Pomalý systém,Padání pc,odhalení27 trojanů.
Napsal: 03 úno 2010 08:38
Logfile of random's system information tool 1.06 (written by random/random)
Run by Uživatel at 2010-02-03 08:32:12
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 94 GB (82%) free of 114 GB
Total RAM: 447 MB (14% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:32:21, on 3.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Uživatel\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Uživatel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/skinit/icq/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: &Search - ?p=ZCfox000
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.icq.com/online/online2/zum ... der_v6.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
--
End of file - 6435 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\PCConfidential.job
C:\WINDOWS\tasks\rpc.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AADAAAD3-0B91-4A86-913B-2D24DB1064D3}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-02 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-02 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-12-22 77824]
"VTTimer"=C:\WINDOWS\system32\VTTimer.exe [2005-03-07 53248]
"VTTrayp"=C:\WINDOWS\system32\VTtrayp.exe [2005-01-11 143360]
"Lexmark 2200 Series"=C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe [2004-02-13 57344]
"FaxCenterServer"=C:\Program Files\Lexmark Fax Solutions\fm3032.exe [2004-02-04 294912]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-05-18 2363392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=FF000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Duke Nukem - Manhattan Project\prism3d.exe"="C:\Program Files\Duke Nukem - Manhattan Project\prism3d.exe:*:Enabled:prism3d"
"C:\Hry\Return to Castle Wolfenstein\WolfMP.exe"="C:\Hry\Return to Castle Wolfenstein\WolfMP.exe:*:Enabled:WolfMP"
"C:\Program Files\ASCARON\Extreme 500\Extreme500Client.exe"="C:\Program Files\ASCARON\Extreme 500\Extreme500Client.exe:*:Enabled:Phoenix"
"C:\Program Files\mswt kart 2004 demo\MSWorldTour_demo.exe"="C:\Program Files\mswt kart 2004 demo\MSWorldTour_demo.exe:*:Disabled:MSWorldTour_demo"
"C:\Program Files\ICQLite\ICQLite.exe"="C:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Edisk\eDisk klient\eDisk klient.exe"="C:\Program Files\Edisk\eDisk klient\eDisk klient.exe:*:Enabled:eDisk klient"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray"
"C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe"="C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-02-03 08:32:13 ----D---- C:\Program Files\trend micro
2010-02-03 08:32:12 ----D---- C:\rsit
2010-02-02 10:47:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-02-02 10:47:04 ----D---- C:\Program Files\Common Files\Java
2010-02-02 10:42:42 ----A---- C:\WINDOWS\system32\javaws.exe
2010-02-02 10:42:42 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-02-02 10:42:41 ----A---- C:\WINDOWS\system32\javaw.exe
2010-02-02 10:42:41 ----A---- C:\WINDOWS\system32\java.exe
2010-02-02 10:31:43 ----D---- C:\Program Files\Java
2010-02-02 10:23:37 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Sun
2010-02-02 09:43:20 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-02 09:41:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-02-01 20:41:56 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-01 20:41:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-01 20:41:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-01 20:41:33 ----D---- C:\WINDOWS\ie8updates
2010-02-01 18:16:59 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-02-01 18:16:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-02-01 18:09:55 ----D---- C:\Program Files\Avira
2010-02-01 18:09:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2010-02-01 18:04:16 ----D---- C:\WINDOWS\Prefetch
2010-02-01 18:01:57 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-01 18:01:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-01 18:01:48 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-01 18:01:42 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-01 18:01:37 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-01 18:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-01 18:01:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-01 18:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-01 18:01:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-01 18:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-01 18:01:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-01 18:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-01 18:00:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-01 18:00:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-01 18:00:42 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-01 18:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-01 18:00:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-01 18:00:25 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-01 18:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-01 18:00:15 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-01 18:00:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-01 18:00:02 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2010-02-01 17:59:56 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-01 17:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-01 17:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-01 17:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2010-02-01 17:59:33 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2010-02-01 17:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-01 17:59:08 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-01 17:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-01 17:58:56 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-01 17:58:51 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-01 17:58:46 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-02-01 17:58:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-01 17:58:35 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-01 17:58:30 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-01 17:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2010-02-01 17:58:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-01 17:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2010-02-01 17:58:08 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-01 17:57:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-01 17:57:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-01 17:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-01 17:57:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-02-01 17:57:08 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-01 17:57:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2010-02-01 17:56:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2010-02-01 17:56:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2010-02-01 17:56:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-01 17:56:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-01 17:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-01 17:56:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-01 17:56:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2010-02-01 17:56:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-01 17:56:11 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2010-02-01 17:56:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-01 17:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-01 17:55:56 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-01 17:55:48 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-01 17:55:44 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2010-02-01 17:55:38 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-01 17:53:12 ----D---- C:\WINDOWS\system32\cs
2010-02-01 17:53:12 ----D---- C:\WINDOWS\system32\bits
2010-02-01 17:07:55 ----D---- C:\Program Files\CCleaner
2010-01-29 10:10:00 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\GlarySoft
2010-01-27 19:24:18 ----D---- C:\Program Files\DVD Shrink
2010-01-27 19:00:11 ----D---- C:\Program Files\Common Files\mozilla(2).org
2010-01-27 19:00:02 ----D---- C:\Program Files\mozilla(2).org
2010-01-27 18:34:53 ----D---- C:\Config.Msi
2010-01-26 17:35:29 ----D---- C:\Program Files\Avant Browser
2010-01-26 17:35:29 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Avant Browser
2010-01-26 17:15:39 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Talkback
2010-01-25 22:20:44 ----DC---- C:\WINDOWS\$NtUninstallKB975467$(2)
2010-01-25 22:20:38 ----DC---- C:\WINDOWS\$NtUninstallKB975025$(2)
2010-01-25 22:20:32 ----DC---- C:\WINDOWS\$NtUninstallKB974571$(2)
2010-01-25 22:20:24 ----DC---- C:\WINDOWS\$NtUninstallKB974392$(2)
2010-01-25 22:20:18 ----DC---- C:\WINDOWS\$NtUninstallKB974318$(2)
2010-01-25 22:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$(2)
2010-01-25 22:20:04 ----DC---- C:\WINDOWS\$NtUninstallKB973869$(2)
2010-01-25 22:19:57 ----DC---- C:\WINDOWS\$NtUninstallKB973815$(2)
2010-01-25 22:19:51 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$(2)
2010-01-25 22:19:43 ----DC---- C:\WINDOWS\$NtUninstallKB973507$(2)
2010-01-25 22:19:37 ----DC---- C:\WINDOWS\$NtUninstallKB973354$(2)
2010-01-25 22:19:31 ----DC---- C:\WINDOWS\$NtUninstallKB972270$(2)
2010-01-25 22:19:18 ----DC---- C:\WINDOWS\$NtUninstallKB971737$(2)
2010-01-25 22:19:11 ----DC---- C:\WINDOWS\$NtUninstallKB971657$(2)
2010-01-25 22:19:04 ----DC---- C:\WINDOWS\$NtUninstallKB971633$(2)
2010-01-25 22:18:58 ----DC---- C:\WINDOWS\$NtUninstallKB971557$(2)
2010-01-25 22:18:50 ----DC---- C:\WINDOWS\$NtUninstallKB971486$(2)
2010-01-25 22:18:42 ----DC---- C:\WINDOWS\$NtUninstallKB970430$(2)
2010-01-25 22:18:36 ----DC---- C:\WINDOWS\$NtUninstallKB970238$(2)
2010-01-25 22:18:30 ----DC---- C:\WINDOWS\$NtUninstallKB969947$(2)
2010-01-25 22:18:19 ----DC---- C:\WINDOWS\$NtUninstallKB969059$(2)
2010-01-25 22:18:13 ----DC---- C:\WINDOWS\$NtUninstallKB968537$(2)
2010-01-25 22:18:05 ----DC---- C:\WINDOWS\$NtUninstallKB968389$(2)
2010-01-25 22:17:58 ----DC---- C:\WINDOWS\$NtUninstallKB967715$(2)
2010-01-25 22:17:48 ----DC---- C:\WINDOWS\$NtUninstallKB961501$(2)
2010-01-25 22:17:43 ----DC---- C:\WINDOWS\$NtUninstallKB961373$(2)
2010-01-25 22:17:36 ----DC---- C:\WINDOWS\$NtUninstallKB961371$(2)
2010-01-25 22:17:15 ----DC---- C:\WINDOWS\$NtUninstallKB961118$(2)
2010-01-25 22:17:09 ----DC---- C:\WINDOWS\$NtUninstallKB960859$(2)
2010-01-25 22:17:02 ----DC---- C:\WINDOWS\$NtUninstallKB960803$(2)
2010-01-25 22:16:54 ----DC---- C:\WINDOWS\$NtUninstallKB960225$(2)
2010-01-25 22:16:47 ----DC---- C:\WINDOWS\$NtUninstallKB959426$(2)
2010-01-25 22:16:40 ----DC---- C:\WINDOWS\$NtUninstallKB958690$(2)
2010-01-25 22:16:34 ----DC---- C:\WINDOWS\$NtUninstallKB958687$(2)
2010-01-25 22:16:27 ----DC---- C:\WINDOWS\$NtUninstallKB958644$(2)
2010-01-25 22:16:19 ----DC---- C:\WINDOWS\$NtUninstallKB957097$(2)
2010-01-25 22:16:12 ----DC---- C:\WINDOWS\$NtUninstallKB957095$(2)
2010-01-25 22:16:06 ----DC---- C:\WINDOWS\$NtUninstallKB956844$(2)
2010-01-25 22:15:59 ----DC---- C:\WINDOWS\$NtUninstallKB956841$(2)
2010-01-25 22:15:52 ----DC---- C:\WINDOWS\$NtUninstallKB956803$(2)
2010-01-25 22:15:45 ----DC---- C:\WINDOWS\$NtUninstallKB956802$(2)
2010-01-25 22:15:29 ----DC---- C:\WINDOWS\$NtUninstallKB956572$(2)
2010-01-25 22:15:17 ----DC---- C:\WINDOWS\$NtUninstallKB955759$(2)
2010-01-25 22:15:09 ----DC---- C:\WINDOWS\$NtUninstallKB973687$(3)
2010-01-25 22:15:03 ----DC---- C:\WINDOWS\$NtUninstallKB955069$(2)
2010-01-25 22:14:57 ----DC---- C:\WINDOWS\$NtUninstallKB974112$(3)
2010-01-25 22:14:51 ----DC---- C:\WINDOWS\$NtUninstallKB954600$(2)
2010-01-25 22:14:45 ----DC---- C:\WINDOWS\$NtUninstallKB954211$(2)
2010-01-25 22:14:37 ----DC---- C:\WINDOWS\$NtUninstallKB952954$(2)
2010-01-25 22:14:31 ----DC---- C:\WINDOWS\$NtUninstallKB952287$(2)
2010-01-25 22:14:24 ----DC---- C:\WINDOWS\$NtUninstallKB952004$(2)
2010-01-25 22:14:17 ----DC---- C:\WINDOWS\$NtUninstallKB951748$(2)
2010-01-25 22:14:11 ----DC---- C:\WINDOWS\$NtUninstallKB951698$(2)
2010-01-25 22:14:05 ----DC---- C:\WINDOWS\$NtUninstallKB951376-v2$(2)
2010-01-25 22:13:58 ----DC---- C:\WINDOWS\$NtUninstallKB951376$(2)
2010-01-25 22:13:50 ----DC---- C:\WINDOWS\$NtUninstallKB951066$(2)
2010-01-25 22:13:43 ----DC---- C:\WINDOWS\$NtUninstallKB950974$(2)
2010-01-25 22:13:37 ----DC---- C:\WINDOWS\$NtUninstallKB950762$(2)
2010-01-25 22:13:27 ----DC---- C:\WINDOWS\$NtUninstallKB946648$(2)
2010-01-25 22:13:20 ----DC---- C:\WINDOWS\$NtUninstallKB938464$(2)
2010-01-25 22:13:12 ----DC---- C:\WINDOWS\$NtUninstallKB923561$(2)
2010-01-25 22:09:10 ----D---- C:\WINDOWS\l2schemas
2010-01-25 22:01:16 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-25 21:49:01 ----HDC---- C:\WINDOWS\ie8
2010-01-25 14:11:04 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Lavasoft
2010-01-25 14:11:00 ----D---- C:\Program Files\Lavasoft
2010-01-13 23:23:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-01-13 23:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
======List of files/folders modified in the last 1 months======
2010-02-03 08:32:13 ----D---- C:\Program Files
2010-02-03 08:27:38 ----D---- C:\Program Files\Mozilla Firefox
2010-02-03 08:27:30 ----D---- C:\WINDOWS\Temp
2010-02-03 08:27:29 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-03 08:26:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-03 08:25:35 ----SHD---- C:\WINDOWS\Installer
2010-02-03 08:25:06 ----D---- C:\WINDOWS\system32\drivers
2010-02-03 08:24:51 ----D---- C:\WINDOWS\system32
2010-02-02 15:52:34 ----SD---- C:\WINDOWS\Tasks
2010-02-02 13:28:35 ----D---- C:\WINDOWS
2010-02-02 13:28:17 ----D---- C:\WINDOWS\Help
2010-02-02 10:47:04 ----D---- C:\Program Files\Common Files
2010-02-02 09:43:57 ----HD---- C:\WINDOWS\inf
2010-02-01 20:43:24 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-01 20:42:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-01 20:42:14 ----D---- C:\Program Files\Internet Explorer
2010-02-01 20:42:01 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-01 20:03:58 ----A---- C:\WINDOWS\WININIT.INI
2010-02-01 18:21:20 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Skype
2010-02-01 18:08:54 ----D---- C:\WINDOWS\WinSxS
2010-02-01 18:06:42 ----D---- C:\WINDOWS\Debug
2010-02-01 18:05:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-01 18:03:59 ----D---- C:\WINDOWS\system32\wbem
2010-02-01 18:03:59 ----D---- C:\WINDOWS\system32\Setup
2010-02-01 18:03:59 ----D---- C:\WINDOWS\AppPatch
2010-02-01 18:03:59 ----D---- C:\Program Files\Messenger
2010-02-01 18:03:58 ----RSD---- C:\WINDOWS\Fonts
2010-02-01 18:01:05 ----D---- C:\Program Files\Outlook Express
2010-02-01 17:55:21 ----D---- C:\WINDOWS\security
2010-02-01 17:53:25 ----D---- C:\Program Files\Windows Media Player
2010-02-01 17:53:21 ----D---- C:\WINDOWS\network diagnostic
2010-02-01 17:53:21 ----D---- C:\WINDOWS\ime
2010-02-01 17:53:13 ----D---- C:\WINDOWS\system32\usmt
2010-02-01 17:53:12 ----D---- C:\WINDOWS\PeerNet
2010-02-01 17:53:12 ----D---- C:\Program Files\Movie Maker
2010-02-01 17:51:47 ----D---- C:\WINDOWS\system32\Restore
2010-02-01 17:51:46 ----D---- C:\WINDOWS\system32\npp
2010-02-01 17:51:46 ----D---- C:\WINDOWS\msagent
2010-02-01 17:51:45 ----D---- C:\WINDOWS\srchasst
2010-02-01 17:51:45 ----D---- C:\Program Files\NetMeeting
2010-02-01 17:51:44 ----D---- C:\WINDOWS\system32\Com
2010-02-01 17:51:43 ----D---- C:\Program Files\Windows NT
2010-02-01 17:51:42 ----D---- C:\Program Files\Common Files\System
2010-02-01 17:51:34 ----D---- C:\WINDOWS\system32\oobe
2010-02-01 17:51:33 ----D---- C:\WINDOWS\system
2010-02-01 17:49:07 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-01 17:47:19 ----D---- C:\WINDOWS\EHome
2010-02-01 17:34:53 ----D---- C:\WINDOWS\system32\Macromed
2010-02-01 17:34:53 ----D---- C:\WINDOWS\system32\Adobe
2010-02-01 17:15:37 ----D---- C:\Program Files\ZumieSearch
2010-02-01 17:15:20 ----D---- C:\WINDOWS\system32\QuickTime
2010-02-01 17:15:20 ----D---- C:\Program Files\QuickTime
2010-02-01 17:13:34 ----RSD---- C:\WINDOWS\assembly
2010-02-01 17:13:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-01 16:51:05 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Vso
2010-02-01 16:49:29 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\skypePM
2010-01-29 16:13:44 ----A---- C:\WINDOWS\wincmd.ini
2010-01-29 15:55:43 ----D---- C:\WINDOWS\Minidump
2010-01-29 15:55:43 ----D---- C:\totalcmd
2010-01-29 15:55:43 ----D---- C:\Program Files\Skipper1
2010-01-29 15:55:43 ----D---- C:\Program Files\BombRiot
2010-01-29 10:51:36 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla
2010-01-29 10:06:44 ----D---- C:\WINDOWS\system32\cs-cz
2010-01-28 23:10:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-28 23:10:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-28 23:07:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-28 23:07:09 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-28 23:07:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-28 23:06:40 ----D---- C:\Hostomicaci
2010-01-28 23:01:13 ----D---- C:\WINDOWS\system32\config
2010-01-28 23:01:00 ----D---- C:\WINDOWS\Registration
2010-01-28 23:00:22 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\dvdcss
2010-01-28 22:35:10 ----D---- C:\Program Files\Free Easy Burner
2010-01-28 21:28:22 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\vlc
2010-01-27 19:30:30 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-27 19:24:19 ----D---- C:\Program Files\WinRAR
2010-01-27 19:00:25 ----A---- C:\WINDOWS\win.ini
2010-01-25 22:07:16 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-25 21:51:43 ----D---- C:\WINDOWS\Media
2010-01-22 23:54:29 ----D---- C:\WINDOWS\ie7updates
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\wininet(3)(2).dll
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\urlmon(3)(2).dll
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\url(3)(2).dll
2010-01-05 10:58:00 ----A---- C:\WINDOWS\system32\iertutil(2)(2).dll
2010-01-05 10:57:58 ----N---- C:\WINDOWS\system32\extmgr.dll
2010-01-04 16:17:48 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-08-11 39424]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 eusk2par;EUTRON SmartKey Parallel Driver; \??\C:\WINDOWS\system32\Drivers\eusk2par.sys []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2010-02-02 56816]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-12-22 2304320]
R3 FETNDISB;VIA Rhine Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5b.sys [2004-04-15 42496]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-06-19 47360]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2005-03-08 172544]
S1 tvtool;tvtool; \??\C:\Program Files\TVTool 6.8\tvtool.sys []
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 NTSIM;NTSIM; \??\C:\WINDOWS\system32\ntsim.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-06-01 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-02-02 153376]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2004-01-14 311296]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Run by Uživatel at 2010-02-03 08:32:12
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 94 GB (82%) free of 114 GB
Total RAM: 447 MB (14% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:32:21, on 3.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Uživatel\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Uživatel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://google.icq.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/skinit/icq/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: &Search - ?p=ZCfox000
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.icq.com/online/online2/zum ... der_v6.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Unknown owner - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (file missing)
--
End of file - 6435 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\PCConfidential.job
C:\WINDOWS\tasks\rpc.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AADAAAD3-0B91-4A86-913B-2D24DB1064D3}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-02 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-02 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-12-22 77824]
"VTTimer"=C:\WINDOWS\system32\VTTimer.exe [2005-03-07 53248]
"VTTrayp"=C:\WINDOWS\system32\VTtrayp.exe [2005-01-11 143360]
"Lexmark 2200 Series"=C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe [2004-02-13 57344]
"FaxCenterServer"=C:\Program Files\Lexmark Fax Solutions\fm3032.exe [2004-02-04 294912]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2009-05-18 2363392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=FF000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Duke Nukem - Manhattan Project\prism3d.exe"="C:\Program Files\Duke Nukem - Manhattan Project\prism3d.exe:*:Enabled:prism3d"
"C:\Hry\Return to Castle Wolfenstein\WolfMP.exe"="C:\Hry\Return to Castle Wolfenstein\WolfMP.exe:*:Enabled:WolfMP"
"C:\Program Files\ASCARON\Extreme 500\Extreme500Client.exe"="C:\Program Files\ASCARON\Extreme 500\Extreme500Client.exe:*:Enabled:Phoenix"
"C:\Program Files\mswt kart 2004 demo\MSWorldTour_demo.exe"="C:\Program Files\mswt kart 2004 demo\MSWorldTour_demo.exe:*:Disabled:MSWorldTour_demo"
"C:\Program Files\ICQLite\ICQLite.exe"="C:\Program Files\ICQLite\ICQLite.exe:*:Enabled:ICQ Lite"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Edisk\eDisk klient\eDisk klient.exe"="C:\Program Files\Edisk\eDisk klient\eDisk klient.exe:*:Enabled:eDisk klient"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray"
"C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe"="C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-02-03 08:32:13 ----D---- C:\Program Files\trend micro
2010-02-03 08:32:12 ----D---- C:\rsit
2010-02-02 10:47:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-02-02 10:47:04 ----D---- C:\Program Files\Common Files\Java
2010-02-02 10:42:42 ----A---- C:\WINDOWS\system32\javaws.exe
2010-02-02 10:42:42 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-02-02 10:42:41 ----A---- C:\WINDOWS\system32\javaw.exe
2010-02-02 10:42:41 ----A---- C:\WINDOWS\system32\java.exe
2010-02-02 10:31:43 ----D---- C:\Program Files\Java
2010-02-02 10:23:37 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Sun
2010-02-02 09:43:20 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-02 09:41:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-02-01 20:41:56 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-01 20:41:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-01 20:41:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-01 20:41:33 ----D---- C:\WINDOWS\ie8updates
2010-02-01 18:16:59 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-02-01 18:16:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2010-02-01 18:09:55 ----D---- C:\Program Files\Avira
2010-02-01 18:09:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2010-02-01 18:04:16 ----D---- C:\WINDOWS\Prefetch
2010-02-01 18:01:57 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-01 18:01:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-01 18:01:48 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-01 18:01:42 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-01 18:01:37 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-01 18:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-01 18:01:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-01 18:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-01 18:01:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-01 18:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-01 18:01:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-01 18:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-01 18:00:51 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-01 18:00:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-01 18:00:42 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-01 18:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-01 18:00:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-01 18:00:25 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-01 18:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-01 18:00:15 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-01 18:00:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-01 18:00:02 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2010-02-01 17:59:56 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-01 17:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-01 17:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-01 17:59:38 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2010-02-01 17:59:33 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2010-02-01 17:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-01 17:59:08 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-01 17:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-01 17:58:56 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-01 17:58:51 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-01 17:58:46 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2010-02-01 17:58:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-01 17:58:35 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-01 17:58:30 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-01 17:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2010-02-01 17:58:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-01 17:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2010-02-01 17:58:08 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-01 17:57:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-01 17:57:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-01 17:57:20 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-01 17:57:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-02-01 17:57:08 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-01 17:57:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2010-02-01 17:56:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2010-02-01 17:56:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2010-02-01 17:56:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-01 17:56:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-01 17:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-01 17:56:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-01 17:56:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2010-02-01 17:56:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-01 17:56:11 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2010-02-01 17:56:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-01 17:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-01 17:55:56 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-01 17:55:48 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-01 17:55:44 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2010-02-01 17:55:38 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-01 17:53:12 ----D---- C:\WINDOWS\system32\cs
2010-02-01 17:53:12 ----D---- C:\WINDOWS\system32\bits
2010-02-01 17:07:55 ----D---- C:\Program Files\CCleaner
2010-01-29 10:10:00 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\GlarySoft
2010-01-27 19:24:18 ----D---- C:\Program Files\DVD Shrink
2010-01-27 19:00:11 ----D---- C:\Program Files\Common Files\mozilla(2).org
2010-01-27 19:00:02 ----D---- C:\Program Files\mozilla(2).org
2010-01-27 18:34:53 ----D---- C:\Config.Msi
2010-01-26 17:35:29 ----D---- C:\Program Files\Avant Browser
2010-01-26 17:35:29 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Avant Browser
2010-01-26 17:15:39 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Talkback
2010-01-25 22:20:44 ----DC---- C:\WINDOWS\$NtUninstallKB975467$(2)
2010-01-25 22:20:38 ----DC---- C:\WINDOWS\$NtUninstallKB975025$(2)
2010-01-25 22:20:32 ----DC---- C:\WINDOWS\$NtUninstallKB974571$(2)
2010-01-25 22:20:24 ----DC---- C:\WINDOWS\$NtUninstallKB974392$(2)
2010-01-25 22:20:18 ----DC---- C:\WINDOWS\$NtUninstallKB974318$(2)
2010-01-25 22:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$(2)
2010-01-25 22:20:04 ----DC---- C:\WINDOWS\$NtUninstallKB973869$(2)
2010-01-25 22:19:57 ----DC---- C:\WINDOWS\$NtUninstallKB973815$(2)
2010-01-25 22:19:51 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$(2)
2010-01-25 22:19:43 ----DC---- C:\WINDOWS\$NtUninstallKB973507$(2)
2010-01-25 22:19:37 ----DC---- C:\WINDOWS\$NtUninstallKB973354$(2)
2010-01-25 22:19:31 ----DC---- C:\WINDOWS\$NtUninstallKB972270$(2)
2010-01-25 22:19:18 ----DC---- C:\WINDOWS\$NtUninstallKB971737$(2)
2010-01-25 22:19:11 ----DC---- C:\WINDOWS\$NtUninstallKB971657$(2)
2010-01-25 22:19:04 ----DC---- C:\WINDOWS\$NtUninstallKB971633$(2)
2010-01-25 22:18:58 ----DC---- C:\WINDOWS\$NtUninstallKB971557$(2)
2010-01-25 22:18:50 ----DC---- C:\WINDOWS\$NtUninstallKB971486$(2)
2010-01-25 22:18:42 ----DC---- C:\WINDOWS\$NtUninstallKB970430$(2)
2010-01-25 22:18:36 ----DC---- C:\WINDOWS\$NtUninstallKB970238$(2)
2010-01-25 22:18:30 ----DC---- C:\WINDOWS\$NtUninstallKB969947$(2)
2010-01-25 22:18:19 ----DC---- C:\WINDOWS\$NtUninstallKB969059$(2)
2010-01-25 22:18:13 ----DC---- C:\WINDOWS\$NtUninstallKB968537$(2)
2010-01-25 22:18:05 ----DC---- C:\WINDOWS\$NtUninstallKB968389$(2)
2010-01-25 22:17:58 ----DC---- C:\WINDOWS\$NtUninstallKB967715$(2)
2010-01-25 22:17:48 ----DC---- C:\WINDOWS\$NtUninstallKB961501$(2)
2010-01-25 22:17:43 ----DC---- C:\WINDOWS\$NtUninstallKB961373$(2)
2010-01-25 22:17:36 ----DC---- C:\WINDOWS\$NtUninstallKB961371$(2)
2010-01-25 22:17:15 ----DC---- C:\WINDOWS\$NtUninstallKB961118$(2)
2010-01-25 22:17:09 ----DC---- C:\WINDOWS\$NtUninstallKB960859$(2)
2010-01-25 22:17:02 ----DC---- C:\WINDOWS\$NtUninstallKB960803$(2)
2010-01-25 22:16:54 ----DC---- C:\WINDOWS\$NtUninstallKB960225$(2)
2010-01-25 22:16:47 ----DC---- C:\WINDOWS\$NtUninstallKB959426$(2)
2010-01-25 22:16:40 ----DC---- C:\WINDOWS\$NtUninstallKB958690$(2)
2010-01-25 22:16:34 ----DC---- C:\WINDOWS\$NtUninstallKB958687$(2)
2010-01-25 22:16:27 ----DC---- C:\WINDOWS\$NtUninstallKB958644$(2)
2010-01-25 22:16:19 ----DC---- C:\WINDOWS\$NtUninstallKB957097$(2)
2010-01-25 22:16:12 ----DC---- C:\WINDOWS\$NtUninstallKB957095$(2)
2010-01-25 22:16:06 ----DC---- C:\WINDOWS\$NtUninstallKB956844$(2)
2010-01-25 22:15:59 ----DC---- C:\WINDOWS\$NtUninstallKB956841$(2)
2010-01-25 22:15:52 ----DC---- C:\WINDOWS\$NtUninstallKB956803$(2)
2010-01-25 22:15:45 ----DC---- C:\WINDOWS\$NtUninstallKB956802$(2)
2010-01-25 22:15:29 ----DC---- C:\WINDOWS\$NtUninstallKB956572$(2)
2010-01-25 22:15:17 ----DC---- C:\WINDOWS\$NtUninstallKB955759$(2)
2010-01-25 22:15:09 ----DC---- C:\WINDOWS\$NtUninstallKB973687$(3)
2010-01-25 22:15:03 ----DC---- C:\WINDOWS\$NtUninstallKB955069$(2)
2010-01-25 22:14:57 ----DC---- C:\WINDOWS\$NtUninstallKB974112$(3)
2010-01-25 22:14:51 ----DC---- C:\WINDOWS\$NtUninstallKB954600$(2)
2010-01-25 22:14:45 ----DC---- C:\WINDOWS\$NtUninstallKB954211$(2)
2010-01-25 22:14:37 ----DC---- C:\WINDOWS\$NtUninstallKB952954$(2)
2010-01-25 22:14:31 ----DC---- C:\WINDOWS\$NtUninstallKB952287$(2)
2010-01-25 22:14:24 ----DC---- C:\WINDOWS\$NtUninstallKB952004$(2)
2010-01-25 22:14:17 ----DC---- C:\WINDOWS\$NtUninstallKB951748$(2)
2010-01-25 22:14:11 ----DC---- C:\WINDOWS\$NtUninstallKB951698$(2)
2010-01-25 22:14:05 ----DC---- C:\WINDOWS\$NtUninstallKB951376-v2$(2)
2010-01-25 22:13:58 ----DC---- C:\WINDOWS\$NtUninstallKB951376$(2)
2010-01-25 22:13:50 ----DC---- C:\WINDOWS\$NtUninstallKB951066$(2)
2010-01-25 22:13:43 ----DC---- C:\WINDOWS\$NtUninstallKB950974$(2)
2010-01-25 22:13:37 ----DC---- C:\WINDOWS\$NtUninstallKB950762$(2)
2010-01-25 22:13:27 ----DC---- C:\WINDOWS\$NtUninstallKB946648$(2)
2010-01-25 22:13:20 ----DC---- C:\WINDOWS\$NtUninstallKB938464$(2)
2010-01-25 22:13:12 ----DC---- C:\WINDOWS\$NtUninstallKB923561$(2)
2010-01-25 22:09:10 ----D---- C:\WINDOWS\l2schemas
2010-01-25 22:01:16 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-25 21:49:01 ----HDC---- C:\WINDOWS\ie8
2010-01-25 14:11:04 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Lavasoft
2010-01-25 14:11:00 ----D---- C:\Program Files\Lavasoft
2010-01-13 23:23:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-01-13 23:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
======List of files/folders modified in the last 1 months======
2010-02-03 08:32:13 ----D---- C:\Program Files
2010-02-03 08:27:38 ----D---- C:\Program Files\Mozilla Firefox
2010-02-03 08:27:30 ----D---- C:\WINDOWS\Temp
2010-02-03 08:27:29 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-03 08:26:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-03 08:25:35 ----SHD---- C:\WINDOWS\Installer
2010-02-03 08:25:06 ----D---- C:\WINDOWS\system32\drivers
2010-02-03 08:24:51 ----D---- C:\WINDOWS\system32
2010-02-02 15:52:34 ----SD---- C:\WINDOWS\Tasks
2010-02-02 13:28:35 ----D---- C:\WINDOWS
2010-02-02 13:28:17 ----D---- C:\WINDOWS\Help
2010-02-02 10:47:04 ----D---- C:\Program Files\Common Files
2010-02-02 09:43:57 ----HD---- C:\WINDOWS\inf
2010-02-01 20:43:24 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-01 20:42:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-01 20:42:14 ----D---- C:\Program Files\Internet Explorer
2010-02-01 20:42:01 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-01 20:03:58 ----A---- C:\WINDOWS\WININIT.INI
2010-02-01 18:21:20 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Skype
2010-02-01 18:08:54 ----D---- C:\WINDOWS\WinSxS
2010-02-01 18:06:42 ----D---- C:\WINDOWS\Debug
2010-02-01 18:05:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-01 18:03:59 ----D---- C:\WINDOWS\system32\wbem
2010-02-01 18:03:59 ----D---- C:\WINDOWS\system32\Setup
2010-02-01 18:03:59 ----D---- C:\WINDOWS\AppPatch
2010-02-01 18:03:59 ----D---- C:\Program Files\Messenger
2010-02-01 18:03:58 ----RSD---- C:\WINDOWS\Fonts
2010-02-01 18:01:05 ----D---- C:\Program Files\Outlook Express
2010-02-01 17:55:21 ----D---- C:\WINDOWS\security
2010-02-01 17:53:25 ----D---- C:\Program Files\Windows Media Player
2010-02-01 17:53:21 ----D---- C:\WINDOWS\network diagnostic
2010-02-01 17:53:21 ----D---- C:\WINDOWS\ime
2010-02-01 17:53:13 ----D---- C:\WINDOWS\system32\usmt
2010-02-01 17:53:12 ----D---- C:\WINDOWS\PeerNet
2010-02-01 17:53:12 ----D---- C:\Program Files\Movie Maker
2010-02-01 17:51:47 ----D---- C:\WINDOWS\system32\Restore
2010-02-01 17:51:46 ----D---- C:\WINDOWS\system32\npp
2010-02-01 17:51:46 ----D---- C:\WINDOWS\msagent
2010-02-01 17:51:45 ----D---- C:\WINDOWS\srchasst
2010-02-01 17:51:45 ----D---- C:\Program Files\NetMeeting
2010-02-01 17:51:44 ----D---- C:\WINDOWS\system32\Com
2010-02-01 17:51:43 ----D---- C:\Program Files\Windows NT
2010-02-01 17:51:42 ----D---- C:\Program Files\Common Files\System
2010-02-01 17:51:34 ----D---- C:\WINDOWS\system32\oobe
2010-02-01 17:51:33 ----D---- C:\WINDOWS\system
2010-02-01 17:49:07 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-01 17:47:19 ----D---- C:\WINDOWS\EHome
2010-02-01 17:34:53 ----D---- C:\WINDOWS\system32\Macromed
2010-02-01 17:34:53 ----D---- C:\WINDOWS\system32\Adobe
2010-02-01 17:15:37 ----D---- C:\Program Files\ZumieSearch
2010-02-01 17:15:20 ----D---- C:\WINDOWS\system32\QuickTime
2010-02-01 17:15:20 ----D---- C:\Program Files\QuickTime
2010-02-01 17:13:34 ----RSD---- C:\WINDOWS\assembly
2010-02-01 17:13:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-01 16:51:05 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Vso
2010-02-01 16:49:29 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\skypePM
2010-01-29 16:13:44 ----A---- C:\WINDOWS\wincmd.ini
2010-01-29 15:55:43 ----D---- C:\WINDOWS\Minidump
2010-01-29 15:55:43 ----D---- C:\totalcmd
2010-01-29 15:55:43 ----D---- C:\Program Files\Skipper1
2010-01-29 15:55:43 ----D---- C:\Program Files\BombRiot
2010-01-29 10:51:36 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\Mozilla
2010-01-29 10:06:44 ----D---- C:\WINDOWS\system32\cs-cz
2010-01-28 23:10:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-01-28 23:10:31 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-01-28 23:07:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-28 23:07:09 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-01-28 23:07:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-01-28 23:06:40 ----D---- C:\Hostomicaci
2010-01-28 23:01:13 ----D---- C:\WINDOWS\system32\config
2010-01-28 23:01:00 ----D---- C:\WINDOWS\Registration
2010-01-28 23:00:22 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\dvdcss
2010-01-28 22:35:10 ----D---- C:\Program Files\Free Easy Burner
2010-01-28 21:28:22 ----D---- C:\Documents and Settings\Uživatel\Data aplikací\vlc
2010-01-27 19:30:30 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-27 19:24:19 ----D---- C:\Program Files\WinRAR
2010-01-27 19:00:25 ----A---- C:\WINDOWS\win.ini
2010-01-25 22:07:16 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-25 21:51:43 ----D---- C:\WINDOWS\Media
2010-01-22 23:54:29 ----D---- C:\WINDOWS\ie7updates
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\wininet(3)(2).dll
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\urlmon(3)(2).dll
2010-01-05 10:58:03 ----A---- C:\WINDOWS\system32\url(3)(2).dll
2010-01-05 10:58:00 ----A---- C:\WINDOWS\system32\iertutil(2)(2).dll
2010-01-05 10:57:58 ----N---- C:\WINDOWS\system32\extmgr.dll
2010-01-04 16:17:48 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-08-11 39424]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 eusk2par;EUTRON SmartKey Parallel Driver; \??\C:\WINDOWS\system32\Drivers\eusk2par.sys []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2010-02-02 56816]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-12-22 2304320]
R3 FETNDISB;VIA Rhine Family Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\fetnd5b.sys [2004-04-15 42496]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-06-19 47360]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2005-03-08 172544]
S1 tvtool;tvtool; \??\C:\Program Files\TVTool 6.8\tvtool.sys []
S3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 NTSIM;NTSIM; \??\C:\WINDOWS\system32\ntsim.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-06-01 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-02-02 153376]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2004-01-14 311296]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------