pomalé PC, neustále zapnutý mikrofon, prosím o kontrolu logu
Napsal: 02 úno 2010 09:05
PC je chvílemi hodně zpomalené a i když v ovládání hlasitosti mikrofon vypnu
a stáhnu na 0, pořád snímá! Přitom ani není žádná aplikace co ho využívá spuštěna
Co vy na to? Přikládám log z UPM.
Windows XP SP 3 (build 2600)
Boot Mode: Normal
Ověření souborů Microsoftu: Ano
Whitelist: Ano
Internet Explorer v8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
Log vygenerován: 2.2.2010 8:30:34
================================================================
SmallARK
================================================================
[R]NtCreateKey -> C:\windows\system32\drivers\Lbd.sys
[R]NtSetValueKey -> C:\windows\system32\drivers\Lbd.sys
Běžící procesy
================================================================
C:\PROGRAM FILES\ARCLAB\MAILLIST CONTROLLER\AMLCSVC.EXE
C:\PROGRAM FILES\ESET\NOD32KRN.EXE
C:\PROGRAM FILES\SPYWARE TERMINATOR\SP_RSSER.EXE
C:\WINDOWS\SYSTEM32\HKCMD.EXE
C:\WINDOWS\SYSTEM32\IGFXPERS.EXE
C:\PROGRAM FILES\ESET\NOD32KUI.EXE
C:\PROGRAM FILES\SPYBOT - SEARCH & DESTROY\TEATIMER.EXE
C:\PROGRAM FILES\MINDJET\MINDMANAGER 6\MMREMINDERSERVICE.EXE
C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\UPDATESERVICE\ISSCH.EXE
C:\PROGRAM FILES\TRACKER SOFTWARE\PDF-XCHANGE 3\PDFSAVER\PDFSAVER3.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLUSBSRV.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLIRSRV.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLRSSRV.EXE
D:\DOWNLOADS\SOFTWARE\UPM_LATEST\UPM.EXE
Scanner
================================================================
[?] amlcSVC.exe
Nemá okno
Soubor 7%
[?] nod32krn.exe
Soubor 7%
[?] sp_rsser.exe
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Nemá okno
Soubor 70%
[S] explorer.exe
Spouští se po startu HKLM Winlogon [Shell]
[?] hkcmd.exe
Non Microsoft v System32:
Spouští se po startu HKLM Run [igfxhkcmd]
[?] igfxpers.exe
Non Microsoft v System32:
Spouští se po startu HKLM Run [igfxpers]
[R] realsched.exe
Spouští se po startu HKLM Run [TkBellExe]
[?] nod32kui.exe
Spouští se po startu HKLM Run [nod32kui]
Soubor 14%
[R] hpwuschd2.exe
Spouští se po startu HKLM Run [HP Software Update]
[S] ctfmon.exe
Spouští se po startu HKCU Run [CTFMON.EXE]
[R] GoogleToolbarNotifier.exe
Spouští se po startu HKCU Run [swg]
[?] TeaTimer.exe
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Soubor 100%
[?] MmReminderService.exe
Soubor 7%
[?] issch.exe
Nemá okno
Soubor 7%
[?] pdfSaver3.exe
Soubor 7%
[?] ServiceLayer.exe
Soubor 7%
[?] NclUSBSrv.exe
Soubor 7%
[?] NclIrSrv.exe
Soubor 7%
[?] NclRSSrv.exe
Soubor 7%
[?] UPM.exe
Soubor 7%
[S] rundll32.exe
Spouští se po startu HKLM IC [>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
Po spuštění
================================================================
HKCU Run
|_ [?][PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray
|_ [?][eyeBeam SIP Client] C:\Program Files\CounterPath\X-Lite\x-lite.exe
|_ [!][SpywareTerminatorUpdate] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
|_ [?][SwiftToDoListLite] C:\Program Files\Swift To-Do List\Swift To-Do List Lite.exe minimized
HKLM Run
|_ [?][igfxtray] C:\WINDOWS\system32\igfxtray.exe
|_ [?][igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
|_ [?][igfxpers] C:\WINDOWS\system32\igfxpers.exe
|_ [X][pdfSaver3] (Soubor nenalezen)
|_ [?][StartupDelayer] C:\Program Files\r2 Studios\Startup Delayer\Startup Launcher.exe
|_ [R][TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe -osboot
|_ [?][QuickTime Task] C:\Program Files\QuickTime\QTTask.exe -atboottime
|_ [?][ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
|_ [?][nod32kui] C:\Program Files\Eset\nod32kui.exe /WAITSERVICE
|_ [S][IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
|_ [?][MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
|_ [S][PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
|_ [S][PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
|_ [?][Flashget] C:\Program Files\FlashGet\FlashGet.exe /min
|_ [?][MailListController] C:\Program Files\Arclab\MailList Controller\amlcSCT.exe
|_ [X][KernelFaultCheck] C:\windows\system32\dumprep 0 -k (Soubor nenalezen)
|_ [R][COMODO SafeSurf] C:\Program Files\COMODO\SafeSurf\cssurf.exe -s
|_ [R][COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe -h
HKCU RunOnce
|_ [?][Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -Mozilla/5.0_(Windows;_U;_Windows_NT_5.1;_cs;_rv:1.9.1.3)_Gecko/20090824_Firefox/3.5.3_(.NET_CLR_3.5.30729) -http://www.webgames.cz/hraj4.php?id=212 ... height=450
HKLM IC
|_ [X][>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS] RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP (Soubor nenalezen)
|_ [?][{44BBA842-CC51-11CF-AAFA-00AA00B6015B}] C:\WINDOWS\INF\msnetmtg.inf ,NetMtg.Install.PerUser.NT
|_ [?][{5945c046-1e7d-11d1-bc44-00c04fd912be}] C:\WINDOWS\INF\msmsgs.inf ,BLC.QuietInstall.PerUser
|_ [?][{6BF52A52-394A-11d3-B153-00C04F79FAA6}] C:\WINDOWS\INF\wmp11.inf ,PerUserStub
|_ [?][{89820200-ECBD-11cf-8B85-00AA005B4340}] regsvr32.exe /s /n /i:U shell32.dll
HKLM Winlogon Notify
|_ [?][igfxcui] C:\windows\system32\igfxdev.dll
Po spuštění
|_ C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
|_ C:\Program Files\Microsoft Office\Office\OSA9.EXE
|_ [?][Adobe Gamma.lnk] C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
|_ [X][Hesla JB (jednou denně).lnk] C:\Program Files\Hesla JB\Heslaw.exe
HKLM BHO
|_ [?][{AC41D38F-B56D-40AD-94E0-B493D130C959}] C:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
|_ [?][{B922D405-6D13-4A2B-AE89-08A030DA4402}] C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
|_ [X][{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}] (Soubor nenalezen)
|_ [?][{DBC80044-A445-435b-BC74-9C25C1C588A9}] C:\Program Files\Java\jre6\bin\jp2ssv.dll
|_ [X][{E312764E-7706-43F1-8DAB-FCDD2B1E416D}] (Soubor nenalezen)
|_ [?][{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
|_ [?][{F156768E-81EF-470C-9057-481BA8380DBA}] C:\Program Files\FlashGet\getflash.dll
HKCU IE WebBrowser Toolbar
|_ [X][{4B3803EA-5230-4DC3-A7FC-33638F3D3542}] (Soubor nenalezen)
HKLM IE Toolbar
|_ [?][{B922D405-6D13-4A2B-AE89-08A030DA4402}] C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
|_ [X][{E0E899AB-F487-11D5-8D29-0050BA6940E3}] (Soubor nenalezen)
Služby (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[X] Služba Google Update (gupdate1c9cb4dde0490b2)
|_ Cesta: C:\Program Files\Google\Update\GoogleUpdate.exe /svc
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: gupdate1c9cb4dde0490b2
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency: RPCSS
[X] Java Quick Starter
|_ Cesta: C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: JavaQuickStarterService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] MailList Controller
|_ Cesta: c:\program files\arclab\maillist controller\amlcSVC.exe
| |_ Výrobce: Arclab Software Technologies
| |_ Popis: MailList Controller Service
| |_ MD5: F84CE566AB6F845F4D5BEE377C16B4CD
|
|_ Jméno: MailList Controller
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] Net Driver HPZ12
|_ Cesta: C:\windows\System32\svchost.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Generic Host Process for Win32 Services
| |_ MD5: BE4A520E29B6391F49E79CCC52044D93
|
|_ ServiceDLL: C:\WINDOWS\system32\HPZinw12.dll
| |_ Výrobce: Hewlett-Packard
| |_ Popis: Dot4Net Module
| |_ MD5: 2969D26EEE289BE7422AA46FC55F4E38
|
|_ Jméno: Net Driver HPZ12
|_ StartName: NT AUTHORITY\LocalService
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] NOD32 Kernel Service
|_ Cesta: C:\Program Files\Eset\nod32krn.exe
| |_ Výrobce: Eset
| |_ Popis: NOD32 Kernel Service
| |_ MD5: 4A1036CC19A9226C843895612409148F
|
|_ Jméno: NOD32krn
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:
[?] Pml Driver HPZ12
|_ Cesta: C:\windows\System32\svchost.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Generic Host Process for Win32 Services
| |_ MD5: BE4A520E29B6391F49E79CCC52044D93
|
|_ ServiceDLL: C:\WINDOWS\system32\HPZipm12.dll
| |_ Výrobce: Hewlett-Packard
| |_ Popis: PmlDrv Module
| |_ MD5: BAFC9706BDF425A02B66468AB2605C59
|
|_ Jméno: Pml Driver HPZ12
|_ StartName: NT AUTHORITY\LocalService
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] ServiceLayer
|_ Cesta: C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
| |_ Výrobce: Nokia.
| |_ Popis: ServiceLayer Module
| |_ MD5: 58D5BFDF3ADF49FE9CABD78CC61D92F6
|
|_ Jméno: ServiceLayer
|_ StartName: LocalSystem
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: RPCSS
[!] Spyware Terminator Realtime Shield Service
|_ Cesta: C:\Program Files\Spyware Terminator\sp_rsser.exe
| |_ Výrobce: Crawler.com
| |_ Popis: Spyware Terminator Realtime Shield Service
| |_ MD5: 7601CC42B6382FA03C3F55A663761D3B
|
|_ Jméno: sp_rssrv
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
Ovladače (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] aeaudio
|_ Cesta: C:\windows\system32\drivers\aeaudio.sys
| |_ Výrobce: Andrea Electronics Corporation
| |_ Popis: Andrea Audio Noise Cancellation Driver
| |_ MD5: CDE1F62FE63631B932ACE2249FB11DA0
|
|_ Jméno: aeaudio
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] AMON
|_ Cesta: C:\WINDOWS\system32\drivers\amon.sys
| |_ Výrobce: Eset
| |_ Popis: Amon monitor
| |_ MD5: BEA29A61914FBBC32EFA25912800E84B
|
|_ Jméno: AMON
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Broadcom NetXtreme Gigabit Ethernet
|_ Cesta: C:\windows\system32\DRIVERS\b57xp32.sys
| |_ Výrobce: Broadcom Corporation
| |_ Popis: Broadcom NetXtreme Gigabit Ethernet NDIS5.1 Driver.
| |_ MD5: 66DD574749C38153C6067EBBA929BEFC
|
|_ Jméno: b57w2k
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] HSFHWICH
|_ Cesta: C:\windows\system32\DRIVERS\HSFHWICH.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSFHWICH WDM driver
| |_ MD5: 5BF94348801CDDF7B2F3855830F93569
|
|_ Jméno: HSFHWICH
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] HSF_DPV
|_ Cesta: C:\windows\system32\DRIVERS\HSF_DPV.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_DP driver
| |_ MD5: C9F4E7DA78A02623ABF78A4A34CE79B1
|
|_ Jméno: HSF_DPV
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] ialm
|_ Cesta: C:\windows\system32\DRIVERS\ialmnt5.sys
| |_ Výrobce: Intel Corporation
| |_ Popis: Intel Graphics Miniport Driver
| |_ MD5: 643162FBC619E35D3F1A90A095A5BB42
|
|_ Jméno: ialm
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] NSC Infrared Device Driver
|_ Cesta: C:\windows\system32\DRIVERS\nscirda.sys
| |_ Výrobce: National Semiconductor Corporation
| |_ Popis: NSC Fast Infrared Driver.
| |_ MD5: 2ADC0CA9945C65284B3D19BC18765974
|
|_ Jméno: NSCIRDA
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] smwdm
|_ Cesta: C:\windows\system32\drivers\smwdm.sys
| |_ Výrobce: Analog Devices, Inc.
| |_ Popis: SoundMAX Integrated Digital Audio
| |_ MD5: B09F23BF6E451B7A492B4A3D5EACFB24
|
|_ Jméno: smwdm
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Spyware Terminator Driver 2
|_ Cesta: C:\windows\system32\drivers\sp_rsdrv2.sys
| |_ Výrobce: ?
| |_ Popis: ?
| |_ MD5: 8831252BCF05FCFB5ABD116A22E552D8
|
|_ Jméno: sp_rsdrv2
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Winbond Trusted Platform Module
|_ Cesta: C:\windows\system32\DRIVERS\tpm.sys
| |_ Výrobce: Winbond Electronics Corp.
| |_ Popis: TPM Device Driver
| |_ MD5: 317B746B6069A10D635FDBDF48723845
|
|_ Jméno: TPM
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] winachsf
|_ Cesta: C:\windows\system32\DRIVERS\HSF_CNXT.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_CNXT driver
| |_ MD5: C1D5CBD8AA0D674DA1BA1BB189696396
|
|_ Jméno: winachsf
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
lNetStat
================================================================
Typ: PID Proces Local <-> Remote Status
-----------------------------------------------------------------------------------------
TCP (1064) svchost.exe 0.0.0.0:135 LISTENING
TCP (4) Systém 0.0.0.0:445 LISTENING
TCP (1396) svchost.exe 0.0.0.0:2869 LISTENING
TCP (4) Systém 89.103.35.237:139 LISTENING
TCP (4008) firefox.exe 89.103.35.237:15080 <-> 74.125.87.102:80 ESTABLISHED
TCP (2772) alg.exe 127.0.0.1:1028 LISTENING
TCP (1888) jqs.exe 127.0.0.1:5152 LISTENING
TCP (1888) jqs.exe 127.0.0.1:5152 CLOSE_WAIT
TCP (4008) firefox.exe 127.0.0.1:12349 <-> 127.0.0.1:12350 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12350 <-> 127.0.0.1:12349 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12352 <-> 127.0.0.1:12353 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12353 <-> 127.0.0.1:12352 ESTABLISHED
UDP (4) Systém 0.0.0.0:445 LISTENING
UDP (756) lsass.exe 0.0.0.0:500
UDP (1164) svchost.exe 0.0.0.0:1034
UDP (756) lsass.exe 0.0.0.0:4500
UDP (1312) svchost.exe 0.0.0.0:22641
UDP (1312) svchost.exe 0.0.0.0:57244
UDP (1164) svchost.exe 89.103.35.237:123
UDP (4) Systém 89.103.35.237:137
UDP (4) Systém 89.103.35.237:138
UDP (1396) svchost.exe 89.103.35.237:1900
UDP (1164) svchost.exe 127.0.0.1:123
UDP (1164) svchost.exe 127.0.0.1:1035
UDP (1140) explorer.exe 127.0.0.1:1040
UDP (1396) svchost.exe 127.0.0.1:1900
Moduly (Zobraz i bezpečné DLL: False, Jen bez výrobce: True, Zobraz registrované: False)
================================================================
[?] imon.dll
|_ Cesta: C:\WINDOWS\system32\imon.dll
|_ MD5: 7E726F244D0BD744E1CAD96C6BD9B447
|_ Výrobce: Eset
|_ Procesy
|_ lsass.exe (756)
|_ svchost.exe (1064)
|_ svchost.exe (1164)
|_ svchost.exe (1312)
|_ svchost.exe (1396)
|_ jqs.exe (1888)
|_ amlcSVC.exe (1932)
|_ nod32krn.exe (168)
|_ explorer.exe (1140)
|_ alg.exe (2772)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
[?] pr_imon.dll
|_ Cesta: C:\Program Files\ESET\pr_imon.dll
|_ MD5: 30808CB53FE11DCBEDAE6A49562B12FD
|_ Výrobce:
|_ Procesy
|_ lsass.exe (756)
|_ svchost.exe (1064)
|_ svchost.exe (1164)
|_ svchost.exe (1312)
|_ svchost.exe (1396)
|_ jqs.exe (1888)
|_ amlcSVC.exe (1932)
|_ nod32krn.exe (168)
|_ explorer.exe (1140)
|_ alg.exe (2772)
|_ nod32kui.exe (3556)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
[?] aspnet_isapi.dll
|_ Cesta: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
|_ MD5: 4B423DDB78AB25BCD2EF9BB2F264CBD7
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ jqs.exe (1888)
[?] nod32krr.dll
|_ Cesta: C:\Program Files\ESET\nod32krr.dll
|_ MD5: 313A3252356725330BC9A97465B98105
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] ps_upd.dll
|_ Cesta: C:\Program Files\ESET\ps_upd.dll
|_ MD5: B95462CAB241FA9904D17AED59F1C4B8
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_upd.dll
|_ Cesta: C:\Program Files\ESET\pr_upd.dll
|_ MD5: F52463B57EBBF4842197A04A9E71AEB0
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_amon.dll
|_ Cesta: C:\Program Files\ESET\ps_amon.dll
|_ MD5: 2009429BD69260EB62E3A86CCEE1D866
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_amon.dll
|_ Cesta: C:\Program Files\ESET\pr_amon.dll
|_ MD5: BA4C54DB6A378F616382C8883BD01A64
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_nod32.dll
|_ Cesta: C:\Program Files\ESET\ps_nod32.dll
|_ MD5: C2CA34D6431B83658D006E22E2711720
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_nod32.dll
|_ Cesta: C:\Program Files\ESET\pr_nod32.dll
|_ MD5: 64EF9F5FEBA697070AE042CA23CDBFD8
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_dmon.dll
|_ Cesta: C:\Program Files\ESET\ps_dmon.dll
|_ MD5: C69CA0D037DB292E79F6DD51C5289349
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_dmon.dll
|_ Cesta: C:\Program Files\ESET\pr_dmon.dll
|_ MD5: C1905E9D494412D8FAC39638E326D7FA
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_emon.dll
|_ Cesta: C:\Program Files\ESET\ps_emon.dll
|_ MD5: 5E358840AB10E85A0CDB728C545C3003
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_emon.dll
|_ Cesta: C:\Program Files\ESET\pr_emon.dll
|_ MD5: 85AE9E4E3D830E4035DF2CAFE9E10570
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] mm6internetexplorer.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
|_ MD5: 73AB236DBC96E135BE244790D24BCB29
|_ Výrobce: Mindjet
|_ Procesy
|_ explorer.exe (1140)
[!] sptcontmenu.dll
|_ Cesta: C:\Program Files\Spyware Terminator\sptcontmenu.dll
|_ MD5: A5E97B2B88CC48FC178E88BF6E02F5EC
|_ Výrobce: Crawler.com
|_ Procesy
|_ explorer.exe (1140)
[?] rpchromebrowserrecordhelper.dll
|_ Cesta: C:\Program Files\Real\RealPlayer\rpchromebrowserrecordhelper.dll
|_ MD5: 1F1B0276FFB14D6014F4CFFCC6EE6F31
|_ Výrobce:
|_ Procesy
|_ explorer.exe (1140)
|_ igfxpers.exe (3308)
|_ realsched.exe (3468)
|_ nod32kui.exe (3556)
|_ ctfmon.exe (216)
|_ GoogleToolbarNotifier.exe (2032)
|_ TeaTimer.exe (1968)
|_ jusched.exe (3244)
|_ MmReminderService.exe (3652)
|_ pdfSaver3.exe (2012)
|_ NclIrSrv.exe (3740)
|_ unsecapp.exe (592)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
|_ rundll32.exe (1784)
|_ sndvol32.exe (3820)
[?] nod32rui.dll
|_ Cesta: C:\Program Files\ESET\nod32rui.dll
|_ MD5: F845373FA45F68E0BD31C4850A062925
|_ Výrobce:
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_upd.dll
|_ Cesta: C:\Program Files\ESET\pu_upd.dll
|_ MD5: 19C42FA0B695D9C5FDA3C958157291BE
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_amon.dll
|_ Cesta: C:\Program Files\ESET\pu_amon.dll
|_ MD5: 16F73B657D157E1B2B748D43D01CA86D
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_nod32.dll
|_ Cesta: C:\Program Files\ESET\pu_nod32.dll
|_ MD5: 9327BF66AF9C3153F5D4435C80C15189
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_imon.dll
|_ Cesta: C:\Program Files\ESET\pu_imon.dll
|_ MD5: 14107DF71E8EF699FC0D95F23CA3C2F8
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_dmon.dll
|_ Cesta: C:\Program Files\ESET\pu_dmon.dll
|_ MD5: 0E811F23B22D9DBB2782BEC4632CCD1F
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_emon.dll
|_ Cesta: C:\Program Files\ESET\pu_emon.dll
|_ MD5: 64A5884831BC7CD0162689A753717497
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] fgmgr.dll
|_ Cesta: C:\Program Files\FlashGet\fgmgr.dll
|_ MD5: 7AFDC73DF85CBA039CFEDB389B6C9EF6
|_ Výrobce: http://www.flashget.com
|_ Procesy
|_ jusched.exe (3244)
|_ unsecapp.exe (592)
[?] mmutilities.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\MmUtilities.dll
|_ MD5: F8B9B6C157D038E38DB95B55E82EDEEE
|_ Výrobce: Mindjet
|_ Procesy
|_ MmReminderService.exe (3652)
[?] bcgcbpro730u.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\BCGCBPRO730u.dll
|_ MD5: 8D3BC9DF0983AC5994E6E73745A5CE1A
|_ Výrobce: BCGSoft Ltd / Mindjet LLC
|_ Procesy
|_ MmReminderService.exe (3652)
[?] mmserviceutilities.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\MmServiceUtilities.dll
|_ MD5: 2D6DEABA6F2380F61F10D3BC0519504D
|_ Výrobce: Mindjet
|_ Procesy
|_ MmReminderService.exe (3652)
[?] vic32.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\Vic32.dll
|_ MD5: 24A31F3F2C141889D6FAD74C44684C77
|_ Výrobce: Catenary Systems
|_ Procesy
|_ MmReminderService.exe (3652)
[?] ixclib30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\ixclib30.dll
|_ MD5: ABD217FA76635264B2762B6C8162347C
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] pxclib30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pxclib30.dll
|_ MD5: B7ADAAFCF0CBCDC5B7053F117C88CCFC
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30base.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\fm30base.dll
|_ MD5: 694CCFC3888523827A3703DA8775BA04
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30tiff.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\Fm30Tiff.dll
|_ MD5: D8C6884CA1C96945FBA6D9D82F310A75
|_ Výrobce: Tracker Software
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30xmf.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\fm30xmf.dll
|_ MD5: 22A811D3A1F219008DEE508BFB598BA3
|_ Výrobce:
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcloc30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcloc30.dll
|_ MD5: E940D905C5EDC43EF7D278A939694E54
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcpro30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcpro30.dll
|_ MD5: 7011AA8E1756B38F57ACFC1B69A0CDED
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcpars30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcpars30.dll
|_ MD5: 6566C22C4A97E14D11D7B4A463A84259
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] dscrt30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\dscrt30.dll
|_ MD5: 9D9A0E8434C005A833A405ACF72CAC54
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] pccs_dbengine.dll
|_ Cesta: C:\Program Files\PC Connectivity Solution\PCCS_DBEngine.dll
|_ MD5: 81F200AC17A188559A2F255BB5D88D0C
|_ Výrobce: Nokia
|_ Procesy
|_ ServiceLayer.exe (3732)
[?] softokn3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\softokn3.dll
|_ MD5: 1BCB8B8AB1605FC0B98B634F42B91DED
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] nssdbm3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\nssdbm3.dll
|_ MD5: EC9E5B1A8A5088FEF71A17220430FC4A
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] freebl3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\freebl3.dll
|_ MD5: 9A4E6EB27517D1E3005C493CA093F31E
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] foxytunes.dll
|_ Cesta: C:\Documents and Settings\matheus\Data aplikací\Mozilla\Firefox\Profiles\pxyvm66q.Jarek\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}\platform\WINNT\components\FoxyTunes.dll
|_ MD5: 5CEA858EA7AD92EAABAC8B5A44F501E7
|_ Výrobce:
|_ Procesy
|_ firefox.exe (4008)
[?] searchsettingsff.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
|_ MD5: ABDA0E1226C421129ABC51E72A4D8B0D
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] searchsettingsres409.dll
|_ Cesta: C:\Program Files\pdfforge Toolbar\SearchSettingsRes409.dll
|_ MD5: B4C2E628F1410A7FCB67CA7DA6E6932D
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] pdfforgetoolbarff.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\extensions\{B922D405-6D13-4A2B-AE89-08A030DA4402}\components\pdfforgeToolbarFF.dll
|_ MD5: 454C5580885412601041226E0913FD59
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] sqlite.dll
|_ Cesta: C:\Program Files\Adobe\Reader 9.0\Reader\sqlite.dll
|_ MD5: FAEF2D2F360416F01297AD16A88BFF5E
|_ Výrobce: ?
|_ Procesy
|_ firefox.exe (4008)
[?] onix32.dll
|_ Cesta: C:\Program Files\Adobe\Reader 9.0\Reader\Onix32.dll
|_ MD5: 378B9257C973731A62E392D11EB933D7
|_ Výrobce: Lextek International
|_ Procesy
|_ firefox.exe (4008)
================================================================
Ultimate Process Manager v4.1.3 - [ Lodus Software ] - Not Registered =(
a stáhnu na 0, pořád snímá! Přitom ani není žádná aplikace co ho využívá spuštěna

Windows XP SP 3 (build 2600)
Boot Mode: Normal
Ověření souborů Microsoftu: Ano
Whitelist: Ano
Internet Explorer v8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
Log vygenerován: 2.2.2010 8:30:34
================================================================
SmallARK
================================================================
[R]NtCreateKey -> C:\windows\system32\drivers\Lbd.sys
[R]NtSetValueKey -> C:\windows\system32\drivers\Lbd.sys
Běžící procesy
================================================================
C:\PROGRAM FILES\ARCLAB\MAILLIST CONTROLLER\AMLCSVC.EXE
C:\PROGRAM FILES\ESET\NOD32KRN.EXE
C:\PROGRAM FILES\SPYWARE TERMINATOR\SP_RSSER.EXE
C:\WINDOWS\SYSTEM32\HKCMD.EXE
C:\WINDOWS\SYSTEM32\IGFXPERS.EXE
C:\PROGRAM FILES\ESET\NOD32KUI.EXE
C:\PROGRAM FILES\SPYBOT - SEARCH & DESTROY\TEATIMER.EXE
C:\PROGRAM FILES\MINDJET\MINDMANAGER 6\MMREMINDERSERVICE.EXE
C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\UPDATESERVICE\ISSCH.EXE
C:\PROGRAM FILES\TRACKER SOFTWARE\PDF-XCHANGE 3\PDFSAVER\PDFSAVER3.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\SERVICELAYER.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLUSBSRV.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLIRSRV.EXE
C:\PROGRAM FILES\PC CONNECTIVITY SOLUTION\TRANSPORTS\NCLRSSRV.EXE
D:\DOWNLOADS\SOFTWARE\UPM_LATEST\UPM.EXE
Scanner
================================================================
[?] amlcSVC.exe
Nemá okno
Soubor 7%
[?] nod32krn.exe
Soubor 7%
[?] sp_rsser.exe
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Nemá okno
Soubor 70%
[S] explorer.exe
Spouští se po startu HKLM Winlogon [Shell]
[?] hkcmd.exe
Non Microsoft v System32:
Spouští se po startu HKLM Run [igfxhkcmd]
[?] igfxpers.exe
Non Microsoft v System32:
Spouští se po startu HKLM Run [igfxpers]
[R] realsched.exe
Spouští se po startu HKLM Run [TkBellExe]
[?] nod32kui.exe
Spouští se po startu HKLM Run [nod32kui]
Soubor 14%
[R] hpwuschd2.exe
Spouští se po startu HKLM Run [HP Software Update]
[S] ctfmon.exe
Spouští se po startu HKCU Run [CTFMON.EXE]
[R] GoogleToolbarNotifier.exe
Spouští se po startu HKCU Run [swg]
[?] TeaTimer.exe
EntryPoint v sekci: .ITEXT
|_ Celkový počet sekcí: 9
Soubor 100%
[?] MmReminderService.exe
Soubor 7%
[?] issch.exe
Nemá okno
Soubor 7%
[?] pdfSaver3.exe
Soubor 7%
[?] ServiceLayer.exe
Soubor 7%
[?] NclUSBSrv.exe
Soubor 7%
[?] NclIrSrv.exe
Soubor 7%
[?] NclRSSrv.exe
Soubor 7%
[?] UPM.exe
Soubor 7%
[S] rundll32.exe
Spouští se po startu HKLM IC [>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
Po spuštění
================================================================
HKCU Run
|_ [?][PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe -onlytray
|_ [?][eyeBeam SIP Client] C:\Program Files\CounterPath\X-Lite\x-lite.exe
|_ [!][SpywareTerminatorUpdate] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
|_ [?][SwiftToDoListLite] C:\Program Files\Swift To-Do List\Swift To-Do List Lite.exe minimized
HKLM Run
|_ [?][igfxtray] C:\WINDOWS\system32\igfxtray.exe
|_ [?][igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
|_ [?][igfxpers] C:\WINDOWS\system32\igfxpers.exe
|_ [X][pdfSaver3] (Soubor nenalezen)
|_ [?][StartupDelayer] C:\Program Files\r2 Studios\Startup Delayer\Startup Launcher.exe
|_ [R][TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe -osboot
|_ [?][QuickTime Task] C:\Program Files\QuickTime\QTTask.exe -atboottime
|_ [?][ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
|_ [?][nod32kui] C:\Program Files\Eset\nod32kui.exe /WAITSERVICE
|_ [S][IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
|_ [?][MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
|_ [S][PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
|_ [S][PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
|_ [?][Flashget] C:\Program Files\FlashGet\FlashGet.exe /min
|_ [?][MailListController] C:\Program Files\Arclab\MailList Controller\amlcSCT.exe
|_ [X][KernelFaultCheck] C:\windows\system32\dumprep 0 -k (Soubor nenalezen)
|_ [R][COMODO SafeSurf] C:\Program Files\COMODO\SafeSurf\cssurf.exe -s
|_ [R][COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe -h
HKCU RunOnce
|_ [?][Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -Mozilla/5.0_(Windows;_U;_Windows_NT_5.1;_cs;_rv:1.9.1.3)_Gecko/20090824_Firefox/3.5.3_(.NET_CLR_3.5.30729) -http://www.webgames.cz/hraj4.php?id=212 ... height=450
HKLM IC
|_ [X][>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS] RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP (Soubor nenalezen)
|_ [?][{44BBA842-CC51-11CF-AAFA-00AA00B6015B}] C:\WINDOWS\INF\msnetmtg.inf ,NetMtg.Install.PerUser.NT
|_ [?][{5945c046-1e7d-11d1-bc44-00c04fd912be}] C:\WINDOWS\INF\msmsgs.inf ,BLC.QuietInstall.PerUser
|_ [?][{6BF52A52-394A-11d3-B153-00C04F79FAA6}] C:\WINDOWS\INF\wmp11.inf ,PerUserStub
|_ [?][{89820200-ECBD-11cf-8B85-00AA005B4340}] regsvr32.exe /s /n /i:U shell32.dll
HKLM Winlogon Notify
|_ [?][igfxcui] C:\windows\system32\igfxdev.dll
Po spuštění
|_ C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
|_ C:\Program Files\Microsoft Office\Office\OSA9.EXE
|_ [?][Adobe Gamma.lnk] C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
|_ [X][Hesla JB (jednou denně).lnk] C:\Program Files\Hesla JB\Heslaw.exe
HKLM BHO
|_ [?][{AC41D38F-B56D-40AD-94E0-B493D130C959}] C:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
|_ [?][{B922D405-6D13-4A2B-AE89-08A030DA4402}] C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
|_ [X][{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}] (Soubor nenalezen)
|_ [?][{DBC80044-A445-435b-BC74-9C25C1C588A9}] C:\Program Files\Java\jre6\bin\jp2ssv.dll
|_ [X][{E312764E-7706-43F1-8DAB-FCDD2B1E416D}] (Soubor nenalezen)
|_ [?][{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
|_ [?][{F156768E-81EF-470C-9057-481BA8380DBA}] C:\Program Files\FlashGet\getflash.dll
HKCU IE WebBrowser Toolbar
|_ [X][{4B3803EA-5230-4DC3-A7FC-33638F3D3542}] (Soubor nenalezen)
HKLM IE Toolbar
|_ [?][{B922D405-6D13-4A2B-AE89-08A030DA4402}] C:\Program Files\pdfforge Toolbar\pdfforgeToolbarIE.dll
|_ [X][{E0E899AB-F487-11D5-8D29-0050BA6940E3}] (Soubor nenalezen)
Služby (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[X] Služba Google Update (gupdate1c9cb4dde0490b2)
|_ Cesta: C:\Program Files\Google\Update\GoogleUpdate.exe /svc
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: gupdate1c9cb4dde0490b2
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency: RPCSS
[X] Java Quick Starter
|_ Cesta: C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: JavaQuickStarterService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] MailList Controller
|_ Cesta: c:\program files\arclab\maillist controller\amlcSVC.exe
| |_ Výrobce: Arclab Software Technologies
| |_ Popis: MailList Controller Service
| |_ MD5: F84CE566AB6F845F4D5BEE377C16B4CD
|
|_ Jméno: MailList Controller
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] Net Driver HPZ12
|_ Cesta: C:\windows\System32\svchost.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Generic Host Process for Win32 Services
| |_ MD5: BE4A520E29B6391F49E79CCC52044D93
|
|_ ServiceDLL: C:\WINDOWS\system32\HPZinw12.dll
| |_ Výrobce: Hewlett-Packard
| |_ Popis: Dot4Net Module
| |_ MD5: 2969D26EEE289BE7422AA46FC55F4E38
|
|_ Jméno: Net Driver HPZ12
|_ StartName: NT AUTHORITY\LocalService
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] NOD32 Kernel Service
|_ Cesta: C:\Program Files\Eset\nod32krn.exe
| |_ Výrobce: Eset
| |_ Popis: NOD32 Kernel Service
| |_ MD5: 4A1036CC19A9226C843895612409148F
|
|_ Jméno: NOD32krn
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:
[?] Pml Driver HPZ12
|_ Cesta: C:\windows\System32\svchost.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Generic Host Process for Win32 Services
| |_ MD5: BE4A520E29B6391F49E79CCC52044D93
|
|_ ServiceDLL: C:\WINDOWS\system32\HPZipm12.dll
| |_ Výrobce: Hewlett-Packard
| |_ Popis: PmlDrv Module
| |_ MD5: BAFC9706BDF425A02B66468AB2605C59
|
|_ Jméno: Pml Driver HPZ12
|_ StartName: NT AUTHORITY\LocalService
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] ServiceLayer
|_ Cesta: C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
| |_ Výrobce: Nokia.
| |_ Popis: ServiceLayer Module
| |_ MD5: 58D5BFDF3ADF49FE9CABD78CC61D92F6
|
|_ Jméno: ServiceLayer
|_ StartName: LocalSystem
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: RPCSS
[!] Spyware Terminator Realtime Shield Service
|_ Cesta: C:\Program Files\Spyware Terminator\sp_rsser.exe
| |_ Výrobce: Crawler.com
| |_ Popis: Spyware Terminator Realtime Shield Service
| |_ MD5: 7601CC42B6382FA03C3F55A663761D3B
|
|_ Jméno: sp_rssrv
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
Ovladače (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] aeaudio
|_ Cesta: C:\windows\system32\drivers\aeaudio.sys
| |_ Výrobce: Andrea Electronics Corporation
| |_ Popis: Andrea Audio Noise Cancellation Driver
| |_ MD5: CDE1F62FE63631B932ACE2249FB11DA0
|
|_ Jméno: aeaudio
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] AMON
|_ Cesta: C:\WINDOWS\system32\drivers\amon.sys
| |_ Výrobce: Eset
| |_ Popis: Amon monitor
| |_ MD5: BEA29A61914FBBC32EFA25912800E84B
|
|_ Jméno: AMON
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Broadcom NetXtreme Gigabit Ethernet
|_ Cesta: C:\windows\system32\DRIVERS\b57xp32.sys
| |_ Výrobce: Broadcom Corporation
| |_ Popis: Broadcom NetXtreme Gigabit Ethernet NDIS5.1 Driver.
| |_ MD5: 66DD574749C38153C6067EBBA929BEFC
|
|_ Jméno: b57w2k
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] HSFHWICH
|_ Cesta: C:\windows\system32\DRIVERS\HSFHWICH.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSFHWICH WDM driver
| |_ MD5: 5BF94348801CDDF7B2F3855830F93569
|
|_ Jméno: HSFHWICH
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] HSF_DPV
|_ Cesta: C:\windows\system32\DRIVERS\HSF_DPV.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_DP driver
| |_ MD5: C9F4E7DA78A02623ABF78A4A34CE79B1
|
|_ Jméno: HSF_DPV
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] ialm
|_ Cesta: C:\windows\system32\DRIVERS\ialmnt5.sys
| |_ Výrobce: Intel Corporation
| |_ Popis: Intel Graphics Miniport Driver
| |_ MD5: 643162FBC619E35D3F1A90A095A5BB42
|
|_ Jméno: ialm
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] NSC Infrared Device Driver
|_ Cesta: C:\windows\system32\DRIVERS\nscirda.sys
| |_ Výrobce: National Semiconductor Corporation
| |_ Popis: NSC Fast Infrared Driver.
| |_ MD5: 2ADC0CA9945C65284B3D19BC18765974
|
|_ Jméno: NSCIRDA
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] smwdm
|_ Cesta: C:\windows\system32\drivers\smwdm.sys
| |_ Výrobce: Analog Devices, Inc.
| |_ Popis: SoundMAX Integrated Digital Audio
| |_ MD5: B09F23BF6E451B7A492B4A3D5EACFB24
|
|_ Jméno: smwdm
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Spyware Terminator Driver 2
|_ Cesta: C:\windows\system32\drivers\sp_rsdrv2.sys
| |_ Výrobce: ?
| |_ Popis: ?
| |_ MD5: 8831252BCF05FCFB5ABD116A22E552D8
|
|_ Jméno: sp_rsdrv2
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Winbond Trusted Platform Module
|_ Cesta: C:\windows\system32\DRIVERS\tpm.sys
| |_ Výrobce: Winbond Electronics Corp.
| |_ Popis: TPM Device Driver
| |_ MD5: 317B746B6069A10D635FDBDF48723845
|
|_ Jméno: TPM
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] winachsf
|_ Cesta: C:\windows\system32\DRIVERS\HSF_CNXT.sys
| |_ Výrobce: Conexant Systems, Inc.
| |_ Popis: HSF_CNXT driver
| |_ MD5: C1D5CBD8AA0D674DA1BA1BB189696396
|
|_ Jméno: winachsf
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
lNetStat
================================================================
Typ: PID Proces Local <-> Remote Status
-----------------------------------------------------------------------------------------
TCP (1064) svchost.exe 0.0.0.0:135 LISTENING
TCP (4) Systém 0.0.0.0:445 LISTENING
TCP (1396) svchost.exe 0.0.0.0:2869 LISTENING
TCP (4) Systém 89.103.35.237:139 LISTENING
TCP (4008) firefox.exe 89.103.35.237:15080 <-> 74.125.87.102:80 ESTABLISHED
TCP (2772) alg.exe 127.0.0.1:1028 LISTENING
TCP (1888) jqs.exe 127.0.0.1:5152 LISTENING
TCP (1888) jqs.exe 127.0.0.1:5152 CLOSE_WAIT
TCP (4008) firefox.exe 127.0.0.1:12349 <-> 127.0.0.1:12350 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12350 <-> 127.0.0.1:12349 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12352 <-> 127.0.0.1:12353 ESTABLISHED
TCP (4008) firefox.exe 127.0.0.1:12353 <-> 127.0.0.1:12352 ESTABLISHED
UDP (4) Systém 0.0.0.0:445 LISTENING
UDP (756) lsass.exe 0.0.0.0:500
UDP (1164) svchost.exe 0.0.0.0:1034
UDP (756) lsass.exe 0.0.0.0:4500
UDP (1312) svchost.exe 0.0.0.0:22641
UDP (1312) svchost.exe 0.0.0.0:57244
UDP (1164) svchost.exe 89.103.35.237:123
UDP (4) Systém 89.103.35.237:137
UDP (4) Systém 89.103.35.237:138
UDP (1396) svchost.exe 89.103.35.237:1900
UDP (1164) svchost.exe 127.0.0.1:123
UDP (1164) svchost.exe 127.0.0.1:1035
UDP (1140) explorer.exe 127.0.0.1:1040
UDP (1396) svchost.exe 127.0.0.1:1900
Moduly (Zobraz i bezpečné DLL: False, Jen bez výrobce: True, Zobraz registrované: False)
================================================================
[?] imon.dll
|_ Cesta: C:\WINDOWS\system32\imon.dll
|_ MD5: 7E726F244D0BD744E1CAD96C6BD9B447
|_ Výrobce: Eset
|_ Procesy
|_ lsass.exe (756)
|_ svchost.exe (1064)
|_ svchost.exe (1164)
|_ svchost.exe (1312)
|_ svchost.exe (1396)
|_ jqs.exe (1888)
|_ amlcSVC.exe (1932)
|_ nod32krn.exe (168)
|_ explorer.exe (1140)
|_ alg.exe (2772)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
[?] pr_imon.dll
|_ Cesta: C:\Program Files\ESET\pr_imon.dll
|_ MD5: 30808CB53FE11DCBEDAE6A49562B12FD
|_ Výrobce:
|_ Procesy
|_ lsass.exe (756)
|_ svchost.exe (1064)
|_ svchost.exe (1164)
|_ svchost.exe (1312)
|_ svchost.exe (1396)
|_ jqs.exe (1888)
|_ amlcSVC.exe (1932)
|_ nod32krn.exe (168)
|_ explorer.exe (1140)
|_ alg.exe (2772)
|_ nod32kui.exe (3556)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
[?] aspnet_isapi.dll
|_ Cesta: C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
|_ MD5: 4B423DDB78AB25BCD2EF9BB2F264CBD7
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ jqs.exe (1888)
[?] nod32krr.dll
|_ Cesta: C:\Program Files\ESET\nod32krr.dll
|_ MD5: 313A3252356725330BC9A97465B98105
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] ps_upd.dll
|_ Cesta: C:\Program Files\ESET\ps_upd.dll
|_ MD5: B95462CAB241FA9904D17AED59F1C4B8
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_upd.dll
|_ Cesta: C:\Program Files\ESET\pr_upd.dll
|_ MD5: F52463B57EBBF4842197A04A9E71AEB0
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_amon.dll
|_ Cesta: C:\Program Files\ESET\ps_amon.dll
|_ MD5: 2009429BD69260EB62E3A86CCEE1D866
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_amon.dll
|_ Cesta: C:\Program Files\ESET\pr_amon.dll
|_ MD5: BA4C54DB6A378F616382C8883BD01A64
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_nod32.dll
|_ Cesta: C:\Program Files\ESET\ps_nod32.dll
|_ MD5: C2CA34D6431B83658D006E22E2711720
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_nod32.dll
|_ Cesta: C:\Program Files\ESET\pr_nod32.dll
|_ MD5: 64EF9F5FEBA697070AE042CA23CDBFD8
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_dmon.dll
|_ Cesta: C:\Program Files\ESET\ps_dmon.dll
|_ MD5: C69CA0D037DB292E79F6DD51C5289349
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_dmon.dll
|_ Cesta: C:\Program Files\ESET\pr_dmon.dll
|_ MD5: C1905E9D494412D8FAC39638E326D7FA
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] ps_emon.dll
|_ Cesta: C:\Program Files\ESET\ps_emon.dll
|_ MD5: 5E358840AB10E85A0CDB728C545C3003
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (168)
[?] pr_emon.dll
|_ Cesta: C:\Program Files\ESET\pr_emon.dll
|_ MD5: 85AE9E4E3D830E4035DF2CAFE9E10570
|_ Výrobce:
|_ Procesy
|_ nod32krn.exe (168)
|_ nod32kui.exe (3556)
[?] mm6internetexplorer.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\Mm6InternetExplorer.dll
|_ MD5: 73AB236DBC96E135BE244790D24BCB29
|_ Výrobce: Mindjet
|_ Procesy
|_ explorer.exe (1140)
[!] sptcontmenu.dll
|_ Cesta: C:\Program Files\Spyware Terminator\sptcontmenu.dll
|_ MD5: A5E97B2B88CC48FC178E88BF6E02F5EC
|_ Výrobce: Crawler.com
|_ Procesy
|_ explorer.exe (1140)
[?] rpchromebrowserrecordhelper.dll
|_ Cesta: C:\Program Files\Real\RealPlayer\rpchromebrowserrecordhelper.dll
|_ MD5: 1F1B0276FFB14D6014F4CFFCC6EE6F31
|_ Výrobce:
|_ Procesy
|_ explorer.exe (1140)
|_ igfxpers.exe (3308)
|_ realsched.exe (3468)
|_ nod32kui.exe (3556)
|_ ctfmon.exe (216)
|_ GoogleToolbarNotifier.exe (2032)
|_ TeaTimer.exe (1968)
|_ jusched.exe (3244)
|_ MmReminderService.exe (3652)
|_ pdfSaver3.exe (2012)
|_ NclIrSrv.exe (3740)
|_ unsecapp.exe (592)
|_ firefox.exe (4008)
|_ UPM.exe (1964)
|_ rundll32.exe (1784)
|_ sndvol32.exe (3820)
[?] nod32rui.dll
|_ Cesta: C:\Program Files\ESET\nod32rui.dll
|_ MD5: F845373FA45F68E0BD31C4850A062925
|_ Výrobce:
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_upd.dll
|_ Cesta: C:\Program Files\ESET\pu_upd.dll
|_ MD5: 19C42FA0B695D9C5FDA3C958157291BE
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_amon.dll
|_ Cesta: C:\Program Files\ESET\pu_amon.dll
|_ MD5: 16F73B657D157E1B2B748D43D01CA86D
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_nod32.dll
|_ Cesta: C:\Program Files\ESET\pu_nod32.dll
|_ MD5: 9327BF66AF9C3153F5D4435C80C15189
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_imon.dll
|_ Cesta: C:\Program Files\ESET\pu_imon.dll
|_ MD5: 14107DF71E8EF699FC0D95F23CA3C2F8
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_dmon.dll
|_ Cesta: C:\Program Files\ESET\pu_dmon.dll
|_ MD5: 0E811F23B22D9DBB2782BEC4632CCD1F
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] pu_emon.dll
|_ Cesta: C:\Program Files\ESET\pu_emon.dll
|_ MD5: 64A5884831BC7CD0162689A753717497
|_ Výrobce: Eset
|_ Procesy
|_ nod32kui.exe (3556)
[?] fgmgr.dll
|_ Cesta: C:\Program Files\FlashGet\fgmgr.dll
|_ MD5: 7AFDC73DF85CBA039CFEDB389B6C9EF6
|_ Výrobce: http://www.flashget.com
|_ Procesy
|_ jusched.exe (3244)
|_ unsecapp.exe (592)
[?] mmutilities.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\MmUtilities.dll
|_ MD5: F8B9B6C157D038E38DB95B55E82EDEEE
|_ Výrobce: Mindjet
|_ Procesy
|_ MmReminderService.exe (3652)
[?] bcgcbpro730u.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\BCGCBPRO730u.dll
|_ MD5: 8D3BC9DF0983AC5994E6E73745A5CE1A
|_ Výrobce: BCGSoft Ltd / Mindjet LLC
|_ Procesy
|_ MmReminderService.exe (3652)
[?] mmserviceutilities.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\MmServiceUtilities.dll
|_ MD5: 2D6DEABA6F2380F61F10D3BC0519504D
|_ Výrobce: Mindjet
|_ Procesy
|_ MmReminderService.exe (3652)
[?] vic32.dll
|_ Cesta: C:\Program Files\Mindjet\MindManager 6\Vic32.dll
|_ MD5: 24A31F3F2C141889D6FAD74C44684C77
|_ Výrobce: Catenary Systems
|_ Procesy
|_ MmReminderService.exe (3652)
[?] ixclib30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\ixclib30.dll
|_ MD5: ABD217FA76635264B2762B6C8162347C
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] pxclib30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\pxclib30.dll
|_ MD5: B7ADAAFCF0CBCDC5B7053F117C88CCFC
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30base.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\fm30base.dll
|_ MD5: 694CCFC3888523827A3703DA8775BA04
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30tiff.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\Fm30Tiff.dll
|_ MD5: D8C6884CA1C96945FBA6D9D82F310A75
|_ Výrobce: Tracker Software
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] fm30xmf.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\fm30xmf.dll
|_ MD5: 22A811D3A1F219008DEE508BFB598BA3
|_ Výrobce:
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcloc30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcloc30.dll
|_ MD5: E940D905C5EDC43EF7D278A939694E54
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcpro30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcpro30.dll
|_ MD5: 7011AA8E1756B38F57ACFC1B69A0CDED
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] xcpars30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\xcpars30.dll
|_ MD5: 6566C22C4A97E14D11D7B4A463A84259
|_ Výrobce: Tracker Software Products
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] dscrt30.dll
|_ Cesta: C:\Program Files\Tracker Software\PDF-XChange 3\pdfSaver\dscrt30.dll
|_ MD5: 9D9A0E8434C005A833A405ACF72CAC54
|_ Výrobce: Tracker Software Products Ltd.
|_ Procesy
|_ pdfSaver3.exe (2012)
[?] pccs_dbengine.dll
|_ Cesta: C:\Program Files\PC Connectivity Solution\PCCS_DBEngine.dll
|_ MD5: 81F200AC17A188559A2F255BB5D88D0C
|_ Výrobce: Nokia
|_ Procesy
|_ ServiceLayer.exe (3732)
[?] softokn3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\softokn3.dll
|_ MD5: 1BCB8B8AB1605FC0B98B634F42B91DED
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] nssdbm3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\nssdbm3.dll
|_ MD5: EC9E5B1A8A5088FEF71A17220430FC4A
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] freebl3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\freebl3.dll
|_ MD5: 9A4E6EB27517D1E3005C493CA093F31E
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (4008)
[?] foxytunes.dll
|_ Cesta: C:\Documents and Settings\matheus\Data aplikací\Mozilla\Firefox\Profiles\pxyvm66q.Jarek\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}\platform\WINNT\components\FoxyTunes.dll
|_ MD5: 5CEA858EA7AD92EAABAC8B5A44F501E7
|_ Výrobce:
|_ Procesy
|_ firefox.exe (4008)
[?] searchsettingsff.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
|_ MD5: ABDA0E1226C421129ABC51E72A4D8B0D
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] searchsettingsres409.dll
|_ Cesta: C:\Program Files\pdfforge Toolbar\SearchSettingsRes409.dll
|_ MD5: B4C2E628F1410A7FCB67CA7DA6E6932D
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] pdfforgetoolbarff.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\extensions\{B922D405-6D13-4A2B-AE89-08A030DA4402}\components\pdfforgeToolbarFF.dll
|_ MD5: 454C5580885412601041226E0913FD59
|_ Výrobce: Spigot, Inc.
|_ Procesy
|_ firefox.exe (4008)
[?] sqlite.dll
|_ Cesta: C:\Program Files\Adobe\Reader 9.0\Reader\sqlite.dll
|_ MD5: FAEF2D2F360416F01297AD16A88BFF5E
|_ Výrobce: ?
|_ Procesy
|_ firefox.exe (4008)
[?] onix32.dll
|_ Cesta: C:\Program Files\Adobe\Reader 9.0\Reader\Onix32.dll
|_ MD5: 378B9257C973731A62E392D11EB933D7
|_ Výrobce: Lextek International
|_ Procesy
|_ firefox.exe (4008)
================================================================
Ultimate Process Manager v4.1.3 - [ Lodus Software ] - Not Registered =(