Stránka 1 z 1

Prosím o preventivní kontrolu

Napsal: 31 led 2010 13:56
od Roko68
Logfile of random's system information tool 1.06 (written by random/random)
Run by Roko68 at 2010-01-31 14:20:00
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 340 GB (73%) free of 470 GB
Total RAM: 3070 MB (52% free)

HijackThis download failed

======Scheduled tasks folder======

C:\Windows\tasks\GlaryInitialize.job
C:\Windows\tasks\HPCeeScheduleForMíša.job
C:\Windows\tasks\HPCeeScheduleForRoko68.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2009-12-22 1484056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-12-19 1230080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-18 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-12-19 1230080]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-12-09 1019128]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-05-06 1145736]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-07-03 7596576]
"amd_dc_opt"=C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"PDF Complete"=C:\Program Files\PDF Complete\pdfsty.exe [2009-06-18 563736]
"SetRefresh"=C:\Program Files\HP\SetRefresh\SetRefresh.exe [2003-11-21 525824]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2009-12-23 2033432]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-09 153136]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-03-12 153136]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-29 687560]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
"NoSecCpl"=0
"DisableChangePassword"=0
"DisableLockWorkstation"=0
"NoDispCpl"=0
"NoDispScrSavPage"=0
"NoDispAppearancePage"=0
"NoDispSettingsPage"=0
"NoVisualStyleChoice"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDesktop"=0
"NoActiveDesktop"=0
"HideClock"=0
"NoStartMenuPinnedList"=0
"NoStartMenuMFUprogramsList"=0
"NoUserNameInStartMenu"=0
"StartmenuLogoff"=0
"NoStartMenuSubFolders"=0
"NoCommonGroups"=0
"NoPrinterTabs"=0
"NoDeletePrinter"=0
"NoAddPrinter"=0
"NoPrinters"=0
"NoFavoritesMenu"=0
"NoRun"=0
"NoFind"=0
"NoClose"=0
"NoSetFolders"=0
"NoViewContextMenu"=0
"NoDrives"=0
"NoToolbarCustomize"=0
"NoRecentDocsNetHood"=0
"NoChangeAnimation"=0
"NoChangeKeyboardNavigationIndicators"=0
"NoThemesTab"=0
"NoDriveTypeAutoRun"=00000000

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1eec1297-ee16-11de-874b-002655439b59}]
shell\AutoRun\command - F:\Autorun.exe


======List of files/folders created in the last 1 months======

2010-01-31 14:20:00 ----D---- C:\rsit
2010-01-31 14:20:00 ----D---- C:\Program Files\trend micro
2010-01-31 08:57:03 ----D---- C:\ProgramData\Easy CD-DA Extractor
2010-01-31 08:56:49 ----D---- C:\Windows\Easy CD-DA Extractor 12.0.2
2010-01-30 16:25:56 ----D---- C:\Program Files\Easy CD-DA Extractor 12
2010-01-26 17:24:40 ----D---- C:\Users\Roko68\AppData\Roaming\DMCache
2010-01-24 08:24:47 ----D---- C:\Users\Roko68\AppData\Roaming\???????sAppData
2010-01-23 13:31:25 ----D---- C:\Users\Roko68\AppData\Roaming\AltrixSoft
2010-01-23 13:30:08 ----D---- C:\Program Files\Common Files\AltrixSoft
2010-01-22 19:13:41 ----D---- C:\Users\Roko68\AppData\Roaming\IObit
2010-01-22 19:13:40 ----D---- C:\Program Files\IObit
2010-01-22 08:17:04 ----A---- C:\Windows\system32\wininet.dll
2010-01-22 08:17:04 ----A---- C:\Windows\system32\mshtml.dll
2010-01-22 08:17:03 ----A---- C:\Windows\system32\urlmon.dll
2010-01-22 08:16:43 ----A---- C:\Windows\system32\ieframe.dll
2010-01-22 08:16:42 ----A---- C:\Windows\system32\ieui.dll
2010-01-22 08:16:41 ----A---- C:\Windows\system32\iepeers.dll
2010-01-22 08:16:41 ----A---- C:\Windows\system32\ieencode.dll
2010-01-22 08:16:41 ----A---- C:\Windows\system32\ieapfltr.dll
2010-01-16 18:33:07 ----D---- C:\ProgramData\Bluetooth
2010-01-16 18:30:03 ----D---- C:\Program Files\IVT Corporation
2010-01-13 21:20:50 ----D---- C:\Users\Roko68\AppData\Roaming\Gold Casual Games
2010-01-13 12:00:36 ----D---- C:\34ed84a56fe5db7688d5331d94
2010-01-13 07:39:03 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 07:39:03 ----A---- C:\Windows\system32\fontsub.dll
2010-01-08 18:17:15 ----HD---- C:\Windows\Icons
2010-01-08 18:06:13 ----D---- C:\Users\Roko68\AppData\Roaming\TuneUp Software
2010-01-08 18:05:21 ----D---- C:\ProgramData\TuneUp Software
2010-01-08 18:05:07 ----SHD---- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-01-07 16:48:02 ----D---- C:\Users\Roko68\AppData\Roaming\Stardock
2010-01-07 16:47:35 ----D---- C:\ProgramData\Stardock
2010-01-07 16:47:34 ----D---- C:\Program Files\Stardock
2010-01-02 17:50:01 ----D---- C:\Program Files\Windows Live Safety Center
2010-01-02 10:59:06 ----D---- C:\Windows\pss

======List of files/folders modified in the last 1 months======

2010-01-31 14:20:00 ----RD---- C:\Program Files
2010-01-31 14:20:00 ----D---- C:\Windows\Prefetch
2010-01-31 14:19:56 ----D---- C:\Windows\Temp
2010-01-31 14:10:21 ----D---- C:\Users\Roko68\AppData\Roaming\uTorrent
2010-01-31 12:44:21 ----D---- C:\windows
2010-01-31 08:57:19 ----AD---- C:\ProgramData\TEMP
2010-01-31 08:57:03 ----HD---- C:\ProgramData
2010-01-31 08:55:41 ----D---- C:\Windows\System32
2010-01-31 08:55:41 ----D---- C:\Windows\inf
2010-01-31 08:55:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-31 08:52:11 ----D---- C:\Windows\system32\catroot2
2010-01-31 08:52:10 ----D---- C:\Users\Roko68\AppData\Roaming\Vso
2010-01-31 08:50:14 ----D---- C:\Windows\Tasks
2010-01-31 08:30:20 ----A---- C:\Windows\system32\NapaSet.txt
2010-01-31 08:28:28 ----D---- C:\ProgramData\avg9
2010-01-30 19:51:40 ----SHD---- C:\System Volume Information
2010-01-30 16:24:07 ----D---- C:\Windows\system32\Tasks
2010-01-30 16:24:05 ----D---- C:\Program Files\Mozilla Firefox
2010-01-28 16:59:14 ----D---- C:\Windows\system32\drivers
2010-01-28 08:01:46 ----D---- C:\ProgramData\PDFC
2010-01-24 17:36:32 ----SHD---- C:\Windows\Installer
2010-01-23 13:30:08 ----D---- C:\Program Files\Common Files
2010-01-22 19:33:49 ----D---- C:\Users\Roko68\AppData\Roaming\Roxio
2010-01-22 19:33:48 ----D---- C:\Windows\system32\config
2010-01-22 19:33:46 ----D---- C:\Windows\Debug
2010-01-22 12:01:17 ----D---- C:\Windows\winsxs
2010-01-22 08:15:52 ----D---- C:\Windows\system32\catroot
2010-01-17 10:52:27 ----D---- C:\Program Files\Windows Media Player
2010-01-14 16:33:26 ----D---- C:\Users\Roko68\AppData\Roaming\Godlike
2010-01-13 12:02:09 ----D---- C:\Program Files\Windows Mail
2010-01-07 18:47:36 ----RSD---- C:\Windows\assembly
2010-01-07 16:51:36 ----D---- C:\Windows\system32\cs-CZ
2010-01-07 16:49:00 ----D---- C:\Windows\Microsoft.NET
2010-01-07 16:20:17 ----HD---- C:\Windows\system32\GroupPolicy
2010-01-05 01:17:46 ----A---- C:\Windows\system32\mrt.exe
2010-01-02 20:43:27 ----SD---- C:\Windows\Downloaded Program Files
2010-01-02 20:25:39 ----D---- C:\Users\Roko68\AppData\Roaming\Desktopicon
2010-01-02 17:29:46 ----SD---- C:\ProgramData\Microsoft
2010-01-02 12:26:06 ----D---- C:\Windows\system32\Msdtc
2010-01-02 12:26:04 ----D---- C:\Windows\system32\wbem
2010-01-02 12:24:53 ----D---- C:\Windows\system32\spool
2010-01-02 12:24:46 ----D---- C:\Program Files\Glary Utilities
2010-01-02 12:24:44 ----D---- C:\Windows\registration
2010-01-02 12:03:49 ----D---- C:\PerfLogs
2010-01-02 01:21:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-01 19:56:21 ----D---- C:\Windows\system32\WDI
2010-01-01 11:07:40 ----D---- C:\ProgramData\vsosdk

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2009-12-18 24856]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2009-12-22 333192]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2009-12-22 28424]
R1 AvgTdiX;AVG Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2009-12-22 360584]
R2 regi;regi; C:\Windows\system32\drivers\regi.sys [2007-04-18 11032]
R3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-02 4994048]
R3 AVGIDSDrivervtx;AVG9IDSDriver; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSDriver.sys [2009-12-22 122376]
R3 AVGIDSFiltervtx;AVG9IDSFilter; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSFilter.sys [2009-12-22 30216]
R3 AVGIDSShimvtx;AVG9IDSShim; \??\C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_Vista\AVGIDSShim.sys [2009-12-22 27800]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-05-31 260648]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-07-03 2656160]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-18 47360]
R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2008-01-21 45624]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 aj8a24nc;aj8a24nc; C:\Windows\system32\drivers\aj8a24nc.sys []
S3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\Windows\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-11-05 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-11-05 507904]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-11-05 30208]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-21 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-07-02 176128]
R2 AMD_RAIDXpert;AMD RAIDXpert; C:\Program Files\AMD\RAIDXpert\bin\RAIDXpertService.exe [2009-03-16 122880]
R2 avg9emc;AVG E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2009-12-22 906520]
R2 avg9wd;AVG WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2009-12-22 285392]
R2 avgfws9;AVG Firewall; C:\Program Files\AVG\AVG9\avgfws9.exe [2010-01-14 2304192]
R2 AVGIDSAgent;AVG9IDSAgent; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2009-12-22 5832712]
R2 BrcmMgmtAgent;Broadcom Management Agent; C:\Program Files\Broadcom\MgmtAgent\BrcmMgmtAgent.exe [2009-07-11 110592]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2009-07-10 124928]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-12-09 246520]
R2 IviRegMgr;IviRegMgr; C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-05 112152]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files\PDF Complete\pdfsvc.exe [2009-06-18 635416]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2009-05-01 229944]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe []
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 RoxMediaDB10;RoxMediaDB10; C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-06-13 1120752]

-----------------EOF-----------------

Re: Prosím o preventivní kontrolu

Napsal: 31 led 2010 14:56
od Asar
Log je v pořádku.