prosím o kontrolu logu
Napsal: 29 bře 2014 09:52
Dobrý den.Používám počítač po synovi několik let.Jsem laik co se týče IT.Kamarád mě zjistil že mám několik let nefukční Avast a tak mě ho odinstaloval a nainstaloval free verzi.Mám comp neskutečně pomalý.Mbam našel snad 30 trojanů a avast také.Na radu kamaráde se na vás obracím s prosbou na kontrolu logu s rsit.Děkuji za pomoc.
Logfile of random's system information tool 1.09 (written by random/random)
Run by XP at 2014-03-27 13:51:14
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 9 GB (12%) free of 76 GB
Total RAM: 479 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:53:09, on 27.3.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\csrss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\Explorer.EXE
C:\windows\system32\spoolsv.exe
C:\windows\System32\SCardSvr.exe
C:\windows\system32\svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\windows\System32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\windows\system32\RunDll32.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Cobian Backup 8\cbInterface.exe
C:\windows\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Documents and Settings\XP\Dokumenty\Stažené soubory\RSIT.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\XP.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.0.0.1
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: BS.Player ControlBar - {2C688203-7EB3-4327-9995-1CB417BA23F9} - C:\Program Files\BS.Player ControlBar\BSToolbar.dll
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\system32\keyhook.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Cobian Backup 8] "C:\Program Files\Cobian Backup 8\Cobian.exe"
O4 - HKLM\..\Run: [MSStp] C:\windows\inf\msstp.vbe
O4 - HKLM\..\Run: [mnctgarSrv] C:\windows\system32\mnctgar.vbe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\windows\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: BSC Applet Security - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Applet Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Business Objects - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Java Components Library - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Text Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: GEMINI IBS 31 GECB Applet Security - https://ra.internetbanka.cz/ra31/bin/IB ... .2.0.1.cab
O16 - DPF: GEMINI IBS 31 GECB Applet Utilities - https://ra.internetbanka.cz/ra31/bin/IB ... .0.1.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ibs.internetbanka.cz/ibs31/bin/ ... .2.4.1.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .0.1.0.cab
O16 - DPF: IAIK Java Cryptography Extension - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: IB App KB R9 - https://www.mojebanka.cz/jars/ibapp.cab
O16 - DPF: KB KTpro Pack - https://www.mojebanka.cz/jars/kt_pro_v1101.cab
O16 - DPF: KB SH Pack - https://www.mojebanka.cz/jars/sh_pack.cab
O16 - DPF: KTPro SP KB R9 - https://www.mojebanka.cz/jars/ktpsp.cab
O16 - DPF: MIB Pack - https://www.mojebanka.cz/jars/mib_pack_v1400.cab
O16 - DPF: SH App KB R9 - https://www.mojebanka.cz/jars/shapp.cab
O16 - DPF: {4ADC518E-B607-11D4-B395-0001020F4519} (SigVer Class) - https://bb24.csob.cz/Comp/signer.cab
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {5F509E42-537E-482B-B66C-145BC170054C} (FotoStarUploader Control) - http://www.album.cz/moje-alba/fs/FotoSt ... loader.dll
O16 - DPF: {AAF5E778-A1B8-4331-A9A6-AC4E4E85783D} (FotoStarUploader Control) - http://sberna.fotostar.cz/snadno-vlozit ... loader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://arcade.icq.com/carlo/zuma/popcaploader_v5.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
--
End of file - 8462 bytes
======Scheduled tasks folder======
C:\windows\tasks\avast! Emergency Update.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\windows\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\XP\Data aplikací\Mozilla\Firefox\Profiles\k50whwxl.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12 50376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-03-27 597816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - C:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-10-08 859592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SiSUSBRG"=C:\WINDOWS\SiSUSBrg.exe [2002-07-12 106496]
"SiS Windows KeyHook"=C:\WINDOWS\system32\keyhook.exe [2003-10-30 249856]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Cobian Backup 8"=C:\Program Files\Cobian Backup 8\Cobian.exe [2006-11-16 499712]
"MSStp"=C:\windows\inf\msstp.vbe [2014-03-05 1584]
"mnctgarSrv"=C:\windows\system32\mnctgar.vbe [2014-03-05 7670]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-03-27 3854640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2013-04-04 532040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\windows\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows]
C:\Users\Public\Public\run.vbs [2014-02-07 75]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^InterVideo WinCinema Manager.lnk]
C:\PROGRA~1\INTERV~1\Common\Bin\WINCIN~1.EXE [2002-09-19 102400]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Microsoft Office.lnk]
C:\PROGRA~1\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Service Manager.lnk]
C:\PROGRA~1\MICROS~2\80\Tools\Binn\sqlmangr.exe [2002-12-17 74308]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\windows\system32\WgaLogon.dll [2007-03-15 236928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ALWIL Software\AVAST32\avserver.exe"="C:\Program Files\ALWIL Software\AVAST32\avserver.exe:*:Enabled:Avast32 Server"
"C:\Program Files\ALWIL Software\AVAST32\avmaisrv.exe"="C:\Program Files\ALWIL Software\AVAST32\avmaisrv.exe:*:Enabled:Avast32 e-Mail Scanner Service"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Disabled:Internet Explorer"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\Documents and Settings\XP\Local Settings\Temporary Internet Files\Content.IE5\MHCZWNI7\incredimail_install[1].exe"="C:\Documents and Settings\XP\Local Settings\Temporary Internet Files\Content.IE5\MHCZWNI7\incredimail_install[1].exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\IncrediMail\bin\IMApp.exe"="C:\Program Files\IncrediMail\bin\IMApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ChateauXP\ChateauXPServer.exe"="C:\Program Files\ChateauXP\ChateauXPServer.exe:*:Enabled:ChateauXPServer"
"C:\Program Files\ChateauXP\ChateauXP.exe"="C:\Program Files\ChateauXP\ChateauXP.exe:*:Enabled:Win32 Application"
"C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe"="C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe:*:Disabled:Far Cry"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\setup\HPPNIPRINT01.EXE"="D:\setup\HPPNIPRINT01.EXE:*:Enabled:hppniprint01.exe"
"D:\setup\HPPNIPRINT64.EXE"="D:\setup\HPPNIPRINT64.EXE:*:Enabled:hppniprint64.exe"
"D:\setup\HPPNICIFS01.EXE"="D:\setup\HPPNICIFS01.EXE:*:Enabled:hppnicifs01.exe"
"D:\setup\CustomPrnDnld\HPPCSTPG.EXE"="D:\setup\CustomPrnDnld\HPPCSTPG.EXE:*:Enabled:hppcstpg.exe"
"D:\setup\HPBTPG.EXE"="D:\setup\HPBTPG.EXE:*:Enabled:hpbtpg.exe"
"D:\setup\LaunchApp.exe"="D:\setup\LaunchApp.exe:*:Enabled:launchapp.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======List of files/folders created in the last 1 month======
2014-03-27 13:51:48 ----D---- C:\Program Files\trend micro
2014-03-27 13:51:14 ----D---- C:\rsit
2014-03-27 13:32:01 ----A---- C:\windows\system32\drivers\mbamswissarmy.sys
2014-03-27 12:23:34 ----D---- C:\Documents and Settings\XP\Data aplikací\Malwarebytes
2014-03-27 08:51:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-03-27 07:47:25 ----D---- C:\Documents and Settings\XP\Data aplikací\AVAST Software
2014-03-27 07:47:12 ----A---- C:\windows\system32\drivers\mbam.sys
2014-03-27 07:46:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2014-03-27 07:45:26 ----A---- C:\windows\system32\drivers\aswTdi.sys
2014-03-27 07:45:25 ----A---- C:\windows\system32\drivers\aswVmm.sys
2014-03-27 07:45:24 ----A---- C:\windows\system32\drivers\aswSP.sys
2014-03-27 07:45:24 ----A---- C:\windows\system32\drivers\aswSnx.sys
2014-03-27 07:45:23 ----A---- C:\windows\system32\drivers\aswRvrt.sys
2014-03-27 07:45:22 ----A---- C:\windows\system32\drivers\aswMonFlt.sys
2014-03-27 07:45:20 ----A---- C:\windows\system32\drivers\aswRdr.sys
2014-03-27 07:45:13 ----A---- C:\windows\system32\aswBoot.exe
2014-03-27 07:45:07 ----A---- C:\windows\avastSS.scr
2014-03-27 07:42:50 ----D---- C:\Program Files\AVAST Software
2014-03-27 07:28:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-03-27 07:25:49 ----D---- C:\Documents and Settings\XP\Data aplikací\Mozilla
2014-03-27 07:25:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2014-03-27 07:25:37 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-03-27 07:25:29 ----D---- C:\Program Files\Mozilla Firefox
2014-03-27 06:59:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2014-03-27 06:59:12 ----A---- C:\windows\system32\drivers\revoflt.sys
2014-03-27 06:59:08 ----D---- C:\Program Files\VS Revo Group
2014-03-27 06:58:19 ----D---- C:\Documents and Settings\XP\Data aplikací\WinRAR
2014-03-27 06:57:02 ----D---- C:\Program Files\WinRAR
2014-03-27 06:54:22 ----AS---- C:\windows\system32\lcpmnctgar.exe
2014-03-27 06:54:22 ----AS---- C:\windows\system32\dcgmnctgar.exe
2014-03-27 06:54:21 ----AS---- C:\windows\system32\acumnctgar.exe
2014-03-27 06:54:20 ----D---- C:\windows\system32\bitstreams
2014-03-27 06:54:20 ----AS---- C:\windows\system32\zlib1.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\ssleay32.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\pthreadVC2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\pthreadGC2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libssh2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\librtmp.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libidn-11.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libeay32.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libcurl-4.dll
2014-03-27 06:54:19 ----AS---- C:\windows\system32\cudart32_50_35.dll
2014-03-27 06:54:18 ----D---- C:\Program Files\WinRAR 3.93 pln verze CZ x86 a x64 + CRACK
2014-03-27 06:50:09 ----D---- C:\Users
2014-03-27 06:42:39 ----D---- C:\Program Files\Revo Uninstaller Pro v3.0.5 Final 32+64bit_SK+CZ
2014-03-27 06:25:53 ----D---- C:\AdwCleaner
2014-03-27 03:03:50 ----HDC---- C:\windows\$NtUninstallKB2934207$
2014-03-26 23:42:03 ----N---- C:\windows\system32\xp_eos.exe
2014-03-26 14:32:59 ----D---- C:\Program Files\CCleaner
2014-03-26 13:28:32 ----D---- C:\windows\pss
2014-03-16 15:11:14 ----HDC---- C:\windows\$NtUninstallKB2929961$
2014-03-16 15:10:19 ----HDC---- C:\windows\$NtUninstallKB2930275$
2014-03-08 16:05:14 ----HDC---- C:\windows\$NtUninstallKB2916036$
2014-03-08 15:52:40 ----D---- C:\spoolerlogs
======List of files/folders modified in the last 1 month======
2014-03-27 13:51:48 ----RD---- C:\Program Files
2014-03-27 13:51:07 ----D---- C:\windows\Prefetch
2014-03-27 13:32:01 ----D---- C:\windows\system32\drivers
2014-03-27 13:24:23 ----D---- C:\windows\Temp
2014-03-27 13:15:50 ----SHD---- C:\windows\Installer
2014-03-27 07:50:24 ----HD---- C:\windows\inf
2014-03-27 07:46:06 ----SD---- C:\windows\Tasks
2014-03-27 07:45:13 ----D---- C:\windows\WinSxS
2014-03-27 07:45:13 ----D---- C:\windows\system32
2014-03-27 07:45:12 ----D---- C:\WINDOWS
2014-03-27 07:22:45 ----A---- C:\windows\win.ini
2014-03-27 07:22:45 ----A---- C:\windows\system.ini
2014-03-27 07:16:31 ----D---- C:\Program Files\ALWIL Software
2014-03-27 07:15:40 ----A---- C:\windows\SchedLgU.Txt
2014-03-27 07:08:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Google
2014-03-27 06:59:16 ----D---- C:\windows\system32\CatRoot2
2014-03-27 06:45:58 ----HD---- C:\Program Files\InstallShield Installation Information
2014-03-27 06:45:58 ----D---- C:\Program Files\Common Files\soft602
2014-03-27 06:27:54 ----SD---- C:\windows\Downloaded Program Files
2014-03-27 03:03:52 ----RSHDC---- C:\windows\system32\dllcache
2014-03-27 03:03:21 ----D---- C:\windows\system32\MRT
2014-03-27 03:00:27 ----D---- C:\windows\Debug
2014-03-27 03:00:21 ----A---- C:\windows\system32\MRT.exe
2014-03-26 14:38:55 ----D---- C:\windows\Minidump
2014-03-26 13:55:04 ----A---- C:\windows\NeroDigital.ini
2014-03-26 13:51:54 ----D---- C:\Documents and Settings\XP\Data aplikací\BSplayer
2014-03-16 15:12:16 ----D---- C:\Program Files\Internet Explorer
2014-03-08 16:00:28 ----D---- C:\windows\ie8updates
2014-03-08 15:53:35 ----D---- C:\CHEM-WELD
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2014-03-27 180760]
R0 SISAGP;SiS AGP Filter; C:\windows\system32\DRIVERS\SISAGPX.sys [2003-07-18 36992]
R0 uagp35;Filtr Microsoft AGPv3.5; C:\windows\system32\DRIVERS\uagp35.sys [2008-04-13 44672]
R1 AFS2K;AFS2k; C:\windows\system32\drivers\AFS2K.sys [2005-02-08 82380]
R1 AmdK7;Ovladač procesoru AMD K7; C:\windows\system32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr.sys [2014-03-27 54832]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2014-03-27 776976]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2014-03-27 411552]
R1 aswTdi;aswTdi; C:\windows\system32\drivers\aswTdi.sys [2014-03-27 57672]
R1 SiSkp;SiSkp; C:\windows\system32\DRIVERS\srvkp.sys [2003-10-29 11264]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2014-03-27 67824]
R3 cmuda;C-Media WDM Audio Interface; C:\windows\system32\drivers\cmuda.sys [2003-11-06 755392]
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys []
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\mbamswissarmy.sys []
R3 SiS315;SiS315; C:\windows\system32\DRIVERS\sisgrp.sys [2003-10-29 427776]
R3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\windows\system32\DRIVERS\sisnic.sys [2002-07-10 32256]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\DRIVERS\serscan.sys [2001-10-24 6784]
S0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2014-03-27 49944]
S3 gtcdcmdm;GTRAN USB CDC Driver (PID 3196); C:\windows\system32\DRIVERS\gtusbmdm_gpc6400.sys [2004-06-11 62035]
S3 GTwinUSB;GTwinUSB; C:\windows\System32\Drivers\GTwinUSB.sys [2002-10-04 61776]
S3 HidUsb;Ovladač třídy standardu HID; C:\windows\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 k600bus;Sony Ericsson 600i driver (WDM); C:\windows\system32\DRIVERS\k600bus.sys [2005-05-11 52384]
S3 k600mdfl;Sony Ericsson 600i USB WMC Modem Filter; C:\windows\system32\DRIVERS\k600mdfl.sys [2005-05-11 6096]
S3 k600mdm;Sony Ericsson 600i USB WMC Modem Drivers; C:\windows\system32\DRIVERS\k600mdm.sys [2005-05-11 87456]
S3 k600mgmt;Sony Ericsson 600i USB WMC Device Management Drivers; C:\windows\system32\DRIVERS\k600mgmt.sys [2005-05-11 79248]
S3 k600obex;Sony Ericsson 600i USB WMC OBEX Interface Drivers; C:\windows\system32\DRIVERS\k600obex.sys [2005-05-11 77072]
S3 mouhid;Ovladač myši standardu HID; C:\windows\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 Revoflt;Revoflt; C:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 sermouse;Ovladač sériové myši; C:\windows\system32\DRIVERS\sermouse.sys [2001-10-24 17664]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\windows\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\windows\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Vgdev;Vguard 7146 Serial Device; C:\windows\System32\Drivers\Vgdev.sys [2005-04-27 36665]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-03-27 50344]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2008-04-14 14336]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-10 38912]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 MSSQL$BANKKLIENT;MSSQL$BANKKLIENT; C:\GE CAPITAL\MSDE2K\MSSQL$BANKKLIENT\Binn\sqlservr.exe [2002-12-17 7520337]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2007-08-01 654848]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-15 119408]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by XP at 2014-03-27 13:51:14
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 9 GB (12%) free of 76 GB
Total RAM: 479 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:53:09, on 27.3.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\csrss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\Explorer.EXE
C:\windows\system32\spoolsv.exe
C:\windows\System32\SCardSvr.exe
C:\windows\system32\svchost.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\windows\System32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\windows\system32\RunDll32.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\Cobian Backup 8\cbInterface.exe
C:\windows\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Documents and Settings\XP\Dokumenty\Stažené soubory\RSIT.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\XP.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.0.0.1
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: BS.Player ControlBar - {2C688203-7EB3-4327-9995-1CB417BA23F9} - C:\Program Files\BS.Player ControlBar\BSToolbar.dll
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\system32\keyhook.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Cobian Backup 8] "C:\Program Files\Cobian Backup 8\Cobian.exe"
O4 - HKLM\..\Run: [MSStp] C:\windows\inf\msstp.vbe
O4 - HKLM\..\Run: [mnctgarSrv] C:\windows\system32\mnctgar.vbe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\windows\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: BSC Applet Security - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Applet Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Business Objects - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Java Components Library - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Text Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: BSC Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: GEMINI IBS 31 GECB Applet Security - https://ra.internetbanka.cz/ra31/bin/IB ... .2.0.1.cab
O16 - DPF: GEMINI IBS 31 GECB Applet Utilities - https://ra.internetbanka.cz/ra31/bin/IB ... .0.1.0.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Security - https://ibs.internetbanka.cz/ibs31/bin/ ... .2.4.1.cab
O16 - DPF: GEMINI IBS 32 GEMB Applet Utilities - https://ibs.internetbanka.cz/ibs31/bin/ ... .0.1.0.cab
O16 - DPF: IAIK Java Cryptography Extension - https://ibs.internetbanka.cz/ibs31/bin/ ... .99.99.cab
O16 - DPF: IB App KB R9 - https://www.mojebanka.cz/jars/ibapp.cab
O16 - DPF: KB KTpro Pack - https://www.mojebanka.cz/jars/kt_pro_v1101.cab
O16 - DPF: KB SH Pack - https://www.mojebanka.cz/jars/sh_pack.cab
O16 - DPF: KTPro SP KB R9 - https://www.mojebanka.cz/jars/ktpsp.cab
O16 - DPF: MIB Pack - https://www.mojebanka.cz/jars/mib_pack_v1400.cab
O16 - DPF: SH App KB R9 - https://www.mojebanka.cz/jars/shapp.cab
O16 - DPF: {4ADC518E-B607-11D4-B395-0001020F4519} (SigVer Class) - https://bb24.csob.cz/Comp/signer.cab
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {5F509E42-537E-482B-B66C-145BC170054C} (FotoStarUploader Control) - http://www.album.cz/moje-alba/fs/FotoSt ... loader.dll
O16 - DPF: {AAF5E778-A1B8-4331-A9A6-AC4E4E85783D} (FotoStarUploader Control) - http://sberna.fotostar.cz/snadno-vlozit ... loader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://arcade.icq.com/carlo/zuma/popcaploader_v5.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
--
End of file - 8462 bytes
======Scheduled tasks folder======
C:\windows\tasks\avast! Emergency Update.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\windows\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\XP\Data aplikací\Mozilla\Firefox\Profiles\k50whwxl.default
prefs.js - "browser.startup.homepage" - "www.seznam.cz"
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll [2003-05-12 50376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-03-27 597816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - C:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-10-08 859592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SiSUSBRG"=C:\WINDOWS\SiSUSBrg.exe [2002-07-12 106496]
"SiS Windows KeyHook"=C:\WINDOWS\system32\keyhook.exe [2003-10-30 249856]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Cobian Backup 8"=C:\Program Files\Cobian Backup 8\Cobian.exe [2006-11-16 499712]
"MSStp"=C:\windows\inf\msstp.vbe [2014-03-05 1584]
"mnctgarSrv"=C:\windows\system32\mnctgar.vbe [2014-03-05 7670]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-14 171008]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-03-27 3854640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2013-04-04 532040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\windows\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows]
C:\Users\Public\Public\run.vbs [2014-02-07 75]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^InterVideo WinCinema Manager.lnk]
C:\PROGRA~1\INTERV~1\Common\Bin\WINCIN~1.EXE [2002-09-19 102400]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Microsoft Office.lnk]
C:\PROGRA~1\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Service Manager.lnk]
C:\PROGRA~1\MICROS~2\80\Tools\Binn\sqlmangr.exe [2002-12-17 74308]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\windows\system32\WgaLogon.dll [2007-03-15 236928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ALWIL Software\AVAST32\avserver.exe"="C:\Program Files\ALWIL Software\AVAST32\avserver.exe:*:Enabled:Avast32 Server"
"C:\Program Files\ALWIL Software\AVAST32\avmaisrv.exe"="C:\Program Files\ALWIL Software\AVAST32\avmaisrv.exe:*:Enabled:Avast32 e-Mail Scanner Service"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Disabled:Internet Explorer"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\Documents and Settings\XP\Local Settings\Temporary Internet Files\Content.IE5\MHCZWNI7\incredimail_install[1].exe"="C:\Documents and Settings\XP\Local Settings\Temporary Internet Files\Content.IE5\MHCZWNI7\incredimail_install[1].exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\IncrediMail\bin\IMApp.exe"="C:\Program Files\IncrediMail\bin\IMApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ChateauXP\ChateauXPServer.exe"="C:\Program Files\ChateauXP\ChateauXPServer.exe:*:Enabled:ChateauXPServer"
"C:\Program Files\ChateauXP\ChateauXP.exe"="C:\Program Files\ChateauXP\ChateauXP.exe:*:Enabled:Win32 Application"
"C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe"="C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe:*:Disabled:Far Cry"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\setup\HPPNIPRINT01.EXE"="D:\setup\HPPNIPRINT01.EXE:*:Enabled:hppniprint01.exe"
"D:\setup\HPPNIPRINT64.EXE"="D:\setup\HPPNIPRINT64.EXE:*:Enabled:hppniprint64.exe"
"D:\setup\HPPNICIFS01.EXE"="D:\setup\HPPNICIFS01.EXE:*:Enabled:hppnicifs01.exe"
"D:\setup\CustomPrnDnld\HPPCSTPG.EXE"="D:\setup\CustomPrnDnld\HPPCSTPG.EXE:*:Enabled:hppcstpg.exe"
"D:\setup\HPBTPG.EXE"="D:\setup\HPBTPG.EXE:*:Enabled:hpbtpg.exe"
"D:\setup\LaunchApp.exe"="D:\setup\LaunchApp.exe:*:Enabled:launchapp.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
======List of files/folders created in the last 1 month======
2014-03-27 13:51:48 ----D---- C:\Program Files\trend micro
2014-03-27 13:51:14 ----D---- C:\rsit
2014-03-27 13:32:01 ----A---- C:\windows\system32\drivers\mbamswissarmy.sys
2014-03-27 12:23:34 ----D---- C:\Documents and Settings\XP\Data aplikací\Malwarebytes
2014-03-27 08:51:17 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2014-03-27 07:47:25 ----D---- C:\Documents and Settings\XP\Data aplikací\AVAST Software
2014-03-27 07:47:12 ----A---- C:\windows\system32\drivers\mbam.sys
2014-03-27 07:46:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2014-03-27 07:45:26 ----A---- C:\windows\system32\drivers\aswTdi.sys
2014-03-27 07:45:25 ----A---- C:\windows\system32\drivers\aswVmm.sys
2014-03-27 07:45:24 ----A---- C:\windows\system32\drivers\aswSP.sys
2014-03-27 07:45:24 ----A---- C:\windows\system32\drivers\aswSnx.sys
2014-03-27 07:45:23 ----A---- C:\windows\system32\drivers\aswRvrt.sys
2014-03-27 07:45:22 ----A---- C:\windows\system32\drivers\aswMonFlt.sys
2014-03-27 07:45:20 ----A---- C:\windows\system32\drivers\aswRdr.sys
2014-03-27 07:45:13 ----A---- C:\windows\system32\aswBoot.exe
2014-03-27 07:45:07 ----A---- C:\windows\avastSS.scr
2014-03-27 07:42:50 ----D---- C:\Program Files\AVAST Software
2014-03-27 07:28:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-03-27 07:25:49 ----D---- C:\Documents and Settings\XP\Data aplikací\Mozilla
2014-03-27 07:25:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2014-03-27 07:25:37 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-03-27 07:25:29 ----D---- C:\Program Files\Mozilla Firefox
2014-03-27 06:59:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2014-03-27 06:59:12 ----A---- C:\windows\system32\drivers\revoflt.sys
2014-03-27 06:59:08 ----D---- C:\Program Files\VS Revo Group
2014-03-27 06:58:19 ----D---- C:\Documents and Settings\XP\Data aplikací\WinRAR
2014-03-27 06:57:02 ----D---- C:\Program Files\WinRAR
2014-03-27 06:54:22 ----AS---- C:\windows\system32\lcpmnctgar.exe
2014-03-27 06:54:22 ----AS---- C:\windows\system32\dcgmnctgar.exe
2014-03-27 06:54:21 ----AS---- C:\windows\system32\acumnctgar.exe
2014-03-27 06:54:20 ----D---- C:\windows\system32\bitstreams
2014-03-27 06:54:20 ----AS---- C:\windows\system32\zlib1.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\ssleay32.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\pthreadVC2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\pthreadGC2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libssh2.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\librtmp.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libidn-11.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libeay32.dll
2014-03-27 06:54:20 ----AS---- C:\windows\system32\libcurl-4.dll
2014-03-27 06:54:19 ----AS---- C:\windows\system32\cudart32_50_35.dll
2014-03-27 06:54:18 ----D---- C:\Program Files\WinRAR 3.93 pln verze CZ x86 a x64 + CRACK
2014-03-27 06:50:09 ----D---- C:\Users
2014-03-27 06:42:39 ----D---- C:\Program Files\Revo Uninstaller Pro v3.0.5 Final 32+64bit_SK+CZ
2014-03-27 06:25:53 ----D---- C:\AdwCleaner
2014-03-27 03:03:50 ----HDC---- C:\windows\$NtUninstallKB2934207$
2014-03-26 23:42:03 ----N---- C:\windows\system32\xp_eos.exe
2014-03-26 14:32:59 ----D---- C:\Program Files\CCleaner
2014-03-26 13:28:32 ----D---- C:\windows\pss
2014-03-16 15:11:14 ----HDC---- C:\windows\$NtUninstallKB2929961$
2014-03-16 15:10:19 ----HDC---- C:\windows\$NtUninstallKB2930275$
2014-03-08 16:05:14 ----HDC---- C:\windows\$NtUninstallKB2916036$
2014-03-08 15:52:40 ----D---- C:\spoolerlogs
======List of files/folders modified in the last 1 month======
2014-03-27 13:51:48 ----RD---- C:\Program Files
2014-03-27 13:51:07 ----D---- C:\windows\Prefetch
2014-03-27 13:32:01 ----D---- C:\windows\system32\drivers
2014-03-27 13:24:23 ----D---- C:\windows\Temp
2014-03-27 13:15:50 ----SHD---- C:\windows\Installer
2014-03-27 07:50:24 ----HD---- C:\windows\inf
2014-03-27 07:46:06 ----SD---- C:\windows\Tasks
2014-03-27 07:45:13 ----D---- C:\windows\WinSxS
2014-03-27 07:45:13 ----D---- C:\windows\system32
2014-03-27 07:45:12 ----D---- C:\WINDOWS
2014-03-27 07:22:45 ----A---- C:\windows\win.ini
2014-03-27 07:22:45 ----A---- C:\windows\system.ini
2014-03-27 07:16:31 ----D---- C:\Program Files\ALWIL Software
2014-03-27 07:15:40 ----A---- C:\windows\SchedLgU.Txt
2014-03-27 07:08:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Google
2014-03-27 06:59:16 ----D---- C:\windows\system32\CatRoot2
2014-03-27 06:45:58 ----HD---- C:\Program Files\InstallShield Installation Information
2014-03-27 06:45:58 ----D---- C:\Program Files\Common Files\soft602
2014-03-27 06:27:54 ----SD---- C:\windows\Downloaded Program Files
2014-03-27 03:03:52 ----RSHDC---- C:\windows\system32\dllcache
2014-03-27 03:03:21 ----D---- C:\windows\system32\MRT
2014-03-27 03:00:27 ----D---- C:\windows\Debug
2014-03-27 03:00:21 ----A---- C:\windows\system32\MRT.exe
2014-03-26 14:38:55 ----D---- C:\windows\Minidump
2014-03-26 13:55:04 ----A---- C:\windows\NeroDigital.ini
2014-03-26 13:51:54 ----D---- C:\Documents and Settings\XP\Data aplikací\BSplayer
2014-03-16 15:12:16 ----D---- C:\Program Files\Internet Explorer
2014-03-08 16:00:28 ----D---- C:\windows\ie8updates
2014-03-08 15:53:35 ----D---- C:\CHEM-WELD
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswVmm;avast! VM Monitor; C:\windows\system32\drivers\aswVmm.sys [2014-03-27 180760]
R0 SISAGP;SiS AGP Filter; C:\windows\system32\DRIVERS\SISAGPX.sys [2003-07-18 36992]
R0 uagp35;Filtr Microsoft AGPv3.5; C:\windows\system32\DRIVERS\uagp35.sys [2008-04-13 44672]
R1 AFS2K;AFS2k; C:\windows\system32\drivers\AFS2K.sys [2005-02-08 82380]
R1 AmdK7;Ovladač procesoru AMD K7; C:\windows\system32\DRIVERS\amdk7.sys [2008-04-14 41600]
R1 aswRdr;aswRdr; C:\windows\system32\drivers\aswRdr.sys [2014-03-27 54832]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2014-03-27 776976]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2014-03-27 411552]
R1 aswTdi;aswTdi; C:\windows\system32\drivers\aswTdi.sys [2014-03-27 57672]
R1 SiSkp;SiSkp; C:\windows\system32\DRIVERS\srvkp.sys [2003-10-29 11264]
R2 aswMonFlt;aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [2014-03-27 67824]
R3 cmuda;C-Media WDM Audio Interface; C:\windows\system32\drivers\cmuda.sys [2003-11-06 755392]
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys []
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\mbamswissarmy.sys []
R3 SiS315;SiS315; C:\windows\system32\DRIVERS\sisgrp.sys [2003-10-29 427776]
R3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\windows\system32\DRIVERS\sisnic.sys [2002-07-10 32256]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\DRIVERS\serscan.sys [2001-10-24 6784]
S0 aswRvrt;avast! Revert; C:\windows\system32\drivers\aswRvrt.sys [2014-03-27 49944]
S3 gtcdcmdm;GTRAN USB CDC Driver (PID 3196); C:\windows\system32\DRIVERS\gtusbmdm_gpc6400.sys [2004-06-11 62035]
S3 GTwinUSB;GTwinUSB; C:\windows\System32\Drivers\GTwinUSB.sys [2002-10-04 61776]
S3 HidUsb;Ovladač třídy standardu HID; C:\windows\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 k600bus;Sony Ericsson 600i driver (WDM); C:\windows\system32\DRIVERS\k600bus.sys [2005-05-11 52384]
S3 k600mdfl;Sony Ericsson 600i USB WMC Modem Filter; C:\windows\system32\DRIVERS\k600mdfl.sys [2005-05-11 6096]
S3 k600mdm;Sony Ericsson 600i USB WMC Modem Drivers; C:\windows\system32\DRIVERS\k600mdm.sys [2005-05-11 87456]
S3 k600mgmt;Sony Ericsson 600i USB WMC Device Management Drivers; C:\windows\system32\DRIVERS\k600mgmt.sys [2005-05-11 79248]
S3 k600obex;Sony Ericsson 600i USB WMC OBEX Interface Drivers; C:\windows\system32\DRIVERS\k600obex.sys [2005-05-11 77072]
S3 mouhid;Ovladač myši standardu HID; C:\windows\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 Revoflt;Revoflt; C:\windows\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 sermouse;Ovladač sériové myši; C:\windows\system32\DRIVERS\sermouse.sys [2001-10-24 17664]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\windows\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\windows\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Vgdev;Vguard 7146 Serial Device; C:\windows\System32\Drivers\Vgdev.sys [2005-04-27 36665]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-03-27 50344]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2008-04-14 14336]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-10 38912]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe /svc []
S2 MSSQL$BANKKLIENT;MSSQL$BANKKLIENT; C:\GE CAPITAL\MSDE2K\MSSQL$BANKKLIENT\Binn\sqlservr.exe [2002-12-17 7520337]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2007-08-01 654848]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe /medsvc []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-03-15 119408]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
-----------------EOF-----------------