Další pc preventívka.
Napsal: 06 úno 2010 23:25
Dobrý večer,
Niesom si istý ohľadom toho, či mám pc čistý, nemohli by ste mi to skontrolovať? ďakujem
Logfile of random's system information tool 1.06 (written by random/random)
Run by Matej at 2010-02-06 23:23:08
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 425 GB (89%) free of 477 GB
Total RAM: 2046 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:14, on 6.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\SUPERAntiSpyware\4ffa2a98-f31b-48f2-9ccf-377340794110.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\My Documents\Downloads\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Matej.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: DeviceVM Url Search Hook - {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\WINDOWS\system32\dvmurl.dll
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: QIP 2005 - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\Program Files\QIP\qip.exe (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{C28CE3DE-C973-4432-9412-4D776BC518C8}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AODService - Unknown owner - C:\Program Files\AMD\OverDrive\AODAssist.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
--
End of file - 6945 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-2052111302-682003330-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-2052111302-682003330-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-26 263280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-26 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-26 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files\Steam\Steam.exe [2010-01-01 1217808]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"Google Update"=C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-01-11 135664]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2009-09-15 1998576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GAINWARD]
C:\Program Files\EXPERTool\TBPanel.exe [2009-05-12 2181672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2009-06-10 86016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2009-01-13 18084864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
c:\program files\steam\steam.exe [2010-01-01 1217808]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^McAfee Security Scan.lnk]
C:\PROGRA~1\MCAFEE~1\10BCA1~1.150\SSSCHE~1.EXE []
C:\Documents and Settings\Matej\Start Menu\Programs\Startup
hamachi.lnk - C:\Program Files\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"HonorAutoRunSetting"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Sierra\Empire Earth\Empire Earth.exe"="C:\Program Files\Sierra\Empire Earth\Empire Earth.exe:*:Enabled:Empire Earth"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="C:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\EA GAMES\Battlefield 2\BF2.exe"="C:\Program Files\EA GAMES\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-02-06 19:02:10 ----SHD---- C:\Config.Msi
2010-02-06 19:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-06 19:00:31 ----D---- C:\WINDOWS\LastGood
2010-02-06 06:32:40 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-06 06:32:35 ----D---- C:\Program Files\MSBuild
2010-02-06 06:32:28 ----D---- C:\Program Files\Reference Assemblies
2010-02-06 06:32:10 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-02-06 06:32:09 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-02-06 06:32:09 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-02-06 06:32:09 ----D---- C:\462ea14381f21998bc192f62445b8a
2010-02-05 19:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-05 19:00:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-04 22:10:45 ----RSD---- C:\WINDOWS\assembly
2010-02-04 22:10:25 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-04 22:09:31 ----D---- C:\Program Files\AntikVirtualSTB
2010-02-04 22:00:27 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2010-02-04 22:00:21 ----D---- C:\Program Files\SUPERAntiSpyware
2010-02-04 22:00:21 ----D---- C:\Documents and Settings\Matej\Application Data\SUPERAntiSpyware.com
2010-02-04 21:57:50 ----D---- C:\Program Files\Kerio
2010-02-04 21:25:07 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-04 21:25:04 ----D---- C:\Program Files\Alwil Software
2010-02-04 21:25:04 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software
2010-02-04 21:00:53 ----SHD---- C:\RECYCLER
2010-02-04 21:00:49 ----D---- C:\_OTL
2010-02-04 20:11:50 ----D---- C:\Qoobox
2010-02-04 20:07:46 ----SD---- C:\ComboFix
2010-02-04 19:55:22 ----A---- C:\ComboFix.txt
2010-02-04 19:52:12 ----D---- C:\WINDOWS\temp
2010-02-04 19:22:14 ----A---- C:\Boot.bak
2010-02-04 19:22:07 ----RASHD---- C:\cmdcons
2010-02-04 19:21:08 ----D---- C:\WINDOWS\ERDNT
2010-02-04 19:13:52 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-04 19:13:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-04 19:13:45 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-04 19:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-04 19:13:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-04 19:13:33 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-04 19:13:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-02-04 19:13:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-02-04 19:13:18 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-02-04 19:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-04 19:13:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-04 19:13:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-04 19:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-04 19:12:52 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-02-04 19:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-04 19:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-04 19:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-04 19:12:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-02-04 19:12:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-04 19:12:28 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-04 19:12:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-04 19:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-04 19:12:15 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-04 19:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-04 19:12:06 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-04 19:12:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-04 19:11:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-04 19:11:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-04 19:11:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-04 19:11:43 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-04 19:11:40 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-04 19:11:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-04 19:11:32 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-04 19:11:27 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-04 19:11:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-04 19:11:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-04 19:11:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-04 19:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-02-04 19:11:06 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-04 19:11:04 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-02-04 19:11:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-04 19:10:57 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-04 19:10:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-04 19:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-02-04 19:10:44 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-02-04 19:10:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-04 19:10:28 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-04 19:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-04 19:10:17 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-04 19:10:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-04 19:10:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-02-04 19:10:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-04 19:10:01 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-04 19:09:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-04 19:09:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-04 19:09:48 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-02-04 19:09:45 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-04 19:09:40 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-04 19:09:33 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-04 18:21:45 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-04 18:18:44 ----RAD---- C:\autorun.inf
2010-02-04 18:16:38 ----A---- C:\UsbFix.txt
2010-02-04 17:48:09 ----A---- C:\FixDownadup.exe
2010-02-04 17:06:45 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-02-04 17:06:32 ----D---- C:\Program Files\Common Files\Adobe
2010-02-04 17:06:32 ----D---- C:\Program Files\Adobe
2010-02-03 15:36:21 ----D---- C:\Documents and Settings\Matej\Application Data\teamspeak2
2010-02-03 15:36:10 ----D---- C:\Program Files\Teamspeak2_RC2
2010-02-02 19:02:21 ----N---- C:\WINDOWS\system32\xpsp4res.dll
2010-02-02 19:00:23 ----A---- C:\WINDOWS\imsins.BAK
2010-02-02 19:00:19 ----D---- C:\WINDOWS\system32\PreInstall
2010-02-02 19:00:17 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-02-02 18:50:11 ----D---- C:\UsbFix
2010-02-02 18:18:21 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-02-02 18:15:32 ----D---- C:\_OTM
2010-02-02 18:05:14 ----D---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\wt_menu.dll
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\vbuzip10.DLL
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\ssubtmr6.dll
2010-02-02 18:05:10 ----D---- C:\Program Files\Smarty Uninstaller Pro
2010-02-02 17:55:05 ----D---- C:\rsit
2010-02-02 13:19:46 ----D---- C:\SERIA 1
2010-02-01 09:40:15 ----D---- C:\Program Files\Prime95
2010-02-01 07:49:36 ----AD---- C:\xampp
2010-01-31 19:12:56 ----D---- C:\WINDOWS\system32\Adobe
2010-01-30 23:37:21 ----D---- C:\Stranka
2010-01-30 13:19:13 ----D---- C:\Program Files\CCleaner
2010-01-30 13:00:56 ----D---- C:\Program Files\Trend Micro
2010-01-30 12:38:05 ----D---- C:\Program Files\ESET
2010-01-30 12:38:05 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-01-28 12:50:27 ----D---- C:\mato
2010-01-26 19:31:50 ----D---- C:\WINDOWS\.jagex_cache_32
2010-01-26 19:31:47 ----D---- C:\WINDOWS\Sun
2010-01-26 19:30:16 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2010-01-26 19:30:15 ----D---- C:\Program Files\Common Files\Java
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\java.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-26 19:29:54 ----D---- C:\Program Files\Java
2010-01-26 19:29:35 ----D---- C:\Documents and Settings\Matej\Application Data\Sun
2010-01-18 21:30:50 ----D---- C:\Program Files\Electronic Arts
2010-01-18 21:28:01 ----D---- C:\WINDOWS\RegisteredPackages
2010-01-18 21:27:39 ----A---- C:\WINDOWS\system32\psisdecd.dll
2010-01-18 21:27:37 ----A---- C:\WINDOWS\system32\dxdllreg.exe
2010-01-18 21:27:02 ----RA---- C:\WINDOWS\system32\vp6vfw.dll
2010-01-18 19:53:28 ----D---- C:\Fraps
2010-01-18 07:30:48 ----A---- C:\WINDOWS\system32\msvcr71.dll
2010-01-18 07:30:46 ----A---- C:\WINDOWS\system32\msvcp71.dll
2010-01-17 13:26:58 ----D---- C:\Program Files\BitComet
2010-01-16 21:40:08 ----D---- C:\Program Files\OpenAL
2010-01-16 21:40:08 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2010-01-16 21:40:08 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2010-01-16 21:40:07 ----A---- C:\WINDOWS\galaxy.ini
2010-01-16 12:32:50 ----D---- C:\Program Files\Halflife 2 Episode 2 DeLEGiON
2010-01-14 18:24:58 ----D---- C:\WINDOWS\Eurobattle.net
2010-01-14 18:06:44 ----D---- C:\Program Files\Warcraft III
2010-01-07 15:49:44 ----D---- C:\Documents and Settings\Matej\Application Data\Opera
2010-01-07 15:49:39 ----D---- C:\Program Files\Opera
2010-01-07 14:50:01 ----D---- C:\Documents and Settings\Matej\Application Data\gtk-2.0
2010-01-07 14:41:57 ----D---- C:\Program Files\GIMP-2.0
======List of files/folders modified in the last 1 months======
2010-02-06 23:23:01 ----D---- C:\Documents and Settings\Matej\Application Data\vlc
2010-02-06 23:21:28 ----D---- C:\WINDOWS\Prefetch
2010-02-06 23:18:52 ----D---- C:\Documents and Settings\Matej\Application Data\Skype
2010-02-06 19:03:30 ----SHD---- C:\WINDOWS\Installer
2010-02-06 19:03:19 ----D---- C:\WINDOWS\system32
2010-02-06 19:03:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-06 19:02:57 ----D---- C:\WINDOWS\WinSxS
2010-02-06 19:01:11 ----HD---- C:\WINDOWS\inf
2010-02-06 19:01:10 ----D---- C:\WINDOWS
2010-02-06 19:01:09 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-06 19:01:09 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-06 19:00:59 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-06 16:00:39 ----D---- C:\Documents and Settings\Matej\Application Data\skypePM
2010-02-06 13:40:17 ----D---- C:\Documents and Settings\Matej\Application Data\Hamachi
2010-02-06 13:40:14 ----D---- C:\Program Files\Steam
2010-02-06 11:09:13 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-06 06:32:35 ----RD---- C:\Program Files
2010-02-06 06:32:34 ----D---- C:\WINDOWS\system32\en-us
2010-02-06 06:32:33 ----RSD---- C:\WINDOWS\Fonts
2010-02-06 06:32:16 ----D---- C:\WINDOWS\system32\spool
2010-02-06 06:30:55 ----D---- C:\WINDOWS\system32\mui
2010-02-06 06:30:55 ----D---- C:\Program Files\Internet Explorer
2010-02-05 19:02:56 ----D---- C:\WINDOWS\system32\drivers
2010-02-05 17:01:21 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-05 16:59:21 ----D---- C:\WINDOWS\system32\wbem
2010-02-04 22:31:56 ----D---- C:\Documents and Settings\Matej\Application Data\dvdcss
2010-02-04 22:10:27 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-04 22:10:25 ----D---- C:\WINDOWS\pchealth
2010-02-04 22:00:10 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-02-04 21:58:09 ----A---- C:\WINDOWS\system.ini
2010-02-04 21:57:52 ----SD---- C:\Documents and Settings\Matej\Application Data\Microsoft
2010-02-04 21:18:26 ----D---- C:\WoW 2.4.3 (funkcne)
2010-02-04 21:01:04 ----SHD---- C:\System Volume Information
2010-02-04 21:01:04 ----D---- C:\WINDOWS\system32\Restore
2010-02-04 19:52:19 ----D---- C:\WINDOWS\system32\config
2010-02-04 19:51:41 ----D---- C:\WINDOWS\AppPatch
2010-02-04 19:51:38 ----D---- C:\Program Files\Common Files
2010-02-04 19:22:14 ----RASH---- C:\boot.ini
2010-02-04 19:13:42 ----D---- C:\Program Files\Messenger
2010-02-04 19:11:18 ----D---- C:\Program Files\Outlook Express
2010-02-04 17:07:21 ----D---- C:\Documents and Settings\Matej\Application Data\Adobe
2010-02-04 15:45:10 ----D---- C:\Documents and Settings\Matej\Application Data\TeamViewer
2010-02-03 19:47:37 ----D---- C:\Program Files\Mozilla Firefox
2010-02-03 18:34:03 ----D---- C:\WINDOWS\system32\Macromed
2010-02-02 18:21:28 ----D---- C:\Downloads
2010-02-02 18:18:30 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-02 18:18:28 ----D---- C:\WINDOWS\Help
2010-01-30 13:23:22 ----D---- C:\WINDOWS\Debug
2010-01-30 12:37:34 ----D---- C:\Mato hry
2010-01-18 21:36:07 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-18 21:27:33 ----D---- C:\WINDOWS\system32\DirectX
2010-01-17 13:50:59 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-16 12:59:46 ----D---- C:\Program Files\Lavalys
2010-01-16 12:27:51 ----D---- C:\Films
2010-01-16 11:15:20 ----D---- C:\Program Files\AMD
2010-01-16 08:52:53 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2010-01-11 14:45:43 ----SD---- C:\WINDOWS\Tasks
2010-01-08 16:15:11 ----D---- C:\Program Files\Zaparit
2010-01-07 21:06:09 ----D---- C:\Program Files\BitSpirit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-01-28 28240]
R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-01-28 163280]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-01-28 46672]
R1 fwdrv;Firewall Driver; C:\WINDOWS\system32\drivers\fwdrv.sys [2005-09-26 286720]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 khips;Kerio HIPS Driver; C:\WINDOWS\system32\drivers\khips.sys [2005-09-26 81920]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-01-28 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-01-28 100432]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-01-28 23376]
R3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-01-20 5027840]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-03 8087712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-10-30 117888]
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-01-02 25280]
S3 PnkBstrK;PnkBstrK; \??\C:\WINDOWS\system32\drivers\PnkBstrK.sys []
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-01-01 691696]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-02-05 68136]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-26 153376]
R2 KPF4;Kerio Personal Firewall 4; C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe [2005-10-10 1617920]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-06-10 168004]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-01-02 75064]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2010-01-16 215128]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
S2 AODService;AODService; C:\Program Files\AMD\OverDrive\AODAssist.exe [2009-10-22 136544]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-26 182768]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Niesom si istý ohľadom toho, či mám pc čistý, nemohli by ste mi to skontrolovať? ďakujem
Logfile of random's system information tool 1.06 (written by random/random)
Run by Matej at 2010-02-06 23:23:08
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 425 GB (89%) free of 477 GB
Total RAM: 2046 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:14, on 6.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\SUPERAntiSpyware\4ffa2a98-f31b-48f2-9ccf-377340794110.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Matej\My Documents\Downloads\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Matej.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - URLSearchHook: DeviceVM Url Search Hook - {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\WINDOWS\system32\dvmurl.dll
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: QIP 2005 - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\Program Files\QIP\qip.exe (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{C28CE3DE-C973-4432-9412-4D776BC518C8}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AODService - Unknown owner - C:\Program Files\AMD\OverDrive\AODAssist.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
--
End of file - 6945 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-2052111302-682003330-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1708537768-2052111302-682003330-1004UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-26 263280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-26 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-26 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-01-28 2757512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files\Steam\Steam.exe [2010-01-01 1217808]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"Google Update"=C:\Documents and Settings\Matej\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-01-11 135664]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2009-09-15 1998576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GAINWARD]
C:\Program Files\EXPERTool\TBPanel.exe [2009-05-12 2181672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2009-06-10 86016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2009-01-13 18084864]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
c:\program files\steam\steam.exe [2010-01-01 1217808]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^McAfee Security Scan.lnk]
C:\PROGRA~1\MCAFEE~1\10BCA1~1.150\SSSCHE~1.EXE []
C:\Documents and Settings\Matej\Start Menu\Programs\Startup
hamachi.lnk - C:\Program Files\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=0
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"HonorAutoRunSetting"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\Sierra\Empire Earth\Empire Earth.exe"="C:\Program Files\Sierra\Empire Earth\Empire Earth.exe:*:Enabled:Empire Earth"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat"="C:\Program Files\Steam\steamapps\common\zero gear\ZeroGear.bat:*:Enabled:Zero Gear Demo"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\EA GAMES\Battlefield 2\BF2.exe"="C:\Program Files\EA GAMES\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Crawler Spyware Terminator"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2010-02-06 19:02:10 ----SHD---- C:\Config.Msi
2010-02-06 19:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-06 19:00:31 ----D---- C:\WINDOWS\LastGood
2010-02-06 06:32:40 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-06 06:32:35 ----D---- C:\Program Files\MSBuild
2010-02-06 06:32:28 ----D---- C:\Program Files\Reference Assemblies
2010-02-06 06:32:10 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-02-06 06:32:09 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-02-06 06:32:09 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-02-06 06:32:09 ----D---- C:\462ea14381f21998bc192f62445b8a
2010-02-05 19:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-05 19:00:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-04 22:10:45 ----RSD---- C:\WINDOWS\assembly
2010-02-04 22:10:25 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-04 22:09:31 ----D---- C:\Program Files\AntikVirtualSTB
2010-02-04 22:00:27 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2010-02-04 22:00:21 ----D---- C:\Program Files\SUPERAntiSpyware
2010-02-04 22:00:21 ----D---- C:\Documents and Settings\Matej\Application Data\SUPERAntiSpyware.com
2010-02-04 21:57:50 ----D---- C:\Program Files\Kerio
2010-02-04 21:25:07 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-04 21:25:04 ----D---- C:\Program Files\Alwil Software
2010-02-04 21:25:04 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software
2010-02-04 21:00:53 ----SHD---- C:\RECYCLER
2010-02-04 21:00:49 ----D---- C:\_OTL
2010-02-04 20:11:50 ----D---- C:\Qoobox
2010-02-04 20:07:46 ----SD---- C:\ComboFix
2010-02-04 19:55:22 ----A---- C:\ComboFix.txt
2010-02-04 19:52:12 ----D---- C:\WINDOWS\temp
2010-02-04 19:22:14 ----A---- C:\Boot.bak
2010-02-04 19:22:07 ----RASHD---- C:\cmdcons
2010-02-04 19:21:08 ----D---- C:\WINDOWS\ERDNT
2010-02-04 19:13:52 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-04 19:13:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-04 19:13:45 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-04 19:13:41 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-04 19:13:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-04 19:13:33 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-04 19:13:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-02-04 19:13:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-02-04 19:13:18 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-02-04 19:13:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-04 19:13:10 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-04 19:13:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-04 19:12:56 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-04 19:12:52 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-02-04 19:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-04 19:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-04 19:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-02-04 19:12:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-02-04 19:12:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-04 19:12:28 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-04 19:12:24 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-04 19:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-04 19:12:15 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-04 19:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-04 19:12:06 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-04 19:12:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2010-02-04 19:11:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-04 19:11:54 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-04 19:11:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-04 19:11:43 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-04 19:11:40 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-04 19:11:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-04 19:11:32 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-04 19:11:27 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2010-02-04 19:11:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2010-02-04 19:11:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-04 19:11:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-04 19:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-02-04 19:11:06 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-04 19:11:04 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-02-04 19:11:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-04 19:10:57 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-04 19:10:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-04 19:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2010-02-04 19:10:44 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-02-04 19:10:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-04 19:10:28 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-04 19:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-04 19:10:17 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-04 19:10:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-04 19:10:09 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-02-04 19:10:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-04 19:10:01 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-04 19:09:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-04 19:09:52 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-04 19:09:48 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-02-04 19:09:45 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-04 19:09:40 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-04 19:09:33 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-04 18:21:45 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-04 18:18:44 ----RAD---- C:\autorun.inf
2010-02-04 18:16:38 ----A---- C:\UsbFix.txt
2010-02-04 17:48:09 ----A---- C:\FixDownadup.exe
2010-02-04 17:06:45 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-02-04 17:06:32 ----D---- C:\Program Files\Common Files\Adobe
2010-02-04 17:06:32 ----D---- C:\Program Files\Adobe
2010-02-03 15:36:21 ----D---- C:\Documents and Settings\Matej\Application Data\teamspeak2
2010-02-03 15:36:10 ----D---- C:\Program Files\Teamspeak2_RC2
2010-02-02 19:02:21 ----N---- C:\WINDOWS\system32\xpsp4res.dll
2010-02-02 19:00:23 ----A---- C:\WINDOWS\imsins.BAK
2010-02-02 19:00:19 ----D---- C:\WINDOWS\system32\PreInstall
2010-02-02 19:00:17 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-02-02 18:50:11 ----D---- C:\UsbFix
2010-02-02 18:18:21 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-02-02 18:15:32 ----D---- C:\_OTM
2010-02-02 18:05:14 ----D---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\wt_menu.dll
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\vbuzip10.DLL
2010-02-02 18:05:11 ----A---- C:\WINDOWS\system32\ssubtmr6.dll
2010-02-02 18:05:10 ----D---- C:\Program Files\Smarty Uninstaller Pro
2010-02-02 17:55:05 ----D---- C:\rsit
2010-02-02 13:19:46 ----D---- C:\SERIA 1
2010-02-01 09:40:15 ----D---- C:\Program Files\Prime95
2010-02-01 07:49:36 ----AD---- C:\xampp
2010-01-31 19:12:56 ----D---- C:\WINDOWS\system32\Adobe
2010-01-30 23:37:21 ----D---- C:\Stranka
2010-01-30 13:19:13 ----D---- C:\Program Files\CCleaner
2010-01-30 13:00:56 ----D---- C:\Program Files\Trend Micro
2010-01-30 12:38:05 ----D---- C:\Program Files\ESET
2010-01-30 12:38:05 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-01-28 12:50:27 ----D---- C:\mato
2010-01-26 19:31:50 ----D---- C:\WINDOWS\.jagex_cache_32
2010-01-26 19:31:47 ----D---- C:\WINDOWS\Sun
2010-01-26 19:30:16 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2010-01-26 19:30:15 ----D---- C:\Program Files\Common Files\Java
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\java.exe
2010-01-26 19:30:05 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-26 19:29:54 ----D---- C:\Program Files\Java
2010-01-26 19:29:35 ----D---- C:\Documents and Settings\Matej\Application Data\Sun
2010-01-18 21:30:50 ----D---- C:\Program Files\Electronic Arts
2010-01-18 21:28:01 ----D---- C:\WINDOWS\RegisteredPackages
2010-01-18 21:27:39 ----A---- C:\WINDOWS\system32\psisdecd.dll
2010-01-18 21:27:37 ----A---- C:\WINDOWS\system32\dxdllreg.exe
2010-01-18 21:27:02 ----RA---- C:\WINDOWS\system32\vp6vfw.dll
2010-01-18 19:53:28 ----D---- C:\Fraps
2010-01-18 07:30:48 ----A---- C:\WINDOWS\system32\msvcr71.dll
2010-01-18 07:30:46 ----A---- C:\WINDOWS\system32\msvcp71.dll
2010-01-17 13:26:58 ----D---- C:\Program Files\BitComet
2010-01-16 21:40:08 ----D---- C:\Program Files\OpenAL
2010-01-16 21:40:08 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2010-01-16 21:40:08 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2010-01-16 21:40:07 ----A---- C:\WINDOWS\galaxy.ini
2010-01-16 12:32:50 ----D---- C:\Program Files\Halflife 2 Episode 2 DeLEGiON
2010-01-14 18:24:58 ----D---- C:\WINDOWS\Eurobattle.net
2010-01-14 18:06:44 ----D---- C:\Program Files\Warcraft III
2010-01-07 15:49:44 ----D---- C:\Documents and Settings\Matej\Application Data\Opera
2010-01-07 15:49:39 ----D---- C:\Program Files\Opera
2010-01-07 14:50:01 ----D---- C:\Documents and Settings\Matej\Application Data\gtk-2.0
2010-01-07 14:41:57 ----D---- C:\Program Files\GIMP-2.0
======List of files/folders modified in the last 1 months======
2010-02-06 23:23:01 ----D---- C:\Documents and Settings\Matej\Application Data\vlc
2010-02-06 23:21:28 ----D---- C:\WINDOWS\Prefetch
2010-02-06 23:18:52 ----D---- C:\Documents and Settings\Matej\Application Data\Skype
2010-02-06 19:03:30 ----SHD---- C:\WINDOWS\Installer
2010-02-06 19:03:19 ----D---- C:\WINDOWS\system32
2010-02-06 19:03:19 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-06 19:02:57 ----D---- C:\WINDOWS\WinSxS
2010-02-06 19:01:11 ----HD---- C:\WINDOWS\inf
2010-02-06 19:01:10 ----D---- C:\WINDOWS
2010-02-06 19:01:09 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-06 19:01:09 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-06 19:00:59 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-06 16:00:39 ----D---- C:\Documents and Settings\Matej\Application Data\skypePM
2010-02-06 13:40:17 ----D---- C:\Documents and Settings\Matej\Application Data\Hamachi
2010-02-06 13:40:14 ----D---- C:\Program Files\Steam
2010-02-06 11:09:13 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-06 06:32:35 ----RD---- C:\Program Files
2010-02-06 06:32:34 ----D---- C:\WINDOWS\system32\en-us
2010-02-06 06:32:33 ----RSD---- C:\WINDOWS\Fonts
2010-02-06 06:32:16 ----D---- C:\WINDOWS\system32\spool
2010-02-06 06:30:55 ----D---- C:\WINDOWS\system32\mui
2010-02-06 06:30:55 ----D---- C:\Program Files\Internet Explorer
2010-02-05 19:02:56 ----D---- C:\WINDOWS\system32\drivers
2010-02-05 17:01:21 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-05 16:59:21 ----D---- C:\WINDOWS\system32\wbem
2010-02-04 22:31:56 ----D---- C:\Documents and Settings\Matej\Application Data\dvdcss
2010-02-04 22:10:27 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-04 22:10:25 ----D---- C:\WINDOWS\pchealth
2010-02-04 22:00:10 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-02-04 21:58:09 ----A---- C:\WINDOWS\system.ini
2010-02-04 21:57:52 ----SD---- C:\Documents and Settings\Matej\Application Data\Microsoft
2010-02-04 21:18:26 ----D---- C:\WoW 2.4.3 (funkcne)
2010-02-04 21:01:04 ----SHD---- C:\System Volume Information
2010-02-04 21:01:04 ----D---- C:\WINDOWS\system32\Restore
2010-02-04 19:52:19 ----D---- C:\WINDOWS\system32\config
2010-02-04 19:51:41 ----D---- C:\WINDOWS\AppPatch
2010-02-04 19:51:38 ----D---- C:\Program Files\Common Files
2010-02-04 19:22:14 ----RASH---- C:\boot.ini
2010-02-04 19:13:42 ----D---- C:\Program Files\Messenger
2010-02-04 19:11:18 ----D---- C:\Program Files\Outlook Express
2010-02-04 17:07:21 ----D---- C:\Documents and Settings\Matej\Application Data\Adobe
2010-02-04 15:45:10 ----D---- C:\Documents and Settings\Matej\Application Data\TeamViewer
2010-02-03 19:47:37 ----D---- C:\Program Files\Mozilla Firefox
2010-02-03 18:34:03 ----D---- C:\WINDOWS\system32\Macromed
2010-02-02 18:21:28 ----D---- C:\Downloads
2010-02-02 18:18:30 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-02 18:18:28 ----D---- C:\WINDOWS\Help
2010-01-30 13:23:22 ----D---- C:\WINDOWS\Debug
2010-01-30 12:37:34 ----D---- C:\Mato hry
2010-01-18 21:36:07 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-18 21:27:33 ----D---- C:\WINDOWS\system32\DirectX
2010-01-17 13:50:59 ----D---- C:\Program Files\Common Files\InstallShield
2010-01-16 12:59:46 ----D---- C:\Program Files\Lavalys
2010-01-16 12:27:51 ----D---- C:\Films
2010-01-16 11:15:20 ----D---- C:\Program Files\AMD
2010-01-16 08:52:53 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2010-01-11 14:45:43 ----SD---- C:\WINDOWS\Tasks
2010-01-08 16:15:11 ----D---- C:\Program Files\Zaparit
2010-01-07 21:06:09 ----D---- C:\Program Files\BitSpirit
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-01-28 28240]
R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-01-28 163280]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-01-28 46672]
R1 fwdrv;Firewall Driver; C:\WINDOWS\system32\drivers\fwdrv.sys [2005-09-26 286720]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 khips;Kerio HIPS Driver; C:\WINDOWS\system32\drivers\khips.sys [2005-09-26 81920]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-01-28 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-01-28 100432]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-01-28 23376]
R3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-01-20 5027840]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-03 8087712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-10-30 117888]
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-01-02 25280]
S3 PnkBstrK;PnkBstrK; \??\C:\WINDOWS\system32\drivers\PnkBstrK.sys []
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-01-01 691696]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-02-05 68136]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-26 153376]
R2 KPF4;Kerio Personal Firewall 4; C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe [2005-10-10 1617920]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-06-10 168004]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2010-01-02 75064]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2010-01-16 215128]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-01-28 40384]
S2 AODService;AODService; C:\Program Files\AMD\OverDrive\AODAssist.exe [2009-10-22 136544]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-26 182768]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------