Stránka 1 z 2

MWAV

Napsal: 20 led 2010 00:13
od Deezer
Ahoj. Potreboval bych zkontrolovat vycet chyb a kritickych objektu v logu MWAV


19 I 2010 00:31:33 - **********************************************************
19 I 2010 00:31:33 - eScan Anti Virus & Spyware Toolkit Utility.
19 I 2010 00:31:33 - Copyright © MicroWorld Technologies
19 I 2010 00:31:33 - **********************************************************
19 I 2010 00:31:33 - Source: C:\DOCUME~1\Lenka\DOKUME~1\STAENS~1\mwav.exe
19 I 2010 00:31:33 - Version 11.0.86 (C:\DOCUMENTS AND SETTINGS\LENKA\LOCAL SETTINGS\TEMP\MEXE.COM)
19 I 2010 00:31:33 - Log File: C:\Documents and Settings\Lenka\Local Settings\Temp\MWAV.LOG
19 I 2010 00:31:33 - MWAV Registered: FALSE
19 I 2010 00:31:33 - User Account: Lenka (Administrator Mode)
19 I 2010 00:31:33 - OS Type: Windows Workstation
19 I 2010 00:31:34 - OS: Windows XP [OS Install Date: 14 Nov 2006 12:42:58]
19 I 2010 00:31:34 - Ver: Service Pack 2 (Build 2600)
19 I 2010 00:31:34 - System Up Time: 42 Minutes, 55 Seconds

19 I 2010 00:31:34 - Windows Root Folder: C:\WINDOWS
19 I 2010 00:31:34 - Windows Sys32 Folder: C:\WINDOWS\system32
19 I 2010 00:31:34 - DHCP NameServer: 10.0.0.138
19 I 2010 00:31:34 - Interface0 DHCPNameServer: 10.0.0.138
19 I 2010 00:31:34 - Local Fixed Drives: c:\,f:\
19 I 2010 00:31:34 - MWAV Mode: Only Scan files
19 I 2010 00:31:34 - [CREATED ZIP FILE: C:\Documents and Settings\Lenka\Local Settings\Temp\pinfect.zip]

19 I 2010 00:31:34 - ****** Files/Folders created/modified during last fortnight in Windows and ROOT Folder ******
19 I 2010 00:31:45 - C:\WINDOWS\system32\MRT.exe (29634504), 04-Jan-2010, Microsoft Corporation, Nástroj pro odstranění škodlivého softwaru systému Microsoft Windows
19 I 2010 00:31:48 - C:\WINDOWS\system32\UpdateDriver.exe (200704), 16-Jan-2010, UpdateDriver Application
19 I 2010 00:31:52 - C:\WINDOWS\system32\drivers\AegisP.sys (20747), 16-Jan-2010, Meetinghouse Data Communications, AEGIS Client 3.4.3.0
19 I 2010 00:31:53 - C:\WINDOWS\system32\drivers\fsbts.sys (33920), 05-Jan-2010, F-Secure Corporation, F-Secure Boot Time Scanner
19 I 2010 00:31:55 - C:\WINDOWS\system32\drivers\fsdfw.sys (79872), 05-Jan-2010, F-Secure Corporation, F-Secure Internet Shield
19 I 2010 00:31:56 - C:\WINDOWS\system32\drivers\rt73.sys (451968), 15-Jan-2010, Ralink Technology, Corp., Ralink 802.11 Wireless Adapters

19 I 2010 00:31:56 - C:\WINDOWS\$hf_mig$, 14-Nov-2006 [H] [Folder]
19 I 2010 00:31:56 - C:\WINDOWS\$MSI31Uninstall_KB893803v2$, 14-Nov-2006

Re: MWAV

Napsal: 20 led 2010 00:16
od sudanec
Dobry den,

v tomto logu nie je nic zaujimave, akurat odporucam doinstalovat SP3 pre windows XP.
Poslite log podla nasho navodu, tam je aj napisane, ktoru cast potrebujeme:
http://www.viry.cz/forum/viewtopic.php?f=29&t=4097

Re: MWAV

Napsal: 20 led 2010 00:39
od Deezer
I kdyz pouzivam Mozilu, tak mam stahnout Service Pack 3?

Re: MWAV

Napsal: 20 led 2010 00:44
od sudanec
Service pack 3 je pre Windows, teda nie len pre vas prehliadac; je to taky velky balik oprav chyb vo windows, ktore, ak ich nemate nainstalovane, moze potencialne vyuzit utocnik na napadnutie vasho pocitaca. Okrem toho zvykne zvysit vykon pocitaca, poriesit niektore problemy, atp. Teda ano, odporucam to aj ked pouzivate mozillu.

Re: MWAV

Napsal: 20 led 2010 00:50
od Deezer
Problem je v tom, ze mam hrozne pomaly pocitac. Respektive zpomaluje se mi. Vycistil jsem ho Ccleanerem a ted zkousim MWAV. Mam pripojeni od O2 a ten nabizi zdarma k pouzivani antivir f-secure. A ten mi zachytil nejaky vir "riskware" v souboru, ktery je ve slozce "win32" a nejde vylecit a ani smazat. Tak jsem ho zavrel do karanteny. A ten log z MWAV tedy nehlasi nic. Tak nevim, co mam dal delat... SP3 uz instaluju.

Re: MWAV

Napsal: 20 led 2010 00:53
od sudanec
Kedy zacal byt pocitac pomaly? Co ste robili, ked to zacalo?

Poslite log z RSIT a uvidime, co sa da robit.
http://www.viry.cz/forum/viewtopic.php?f=30&t=82744

Re: MWAV

Napsal: 20 led 2010 01:17
od Deezer
Tak vzhledem ke stehovani byl cca tri mesice mimo provoz. Po zapnuti byl okamzite takto zpomaleny. Nedelali jsme s nim nic, krom vyse popsaneho. Ten "riskware" se obcas znovu ohlasi a znovu ho musim schovat do karanteny.

Posilam log:


Logfile of random's system information tool 1.06 (written by random/random)
Run by Lenka at 2010-01-20 01:16:22
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 148 GB (78%) free of 191 GB
Total RAM: 511 MB (20% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:21:53, on 20.1.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgfws8.exe
C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
C:\Program Files\F-Secure\Common\FSMA32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\F-Secure\Common\FSMB32.EXE
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\F-Secure\Common\FCH32.EXE
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\F-Secure\Common\FAMEH32.EXE
C:\Program Files\F-Secure\Anti-Virus\fsqh.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\SPAMfighter\SFAgent.exe
C:\Program Files\TO2SSM\McciTrayApp.exe
C:\Program Files\F-Secure\Common\FSM32.EXE
C:\Program Files\TO2WCM\McciTrayApp.exe
C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\F-Secure\FSGUI\fsguidll.exe
C:\Program Files\F-Secure\FSAUA\program\fsaua.exe
C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
C:\Program Files\F-Secure\FSAUA\program\fsus.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\F-Secure\Anti-Virus\fsav32.exe
C:\DOCUME~1\Lenka\LOCALS~1\Temp\mexe.com
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Lenka\Dokumenty\Stažené soubory\IE8-Setup-XP-v3.exe
C:\WINDOWS\system32\cmd.exe
C:\DOCUME~1\Lenka\LOCALS~1\Temp\IXP000.TMP\IE-REDIST.EXE
c:\96a78174eb3a2dac96372c4693fc1a\update\iesetup.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Lenka\Plocha\RSIT.exe
C:\Program Files\trend micro\Lenka.exe
C:\WINDOWS\SoftwareDistribution\Download\2bf25c1ca989169e2bb8c182b7dc42d2\update\update.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - *{855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - *{EEE6C35D-6118-11DC-9C72-001320C79847} - (no file)
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
O4 - HKLM\..\Run: [TO2SSM_McciTrayApp] C:\Program Files\TO2SSM\McciTrayApp.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [TO2WCM_McciTrayApp] C:\Program Files\TO2WCM\McciTrayApp.exe
O4 - HKLM\..\Run: [F5D7050v3] C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
O4 - HKLM\..\RunOnce: [wextract_cleanup0] rundll32.exe C:\WINDOWS\system32\advpack.dll,DelNodeRunDLL32 "C:\DOCUME~1\Lenka\LOCALS~1\Temp\IXP000.TMP\"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\RunOnce: [AVG Security Toolbar_FF_UpdateProcess] "C:\Program Files\AVG\AVG8\Toolbar\Firefox\avg@igeared\..\..\ToolbarBroker.exe" /FFCHECKUPDATE "C:\Program Files\AVG\AVG8\Toolbar\Firefox\avg@igeared"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 3507481140
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3507557750
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: AVG8 Firewall (avgfws8) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgfws8.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\F-Secure\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\F-Secure\ORSP Client\fsorsp.exe
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe

--
End of file - 11899 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-03-06 1088296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2010-01-12 1111320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-11-25 1230080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-02-19 251504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-09-20 737776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Lištička - C:\Program Files\Seznam.cz\listicka.dll [2009-07-22 1411736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetIM Toolbar Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2009-05-20 1258808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-12-09 958200]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-02-19 251504]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetIM Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2009-05-20 1258808]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-11-25 1230080]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-08-03 577536]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-15 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-04 1603152]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2010-01-12 2043160]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2009-05-20 111928]
"SPAMfighter Agent"=C:\Program Files\SPAMfighter\SFAgent.exe [2009-06-19 333960]
"TO2SSM_McciTrayApp"=C:\Program Files\TO2SSM\McciTrayApp.exe [2009-01-16 1473536]
"F-Secure Manager"=C:\Program Files\F-Secure\Common\FSM32.EXE [2008-12-04 182936]
"F-Secure TNB"=C:\Program Files\F-Secure\FSGUI\TNBUtil.exe [2008-12-04 957024]
"TO2WCM_McciTrayApp"=C:\Program Files\TO2WCM\McciTrayApp.exe [2008-01-30 1473536]
"F5D7050v3"=C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe [2007-10-30 1654784]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"wextract_cleanup0"=C:\WINDOWS\system32\advpack.dll [2006-03-02 100352]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-06-12 1414144]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"AVG Security Toolbar_FF_UpdateProcess"=C:\Program Files\AVG\AVG8\Toolbar\Firefox\avg@igeared\..\..\ToolbarBroker.exe [2009-11-25 263424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2005-09-03 94208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-04 1603152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-15 644696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PcSync]
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\rhtxirktevvmomsg]
C:\WINDOWS\System32\regsvr32.exe [2006-03-02 12288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
C:\Program Files\SweetIM\Messenger\SweetIM.exe [2009-05-20 111928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-06-13 68856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2007-03-12 185784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Adobe Gamma Loader.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-10-02 110592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Port pro program Symantec Fax Starter Edition.lnk]
C:\PROGRA~1\MICROS~2\Office\1029\OLFSNT40.EXE [1999-04-07 46080]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-09-27 90112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2009-08-01 11952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\TrackManiaDemo\TrackManiaDemo.exe"="C:\Program Files\TrackManiaDemo\TrackManiaDemo.exe:*:Disabled:TrackManiaDemo"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\AVG\AVG8\avgam.exe"="C:\Program Files\AVG\AVG8\avgam.exe:*:Enabled:avgam.exe"
"C:\Program Files\AVG\AVG8\avgdiag.exe"="C:\Program Files\AVG\AVG8\avgdiag.exe:*:Enabled:avgdiag.exe"
"C:\Program Files\AVG\AVG8\avgdiagex.exe"="C:\Program Files\AVG\AVG8\avgdiagex.exe:*:Enabled:avgdiagex.exe"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9b96ad9c-ce46-11db-a1e3-aded399b72ef}]
shell\AutoRun\command - E:\setupSNK.exe


======List of files/folders created in the last 1 months======

2010-01-20 01:18:42 ----D---- C:\WINDOWS\ie8updates
2010-01-20 01:16:43 ----D---- C:\Program Files\trend micro
2010-01-20 01:16:22 ----D---- C:\rsit
2010-01-20 01:12:51 ----D---- C:\Program Files\Seznam.cz
2010-01-20 01:12:39 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-20 01:11:35 ----D---- C:\WINDOWS\WBEM
2010-01-20 01:10:15 ----HDC---- C:\WINDOWS\ie8
2010-01-20 01:10:15 ----D---- C:\WINDOWS\system32\cs-CZ
2010-01-20 01:09:47 ----D---- C:\WINDOWS\LastGood
2010-01-20 00:48:27 ----D---- C:\96a78174eb3a2dac96372c4693fc1a
2010-01-19 03:01:41 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-01-19 03:01:06 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\VDLL.DLL
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\system32\runouce.exe
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\RUNDL132.EXE
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\logo_1.exe
2010-01-19 00:39:58 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-19 00:39:49 ----D---- C:\Program Files\MSBuild
2010-01-19 00:39:44 ----D---- C:\WINDOWS\system32\en-US
2010-01-19 00:39:27 ----D---- C:\Program Files\Reference Assemblies
2010-01-19 00:37:30 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-01-19 00:37:29 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-01-19 00:37:28 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-01-19 00:37:26 ----D---- C:\3a479aa928d19935b8b910
2010-01-19 00:33:21 ----A---- C:\WINDOWS\system32\msvcr80.dll
2010-01-19 00:33:16 ----A---- C:\WINDOWS\system32\msvcp80.dll
2010-01-19 00:33:10 ----A---- C:\WINDOWS\system32\eEmpty.exe
2010-01-19 00:32:19 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2010-01-19 00:32:19 ----A---- C:\WINDOWS\system32\T.COM
2010-01-19 00:32:17 ----A---- C:\WINDOWS\REGEDIT.COM
2010-01-19 00:32:17 ----A---- C:\WINDOWS\R.COM
2010-01-19 00:31:56 ----D---- C:\Program Files\Common Files\MicroWorld
2010-01-19 00:31:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2010-01-19 00:16:39 ----A---- C:\WINDOWS\imsins.BAK
2010-01-19 00:16:07 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-01-19 00:15:43 ----D---- C:\Program Files\MSXML 6.0
2010-01-18 23:57:05 ----SHD---- C:\RECYCLER
2010-01-16 22:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-01-16 22:00:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-01-16 22:00:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-16 22:00:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-16 22:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-16 22:00:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-16 22:00:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-01-16 21:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-16 21:59:45 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-16 21:59:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-16 21:59:30 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-01-16 21:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-16 21:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-16 21:58:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-01-16 21:58:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-16 21:58:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-01-16 21:58:06 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-16 21:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-01-16 21:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-16 21:57:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-16 21:57:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-01-16 21:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-16 21:56:58 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-01-16 21:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-01-16 21:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB976325$
2010-01-16 21:55:51 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-16 21:49:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-16 21:49:38 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-01-16 21:49:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-16 21:49:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-16 21:48:59 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-01-16 21:48:46 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-01-16 21:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-01-16 21:46:36 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-16 21:44:58 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-16 21:44:50 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-01-16 21:44:24 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-16 21:44:06 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-16 21:44:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-16 21:43:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-01-16 21:43:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-16 21:43:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-16 21:43:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-01-16 21:43:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-01-16 21:42:27 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-01-16 21:42:17 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-16 21:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-16 21:41:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-16 16:22:41 ----A---- C:\ComboFix.txt
2010-01-16 11:07:27 ----A---- C:\WINDOWS\system32\UpdateDriver.exe
2010-01-16 11:07:24 ----A---- C:\WINDOWS\system32\ucuiinfo.ini
2010-01-16 11:07:05 ----D---- C:\Program Files\Belkin
2010-01-15 19:35:21 ----D---- C:\Program Files\TO2WCM
2010-01-15 19:26:02 ----D---- C:\Program Files\TO2SAM
2010-01-05 17:59:42 ----D---- C:\Documents and Settings\Lenka\Data aplikací\F-Secure
2010-01-05 17:37:47 ----D---- C:\Program Files\F-Secure
2010-01-05 17:37:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\fssg
2010-01-05 17:36:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\f-secure
2010-01-05 17:23:47 ----D---- C:\Program Files\TO2SSM
2010-01-05 17:21:53 ----D---- C:\Documents and Settings\Lenka\Data aplikací\Motive
2010-01-05 17:21:32 ----D---- C:\Program Files\Common Files\Motive
2010-01-05 17:21:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Motive

======List of files/folders modified in the last 1 months======

2010-01-20 01:21:58 ----D---- C:\WINDOWS
2010-01-20 01:21:20 ----HD---- C:\WINDOWS\inf
2010-01-20 01:19:47 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-20 01:18:48 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-20 01:18:48 ----D---- C:\Program Files\Internet Explorer
2010-01-20 01:18:13 ----D---- C:\WINDOWS\Prefetch
2010-01-20 01:18:12 ----D---- C:\WINDOWS\temp
2010-01-20 01:16:43 ----RD---- C:\Program Files
2010-01-20 01:12:32 ----D---- C:\WINDOWS\system32
2010-01-20 01:11:37 ----D---- C:\WINDOWS\system32\config
2010-01-20 01:11:10 ----RD---- C:\WINDOWS\Offline Web Pages
2010-01-20 01:11:10 ----D---- C:\WINDOWS\Media
2010-01-20 01:11:01 ----D---- C:\WINDOWS\Help
2010-01-20 01:10:44 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-20 01:01:47 ----D---- C:\WINDOWS\Debug
2010-01-20 00:35:37 ----D---- C:\Program Files\Mozilla Firefox
2010-01-19 12:22:51 ----HD---- C:\$AVG8.VAULT$
2010-01-19 09:00:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-19 04:32:37 ----D---- C:\Program Files\SPAMfighter
2010-01-19 04:29:41 ----D---- C:\WINDOWS\system32\drivers
2010-01-19 04:24:15 ----RSD---- C:\WINDOWS\assembly
2010-01-19 04:23:53 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-19 02:14:39 ----SHD---- C:\Config.Msi
2010-01-19 00:53:50 ----SHD---- C:\WINDOWS\Installer
2010-01-19 00:49:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-19 00:49:16 ----D---- C:\WINDOWS\WinSxS
2010-01-19 00:39:41 ----RSD---- C:\WINDOWS\Fonts
2010-01-19 00:39:00 ----D---- C:\WINDOWS\system32\spool
2010-01-19 00:31:56 ----D---- C:\Program Files\Common Files
2010-01-18 23:49:00 ----D---- C:\WINDOWS\system32\wbem
2010-01-18 23:49:00 ----D---- C:\WINDOWS\AppPatch
2010-01-16 21:56:48 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-16 21:49:31 ----D---- C:\Program Files\Outlook Express
2010-01-16 21:33:55 ----D---- C:\Documents and Settings\Lenka\Data aplikací\Skype
2010-01-16 17:59:49 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-01-16 16:22:52 ----AD---- C:\Qoobox
2010-01-16 16:19:55 ----A---- C:\WINDOWS\system.ini
2010-01-16 12:13:58 ----D---- C:\Program Files\ICQ6.5
2010-01-16 11:07:35 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-01-16 11:07:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-01-16 11:07:11 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-15 20:01:17 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-12 17:46:14 ----D---- C:\Documents and Settings\Lenka\Data aplikací\Canon
2010-01-12 17:45:53 ----A---- C:\WINDOWS\CSTBox.INI
2010-01-12 17:38:30 ----D---- C:\WINDOWS\twain_32
2010-01-05 09:22:20 ----A---- C:\WINDOWS\ModemLog_Axesstel USB Modem.txt
2010-01-04 16:17:48 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Athlon64 Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-10-21 35840]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2009-08-01 335240]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2009-08-01 27784]
R1 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2009-05-25 108552]
R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files\F-Secure\HIPS\drivers\fshs.sys []
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2006-03-02 14848]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-01-26 52224]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2010-01-16 20747]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-08-18 4017536]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-09-27 1754624]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2009-05-14 29208]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files\F-Secure\Anti-Virus\minifilter\fsgk.sys []
R3 GTNDIS5;GTNDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\Belkin\F5D705~1\GTNDIS5.SYS []
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2006-03-02 9600]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
R3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-04-14 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-04-14 13056]
R3 RT73;Belkin Wireless 54G USB Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\rt73.sys [2007-10-02 451968]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-03-02 26624]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2006-03-02 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2006-03-02 17024]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\WINDOWS\system32\DRIVERS\adusbmdm65.sys [2005-05-02 64896]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\WINDOWS\system32\DRIVERS\adusbser65.sys [2005-05-02 64896]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2009-05-14 29208]
S3 Axtmvflt;Axesstel USB Filter Service; C:\WINDOWS\system32\DRIVERS\Axtmvflt.sys [2007-09-20 3456]
S3 Axtmvmdm;Axesstel USB Modem; C:\WINDOWS\system32\DRIVERS\Axtmvmdm.sys [2007-09-20 40064]
S3 Axtmvprt;Axesstel Diagnostic Port; C:\WINDOWS\System32\Drivers\Axtmvprt.sys [2007-09-20 38784]
S3 catchme;catchme; \??\C:\DOCUME~1\Lenka\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-08-05 25280]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 SQTECH905C;DualCamera; C:\WINDOWS\System32\Drivers\Capt905c.sys [2007-08-24 38656]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2004-08-03 25600]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 F-Secure Filter;F-Secure File System Filter; \??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSfilter.sys []
S4 F-Secure Recognizer;F-Secure File System Recognizer; \??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSrec.sys []
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-11-18 611664]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-09-27 425984]
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2009-08-01 908056]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2009-08-01 297752]
R2 avgfws8;AVG8 Firewall; C:\PROGRA~1\AVG\AVG8\avgfws8.exe [2009-08-01 1370488]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2007-01-31 96370]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe [2010-01-06 215648]
R2 FSMA;F-Secure Management Agent; C:\Program Files\F-Secure\Common\FSMA32.EXE [2008-12-04 117400]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2008-10-19 222456]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 McciCMService;McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [2007-10-15 303104]
R2 SPAMfighter Update Service;SPAMfighter Update Service; C:\Program Files\SPAMfighter\sfus.exe [2009-06-19 189064]
R2 UxTuneUp;TuneUp Design Expansion; C:\WINDOWS\System32\svchost.exe [2006-03-02 14336]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2001-05-01 53248]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2006-03-02 14336]
R3 FSAUA;F-Secure Automatic Update Agent; C:\Program Files\F-Secure\FSAUA\program\fsaua.exe [2008-12-04 490080]
R3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe [2008-12-04 510560]
R3 FSORSPClient;F-Secure ORSP Client; C:\Program Files\F-Secure\ORSP Client\fsorsp.exe [2008-12-04 55904]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-09-26 520192]
S2 spupdsvc;Windows Service Pack Installer update service; C:\WINDOWS\system32\spupdsvc.exe [2009-01-07 26144]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-09-06 29744]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: MWAV

Napsal: 20 led 2010 11:17
od sudanec
0K, tu bude problem v inom; ak sa nemylim, mate sucasne nainstalovane AVG aj ten balik od O2 ci od koho, to bude zrejme svar problemu. Teda sa rozhodnite a jeden z nich odinstalujte; u nas na fore neodporucame ani jeden z tychto zabezpecovacich systemov, teda vam nepoviem, ktory odinstalovat radsej.
Tiez odporucam odinstalovat SweetIM Toolbar.

Po dokonceni instalacie SP3 a odinstalacii jedneho AV vygenerujte a poslite log znova.

Re: MWAV

Napsal: 20 led 2010 15:17
od Deezer
Takze tady je ten novy log:


Logfile of random's system information tool 1.06 (written by random/random)
Run by Lenka at 2010-01-20 15:27:58
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 146 GB (77%) free of 191 GB
Total RAM: 511 MB (24% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:28:16, on 20.1.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\SPAMfighter\SFAgent.exe
C:\Program Files\TO2SSM\McciTrayApp.exe
C:\Program Files\TO2WCM\McciTrayApp.exe
C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
C:\Program Files\F-Secure\Common\FSMA32.EXE
C:\Program Files\F-Secure\Common\FSMB32.EXE
C:\Program Files\F-Secure\Common\FCH32.EXE
C:\Program Files\F-Secure\Common\FSM32.EXE
C:\Program Files\F-Secure\Common\FAMEH32.EXE
C:\Program Files\F-Secure\Anti-Virus\fsqh.exe
C:\Program Files\F-Secure\FSAUA\program\fsaua.exe
C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
C:\Program Files\F-Secure\FSGUI\fsguidll.exe
C:\Program Files\F-Secure\FSAUA\program\fsus.exe
C:\Program Files\F-Secure\Anti-Virus\fsav32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\WINDOWS\system32\dxdiag.exe
C:\Documents and Settings\Lenka\Plocha\RSIT.exe
C:\Program Files\trend micro\Lenka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
O4 - HKLM\..\Run: [TO2SSM_McciTrayApp] C:\Program Files\TO2SSM\McciTrayApp.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [TO2WCM_McciTrayApp] C:\Program Files\TO2WCM\McciTrayApp.exe
O4 - HKLM\..\Run: [F5D7050v3] C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Nastaven� Li�ti�ky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastaven� Li�ti�ky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Zv�raz�ova��slov�Li�ti�ky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zv�raz�ova��slov�Li�ti�ky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 3507481140
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 3507557750
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\F-Secure\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\F-Secure\ORSP Client\fsorsp.exe
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Unknown owner - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (file missing)
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: McciCMService - Motive Communications, Inc. - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe

--
End of file - 10402 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-03-06 1088296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-02-19 251504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-09-20 737776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Li�ti�ka - C:\Program Files\Seznam.cz\listicka.dll [2009-07-22 1411736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}]
SweetIM Toolbar Helper - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2009-05-20 1258808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-12-09 958200]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-02-19 251504]
{EEE6C35B-6118-11DC-9C72-001320C79847} - SweetIM Toolbar for Internet Explorer - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [2009-05-20 1258808]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-08-03 577536]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-15 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-04 1603152]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2009-05-20 111928]
"SPAMfighter Agent"=C:\Program Files\SPAMfighter\SFAgent.exe [2009-06-19 333960]
"TO2SSM_McciTrayApp"=C:\Program Files\TO2SSM\McciTrayApp.exe [2009-01-16 1473536]
"F-Secure Manager"=C:\Program Files\F-Secure\Common\FSM32.EXE [2008-12-04 182936]
"F-Secure TNB"=C:\Program Files\F-Secure\FSGUI\TNBUtil.exe [2008-12-04 957024]
"TO2WCM_McciTrayApp"=C:\Program Files\TO2WCM\McciTrayApp.exe [2008-01-30 1473536]
"F5D7050v3"=C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe [2007-10-30 1654784]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-06-12 1414144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2005-09-03 94208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-04 1603152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-15 644696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PcSync]
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\rhtxirktevvmomsg]
C:\WINDOWS\System32\regsvr32.exe [2008-04-14 12288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SweetIM]
C:\Program Files\SweetIM\Messenger\SweetIM.exe [2009-05-20 111928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-06-13 68856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2007-03-12 185784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nab�dka Start^Programy^Po spu�t�n�^Adobe Gamma Loader.lnk]
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [2003-10-02 110592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nab�dka Start^Programy^Po spu�t�n�^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nab�dka Start^Programy^Po spu�t�n�^Port pro program Symantec Fax Starter Edition.lnk]
C:\PROGRA~1\MICROS~2\Office\1029\OLFSNT40.EXE [1999-04-07 46080]

C:\Documents and Settings\All Users\Nab�dka Start\Programy\Po spu�t�n�
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-09-27 90112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\TrackManiaDemo\TrackManiaDemo.exe"="C:\Program Files\TrackManiaDemo\TrackManiaDemo.exe:*:Disabled:TrackManiaDemo"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9b96ad9c-ce46-11db-a1e3-aded399b72ef}]
shell\AutoRun\command - E:\setupSNK.exe


======List of files/folders created in the last 1 months======

2010-01-20 15:11:25 ----D---- C:\Program Files\WinRAR
2010-01-20 12:42:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-01-20 02:30:26 ----A---- C:\WINDOWS\OEWABLog.txt
2010-01-20 02:28:35 ----D---- C:\WINDOWS\Prefetch
2010-01-20 02:24:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-20 02:24:49 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-01-20 02:24:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-01-20 02:24:32 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-20 02:24:23 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-01-20 02:24:15 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-20 02:24:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-20 02:23:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-20 02:23:48 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-20 02:23:39 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-20 02:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-20 02:23:21 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-20 02:23:13 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-01-20 02:23:05 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-20 02:22:57 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-01-20 02:22:50 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-20 02:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-20 02:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-01-20 02:22:19 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-01-20 02:22:11 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-20 02:22:03 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-20 02:21:52 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-20 02:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-01-20 02:21:31 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-01-20 02:21:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-01-20 02:21:16 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-01-20 02:21:08 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-01-20 02:20:59 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-01-20 02:20:51 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-01-20 02:20:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-01-20 02:20:36 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-01-20 02:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2010-01-20 02:20:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-20 02:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2010-01-20 02:20:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-01-20 02:19:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-01-20 02:19:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-01-20 02:19:21 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-20 02:19:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-01-20 02:19:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-01-20 02:18:55 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2010-01-20 02:18:44 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-01-20 02:18:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-01-20 02:18:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-01-20 02:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-01-20 02:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2010-01-20 02:17:52 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-01-20 02:17:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-01-20 02:17:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-01-20 02:17:25 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-01-20 02:17:15 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2010-01-20 02:17:04 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-01-20 02:14:48 ----A---- C:\WINDOWS\setuplog.txt
2010-01-20 02:13:04 ----D---- C:\WINDOWS\l2schemas
2010-01-20 02:13:03 ----D---- C:\WINDOWS\system32\cs
2010-01-20 02:13:03 ----D---- C:\WINDOWS\system32\bits
2010-01-20 02:05:18 ----D---- C:\WINDOWS\network diagnostic
2010-01-20 01:59:55 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-20 01:59:22 ----D---- C:\WINDOWS\EHome
2010-01-20 01:18:42 ----D---- C:\WINDOWS\ie8updates
2010-01-20 01:16:43 ----D---- C:\Program Files\trend micro
2010-01-20 01:16:22 ----D---- C:\rsit
2010-01-20 01:12:51 ----D---- C:\Program Files\Seznam.cz
2010-01-20 01:12:39 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-20 01:11:35 ----D---- C:\WINDOWS\WBEM
2010-01-20 01:10:15 ----HDC---- C:\WINDOWS\ie8
2010-01-20 01:10:15 ----D---- C:\WINDOWS\system32\cs-CZ
2010-01-19 03:01:41 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-19 03:01:06 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\VDLL.DLL
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\system32\runouce.exe
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\RUNDL132.EXE
2010-01-19 00:49:46 ----AD---- C:\WINDOWS\logo_1.exe
2010-01-19 00:39:58 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-19 00:39:49 ----D---- C:\Program Files\MSBuild
2010-01-19 00:39:44 ----D---- C:\WINDOWS\system32\en-US
2010-01-19 00:39:27 ----D---- C:\Program Files\Reference Assemblies
2010-01-19 00:37:30 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-01-19 00:37:29 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-01-19 00:37:28 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-01-19 00:37:26 ----D---- C:\3a479aa928d19935b8b910
2010-01-19 00:33:21 ----A---- C:\WINDOWS\system32\msvcr80.dll
2010-01-19 00:33:16 ----A---- C:\WINDOWS\system32\msvcp80.dll
2010-01-19 00:33:10 ----A---- C:\WINDOWS\system32\eEmpty.exe
2010-01-19 00:32:19 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2010-01-19 00:32:19 ----A---- C:\WINDOWS\system32\T.COM
2010-01-19 00:32:17 ----A---- C:\WINDOWS\REGEDIT.COM
2010-01-19 00:32:17 ----A---- C:\WINDOWS\R.COM
2010-01-19 00:31:56 ----D---- C:\Program Files\Common Files\MicroWorld
2010-01-19 00:31:24 ----D---- C:\Documents and Settings\All Users\Data aplikac�\MicroWorld
2010-01-19 00:16:39 ----A---- C:\WINDOWS\imsins.BAK
2010-01-19 00:16:07 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2010-01-19 00:15:43 ----D---- C:\Program Files\MSXML 6.0
2010-01-18 23:57:05 ----SHD---- C:\RECYCLER
2010-01-16 22:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-01-16 22:00:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-01-16 22:00:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-16 22:00:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-16 22:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-16 22:00:13 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-01-16 22:00:04 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-16 21:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-01-16 21:59:45 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-01-16 21:59:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2010-01-16 21:59:30 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-01-16 21:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-01-16 21:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-01-16 21:58:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-01-16 21:58:21 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-01-16 21:58:14 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-01-16 21:58:06 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-16 21:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2010-01-16 21:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-16 21:57:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-01-16 21:57:37 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-01-16 21:57:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-16 21:56:58 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-01-16 21:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-01-16 21:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB976325$
2010-01-16 21:55:51 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-01-16 21:49:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-01-16 21:49:38 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2010-01-16 21:49:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-01-16 21:49:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-16 21:48:59 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-01-16 21:48:46 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-01-16 21:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-01-16 21:46:36 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-16 21:44:58 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-16 21:44:50 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-01-16 21:44:24 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2010-01-16 21:44:06 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-16 21:44:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-16 21:43:47 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-01-16 21:43:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-01-16 21:43:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-16 21:43:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-01-16 21:43:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-01-16 21:42:27 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-01-16 21:42:17 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-01-16 21:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-01-16 21:41:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-01-16 16:22:41 ----A---- C:\ComboFix.txt
2010-01-16 11:07:27 ----A---- C:\WINDOWS\system32\UpdateDriver.exe
2010-01-16 11:07:24 ----A---- C:\WINDOWS\system32\ucuiinfo.ini
2010-01-16 11:07:05 ----D---- C:\Program Files\Belkin
2010-01-15 19:35:21 ----D---- C:\Program Files\TO2WCM
2010-01-15 19:26:02 ----D---- C:\Program Files\TO2SAM
2010-01-05 17:59:42 ----D---- C:\Documents and Settings\Lenka\Data aplikac�\F-Secure
2010-01-05 17:37:47 ----D---- C:\Program Files\F-Secure
2010-01-05 17:37:02 ----D---- C:\Documents and Settings\All Users\Data aplikac�\fssg
2010-01-05 17:36:30 ----D---- C:\Documents and Settings\All Users\Data aplikac�\f-secure
2010-01-05 17:23:47 ----D---- C:\Program Files\TO2SSM
2010-01-05 17:21:53 ----D---- C:\Documents and Settings\Lenka\Data aplikac�\Motive
2010-01-05 17:21:32 ----D---- C:\Program Files\Common Files\Motive
2010-01-05 17:21:14 ----D---- C:\Documents and Settings\All Users\Data aplikac�\Motive

======List of files/folders modified in the last 1 months======

2010-01-20 15:28:00 ----D---- C:\WINDOWS\temp
2010-01-20 15:17:43 ----HD---- C:\WINDOWS\inf
2010-01-20 15:17:40 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-20 15:11:25 ----RD---- C:\Program Files
2010-01-20 14:47:13 ----D---- C:\Program Files\Mozilla Firefox
2010-01-20 13:16:38 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-20 13:16:33 ----RSD---- C:\WINDOWS\assembly
2010-01-20 13:03:43 ----D---- C:\WINDOWS
2010-01-20 12:56:46 ----D---- C:\Program Files\SPAMfighter
2010-01-20 12:54:09 ----D---- C:\WINDOWS\system32
2010-01-20 12:53:05 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-20 12:52:45 ----SHD---- C:\WINDOWS\Installer
2010-01-20 12:52:45 ----SHD---- C:\Config.Msi
2010-01-20 12:52:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-20 12:51:20 ----D---- C:\WINDOWS\WinSxS
2010-01-20 12:50:35 ----D---- C:\WINDOWS\system32\drivers
2010-01-20 12:50:02 ----D---- C:\Documents and Settings\All Users\Data aplikac�\avg8
2010-01-20 12:43:49 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-20 12:42:54 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-20 12:37:17 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-20 02:31:40 ----D---- C:\WINDOWS\Debug
2010-01-20 02:27:59 ----D---- C:\WINDOWS\system32\Setup
2010-01-20 02:27:59 ----D---- C:\WINDOWS\AppPatch
2010-01-20 02:27:58 ----RSD---- C:\WINDOWS\Fonts
2010-01-20 02:27:58 ----D---- C:\WINDOWS\system32\wbem
2010-01-20 02:26:49 ----D---- C:\WINDOWS\security
2010-01-20 02:23:32 ----D---- C:\Program Files\Outlook Express
2010-01-20 02:13:30 ----D---- C:\Program Files\Messenger
2010-01-20 02:13:24 ----D---- C:\WINDOWS\ime
2010-01-20 02:13:23 ----D---- C:\WINDOWS\Help
2010-01-20 02:13:05 ----D---- C:\WINDOWS\system32\usmt
2010-01-20 02:13:04 ----D---- C:\Program Files\Internet Explorer
2010-01-20 02:13:03 ----D---- C:\WINDOWS\PeerNet
2010-01-20 02:13:03 ----D---- C:\Program Files\Movie Maker
2010-01-20 02:08:36 ----D---- C:\WINDOWS\system32\Restore
2010-01-20 02:08:36 ----D---- C:\WINDOWS\system32\npp
2010-01-20 02:08:32 ----D---- C:\WINDOWS\msagent
2010-01-20 02:08:30 ----D---- C:\WINDOWS\srchasst
2010-01-20 02:08:28 ----D---- C:\Program Files\NetMeeting
2010-01-20 02:08:26 ----D---- C:\WINDOWS\system32\Com
2010-01-20 02:08:23 ----D---- C:\Program Files\Windows NT
2010-01-20 02:08:23 ----D---- C:\Program Files\Windows Media Player
2010-01-20 02:08:17 ----D---- C:\Program Files\Common Files\System
2010-01-20 02:07:52 ----D---- C:\WINDOWS\system32\oobe
2010-01-20 02:07:49 ----D---- C:\WINDOWS\system
2010-01-20 01:11:37 ----D---- C:\WINDOWS\system32\config
2010-01-20 01:11:10 ----RD---- C:\WINDOWS\Offline Web Pages
2010-01-20 01:11:10 ----D---- C:\WINDOWS\Media
2010-01-19 12:22:51 ----HD---- C:\$AVG8.VAULT$
2010-01-19 00:39:00 ----D---- C:\WINDOWS\system32\spool
2010-01-19 00:31:56 ----D---- C:\Program Files\Common Files
2010-01-16 21:33:55 ----D---- C:\Documents and Settings\Lenka\Data aplikac�\Skype
2010-01-16 16:22:52 ----AD---- C:\Qoobox
2010-01-16 16:19:55 ----A---- C:\WINDOWS\system.ini
2010-01-16 12:13:58 ----D---- C:\Program Files\ICQ6.5
2010-01-16 11:07:35 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-01-16 11:07:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-01-16 11:07:11 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-15 20:01:17 ----SD---- C:\Documents and Settings\All Users\Data aplikac�\Microsoft
2010-01-12 17:46:14 ----D---- C:\Documents and Settings\Lenka\Data aplikac�\Canon
2010-01-12 17:45:53 ----A---- C:\WINDOWS\CSTBox.INI
2010-01-12 17:38:30 ----D---- C:\WINDOWS\twain_32
2010-01-05 09:22:20 ----A---- C:\WINDOWS\ModemLog_Axesstel USB Modem.txt
2010-01-04 16:17:48 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Athlon64 Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-10-21 35840]
R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files\F-Secure\HIPS\drivers\fshs.sys []
R1 kbdhid;Ovlada� kl�vesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-01-26 52224]
R1 WS2IFSL;Podp�rn� prost�ed� zprost�edkovatele slu�eb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2010-01-16 20747]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2006-08-18 4017536]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-09-27 1754624]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files\F-Secure\Anti-Virus\minifilter\fsgk.sys []
R3 GTNDIS5;GTNDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\Belkin\F5D705~1\GTNDIS5.SYS []
R3 hidusb;Ovlada� t��dy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovlada� my�i standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12160]
R3 MRESP50;MRESP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS []
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-04-14 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-04-14 13056]
R3 RT73;Belkin Wireless 54G USB Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\rt73.sys [2007-10-02 451968]
R3 usbccgp;Obecn� nad�azen� ovlada� Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Ovlada� miniportu roz���en�ho radi�e hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Ovlada� standardn�ho rozbo�ova�e USB; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Ovlada� Miniport otev�en�ho hostitelsk�ho �adi�e Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbscan;Ovlada� skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys []
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\WINDOWS\system32\DRIVERS\adusbmdm65.sys [2005-05-02 64896]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\WINDOWS\system32\DRIVERS\adusbser65.sys [2005-05-02 64896]
S3 Axtmvflt;Axesstel USB Filter Service; C:\WINDOWS\system32\DRIVERS\Axtmvflt.sys [2007-09-20 3456]
S3 Axtmvmdm;Axesstel USB Modem; C:\WINDOWS\system32\DRIVERS\Axtmvmdm.sys [2007-09-20 40064]
S3 Axtmvprt;Axesstel Diagnostic Port; C:\WINDOWS\System32\Drivers\Axtmvprt.sys [2007-09-20 38784]
S3 catchme;catchme; \??\C:\DOCUME~1\Lenka\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekod�r Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-08-05 25280]
S3 MREMP50;MREMP50 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS []
S3 MREMP50a64;MREMP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS []
S3 MREMPR5;MREMPR5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS []
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS []
S3 MRESP50a64;MRESP50a64 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 SQTECH905C;DualCamera; C:\WINDOWS\System32\Drivers\Capt905c.sys [2007-08-24 38656]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbprint;T��da USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 USBSTOR;Ovlada� velkokapacitn�ho pam��ov�ho za��zen� USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WSTCODEC;D�lnopisn� kodek sv�tov�ho standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328]
S4 F-Secure Filter;F-Secure File System Filter; \??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSfilter.sys []
S4 F-Secure Recognizer;F-Secure File System Recognizer; \??\C:\Program Files\F-Secure\Anti-Virus\Win2K\FSrec.sys []
S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys []
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-11-18 611664]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-09-27 425984]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2007-01-31 96370]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe [2010-01-20 215648]
R2 FSMA;F-Secure Management Agent; C:\Program Files\F-Secure\Common\FSMA32.EXE [2008-12-04 117400]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2008-10-19 222456]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 McciCMService;McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [2007-10-15 303104]
R2 SPAMfighter Update Service;SPAMfighter Update Service; C:\Program Files\SPAMfighter\sfus.exe [2009-06-19 189064]
R2 UxTuneUp;TuneUp Design Expansion; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2001-05-01 53248]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 FSAUA;F-Secure Automatic Update Agent; C:\Program Files\F-Secure\FSAUA\program\fsaua.exe [2008-12-04 490080]
R3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe [2008-12-04 510560]
R3 FSORSPClient;F-Secure ORSP Client; C:\Program Files\F-Secure\ORSP Client\fsorsp.exe [2008-12-04 55904]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-09-26 520192]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-09-06 29744]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Slu�ba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: MWAV

Napsal: 20 led 2010 15:22
od sudanec
0K. Ako sa teraz sprava pocitac?

Re: MWAV

Napsal: 20 led 2010 17:10
od Deezer
Jo jo, uz je to ok. Diky moc. :o)

Jeste bych potreboval pomoct s tim riskware. Ten f-secure AV mi pise "ze blokuje pristup k viru Downloader.Win32.ImLoader riskware. A v karantene mam zavreny soubory. Dal to pise:

Nalezen riskwareWebToolbar.Win32.MyWebSearch (Riskware) F:\System Volume Information\_restore{02732B56-4A68-4B0B-BCCD-92A015AFA861}\RP164\A0023642.scr Akce: v karanténě

Re: MWAV

Napsal: 20 led 2010 17:44
od sudanec
Odstranime system volume information (Obnova systému):
1. Je potřeba vypnout nástroj obnova systému - Ovládací panely>systém>obnovení systému>vypnout nástroj obnovení systému>OK nebo použít a nyní jen restartovat PC
2. Po restartu je tento adresář kompletně smazán, obnovu opět zapnout.
Nasledne by mal ten riskware zmiznut, ale pozor, spolu so vsetkymi bodmi obnovy.
Nemate zac, ak by ste mali dalsie problemy, dajte vediet.

Re: MWAV

Napsal: 20 led 2010 19:31
od Deezer
Tak jsem to udelal. Ale porad je ten vir v karantene AV F-secure... :worship:

Re: MWAV

Napsal: 20 led 2010 19:34
od sudanec
To nerieste, ked je v karantene, tak to nie je problem. Na to ta karantena je :)

Re: MWAV

Napsal: 21 led 2010 02:18
od Deezer
Jeste jednou zdravim. Projel jsem i notebook s MWAV a tohle je vysledek:

Soubor C:\drivers\modem\R147115\qfe.exe je infikovaný virem Exe.Corrupted !! Provedené akce: Ponecháno, neodstraněno!.

Soubor C:\Program Files\SigmaTel\C-Major Audio\HDAQFE\win2k3\jpn\qfe.exe je infikovaný virem Exe.Corrupted !! Provedené akce: Ponecháno, neodstraněno!.

Soubor C:\Program Files\SigmaTel\C-Major Audio\HDAQFE\win2k3\us\qfe.exe je infikovaný virem Exe.Corrupted !! Provedené akce: Ponecháno, neodstraněno!.

Soubor C:\Program Files\SigmaTel\C-Major Audio\HDAQFE\win2k_xp\us\qfe.exe je infikovaný virem Exe.Corrupted !! Provedené akce: Ponecháno, neodstraněno!.


Nevypada to takhle na pohled hezky. :( Poradite? Diky predem.