prosím o kontrolu logu
Napsal: 15 led 2010 20:54
Logfile of random's system information tool 1.06 (written by random/random)
Run by Pliskovky at 2010-01-15 20:53:20
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 17 GB (29%) free of 57 GB
Total RAM: 767 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:53:30, on 15.1.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINNT\system32\cisvc.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\WINNT\system32\nvsvc32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\wbem\wmiapsrv.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINNT\PixArt\i-Look110\Monitor.exe
C:\Program Files\TO2SSM\McciTrayApp.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\totalcmd\TOTALCMD.EXE
c:\temp\RSIT.exe
C:\Program Files\trend micro\Pliskovky.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://puvodni.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: OLE (Part 1 of 5) - - (no file)
O2 - BHO: XTTBPos00 Class - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: XML module - {500BCA15-57A7-4eaf-8143-8C619470B13D} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PAC207_Monitor] C:\WINNT\PixArt\i-Look110\Monitor.exe
O4 - HKLM\..\Run: [Monitor] C:\WINNT\PixArt\i-Look110\Monitor.exe
O4 - HKLM\..\Run: [TO2SSM_McciTrayApp] C:\Program Files\TO2SSM\McciTrayApp.exe
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINNT\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINNT\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINNT\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {45B69029-F3AB-4204-92DE-D5140C3E8E74} (F5 Networks Auto Update) - C:\DOCUME~1\PLISKO~1\LOCALS~1\Temp\IXP000.TMP\InstallerControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 7045192953
O16 - DPF: {6C275925-A1ED-4DD2-9CEE-9823F5FDAA10} (F5 Networks SSLTunnel) - https://gate.rsts.cz/vdesk/terminal/urT ... ,1001,2136
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl-esd.sun.com/update/1.6.0/ ... 586-jc.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E0FF21FA-B857-45C5-8621-F120A0C17FF2} (F5 Networks Host Control) - https://gate.rsts.cz/vdesk/terminal/urx ... ,1001,2140
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
--
End of file - 7019 bytes
======Scheduled tasks folder======
C:\WINNT\tasks\At1.job
C:\WINNT\tasks\At10.job
C:\WINNT\tasks\At11.job
C:\WINNT\tasks\At12.job
C:\WINNT\tasks\At13.job
C:\WINNT\tasks\At14.job
C:\WINNT\tasks\At15.job
C:\WINNT\tasks\At16.job
C:\WINNT\tasks\At17.job
C:\WINNT\tasks\At18.job
C:\WINNT\tasks\At19.job
C:\WINNT\tasks\At2.job
C:\WINNT\tasks\At20.job
C:\WINNT\tasks\At21.job
C:\WINNT\tasks\At22.job
C:\WINNT\tasks\At23.job
C:\WINNT\tasks\At24.job
C:\WINNT\tasks\At25.job
C:\WINNT\tasks\At26.job
C:\WINNT\tasks\At27.job
C:\WINNT\tasks\At28.job
C:\WINNT\tasks\At29.job
C:\WINNT\tasks\At3.job
C:\WINNT\tasks\At30.job
C:\WINNT\tasks\At31.job
C:\WINNT\tasks\At32.job
C:\WINNT\tasks\At33.job
C:\WINNT\tasks\At34.job
C:\WINNT\tasks\At35.job
C:\WINNT\tasks\At36.job
C:\WINNT\tasks\At37.job
C:\WINNT\tasks\At38.job
C:\WINNT\tasks\At39.job
C:\WINNT\tasks\At4.job
C:\WINNT\tasks\At40.job
C:\WINNT\tasks\At41.job
C:\WINNT\tasks\At42.job
C:\WINNT\tasks\At43.job
C:\WINNT\tasks\At44.job
C:\WINNT\tasks\At45.job
C:\WINNT\tasks\At46.job
C:\WINNT\tasks\At47.job
C:\WINNT\tasks\At48.job
C:\WINNT\tasks\At5.job
C:\WINNT\tasks\At6.job
C:\WINNT\tasks\At7.job
C:\WINNT\tasks\At8.job
C:\WINNT\tasks\At9.job
C:\WINNT\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{500BCA15-57A7-4eaf-8143-8C619470B13D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe [2007-09-25 132496]
"NvCplDaemon"=C:\WINNT\system32\NvCpl.dll [2006-10-22 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINNT\system32\NvMcTray.dll [2006-10-22 86016]
"PAC207_Monitor"=C:\WINNT\PixArt\i-Look110\Monitor.exe [2007-12-10 323584]
"Monitor"=C:\WINNT\PixArt\i-Look110\Monitor.exe [2007-12-10 323584]
"TO2SSM_McciTrayApp"=C:\Program Files\TO2SSM\McciTrayApp.exe [2008-08-15 1473536]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2009-09-13 1048392]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINNT\system32\ctfmon.exe [2008-04-14 15360]
"fsm"= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINNT\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINNT\system32\wpdshserviceobj.dll [2007-10-05 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray"
"C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe"="C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Documents and Settings\Pliskovky\Dokumenty\Stahovani\incredimail_install.exe"="C:\Documents and Settings\Pliskovky\Dokumenty\Stahovani\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\WINNT\system32\rundll32.exe"="C:\WINNT\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\WINNT\system32\dpvsetup.exe"="C:\WINNT\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\FlashGet\FlashGet.exe"="C:\Program Files\FlashGet\FlashGet.exe:*:Enabled:Flashget"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1933685e-d50f-11de-a56d-000b7a9e0957}]
shell\AutoRun\command - E:\setupSNK.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ec7bde81-a5a5-11dc-a848-000b7a9e0957}]
shell\AutoRun\command - E:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2010-01-15 20:53:20 ----D---- C:\rsit
2010-01-15 20:53:20 ----D---- C:\Program Files\trend micro
2010-01-15 20:50:19 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\TeamViewer
2010-01-15 20:50:05 ----D---- C:\Program Files\TeamViewer
2010-01-15 20:09:49 ----D---- C:\Program Files\Adobe
2010-01-15 17:46:21 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Auslogics
2010-01-15 17:46:13 ----D---- C:\Program Files\Auslogics
2010-01-15 17:06:19 ----A---- C:\WINNT\system32\h323log.txt
2010-01-15 15:31:27 ----A---- C:\WINNT\iun6002.exe
2010-01-15 15:31:20 ----D---- C:\Program Files\Codec Pack - All In 1
2010-01-15 15:30:59 ----A---- C:\WINNT\Codec Pack - All In 1 Setup Log.txt
2010-01-15 15:13:12 ----N---- C:\WINNT\system32\MpSigStub.exe
2010-01-15 15:10:02 ----D---- C:\Program Files\Microsoft Security Essentials
2010-01-15 15:05:54 ----D---- C:\temp2
2010-01-15 15:05:47 ----D---- C:\temp
2010-01-15 15:05:22 ----D---- C:\Fotky
2010-01-15 15:04:17 ----D---- C:\Filmy
2010-01-15 15:03:30 ----D---- C:\Program Files\7-Zip
2010-01-15 15:01:43 ----A---- C:\WINNT\system32\D3DX9_42.dll
2010-01-15 15:01:41 ----A---- C:\WINNT\system32\d3dx9_31.dll
2010-01-15 15:01:31 ----D---- C:\WINNT\Logs
2010-01-15 15:01:11 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Winamp
2010-01-15 14:59:33 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Ashampoo
2010-01-15 14:59:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-01-15 14:59:23 ----D---- C:\Program Files\Ashampoo
2010-01-15 14:57:55 ----D---- C:\Program Files\CCleaner
2010-01-15 14:48:30 ----D---- C:\Program Files\Common Files\Skype
2010-01-15 14:23:40 ----HDC---- C:\WINNT\$NtUninstallKB970430$
2010-01-15 14:23:28 ----HDC---- C:\WINNT\$NtUninstallKB976098-v2$
2010-01-15 14:22:42 ----HDC---- C:\WINNT\$NtUninstallKB955759$
2010-01-15 14:22:30 ----HDC---- C:\WINNT\$NtUninstallKB974318$
2010-01-15 14:22:18 ----HDC---- C:\WINNT\$NtUninstallKB951978$
2010-01-15 14:21:56 ----HDC---- C:\WINNT\$NtUninstallKB972270$
2010-01-15 14:17:00 ----HDC---- C:\WINNT\$NtUninstallKB973687$
2010-01-15 14:16:52 ----HDC---- C:\WINNT\$NtUninstallKB973904$
2010-01-15 14:16:12 ----HDC---- C:\WINNT\$NtUninstallKB974392$
2010-01-15 14:16:04 ----HDC---- C:\WINNT\$NtUninstallKB954459$
2010-01-15 14:15:54 ----HDC---- C:\WINNT\$NtUninstallKB971737$
2010-01-15 14:12:41 ----D---- C:\Program Files\TO2SSM
2010-01-15 14:08:45 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Motive
2010-01-15 14:08:04 ----D---- C:\Program Files\Common Files\Motive
2010-01-15 14:06:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\Motive
2010-01-15 14:01:38 ----SHD---- C:\Config.Msi
2010-01-15 13:50:00 ----A---- C:\WINNT\system32\CoInst_080213.dll
2010-01-15 13:49:58 ----A---- C:\WINNT\system32\SP207.ini
2010-01-15 13:49:57 ----A---- C:\WINNT\system32\P207USD.dll
2010-01-15 13:49:55 ----D---- C:\Program Files\Common Files\i-Look 110
======List of files/folders modified in the last 1 months======
2010-01-15 20:53:30 ----D---- C:\WINNT\Prefetch
2010-01-15 20:53:20 ----RD---- C:\Program Files
2010-01-15 20:53:10 ----A---- C:\WINNT\wincmd.ini
2010-01-15 20:52:05 ----SD---- C:\WINNT\Tasks
2010-01-15 20:50:36 ----D---- C:\WINNT\Temp
2010-01-15 20:49:11 ----D---- C:\WINNT\system32\CatRoot2
2010-01-15 20:47:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-01-15 20:39:52 ----A---- C:\WINNT\SchedLgU.Txt
2010-01-15 20:10:43 ----SHD---- C:\WINNT\Installer
2010-01-15 20:10:09 ----D---- C:\Program Files\Common Files\Adobe
2010-01-15 20:09:14 ----D---- C:\WINNT\system32
2010-01-15 19:51:28 ----RSHDC---- C:\WINNT\system32\dllcache
2010-01-15 19:51:22 ----D---- C:\WINNT\system32\drivers
2010-01-15 19:12:48 ----D---- C:\Program Files\Mozilla Firefox
2010-01-15 17:35:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\NOS
2010-01-15 17:35:13 ----SD---- C:\WINNT\Downloaded Program Files
2010-01-15 17:26:56 ----A---- C:\WINNT\win.ini
2010-01-15 17:15:50 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Skype
2010-01-15 17:06:19 ----HD---- C:\WINNT\inf
2010-01-15 17:06:18 ----D---- C:\WINNT
2010-01-15 15:16:11 ----RD---- C:\Program Files\Skype
2010-01-15 15:10:16 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-15 15:02:01 ----D---- C:\Program Files\Winamp
2010-01-15 15:01:50 ----D---- C:\WINNT\system32\DirectX
2010-01-15 14:48:30 ----D---- C:\Program Files\Common Files
2010-01-15 14:48:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-01-15 14:46:26 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\skypePM
2010-01-15 14:40:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-15 14:40:35 ----D---- C:\Program Files\CyberLink
2010-01-15 14:33:59 ----D---- C:\totalcmd
2010-01-15 14:33:59 ----D---- C:\Program Files\FlashGet
2010-01-15 14:31:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-01-15 14:30:21 ----A---- C:\WINNT\system32\PerfStringBackup.INI
2010-01-15 14:30:17 ----D---- C:\Program Files\Nokia
2010-01-15 14:29:57 ----DC---- C:\WINNT\system32\DRVSTORE
2010-01-15 14:25:37 ----D---- C:\WINNT\AppPatch
2010-01-15 14:22:39 ----HD---- C:\WINNT\$hf_mig$
2010-01-15 14:21:26 ----D---- C:\Program Files\Internet Explorer
2010-01-15 14:21:12 ----D---- C:\WINNT\ie8updates
2010-01-15 14:19:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2010-01-15 14:17:34 ----D---- C:\WINNT\system32\CatRoot
2010-01-15 14:17:25 ----D---- C:\WINNT\Debug
2010-01-15 14:15:30 ----D---- C:\WINNT\WinSxS
2010-01-15 13:59:30 ----D---- C:\WINNT\twain_32
2010-01-15 13:59:01 ----D---- C:\WINNT\PixArt
2010-01-04 16:17:48 ----A---- C:\WINNT\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINNT\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINNT\system32\DRIVERS\MpFilter.sys [2009-06-18 142832]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINNT\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 irda;Protokol IrDA; C:\WINNT\system32\DRIVERS\irda.sys [2008-04-13 88192]
R3 cmuda;C-Media WDM Audio Interface; C:\WINNT\system32\drivers\cmuda.sys [2005-05-12 1332544]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINNT\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINNT\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINNT\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINNT\system32\DRIVERS\nv4_mini.sys [2006-10-22 3994624]
R3 PAC207;i-Look 110; C:\WINNT\system32\DRIVERS\PFC027.SYS [2008-02-13 618112]
R3 Rasirda;WAN Miniport (IrDA); C:\WINNT\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINNT\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINNT\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINNT\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 CCDECODE;Dekodér Closed Caption; C:\WINNT\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 irsir;Microsoft Serial Infrared Driver; C:\WINNT\system32\DRIVERS\irsir.sys [2001-08-17 18688]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINNT\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINNT\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINNT\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINNT\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINNT\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\WINNT\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\WINNT\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\WINNT\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 SLIP;BDA Slip De-Framer; C:\WINNT\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINNT\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINNT\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINNT\system32\DRIVERS\wpdusb.sys [2007-10-05 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINNT\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINNT\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:\WINNT\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 Irmon;Sledování infračerveného přenosu; C:\WINNT\system32\svchost.exe [2008-04-14 14336]
R2 McciCMService;McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [2007-10-15 303104]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-07-02 17904]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINNT\system32\nvsvc32.exe [2006-10-22 159810]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINNT\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINNT\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINNT\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINNT\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINNT\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINNT\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
Run by Pliskovky at 2010-01-15 20:53:20
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 17 GB (29%) free of 57 GB
Total RAM: 767 MB (52% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:53:30, on 15.1.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINNT\system32\cisvc.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\WINNT\system32\nvsvc32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\wbem\wmiapsrv.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINNT\PixArt\i-Look110\Monitor.exe
C:\Program Files\TO2SSM\McciTrayApp.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\totalcmd\TOTALCMD.EXE
c:\temp\RSIT.exe
C:\Program Files\trend micro\Pliskovky.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://puvodni.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: OLE (Part 1 of 5) - - (no file)
O2 - BHO: XTTBPos00 Class - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: XML module - {500BCA15-57A7-4eaf-8143-8C619470B13D} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PAC207_Monitor] C:\WINNT\PixArt\i-Look110\Monitor.exe
O4 - HKLM\..\Run: [Monitor] C:\WINNT\PixArt\i-Look110\Monitor.exe
O4 - HKLM\..\Run: [TO2SSM_McciTrayApp] C:\Program Files\TO2SSM\McciTrayApp.exe
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINNT\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINNT\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINNT\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINNT\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {45B69029-F3AB-4204-92DE-D5140C3E8E74} (F5 Networks Auto Update) - C:\DOCUME~1\PLISKO~1\LOCALS~1\Temp\IXP000.TMP\InstallerControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 7045192953
O16 - DPF: {6C275925-A1ED-4DD2-9CEE-9823F5FDAA10} (F5 Networks SSLTunnel) - https://gate.rsts.cz/vdesk/terminal/urT ... ,1001,2136
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl-esd.sun.com/update/1.6.0/ ... 586-jc.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E0FF21FA-B857-45C5-8621-F120A0C17FF2} (F5 Networks Host Control) - https://gate.rsts.cz/vdesk/terminal/urx ... ,1001,2140
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
--
End of file - 7019 bytes
======Scheduled tasks folder======
C:\WINNT\tasks\At1.job
C:\WINNT\tasks\At10.job
C:\WINNT\tasks\At11.job
C:\WINNT\tasks\At12.job
C:\WINNT\tasks\At13.job
C:\WINNT\tasks\At14.job
C:\WINNT\tasks\At15.job
C:\WINNT\tasks\At16.job
C:\WINNT\tasks\At17.job
C:\WINNT\tasks\At18.job
C:\WINNT\tasks\At19.job
C:\WINNT\tasks\At2.job
C:\WINNT\tasks\At20.job
C:\WINNT\tasks\At21.job
C:\WINNT\tasks\At22.job
C:\WINNT\tasks\At23.job
C:\WINNT\tasks\At24.job
C:\WINNT\tasks\At25.job
C:\WINNT\tasks\At26.job
C:\WINNT\tasks\At27.job
C:\WINNT\tasks\At28.job
C:\WINNT\tasks\At29.job
C:\WINNT\tasks\At3.job
C:\WINNT\tasks\At30.job
C:\WINNT\tasks\At31.job
C:\WINNT\tasks\At32.job
C:\WINNT\tasks\At33.job
C:\WINNT\tasks\At34.job
C:\WINNT\tasks\At35.job
C:\WINNT\tasks\At36.job
C:\WINNT\tasks\At37.job
C:\WINNT\tasks\At38.job
C:\WINNT\tasks\At39.job
C:\WINNT\tasks\At4.job
C:\WINNT\tasks\At40.job
C:\WINNT\tasks\At41.job
C:\WINNT\tasks\At42.job
C:\WINNT\tasks\At43.job
C:\WINNT\tasks\At44.job
C:\WINNT\tasks\At45.job
C:\WINNT\tasks\At46.job
C:\WINNT\tasks\At47.job
C:\WINNT\tasks\At48.job
C:\WINNT\tasks\At5.job
C:\WINNT\tasks\At6.job
C:\WINNT\tasks\At7.job
C:\WINNT\tasks\At8.job
C:\WINNT\tasks\At9.job
C:\WINNT\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{500BCA15-57A7-4eaf-8143-8C619470B13D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd []
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe [2007-09-25 132496]
"NvCplDaemon"=C:\WINNT\system32\NvCpl.dll [2006-10-22 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINNT\system32\NvMcTray.dll [2006-10-22 86016]
"PAC207_Monitor"=C:\WINNT\PixArt\i-Look110\Monitor.exe [2007-12-10 323584]
"Monitor"=C:\WINNT\PixArt\i-Look110\Monitor.exe [2007-12-10 323584]
"TO2SSM_McciTrayApp"=C:\Program Files\TO2SSM\McciTrayApp.exe [2008-08-15 1473536]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2009-09-13 1048392]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINNT\system32\ctfmon.exe [2008-04-14 15360]
"fsm"= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINNT\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINNT\system32\wpdshserviceobj.dll [2007-10-05 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray"
"C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe"="C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Documents and Settings\Pliskovky\Dokumenty\Stahovani\incredimail_install.exe"="C:\Documents and Settings\Pliskovky\Dokumenty\Stahovani\incredimail_install.exe:*:Enabled:IncrediMail Installer"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\WINNT\system32\rundll32.exe"="C:\WINNT\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\WINNT\system32\dpvsetup.exe"="C:\WINNT\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\FlashGet\FlashGet.exe"="C:\Program Files\FlashGet\FlashGet.exe:*:Enabled:Flashget"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1933685e-d50f-11de-a56d-000b7a9e0957}]
shell\AutoRun\command - E:\setupSNK.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ec7bde81-a5a5-11dc-a848-000b7a9e0957}]
shell\AutoRun\command - E:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2010-01-15 20:53:20 ----D---- C:\rsit
2010-01-15 20:53:20 ----D---- C:\Program Files\trend micro
2010-01-15 20:50:19 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\TeamViewer
2010-01-15 20:50:05 ----D---- C:\Program Files\TeamViewer
2010-01-15 20:09:49 ----D---- C:\Program Files\Adobe
2010-01-15 17:46:21 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Auslogics
2010-01-15 17:46:13 ----D---- C:\Program Files\Auslogics
2010-01-15 17:06:19 ----A---- C:\WINNT\system32\h323log.txt
2010-01-15 15:31:27 ----A---- C:\WINNT\iun6002.exe
2010-01-15 15:31:20 ----D---- C:\Program Files\Codec Pack - All In 1
2010-01-15 15:30:59 ----A---- C:\WINNT\Codec Pack - All In 1 Setup Log.txt
2010-01-15 15:13:12 ----N---- C:\WINNT\system32\MpSigStub.exe
2010-01-15 15:10:02 ----D---- C:\Program Files\Microsoft Security Essentials
2010-01-15 15:05:54 ----D---- C:\temp2
2010-01-15 15:05:47 ----D---- C:\temp
2010-01-15 15:05:22 ----D---- C:\Fotky
2010-01-15 15:04:17 ----D---- C:\Filmy
2010-01-15 15:03:30 ----D---- C:\Program Files\7-Zip
2010-01-15 15:01:43 ----A---- C:\WINNT\system32\D3DX9_42.dll
2010-01-15 15:01:41 ----A---- C:\WINNT\system32\d3dx9_31.dll
2010-01-15 15:01:31 ----D---- C:\WINNT\Logs
2010-01-15 15:01:11 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Winamp
2010-01-15 14:59:33 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Ashampoo
2010-01-15 14:59:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-01-15 14:59:23 ----D---- C:\Program Files\Ashampoo
2010-01-15 14:57:55 ----D---- C:\Program Files\CCleaner
2010-01-15 14:48:30 ----D---- C:\Program Files\Common Files\Skype
2010-01-15 14:23:40 ----HDC---- C:\WINNT\$NtUninstallKB970430$
2010-01-15 14:23:28 ----HDC---- C:\WINNT\$NtUninstallKB976098-v2$
2010-01-15 14:22:42 ----HDC---- C:\WINNT\$NtUninstallKB955759$
2010-01-15 14:22:30 ----HDC---- C:\WINNT\$NtUninstallKB974318$
2010-01-15 14:22:18 ----HDC---- C:\WINNT\$NtUninstallKB951978$
2010-01-15 14:21:56 ----HDC---- C:\WINNT\$NtUninstallKB972270$
2010-01-15 14:17:00 ----HDC---- C:\WINNT\$NtUninstallKB973687$
2010-01-15 14:16:52 ----HDC---- C:\WINNT\$NtUninstallKB973904$
2010-01-15 14:16:12 ----HDC---- C:\WINNT\$NtUninstallKB974392$
2010-01-15 14:16:04 ----HDC---- C:\WINNT\$NtUninstallKB954459$
2010-01-15 14:15:54 ----HDC---- C:\WINNT\$NtUninstallKB971737$
2010-01-15 14:12:41 ----D---- C:\Program Files\TO2SSM
2010-01-15 14:08:45 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Motive
2010-01-15 14:08:04 ----D---- C:\Program Files\Common Files\Motive
2010-01-15 14:06:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\Motive
2010-01-15 14:01:38 ----SHD---- C:\Config.Msi
2010-01-15 13:50:00 ----A---- C:\WINNT\system32\CoInst_080213.dll
2010-01-15 13:49:58 ----A---- C:\WINNT\system32\SP207.ini
2010-01-15 13:49:57 ----A---- C:\WINNT\system32\P207USD.dll
2010-01-15 13:49:55 ----D---- C:\Program Files\Common Files\i-Look 110
======List of files/folders modified in the last 1 months======
2010-01-15 20:53:30 ----D---- C:\WINNT\Prefetch
2010-01-15 20:53:20 ----RD---- C:\Program Files
2010-01-15 20:53:10 ----A---- C:\WINNT\wincmd.ini
2010-01-15 20:52:05 ----SD---- C:\WINNT\Tasks
2010-01-15 20:50:36 ----D---- C:\WINNT\Temp
2010-01-15 20:49:11 ----D---- C:\WINNT\system32\CatRoot2
2010-01-15 20:47:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-01-15 20:39:52 ----A---- C:\WINNT\SchedLgU.Txt
2010-01-15 20:10:43 ----SHD---- C:\WINNT\Installer
2010-01-15 20:10:09 ----D---- C:\Program Files\Common Files\Adobe
2010-01-15 20:09:14 ----D---- C:\WINNT\system32
2010-01-15 19:51:28 ----RSHDC---- C:\WINNT\system32\dllcache
2010-01-15 19:51:22 ----D---- C:\WINNT\system32\drivers
2010-01-15 19:12:48 ----D---- C:\Program Files\Mozilla Firefox
2010-01-15 17:35:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\NOS
2010-01-15 17:35:13 ----SD---- C:\WINNT\Downloaded Program Files
2010-01-15 17:26:56 ----A---- C:\WINNT\win.ini
2010-01-15 17:15:50 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\Skype
2010-01-15 17:06:19 ----HD---- C:\WINNT\inf
2010-01-15 17:06:18 ----D---- C:\WINNT
2010-01-15 15:16:11 ----RD---- C:\Program Files\Skype
2010-01-15 15:10:16 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-15 15:02:01 ----D---- C:\Program Files\Winamp
2010-01-15 15:01:50 ----D---- C:\WINNT\system32\DirectX
2010-01-15 14:48:30 ----D---- C:\Program Files\Common Files
2010-01-15 14:48:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype
2010-01-15 14:46:26 ----D---- C:\Documents and Settings\Pliskovky\Data aplikací\skypePM
2010-01-15 14:40:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-15 14:40:35 ----D---- C:\Program Files\CyberLink
2010-01-15 14:33:59 ----D---- C:\totalcmd
2010-01-15 14:33:59 ----D---- C:\Program Files\FlashGet
2010-01-15 14:31:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-01-15 14:30:21 ----A---- C:\WINNT\system32\PerfStringBackup.INI
2010-01-15 14:30:17 ----D---- C:\Program Files\Nokia
2010-01-15 14:29:57 ----DC---- C:\WINNT\system32\DRVSTORE
2010-01-15 14:25:37 ----D---- C:\WINNT\AppPatch
2010-01-15 14:22:39 ----HD---- C:\WINNT\$hf_mig$
2010-01-15 14:21:26 ----D---- C:\Program Files\Internet Explorer
2010-01-15 14:21:12 ----D---- C:\WINNT\ie8updates
2010-01-15 14:19:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\WinZip
2010-01-15 14:17:34 ----D---- C:\WINNT\system32\CatRoot
2010-01-15 14:17:25 ----D---- C:\WINNT\Debug
2010-01-15 14:15:30 ----D---- C:\WINNT\WinSxS
2010-01-15 13:59:30 ----D---- C:\WINNT\twain_32
2010-01-15 13:59:01 ----D---- C:\WINNT\PixArt
2010-01-04 16:17:48 ----A---- C:\WINNT\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINNT\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINNT\system32\DRIVERS\MpFilter.sys [2009-06-18 142832]
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINNT\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 irda;Protokol IrDA; C:\WINNT\system32\DRIVERS\irda.sys [2008-04-13 88192]
R3 cmuda;C-Media WDM Audio Interface; C:\WINNT\system32\drivers\cmuda.sys [2005-05-12 1332544]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINNT\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINNT\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINNT\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINNT\system32\DRIVERS\nv4_mini.sys [2006-10-22 3994624]
R3 PAC207;i-Look 110; C:\WINNT\system32\DRIVERS\PFC027.SYS [2008-02-13 618112]
R3 Rasirda;WAN Miniport (IrDA); C:\WINNT\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINNT\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINNT\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINNT\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 CCDECODE;Dekodér Closed Caption; C:\WINNT\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 irsir;Microsoft Serial Infrared Driver; C:\WINNT\system32\DRIVERS\irsir.sys [2001-08-17 18688]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; C:\WINNT\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINNT\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINNT\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINNT\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINNT\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\WINNT\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\WINNT\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\WINNT\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 SLIP;BDA Slip De-Framer; C:\WINNT\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINNT\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINNT\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINNT\system32\DRIVERS\wpdusb.sys [2007-10-05 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINNT\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINNT\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:\WINNT\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 Irmon;Sledování infračerveného přenosu; C:\WINNT\system32\svchost.exe [2008-04-14 14336]
R2 McciCMService;McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [2007-10-15 303104]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-07-02 17904]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINNT\system32\nvsvc32.exe [2006-10-22 159810]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINNT\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINNT\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINNT\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINNT\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINNT\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINNT\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------