Ultimátně zasviněné pc, prosím o kontrolu
Napsal: 09 kvě 2015 20:42
Můj BFU známý dotáhl comp, že prosí o vyčištění. První rada je samozřejmě ubít známého krumpáčem, nu ale stejně bych to pak rád vyčistil - už jsem s odinstalovávání programů, několika antivirů etc začal, ale stejně určitě nevyčistím všechno, takže prosím o pomoc.
log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by martin at 2015-05-09 21:37:06
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 84 GB (27%) free of 305 GB
Total RAM: 2046 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:37:16, on 9.5.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_notification_service.exe
C:\Program Files\ver2OffersWizard\e6OffersWizard66.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ver2OffersWizard\L2h.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nethtsrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\ver2OffersWizard\B9eG190.exe
C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
C:\WINDOWS\system32\netupdsrv.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\martin\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\martin.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:13798;https=127.0.0.1:13798
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll
O2 - BHO: 486f39d5be3842d1a5b143880bdcbae60069063 - {11111111-1111-1111-1111-110611901163} - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-bho.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\WINDOWS\WebIE.dll
O2 - BHO: OffersWizard - {4359A48A-62E5-9696-71B3-1C273503AA37} - C:\Program Files\ver2OffersWizard\190.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\WINDOWS\WebIE.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [SeznamInstall-uninstall:f45e6b299394d05903aed92e97580ee9] "C:\DOCUME~1\martin\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe" -c "C:\Documents and Settings\martin\Data aplikací\Seznam.cz"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Přidat do stávajícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\WINDOWS\WebIE.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\WINDOWS\system32\nethtsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: OffersWizard - Unknown owner - C:\Program Files\ver2OffersWizard\B9eG190.exe
O23 - Service: PunkBuster (PnkBstrA) - Unknown owner - C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\WINDOWS\system32\netupdsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O24 - Desktop Component 0: (no name) - http://www.jetixcee.com/disney_gigasite ... 1_1280.jpg
--
End of file - 11828 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job - C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe /schedulestart
C:\WINDOWS\tasks\21IgGiigAxVT.job - C:\Documents and Settings\martin\Data aplikac\21IgGiigAxVT.exe --c=DgTyH9AnPrMEaaeXucK2dtucMdFwXz3SSCSyKwl6b3F5YZJxH8OTC8oi3l6mZkFTMfy5r93FuyLOmR6cu4uSKC7V1+IccT3uwNSwjrF5sVe4Qeacus+7AhZb+XAcb7PvGOlrjEmORuc2hvrZcaHx9JdT/iw+W8PKX2H/dnTjfC6ccy1QIM/36Vo6eNlkw7EptrZ/gdXC//nKZBHggjSsetEApyLFsT2NDybyfCcmX6q8T3FDpf2lkeoA0D1J58w0BAVDtyukWaKkhe1+TncrGRFUZz41887kfdcF0uO9f3NlJS7QvBSkJ0zH4nz9dsFgCg6wh2lzrMTd6/p0Zv4vgQ==
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Documents and Settings\martin\Data aplikací\17096\Updater.exe
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-1.job - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-codedownloader.exe /rawdata=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
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-4.job - C:\Program Files\HDQ-1.2cV01.01\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-4.exe /rawdata=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
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-5.job - C:\Program Files\HDQ-1.2cV01.01\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-5.exe /rawdata=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
C:\WINDOWS\tasks\DRYOLORT.job - C:\Documents and Settings\martin\Data aplikac\DRYOLORT.exe /infocmdline=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\KFDETW.job - C:\Documents and Settings\martin\Data aplikac\KFDETW.exe /infocmdline=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
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\OffersWizard Update.job - C:\Program Files\ver2OffersWizard\e6OffersWizard66.exe /update
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\suprize_notification_service.job - C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='suprize' /appid='73143' /srcid='2913' /bic='2884f52484c2ea1774bc063e5c8bc0f3' /verifier='fa7ac82a8105658f6c8fa2cee9bcb9cf' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1427903000' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\suprize_updating_service.job - C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=suprize_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\User_Feed_Synchronization-{CF5B6196-AFF0-4E2F-B2BB-3ACA9BC5CDBB}.job - C:\WINDOWS\system32\msfeedssync.exe sync
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.10"
prefs.js - "keyword.URL" - "http://search.tb.ask.com/search/GGmain. ... searchfor="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@zylom.com/ZylomGamesPlayer]
"Description"=Zylom Games Player 1.00
"Path"=C:\Documents and Settings\All Users\Data aplikací\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
C:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll
C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default\extensions\
4SyUV@gmail.com
6c03cee0ab9442c4a67a507@58d658df5a30468fabf5c7a.com
89ffxtbr@SafePCRepair_89.com
regexptester@sebastianzartner.ath.cx
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default\searchplugins\
ask-web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\Program Files\ICQToolbar\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611901163}]
HDQ-1.2cV01.01 - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-bho.dll [2015-01-01 756712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\WINDOWS\WebIE.dll [2008-01-20 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4359A48A-62E5-9696-71B3-1C273503AA37}]
OffersWizard - C:\Program Files\ver2OffersWizard\190.dll [2015-03-03 496128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23 321120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23 321120]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\WINDOWS\WebIE.dll [2008-01-20 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2007-05-11 8429568]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2007-05-11 81920]
"ISUSPM Startup"=C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe -startup []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-05-16 86960]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-06-13 16377344]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [2006-10-23 620152]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe -scheduler []
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2007-12-29 486856]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe []
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-07-24 21652064]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SeznamInstall-uninstall:f45e6b299394d05903aed92e97580ee9"=C:\DOCUME~1\martin\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [2015-05-09 534528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OEXPRESS]
C:\WINDOWS\OETRN.EXE [2008-01-20 26624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\EA GAMES\MOHAA\MOHAA.exe"="C:\Program Files\EA GAMES\MOHAA\MOHAA.exe:*:Disabled:Medal of Honor Allied Assault"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\Binaries\MOHA.exe"="C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\Binaries\MOHA.exe:*:Enabled:Medal of Honor Airborne"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Unreal\System\Unreal.exe"="C:\Unreal\System\Unreal.exe:*:Disabled:Unreal"
"C:\WINDOWS\system32\dpnsvr.exe"="C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server"
"C:\Program Files\3DO\Heroes of Might and Magic IV\heroes4c.exe"="C:\Program Files\3DO\Heroes of Might and Magic IV\heroes4c.exe:*:Enabled:Heroes of Might and Magic® IV: Winds of War™"
"C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\martin\Local Settings\Temporary Internet Files\Content.IE5\4U6KCO8B\n11975310_09.JPG-www.facebook[1].exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
"C:\WINDOWS\Network Diagnostic\xpnetdiag.exe"="C:\WINDOWS\Network Diagnostic\xpnetdiag.exe:*:Disabled:@xpsp3res.dll,-20000"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe"="C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe:*:Disabled:Windows Media(TM) Audio (wma)"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll
"VIDC.MPG4"=mpg4c32.dll
"VIDC.MP42"=mpg4c32.dll
======List of files/folders created in the last 1 month======
2015-05-09 21:37:07 ----D---- C:\Program Files\trend micro
2015-05-09 21:37:06 ----DC---- C:\rsit
2015-05-09 21:26:06 ----AC---- C:\awhC.tmp
2015-05-09 21:24:16 ----SHDC---- C:\Config.Msi
2015-05-09 21:09:31 ----AC---- C:\awh7.tmp
2015-05-09 21:02:18 ----AC---- C:\awh272.tmp
2015-05-06 13:31:24 ----A---- C:\WINDOWS\system32\drivers\nethfdrv.sys
2015-05-06 13:31:14 ----A---- C:\WINDOWS\system32\netupdsrv.exe
2015-05-06 13:31:02 ----A---- C:\WINDOWS\system32\installd.exe
2015-05-06 13:30:48 ----A---- C:\WINDOWS\system32\nethtsrv.exe
2015-05-06 13:30:38 ----A---- C:\WINDOWS\system32\hfnapi.dll
2015-05-06 13:30:24 ----A---- C:\WINDOWS\system32\hfpapi.dll
2015-05-02 18:08:40 ----AC---- C:\awh39.tmp
2015-05-02 09:47:21 ----AC---- C:\awh4CA.tmp
2015-04-29 15:39:12 ----AC---- C:\awh5.tmp
2015-04-29 15:02:12 ----AC---- C:\awhC8.tmp
2015-04-17 17:26:52 ----AC---- C:\awh4.tmp
2015-04-17 16:08:29 ----AC---- C:\awhA0.tmp
2015-04-17 15:13:27 ----AC---- C:\awhD7.tmp
======List of files/folders modified in the last 1 month======
2015-05-09 21:37:13 ----D---- C:\WINDOWS\Prefetch
2015-05-09 21:37:07 ----RD---- C:\Program Files
2015-05-09 21:36:28 ----D---- C:\WINDOWS
2015-05-09 21:36:28 ----A---- C:\WINDOWS\MAILTRAN.INI
2015-05-09 21:32:40 ----D---- C:\Program Files\Google
2015-05-09 21:32:32 ----D---- C:\WINDOWS\Temp
2015-05-09 21:26:59 ----D---- C:\Documents and Settings\martin\Data aplikací\Skype
2015-05-09 21:24:52 ----D---- C:\Documents and Settings\martin\Data aplikací\Seznam.cz
2015-05-09 21:24:20 ----SD---- C:\Documents and Settings\martin\Data aplikací\Microsoft
2015-05-09 21:24:19 ----SHD---- C:\WINDOWS\Installer
2015-05-09 21:22:05 ----D---- C:\Program Files\ESET
2015-05-09 21:19:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-05-09 21:10:46 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Google
2015-05-09 21:10:32 ----D---- C:\Program Files\GameSpy Arcade
2015-05-09 21:10:05 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2015-05-09 21:09:51 ----D---- C:\WINDOWS\system32
2015-05-09 21:09:50 ----HD---- C:\WINDOWS\inf
2015-05-09 21:09:50 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-05-09 21:09:48 ----D---- C:\WINDOWS\system32\CatRoot2
2015-05-09 21:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-05-09 21:01:20 ----D---- C:\Program Files\Common Files\ACD Systems
2015-05-02 19:40:47 ----RSD---- C:\WINDOWS\assembly
2015-05-02 10:11:13 ----A---- C:\WINDOWS\NeroDigital.ini
2015-04-29 20:05:59 ----D---- C:\Program Files\HDQ-1.2cV01.01
2015-04-29 20:05:58 ----SD---- C:\WINDOWS\Tasks
2015-04-29 20:01:43 ----AC---- C:\WINDOWS\system32\MRT.exe
2015-04-29 20:01:24 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2015-04-29 15:33:59 ----SHD---- C:\WINDOWS\CSC
2015-04-17 17:01:56 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-04-17 17:01:52 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2015-04-17 15:08:02 ----D---- C:\Documents and Settings\martin\Data aplikací\uTorrent
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 imagedrv;imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [2005-08-15 5888]
R0 imagesrv;imagesrv; C:\WINDOWS\system32\DRIVERS\imagesrv.sys [2005-08-15 127488]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 prohlp02;StarForce Protection Helper Driver v2; C:\WINDOWS\System32\drivers\prohlp02.sys [2004-05-13 111808]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2003-09-06 6944]
R0 sfhlp01;StarForce Protection Helper Driver; C:\WINDOWS\System32\drivers\sfhlp01.sys [2003-12-01 4832]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-01-04 715248]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-19 43008]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 nethfdrv;nethfdrv; \??\C:\WINDOWS\system32\drivers\nethfdrv.sys []
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-05-13 79488]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 73216]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-14 4429312]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-05-11 6738432]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-05-04 46720]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-05-04 19968]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-02-17 47360]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2008-01-06 10368]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys []
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S3 amzw8irr;amzw8irr; C:\WINDOWS\system32\drivers\amzw8irr.sys []
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 90368]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2011-05-03 194816]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\WINDOWS\system32\DRIVERS\ewusbdev.sys []
S3 massfilter;Mass Storage Filter Driver; C:\WINDOWS\system32\drivers\massfilter.sys [2010-02-22 9216]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 ZTEusbmdm6k;ZTE Proprietary USB Driver; C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys [2010-03-02 105856]
S3 ZTEusbnmea;ZTE NMEA Port; C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys [2010-03-02 105856]
S3 ZTEusbser6k;ZTE Diagnostic Port; C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys [2010-03-02 105856]
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18 107912]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 NetHttpService;Network HTTP Support Service; C:\WINDOWS\system32\nethtsrv.exe [2015-05-06 338944]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-05-11 163908]
R2 OffersWizard;OffersWizard; C:\Program Files\ver2OffersWizard\B9eG190.exe [2015-03-03 349696]
R2 PnkBstrA;PunkBuster; C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe [2007-08-15 63040]
R2 ServiceUpdater;Network Support Service Updater; C:\WINDOWS\system32\netupdsrv.exe [2015-05-06 190976]
R3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-01-04 654848]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-01-01 68608]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17 268464]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-01-01 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18 107912]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 235696]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-03-29 148080]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by martin at 2015-05-09 21:37:06
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 84 GB (27%) free of 305 GB
Total RAM: 2046 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:37:16, on 9.5.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_notification_service.exe
C:\Program Files\ver2OffersWizard\e6OffersWizard66.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ver2OffersWizard\L2h.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nethtsrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\ver2OffersWizard\B9eG190.exe
C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
C:\WINDOWS\system32\netupdsrv.exe
C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\martin\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\martin.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:13798;https=127.0.0.1:13798
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll
O2 - BHO: 486f39d5be3842d1a5b143880bdcbae60069063 - {11111111-1111-1111-1111-110611901163} - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-bho.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\WINDOWS\WebIE.dll
O2 - BHO: OffersWizard - {4359A48A-62E5-9696-71B3-1C273503AA37} - C:\Program Files\ver2OffersWizard\190.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\WINDOWS\WebIE.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NVIDIA driver monitor] c:\windows\nvsvc32.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [SeznamInstall-uninstall:f45e6b299394d05903aed92e97580ee9] "C:\DOCUME~1\martin\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe" -c "C:\Documents and Settings\martin\Data aplikací\Seznam.cz"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést cíl vazby do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést vybrané vazby do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést vybrané vazby do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Převést výběr do Adobe PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Převést výběr do existujícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Přidat do stávajícího PDF - res://C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\WINDOWS\WebIE.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Network HTTP Support Service (NetHttpService) - Unknown owner - C:\WINDOWS\system32\nethtsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: OffersWizard - Unknown owner - C:\Program Files\ver2OffersWizard\B9eG190.exe
O23 - Service: PunkBuster (PnkBstrA) - Unknown owner - C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe
O23 - Service: Network Support Service Updater (ServiceUpdater) - Unknown owner - C:\WINDOWS\system32\netupdsrv.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O24 - Desktop Component 0: (no name) - http://www.jetixcee.com/disney_gigasite ... 1_1280.jpg
--
End of file - 11828 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job - C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe /schedulestart
C:\WINDOWS\tasks\21IgGiigAxVT.job - C:\Documents and Settings\martin\Data aplikac\21IgGiigAxVT.exe --c=DgTyH9AnPrMEaaeXucK2dtucMdFwXz3SSCSyKwl6b3F5YZJxH8OTC8oi3l6mZkFTMfy5r93FuyLOmR6cu4uSKC7V1+IccT3uwNSwjrF5sVe4Qeacus+7AhZb+XAcb7PvGOlrjEmORuc2hvrZcaHx9JdT/iw+W8PKX2H/dnTjfC6ccy1QIM/36Vo6eNlkw7EptrZ/gdXC//nKZBHggjSsetEApyLFsT2NDybyfCcmX6q8T3FDpf2lkeoA0D1J58w0BAVDtyukWaKkhe1+TncrGRFUZz41887kfdcF0uO9f3NlJS7QvBSkJ0zH4nz9dsFgCg6wh2lzrMTd6/p0Zv4vgQ==
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Documents and Settings\martin\Data aplikací\17096\Updater.exe
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-1.job - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-codedownloader.exe /rawdata=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
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-4.job - C:\Program Files\HDQ-1.2cV01.01\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-4.exe /rawdata=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
C:\WINDOWS\tasks\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-5.job - C:\Program Files\HDQ-1.2cV01.01\c311bf70-1f07-4f8e-81dc-e1282ff5c6ca-5.exe /rawdata=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
C:\WINDOWS\tasks\DRYOLORT.job - C:\Documents and Settings\martin\Data aplikac\DRYOLORT.exe /infocmdline=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\KFDETW.job - C:\Documents and Settings\martin\Data aplikac\KFDETW.exe /infocmdline=gh0cw8CKrCdNtZyP2x8leaSoA2YkBV0WbugmvKwBTWgaFCHvftiO+zVlOdUgIvOYNV2SnZHIaDmZGRDBCxhGXFTRp5LQ7wiHBGmbyddidFCzgTSFNXJf5ty8U4Y1UVSFYnNZYD/0ro5lpOy6RURkkSN1Y/Re+Vne35EFpN3cWwMu+bJelIrhhimTnEHSlbxcmex9bmFT3kmaE9PXF7MMWgWNG3JNkdASVWsJx9YkY6ec0f0lDGRAw9gB8RUJUZQpEWFsKM6kHiVHabloFiUc3vOCBrWDTcHh+LZ2C8NQ83WFAWL5K1tyWpPCJTZjnf//9T3CTRfD5UtUWZsyu3iGLp2ST240n6vBB/7XfSmhsCAiJ9HwWdj75gUxR91eQznshmw9h+fzEqTYiaP31FPG6YqPCgUFgGxYUB/a+wXJLzxvAZX1fKN8UZSE9rXvhVjEUluyJ065zzBl3f3mIt3at0UUPyFCcdmC34tMWLFatkixdquL/jm8NtE+ib0/79Wm
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\OffersWizard Update.job - C:\Program Files\ver2OffersWizard\e6OffersWizard66.exe /update
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\suprize_notification_service.job - C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_notification_service.exe /url='http://cdn.selectbestopt.com/notf_sys/index.html' /crregname='suprize' /appid='73143' /srcid='2913' /bic='2884f52484c2ea1774bc063e5c8bc0f3' /verifier='fa7ac82a8105658f6c8fa2cee9bcb9cf' /installerversion='1.50.3.10' /statsdomain='http://stats.buildomserv.com/data.gif?' /errorsdomain='http://stats.buildomserv.com/data.gif?' /monetizationdomain='http://logs.buildomserv.com/monetization.gif?' /installationtime='1427903000' /runfrom='task' /brwtype='notbg' /postponedhours='6'
C:\WINDOWS\tasks\suprize_updating_service.job - C:\Documents and Settings\martin\Local Settings\Data aplikací\suprize\suprize_updating_service.exe /campid=2913 /verid=1 /url=http://cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=suprize_updating_service /funurl=http://stats.buildomserv.com
C:\WINDOWS\tasks\User_Feed_Synchronization-{CF5B6196-AFF0-4E2F-B2BB-3ACA9BC5CDBB}.job - C:\WINDOWS\system32\msfeedssync.exe sync
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.10"
prefs.js - "keyword.URL" - "http://search.tb.ask.com/search/GGmain. ... searchfor="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@zylom.com/ZylomGamesPlayer]
"Description"=Zylom Games Player 1.00
"Path"=C:\Documents and Settings\All Users\Data aplikací\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
C:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll
C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default\extensions\
4SyUV@gmail.com
6c03cee0ab9442c4a67a507@58d658df5a30468fabf5c7a.com
89ffxtbr@SafePCRepair_89.com
regexptester@sebastianzartner.ath.cx
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Documents and Settings\martin\Data aplikací\Mozilla\Firefox\Profiles\fhrpep7c.default\searchplugins\
ask-web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\Program Files\ICQToolbar\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611901163}]
HDQ-1.2cV01.01 - C:\Program Files\HDQ-1.2cV01.01\HDQ-1.2cV01.01-bho.dll [2015-01-01 756712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\WINDOWS\WebIE.dll [2008-01-20 491520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4359A48A-62E5-9696-71B3-1C273503AA37}]
OffersWizard - C:\Program Files\ver2OffersWizard\190.dll [2015-03-03 496128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23 321120]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23 321120]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\WINDOWS\WebIE.dll [2008-01-20 491520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2007-05-11 8429568]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2007-05-11 81920]
"ISUSPM Startup"=C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe -startup []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-05-16 86960]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-06-13 16377344]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [2006-10-23 620152]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe -scheduler []
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2007-12-29 486856]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"NVIDIA driver monitor"=c:\windows\nvsvc32.exe []
"T-Mobile Communication Centre"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2011-06-30 1363984]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-07-24 21652064]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SeznamInstall-uninstall:f45e6b299394d05903aed92e97580ee9"=C:\DOCUME~1\martin\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [2015-05-09 534528]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OEXPRESS]
C:\WINDOWS\OETRN.EXE [2008-01-20 26624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\EA GAMES\MOHAA\MOHAA.exe"="C:\Program Files\EA GAMES\MOHAA\MOHAA.exe:*:Disabled:Medal of Honor Allied Assault"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\Binaries\MOHA.exe"="C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\Binaries\MOHA.exe:*:Enabled:Medal of Honor Airborne"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Unreal\System\Unreal.exe"="C:\Unreal\System\Unreal.exe:*:Disabled:Unreal"
"C:\WINDOWS\system32\dpnsvr.exe"="C:\WINDOWS\system32\dpnsvr.exe:*:Disabled:Microsoft DirectPlay8 Server"
"C:\Program Files\3DO\Heroes of Might and Magic IV\heroes4c.exe"="C:\Program Files\3DO\Heroes of Might and Magic IV\heroes4c.exe:*:Enabled:Heroes of Might and Magic® IV: Winds of War™"
"C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Documents and Settings\martin\Local Settings\Temporary Internet Files\Content.IE5\4U6KCO8B\n11975310_09.JPG-www.facebook[1].exe"="c:\windows\nvsvc32.exe:*:Enabled:NVIDIA driver monitor"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
"C:\WINDOWS\Network Diagnostic\xpnetdiag.exe"="C:\WINDOWS\Network Diagnostic\xpnetdiag.exe:*:Disabled:@xpsp3res.dll,-20000"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe"="C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe:*:Disabled:Windows Media(TM) Audio (wma)"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.ACDV"=ACDV.dll
"VIDC.MPG4"=mpg4c32.dll
"VIDC.MP42"=mpg4c32.dll
======List of files/folders created in the last 1 month======
2015-05-09 21:37:07 ----D---- C:\Program Files\trend micro
2015-05-09 21:37:06 ----DC---- C:\rsit
2015-05-09 21:26:06 ----AC---- C:\awhC.tmp
2015-05-09 21:24:16 ----SHDC---- C:\Config.Msi
2015-05-09 21:09:31 ----AC---- C:\awh7.tmp
2015-05-09 21:02:18 ----AC---- C:\awh272.tmp
2015-05-06 13:31:24 ----A---- C:\WINDOWS\system32\drivers\nethfdrv.sys
2015-05-06 13:31:14 ----A---- C:\WINDOWS\system32\netupdsrv.exe
2015-05-06 13:31:02 ----A---- C:\WINDOWS\system32\installd.exe
2015-05-06 13:30:48 ----A---- C:\WINDOWS\system32\nethtsrv.exe
2015-05-06 13:30:38 ----A---- C:\WINDOWS\system32\hfnapi.dll
2015-05-06 13:30:24 ----A---- C:\WINDOWS\system32\hfpapi.dll
2015-05-02 18:08:40 ----AC---- C:\awh39.tmp
2015-05-02 09:47:21 ----AC---- C:\awh4CA.tmp
2015-04-29 15:39:12 ----AC---- C:\awh5.tmp
2015-04-29 15:02:12 ----AC---- C:\awhC8.tmp
2015-04-17 17:26:52 ----AC---- C:\awh4.tmp
2015-04-17 16:08:29 ----AC---- C:\awhA0.tmp
2015-04-17 15:13:27 ----AC---- C:\awhD7.tmp
======List of files/folders modified in the last 1 month======
2015-05-09 21:37:13 ----D---- C:\WINDOWS\Prefetch
2015-05-09 21:37:07 ----RD---- C:\Program Files
2015-05-09 21:36:28 ----D---- C:\WINDOWS
2015-05-09 21:36:28 ----A---- C:\WINDOWS\MAILTRAN.INI
2015-05-09 21:32:40 ----D---- C:\Program Files\Google
2015-05-09 21:32:32 ----D---- C:\WINDOWS\Temp
2015-05-09 21:26:59 ----D---- C:\Documents and Settings\martin\Data aplikací\Skype
2015-05-09 21:24:52 ----D---- C:\Documents and Settings\martin\Data aplikací\Seznam.cz
2015-05-09 21:24:20 ----SD---- C:\Documents and Settings\martin\Data aplikací\Microsoft
2015-05-09 21:24:19 ----SHD---- C:\WINDOWS\Installer
2015-05-09 21:22:05 ----D---- C:\Program Files\ESET
2015-05-09 21:19:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-05-09 21:10:46 ----DC---- C:\Documents and Settings\All Users\Data aplikací\Google
2015-05-09 21:10:32 ----D---- C:\Program Files\GameSpy Arcade
2015-05-09 21:10:05 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2015-05-09 21:09:51 ----D---- C:\WINDOWS\system32
2015-05-09 21:09:50 ----HD---- C:\WINDOWS\inf
2015-05-09 21:09:50 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-05-09 21:09:48 ----D---- C:\WINDOWS\system32\CatRoot2
2015-05-09 21:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-05-09 21:01:20 ----D---- C:\Program Files\Common Files\ACD Systems
2015-05-02 19:40:47 ----RSD---- C:\WINDOWS\assembly
2015-05-02 10:11:13 ----A---- C:\WINDOWS\NeroDigital.ini
2015-04-29 20:05:59 ----D---- C:\Program Files\HDQ-1.2cV01.01
2015-04-29 20:05:58 ----SD---- C:\WINDOWS\Tasks
2015-04-29 20:01:43 ----AC---- C:\WINDOWS\system32\MRT.exe
2015-04-29 20:01:24 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2015-04-29 15:33:59 ----SHD---- C:\WINDOWS\CSC
2015-04-17 17:01:56 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-04-17 17:01:52 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2015-04-17 15:08:02 ----D---- C:\Documents and Settings\martin\Data aplikací\uTorrent
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 imagedrv;imagedrv; C:\WINDOWS\System32\Drivers\imagedrv.sys [2005-08-15 5888]
R0 imagesrv;imagesrv; C:\WINDOWS\system32\DRIVERS\imagesrv.sys [2005-08-15 127488]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 prohlp02;StarForce Protection Helper Driver v2; C:\WINDOWS\System32\drivers\prohlp02.sys [2004-05-13 111808]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\WINDOWS\System32\drivers\prosync1.sys [2003-09-06 6944]
R0 sfhlp01;StarForce Protection Helper Driver; C:\WINDOWS\System32\drivers\sfhlp01.sys [2003-12-01 4832]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-01-04 715248]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-19 43008]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 nethfdrv;nethfdrv; \??\C:\WINDOWS\system32\drivers\nethfdrv.sys []
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-05-13 79488]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 huawei_enumerator;huawei_enumerator; C:\WINDOWS\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 73216]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-14 4429312]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-05-11 6738432]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-05-04 46720]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-05-04 19968]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-02-17 47360]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2008-01-06 10368]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys []
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S3 amzw8irr;amzw8irr; C:\WINDOWS\system32\drivers\amzw8irr.sys []
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [2011-02-25 90368]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2011-05-03 194816]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\WINDOWS\system32\DRIVERS\ewusbdev.sys []
S3 massfilter;Mass Storage Filter Driver; C:\WINDOWS\system32\drivers\massfilter.sys [2010-02-22 9216]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS []
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 ZTEusbmdm6k;ZTE Proprietary USB Driver; C:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys [2010-03-02 105856]
S3 ZTEusbnmea;ZTE NMEA Port; C:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys [2010-03-02 105856]
S3 ZTEusbser6k;ZTE Diagnostic Port; C:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys [2010-03-02 105856]
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files\T-Mobile\Web'n'walk Manager\ameisvc.exe [2011-06-24 123120]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18 107912]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 NetHttpService;Network HTTP Support Service; C:\WINDOWS\system32\nethtsrv.exe [2015-05-06 338944]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-05-11 163908]
R2 OffersWizard;OffersWizard; C:\Program Files\ver2OffersWizard\B9eG190.exe [2015-03-03 349696]
R2 PnkBstrA;PunkBuster; C:\Program Files\Electronic Arts\Medal of Honor Airborne\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe [2007-08-15 63040]
R2 ServiceUpdater;Network Support Service Updater; C:\WINDOWS\system32\netupdsrv.exe [2015-05-06 190976]
R3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-01-04 654848]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-01-01 68608]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17 268464]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-01-01 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18 107912]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 235696]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-03-29 148080]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------