31 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-02-12 03:32:45 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-10 03:20:39 892704 ----a-w- c:\windows\system32\nvdispgenco3220162.dll
2013-02-10 03:20:39 1012512 ----a-w- c:\windows\system32\nvdispco3220294.dll
.
============= FINISH: 19:09:30,85 ===============