Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Nefunguje help xp

To, co se nehodí jinam..

Moderátor: Moderátoři

Zpráva
Autor
abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Nefunguje help xp

#1 Příspěvek od abcd »

Dobrý den můj problém je podrobně popsán na
http://www.microsoft.com/communities/ne ... &sloc=&p=1

zkoušel jsem to poslední řešení ale bohužel hhsetup.dll nešlo zaregistrovat "nebyl nalezen vstupní bod DllRegisterServer".

předem děkuji za každý příspěvek.

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#2 Příspěvek od stell »

zdravim
vyskusaj utilitu od dougknoxa
http://www.dougknox.com/xp/utils/fix_wi ... p_help.htm
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#3 Příspěvek od abcd »

Tak jsem zkusil ten program ale bohužel hlásí, že je všechno v pořádku a nic neopravil.
:(

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#4 Příspěvek od stell »

hm,skus sem postnut log z RSIT.
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#5 Příspěvek od abcd »

Logfile of random's system information tool 1.06 (written by random/random)
Run by Pavel Prokš at 2010-03-22 21:42:08
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 32 GB (64%) free of 50 GB
Total RAM: 1023 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:42:20, on 22.3.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
M:\VMware\hqtray.exe
C:\WINDOWS\UMStor\Res.EXE
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
T:\Video\Winamp\winampa.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
T:\3ds max2009\mentalray\satellite\raysat_3dsmax9_32server.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\PnkBstrA.exe
T:\Tom\Private Folder\PrfldSvc.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\vmnat.exe
C:\WINDOWS\system32\vmnetdhcp.exe
M:\VMware\vmware-authd.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\mdm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
E:\wincmd\WINCMD32.EXE
M:\RSIT.exe
C:\Program Files\trend micro\Pavel Prokš.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: XTTBPos00 Class - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
O2 - BHO: MultiShop v2.0 - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - C:\PROGRA~1\PIVIMM~1\MULTIS~1.DLL
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: XBTBPos00 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\Pivim Multibar\pivim.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Pivim Multibar - {1BB22D38-A411-4B13-A746-C2A4F4EC7344} - C:\Program Files\Pivim Multibar\pivim.dll
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [VMware hqtray] "M:\VMware\hqtray.exe"
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\WINDOWS\UMStor\Res.EXE
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "T:\Video\quick\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] T:\Video\Winamp\winampa.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = E:\Program Files\Microsoft Office_1\Office\OSA9.EXE
O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Data aplikací\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: MultiShop v2.0 - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - C:\PROGRA~1\PIVIMM~1\MULTIS~1.DLL
O9 - Extra 'Tools' menuitem: MultiShop v2.0 - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - C:\PROGRA~1\PIVIMM~1\MULTIS~1.DLL
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - J:\programy\ICQ\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - J:\programy\ICQ\ICQ7.0\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - J:\Dokumenty\ICQLite\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - J:\Dokumenty\ICQLite\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - J:\programy\ICQ\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - J:\programy\ICQ\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: m:\vmware\vsocklib.dll
O10 - Unknown file in Winsock LSP: m:\vmware\vsocklib.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/s ... wflash.cab
O23 - Service: ANTS Profiler 3 Service - Unknown owner - M:\Visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Služba Google Update (gupdate1c9e8653ca0ca62) (gupdate1c9e8653ca0ca62) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit (mi-raysat_3dsMax2008_32) - Unknown owner - T:\grafika\3dmax\mentalray\satellite\raysat_3dsMax2008_32server.exe (file missing)
O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - T:\3ds max2009\mentalray\satellite\raysat_3dsmax9_32server.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Private Folder Service (prfldsvc) - Unknown owner - T:\Tom\Private Folder\PrfldSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - M:\VMware\vmware-ufad.exe
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - M:\VMware\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O24 - Desktop Component 0: (no name) - http://www.ssamp-krnov.cz/foto/lightbox ... oading.gif

--
End of file - 11379 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\toolbaru.dll [2006-12-25 701952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - E:\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2005-09-24 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}]
Winamp Toolbar Loader - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-05-06 1262888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39AA6D29-4236-4F25-A36A-3410EF5283D9}]
MultiShop v2.0 - C:\PROGRA~1\PIVIMM~1\MULTIS~1.DLL [2009-09-08 893440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C451C08A-EC37-45DF-AAAD-18B51AB5E837}]
PDFCreator Toolbar Helper - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll [2008-02-05 757760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-11 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
XBTBPos00 Class - C:\Program Files\Pivim Multibar\pivim.dll [2009-07-09 2175488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - PDFCreator Toolbar - C:\Program Files\PDFCreator Toolbar\v3.0.0.0\PDFCreator_Toolbar.dll [2008-02-05 757760]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
{1BB22D38-A411-4B13-A746-C2A4F4EC7344} - Pivim Multibar - C:\Program Files\Pivim Multibar\pivim.dll [2009-07-09 2175488]
{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-05-06 1262888]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AudioDeck"=C:\Program Files\VIAudioi\SBADeck\ADeck.exe [2004-09-30 7957504]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe [2006-05-10 90112]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"OpwareSE4"=C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]
"VMware hqtray"=M:\VMware\hqtray.exe [2009-03-26 64048]
"USB Storage Toolbox"=C:\WINDOWS\UMStor\Res.EXE [2005-09-14 65536]
"nod32kui"=C:\Program Files\Eset\nod32kui.exe [2009-11-27 917504]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"QuickTime Task"=T:\Video\quick\QTTask.exe [2009-11-10 417792]
"WinampAgent"=T:\Video\Winamp\winampa.exe [2010-01-12 37888]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-06-01 94208]
"Nero PhotoShow Media Manager"=C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe [2006-05-10 249856]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
T:\Tom\ICQ6.5\ICQ.exe [2009-11-16 172792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ Lite]
J:\Dokumenty\ICQLite\ICQLite\ICQLite.exe -minimize []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Mirabilis ICQ]
T:\Tom\ICQ6\ICQ.exe -minimize []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Pavel Prokš^Nabídka Start^Programy^Po spuštění^utorrent.exe]
C:\Documents and Settings\Pavel Prokš\Nabídka Start\Programy\Po spuštění\utorrent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"AVGEMS"=2
"Avg7UpdSvc"=2
"Avg7Alrt"=2

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Microsoft Office.lnk - E:\Program Files\Microsoft Office_1\Office\OSA9.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-10-04 90112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDriveAutoRun"=4294967295

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"M:\utorrent\utorrent.exe"="M:\utorrent\utorrent.exe:*:Enabled:µTorrent"
"M:\Computer\Miranda IM\miranda32.exe"="M:\Computer\Miranda IM\miranda32.exe:*:Enabled:Miranda IM"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\Microsoft Office2007\Office12\ONENOTE.EXE"="E:\Program Files\Microsoft Office2007\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"T:\Tom\ICQ6.5\ICQ.exe"="T:\Tom\ICQ6.5\ICQ.exe:*:Disabled:ICQ"
"T:\3ds max2009\3dsmax.exe"="T:\3ds max2009\3dsmax.exe:*:Enabled:Autodesk 3ds Max 9 32-bit"
"T:\Hry\BF2\BF2.exe"="T:\Hry\BF2\BF2.exe:*:Enabled:BF2"
"C:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe"="C:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe:*:Enabled:Nero Home"
"C:\WINDOWS\system32\ftp.exe"="C:\WINDOWS\system32\ftp.exe:*:Enabled:Program pro přenos souborů"
"J:\programy\ICQ\ICQ7.0\ICQ.exe"="J:\programy\ICQ\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"J:\programy\ICQ\ICQ7.0\aolload.exe"="J:\programy\ICQ\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"J:\programy\ICQ\ICQ6.5\ICQ.exe"="J:\programy\ICQ\ICQ6.5\ICQ.exe:*:Enabled:ICQ.exe"
"M:\Computer\Xamp\xampp\apache\bin\httpd.exe"="M:\Computer\Xamp\xampp\apache\bin\httpd.exe:*:Disabled:Apache HTTP Server"
"M:\hry\swat4\Content\System\Swat4DedicatedServer.exe"="M:\hry\swat4\Content\System\Swat4DedicatedServer.exe:*:Enabled:SWAT 4"
"M:\hry\quake\quake2.exe"="M:\hry\quake\quake2.exe:*:Enabled:quake2"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"J:\programy\ICQ\ICQ7.0\ICQ.exe"="J:\programy\ICQ\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"J:\programy\ICQ\ICQ7.0\aolload.exe"="J:\programy\ICQ\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"J:\programy\ICQ\ICQ6.5\ICQ.exe"="J:\programy\ICQ\ICQ6.5\ICQ.exe:*:Enabled:ICQ.exe"

======File associations======

.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 months======

28926-01-06 11:15:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\avg8
2010-03-22 21:42:08 ----D---- C:\rsit
2010-03-21 15:31:41 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\Uniblue
2010-03-13 10:24:06 ----A---- C:\WINDOWS\system32\unrar.dll
2010-03-13 10:24:04 ----A---- C:\WINDOWS\avisplitter.ini
2010-03-13 10:23:48 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-03-13 10:23:47 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-03-13 10:23:46 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-03-13 10:23:46 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2010-03-13 10:23:46 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-03-13 10:23:32 ----A---- C:\WINDOWS\system32\divx.dll
2010-03-13 10:23:27 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-03-13 10:23:27 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-02-26 18:54:51 ----A---- C:\WINDOWS\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
2010-02-26 18:54:38 ----A---- C:\WINDOWS\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
2010-02-26 18:53:26 ----D---- C:\WINDOWS\system32\RsFx
2010-02-26 18:51:47 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2010-02-26 18:51:24 ----D---- C:\Program Files\MSXML 6.0
2010-02-26 18:36:32 ----HDC---- C:\WINDOWS\$NtUninstallKB942288-v3$
2010-02-26 18:30:32 ----D---- C:\Program Files\Common Files\Merge Modules
2010-02-26 18:28:36 ----D---- C:\Program Files\Microsoft SDKs
2010-02-25 18:14:12 ----D---- C:\Program Files\Winamp Toolbar
2010-02-25 18:14:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Winamp Toolbar
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\vxblock.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxwave.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxsfs.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxmas.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxdrv.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\pxafs.dll
2010-02-25 18:13:26 ----N---- C:\WINDOWS\system32\px.dll
2010-02-25 18:13:23 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\Winamp
2010-02-24 17:18:42 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$

======List of files/folders modified in the last 1 months======

2010-03-22 21:42:20 ----D---- C:\WINDOWS\Prefetch
2010-03-22 21:42:13 ----D---- C:\Program Files\trend micro
2010-03-22 21:42:12 ----D---- C:\WINDOWS\Temp
2010-03-22 21:40:48 ----A---- C:\WINDOWS\wincmd.ini
2010-03-22 21:34:45 ----D---- C:\Program Files\Common Files\Akamai
2010-03-22 21:26:51 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-22 15:34:49 ----D---- C:\WINDOWS
2010-03-22 15:34:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\VMware
2010-03-22 00:42:23 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-21 15:02:22 ----D---- C:\WINDOWS\system32\CatRoot
2010-03-21 15:00:39 ----HD---- C:\WINDOWS\inf
2010-03-21 15:00:37 ----D---- C:\WINDOWS\system32
2010-03-20 21:40:21 ----SHD---- C:\WINDOWS\Installer
2010-03-20 21:40:21 ----SHD---- C:\Config.Msi
2010-03-20 20:02:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-03-19 16:30:35 ----A---- C:\WINDOWS\wcx_ftp.ini
2010-03-18 22:09:47 ----D---- C:\Program Files\Mozilla Firefox
2010-03-18 19:45:51 ----A---- C:\WINDOWS\NeroDigital.ini
2010-03-18 17:41:12 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\VMware
2010-03-17 19:00:09 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\ICQ
2010-03-15 23:32:33 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\uTorrent
2010-03-14 18:08:33 ----A---- C:\WINDOWS\win.ini
2010-03-14 14:44:02 ----A---- C:\WINDOWS\ChssBase.ini
2010-03-12 00:39:07 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\ChessBase
2010-03-10 15:13:15 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-10 15:13:12 ----D---- C:\Program Files\Movie Maker
2010-03-10 15:12:37 ----HD---- C:\WINDOWS\$hf_mig$
2010-03-08 15:50:47 ----D---- C:\Program Files\ICQ6Toolbar
2010-03-07 15:48:36 ----HD---- C:\Program Files\InstallShield Installation Information
2010-03-03 19:29:53 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-03-03 18:57:11 ----ASH---- C:\boot.ini
2010-03-02 06:30:12 ----A---- C:\WINDOWS\system32\MRT.exe
2010-02-26 20:22:47 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-26 20:22:46 ----RSD---- C:\WINDOWS\assembly
2010-02-26 18:54:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-26 18:53:34 ----D---- C:\Program Files\Microsoft SQL Server
2010-02-26 18:53:26 ----D---- C:\WINDOWS\system32\drivers
2010-02-26 18:51:47 ----RD---- C:\Program Files
2010-02-26 18:51:39 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-26 18:51:12 ----D---- C:\WINDOWS\system32\1033
2010-02-26 18:50:53 ----D---- C:\Program Files\Microsoft.NET
2010-02-26 18:49:35 ----D---- C:\WINDOWS\WinSxS
2010-02-26 18:37:00 ----A---- C:\WINDOWS\imsins.BAK
2010-02-26 18:36:54 ----D---- C:\WINDOWS\system32\mui
2010-02-26 18:34:40 ----SD---- C:\Documents and Settings\Pavel Prokš\Data aplikací\Microsoft
2010-02-26 18:34:40 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-02-26 18:30:32 ----D---- C:\Program Files\Common Files
2010-02-25 13:15:35 ----SD---- C:\WINDOWS\Tasks
2010-02-25 07:05:03 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\OpenOffice.org2
2010-02-23 00:07:16 ----D---- C:\Documents and Settings\Pavel Prokš\Data aplikací\Profis

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-09-03 54368]
R1 vmm;Virtual Machine Monitor; \??\C:\WINDOWS\system32\Drivers\vmm.sys []
R1 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]
R2 AMON;AMON; \??\C:\WINDOWS\system32\drivers\amon.sys []
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys []
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2004-08-03 11868]
R2 Prvflder;Prvflder; C:\WINDOWS\system32\DRIVERS\prvflder.sys [2006-04-21 70912]
R2 Sentinel;Sentinel; C:\WINDOWS\System32\Drivers\SENTINEL.SYS [1999-07-20 73216]
R2 vmci;VMware vmci; \??\C:\WINDOWS\system32\Drivers\vmci.sys []
R2 VMnetBridge;VMware Bridge Protocol; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [2009-03-26 31280]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\WINDOWS\system32\drivers\vmnetuserif.sys []
R2 VMparport;VMware VMparport; \??\C:\WINDOWS\system32\Drivers\VMparport.sys []
R2 vmx86;VMware vmx86; \??\C:\WINDOWS\system32\Drivers\vmx86.sys []
R2 vstor2-ws60;Vstor2 WS60 Virtual Storage Driver; \??\M:\VMware\vstor2-ws60.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-10-04 1754624]
R3 GETNDIS;VIA Networking Velocity Family Giga-bit Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\getnd5b.sys [2003-09-02 44032]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSFDPSP2.sys [2004-08-03 1041536]
R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFBS2S2.sys [2004-08-03 220032]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2004-09-06 161536]
R3 vmkbd;VMware kbd; \??\C:\WINDOWS\system32\drivers\VMkbd.sys []
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys [2009-03-26 16560]
R3 VPCNetS2;Virtual Machine Network Services; C:\WINDOWS\system32\DRIVERS\VMNetSrv.sys [2007-01-29 59280]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSFCXTS2.sys [2004-08-03 685056]
S1 soqwx32;soqwx32; \??\C:\WINDOWS\system32\drivers\soqwx32.sys []
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\WINDOWS\System32\Drivers\adildr.sys []
S2 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 adiusbaw;USB ADSL WAN Adapter; C:\WINDOWS\system32\DRIVERS\adiusbaw.sys []
S3 Bridge;Most MAC; C:\WINDOWS\system32\DRIVERS\bridge.sys [2008-04-13 71552]
S3 BridgeMP;Miniport mostu MAC; C:\WINDOWS\system32\DRIVERS\bridge.sys [2008-04-13 71552]
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 FT31B2;FT31B2 Filter; C:\WINDOWS\system32\DRIVERS\FT31B2.sys [2005-12-29 29765]
S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-11-20 25280]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-07-06 34064]
S3 NPPTNT2;NPPTNT2; \??\C:\WINDOWS\system32\npptNT2.sys []
S3 sermouse;Ovladač sériové myši; C:\WINDOWS\system32\DRIVERS\sermouse.sys [2006-03-02 17664]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 RsFx0102;RsFx0102 Driver; C:\WINDOWS\system32\DRIVERS\RsFx0102.sys [2008-07-10 242712]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Akamai;Akamai NetSession Interface; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-10-04 425984]
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2008-12-12 82584]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
R2 mi-raysat_3dsmax9_32;mental ray 3.5 Satellite (32-bit); T:\3ds max2009\mentalray\satellite\raysat_3dsmax9_32server.exe [2006-09-29 65536]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2008-07-11 40999448]
R2 NOD32krn;NOD32 Kernel Service; C:\Program Files\Eset\nod32krn.exe [2009-11-27 495616]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2008-02-27 66872]
R2 prfldsvc;Private Folder Service; T:\Tom\Private Folder\PrfldSvc.exe [2006-04-21 69632]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
R2 VMAuthdService;VMware Authorization Service; M:\VMware\vmware-authd.exe [2009-03-26 113200]
R2 VMnetDHCP;VMware DHCP Service; C:\WINDOWS\system32\vmnetdhcp.exe [2009-03-26 326192]
R2 VMware NAT Service;VMware NAT Service; C:\WINDOWS\system32\vmnat.exe [2009-03-26 399920]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-10-03 520192]
S2 gupdate1c9e8653ca0ca62;Služba Google Update (gupdate1c9e8653ca0ca62); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-06-08 133104]
S2 mi-raysat_3dsMax2008_32;mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit; T:\grafika\3dmax\mentalray\satellite\raysat_3dsMax2008_32server.exe []
S2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ANTS Profiler 3 Service;ANTS Profiler 3 Service; M:\Visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe []
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Macromedia Licensing Service;Macromedia Licensing Service; C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe [2008-05-26 69632]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-06-22 208896]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-08-31 3264636]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ufad-ws60;VMware Agent Service; M:\VMware\vmware-ufad.exe [2008-12-01 191024]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2008-07-11 47128]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2008-07-11 369688]
S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-07-10 258072]

-----------------EOF-----------------

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#6 Příspěvek od stell »

PROSIM CITAJTE POZORNE NAVODY!!!,

Stáhněte na plochu, ukončete všechna aktivní okna a spusťte>>
http://download.bleepingcomputer.com/sUBs/ComboFix.exe



Suhlasit instalacio Konzoly pre zotavenie (Recovery console)


- ComboFix je třeba spustit pod účtem s právy administrátora.
- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano;

A este raz >ANO<

- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího modreho okna

- Po dokončení skenování, trvajícího maximálně 10-15 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah do svého threadu na forum
- Před použitím ComboFixu je treba vypnout všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary. NAVOD: http://www.bleepingcomputer.com/forums/topic114351.html
Mohou zasahovat do činnosti ComboFixu, což může způsobit, že nebude fungovat korektně.

V případě detekce antiviru u ComboFixu se jedná o falešný poplach.
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#7 Příspěvek od abcd »

ComboFix 10-03-23.01 - Pavel Prokš 23.03.2010 19:05:17.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.1023.544 [GMT 1:00]
Spuštěný z: M:\ComboFix.exe
AV: Eset NOD32 Antivirus 2.50 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\asr3232.dll
c:\windows\system32\ieuinit.inf
c:\windows\system32\ReadMe.txt
c:\windows\system32\SIntf16.dll

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-23 do 2010-03-23 )))))))))))))))))))))))))))))))
.

2010-03-22 20:42 . 2010-03-22 20:42 -------- d-----w- C:\rsit
2010-03-13 09:24 . 2008-09-16 19:23 168448 ----a-w- c:\windows\system32\unrar.dll
2010-03-13 09:23 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-13 09:23 . 2009-05-29 21:31 881664 ----a-w- c:\windows\system32\xvidcore.dll
2010-03-13 09:23 . 2009-05-29 21:37 205824 ----a-w- c:\windows\system32\xvidvfw.dll
2010-03-13 09:23 . 2009-05-01 21:02 90112 ----a-w- c:\windows\system32\dpl100.dll
2010-03-13 09:23 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-13 09:23 . 2009-05-01 21:02 685056 ----a-w- c:\windows\system32\divx.dll
2010-03-13 09:23 . 2009-06-02 16:11 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2010-03-10 08:24 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-02-26 17:54 . 2008-07-11 00:28 50200 ----a-w- c:\windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
2010-02-26 17:54 . 2008-07-11 00:28 79896 ----a-w- c:\windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
2010-02-26 17:53 . 2010-02-26 17:53 -------- d-----w- c:\windows\system32\RsFx
2010-02-26 17:51 . 2010-02-26 17:51 -------- d-----w- c:\program files\Microsoft Visual Studio 9.0
2010-02-26 17:51 . 2010-02-26 17:51 -------- d-----w- c:\program files\MSXML 6.0
2010-02-26 17:30 . 2010-02-26 17:31 -------- d-----w- c:\program files\Common Files\Merge Modules
2010-02-26 17:28 . 2010-02-26 17:28 -------- d-----w- c:\program files\Microsoft SDKs
2010-02-25 17:14 . 2010-02-25 17:14 -------- d-----w- c:\program files\Winamp Toolbar

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-23 18:06 . 2009-11-27 17:03 -------- d-----w- c:\program files\Common Files\Akamai
2010-03-22 20:42 . 2009-10-23 14:19 -------- d-----w- c:\program files\trend micro
2010-03-21 14:19 . 2010-03-21 14:19 8316 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-03-21 14:19 . 2010-03-21 14:18 1840 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-03-21 14:19 . 2010-03-21 14:19 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-03-08 14:50 . 2008-10-10 16:44 -------- d-----w- c:\program files\ICQ6Toolbar
2010-03-07 14:48 . 2007-12-01 19:33 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-26 17:54 . 2006-03-02 12:00 506734 ----a-w- c:\windows\system32\perfh005.dat
2010-02-26 17:54 . 2006-03-02 12:00 108790 ----a-w- c:\windows\system32\perfc005.dat
2010-02-26 17:53 . 2008-04-09 15:17 -------- d-----w- c:\program files\Microsoft SQL Server
2010-02-26 17:50 . 2007-12-02 11:39 -------- d-----w- c:\program files\Microsoft.NET
2010-02-19 13:44 . 2010-02-19 13:44 -------- d-----w- c:\program files\TopCD
2010-02-12 16:08 . 2010-02-12 16:08 -------- d-----w- c:\program files\Common Files\Apple
2010-02-12 16:08 . 2010-02-12 16:08 -------- d-----w- c:\program files\Apple Software Update
2009-12-31 16:50 . 2006-03-02 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}"= "c:\program files\Winamp Toolbar\winamptb.dll" [2009-05-06 1262888]

[HKEY_CLASSES_ROOT\clsid\{57bca5fa-5dbb-45a2-b558-1755c3f6253b}]
[HKEY_CLASSES_ROOT\WINAMPTB.AOLTBSearch.1]
[HKEY_CLASSES_ROOT\TypeLib\{538CD77C-BFDD-49b0-9562-77419CAB89D1}]
[HKEY_CLASSES_ROOT\WINAMPTB.AOLTBSearch]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{39AA6D29-4236-4F25-A36A-3410EF5283D9}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-06-01 94208]
"Nero PhotoShow Media Manager"="c:\progra~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe" [2006-05-10 249856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AudioDeck"="c:\program files\VIAudioi\SBADeck\ADeck.exe" [2004-09-30 7957504]
"ATICCC"="c:\program files\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-05-10 90112]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
"VMware hqtray"="m:\vmware\hqtray.exe" [2009-03-26 64048]
"USB Storage Toolbox"="c:\windows\UMStor\Res.EXE" [2005-09-14 65536]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"QuickTime Task"="t:\video\quick\QTTask.exe" [2009-11-10 417792]
"WinampAgent"="t:\video\Winamp\winampa.exe" [2010-01-12 37888]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Microsoft Office.lnk - e:\program files\Microsoft Office_1\Office\OSA9.EXE [1999-2-17 65588]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sprestrt

[HKLM\~\startupfolder\C:^Documents and Settings^Pavel Prokš^Nabídka Start^Programy^Po spuštění^utorrent.exe]
path=c:\documents and settings\Pavel Prokš\Nabídka Start\Programy\Po spuštění\utorrent.exe
backup=c:\windows\pss\utorrent.exeStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2009-11-16 15:36 172792 ----a-w- t:\tom\ICQ6.5\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"AVGEMS"=2 (0x2)
"Avg7UpdSvc"=2 (0x2)
"Avg7Alrt"=2 (0x2)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Outlook Express"=c:\program files\Outlook Express\msimn.exe

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"nod32kui"="c:\program files\Eset\nod32kui.exe" /WAITSERVICE

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"m:\\utorrent\\utorrent.exe"=
"m:\\Computer\\Miranda IM\\miranda32.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\Program Files\\Microsoft Office2007\\Office12\\ONENOTE.EXE"=
"t:\\Tom\\ICQ6.5\\ICQ.exe"=
"t:\\3ds max2009\\3dsmax.exe"=
"t:\\Hry\\BF2\\BF2.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"=
"c:\\WINDOWS\\system32\\ftp.exe"=
"j:\\programy\\ICQ\\ICQ7.0\\ICQ.exe"=
"j:\\programy\\ICQ\\ICQ7.0\\aolload.exe"=
"j:\\programy\\ICQ\\ICQ6.5\\ICQ.exe"=
"m:\\Computer\\Xamp\\xampp\\apache\\bin\\httpd.exe"=
"m:\\hry\\swat4\\Content\\System\\Swat4DedicatedServer.exe"=
"m:\\hry\\quake\\quake2.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1096:TCP"= 1096:TCP:Akamai NetSession Interface
"5000:UDP"= 5000:UDP:Akamai NetSession Interface

R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [2.3.2006 13:00 14336]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [10.10.2008 17:44 246520]
R2 Prvflder;Prvflder;c:\windows\system32\drivers\prvflder.sys [21.4.2006 8:22 70912]
R2 vmci;VMware vmci;c:\windows\system32\drivers\vmci.sys [26.3.2009 21:58 54960]
R3 GETNDIS;VIA Networking Velocity Family Giga-bit Ethernet Adapter Driver;c:\windows\system32\drivers\getnd5b.sys [1.12.2007 20:16 44032]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.6.2008 19:34 717296]
S1 soqwx32;soqwx32;\??\c:\windows\system32\drivers\soqwx32.sys --> c:\windows\system32\drivers\soqwx32.sys [?]
S2 gupdate1c9e8653ca0ca62;Služba Google Update (gupdate1c9e8653ca0ca62);c:\program files\Google\Update\GoogleUpdate.exe [8.6.2009 19:16 133104]
S3 ANTS Profiler 3 Service;ANTS Profiler 3 Service;"m:\visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe" --> m:\visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe [?]
S3 FT31B2;FT31B2 Filter;c:\windows\system32\drivers\FT31B2.sys [23.1.2008 15:08 29765]
S3 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [6.7.2009 7:47 34064]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [11.7.2008 1:28 47128]
S4 RsFx0102;RsFx0102 Driver;c:\windows\system32\drivers\RsFx0102.sys [10.7.2008 2:49 242712]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [11.7.2008 1:28 369688]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'

2010-03-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-03-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-08 18:16]

2010-03-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-08 18:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
uDefault_Search_URL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
uSearchMigratedDefaultURL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
uSearchAssistant = 687474703a2f2f7777772e476f6f676c652e636f6d2f
mSearchURL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
IE: &Winamp Search - c:\documents and settings\All Users\Data aplikací\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
IE: E&xportovat do aplikace Microsoft Excel - e:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - j:\programy\ICQ\ICQ7.0\ICQ.exe
IE: {{39AA6D29-4236-4F25-A36A-3410EF5283D9} - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - c:\progra~1\PIVIMM~1\MULTIS~1.DLL
LSP: imon.dll
LSP: m:\vmware\vsocklib.dll
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Pavel Prokš\Data aplikací\Mozilla\Firefox\Profiles\ps6m0w3o.default\
FF - prefs.js: browser.search.defaulturl - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampie7&query=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - component: c:\documents and settings\Pavel Prokš\Data aplikací\Mozilla\Firefox\Profiles\ps6m0w3o.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components\WinampTBPlayer.dll
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: e:\adobe\Acrobat 7.0\Reader\browser\nppdf32.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin2.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin3.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin4.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin5.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin6.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin7.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: content.max.tokenizing.time - 200000
FF - user.js: content.notify.interval - 100000
FF - user.js: content.switch.threshold - 650000
FF - user.js: nglayout.initialpaint.delay - 300
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
.
------- Asociace souborů -------
.
.scr=DWGTrueViewScriptFile
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

MSConfigStartUp-ICQ Lite - j:\dokumenty\ICQLite\ICQLite\ICQLite.exe
MSConfigStartUp-Mirabilis ICQ - t:\tom\ICQ6\ICQ.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-23 19:12
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1024)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1080)
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll
.
Celkový čas: 2010-03-23 19:15:03
ComboFix-quarantined-files.txt 2010-03-23 18:14

Před spuštěním: Volných bajtů: 33 399 160 832
Po spuštění: Volných bajtů: 33 960 210 432

WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /noexecute=optin

Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - 5DCCA43A13F840C204580E79D6E0A906

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#8 Příspěvek od stell »

Pri tejto akcii je nutné mať ComboFix na ploche.

Vypni>FIREWALL>Antivir>Antispyware>vsetko rezidentne.

Otvor Notepad (Poznámkový blok) a zkopíruj do neho celý zeleny tex:

Kód: Vybrat vše

KILLALL::
Rootkit::
c:\windows\system32\drivers\soqwx32.sys
c:\windows\system32\GameMon.des
Driver::
soqwx32
npggsvc

DDS::
uDefault_Search_URL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
uSearchMigratedDefaultURL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
uSearchAssistant = 687474703a2f2f7777772e476f6f676c652e636f6d2f
mSearchURL = 687474703a2f2f7777772e476f6f676c652e636f6d2f
IE: &Winamp Search - c:\documents and settings\All Users\Data aplikací\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - j:\programy\ICQ\ICQ7.0\ICQ.exe
IE: {{39AA6D29-4236-4F25-A36A-3410EF5283D9} - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - c:\progra~1\PIVIMM~1\MULTIS~1.DLL
Extra::
FireFox::
FF - ProfilePath - c:\documents and settings\Pavel Prokš\Data aplikací\Mozilla\Firefox\Profiles\ps6m0w3o.default\
FF - prefs.js: browser.search.defaulturl - hxxp://slirsredirect.search.aol.com/sli ... ie7&query=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... id=afex&q=
Registry::
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc]
"ImagePath"=-
Potom klik na Subor -> Uložiť ako.. .. -> Ako je Názov souboru tak do toho riadku napiš:CFScript.txt
Typ súboru tak tam vyberies *všetky súbory
A ulož ho na plochu.> Pozor CFScript.txt>Neotvarat a nemoze byt ani>CFScript.txt.txt A Urobis Toto :
Obrázek

Po skonceni skenu vlož log čo ComboFix vytvorí
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#9 Příspěvek od abcd »

ComboFix 10-03-23.01 - Pavel Prokš 25.03.2010 16:41:45.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.1023.554 [GMT 1:00]
Spuštěný z: M:\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Pavel Prokš\Plocha\CFScript.txt
AV: Eset NOD32 Antivirus 2.50 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Data aplikací\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html

.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_npggsvc
-------\Service_soqwx32


((((((((((((((((((((((((( Soubory vytvořené od 2010-02-25 do 2010-03-25 )))))))))))))))))))))))))))))))
.

2010-03-22 20:42 . 2010-03-22 20:42 -------- d-----w- C:\rsit
2010-03-13 09:24 . 2008-09-16 19:23 168448 ----a-w- c:\windows\system32\unrar.dll
2010-03-13 09:23 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-03-13 09:23 . 2009-05-29 21:31 881664 ----a-w- c:\windows\system32\xvidcore.dll
2010-03-13 09:23 . 2009-05-29 21:37 205824 ----a-w- c:\windows\system32\xvidvfw.dll
2010-03-13 09:23 . 2009-05-01 21:02 90112 ----a-w- c:\windows\system32\dpl100.dll
2010-03-13 09:23 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-03-13 09:23 . 2009-05-01 21:02 685056 ----a-w- c:\windows\system32\divx.dll
2010-03-13 09:23 . 2009-06-02 16:11 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2010-03-10 08:24 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-02-26 17:54 . 2008-07-11 00:28 50200 ----a-w- c:\windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.0.1600.22.dll
2010-02-26 17:54 . 2008-07-11 00:28 79896 ----a-w- c:\windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.0.1600.22.dll
2010-02-26 17:53 . 2010-02-26 17:53 -------- d-----w- c:\windows\system32\RsFx
2010-02-26 17:51 . 2010-02-26 17:51 -------- d-----w- c:\program files\Microsoft Visual Studio 9.0
2010-02-26 17:51 . 2010-02-26 17:51 -------- d-----w- c:\program files\MSXML 6.0
2010-02-26 17:30 . 2010-02-26 17:31 -------- d-----w- c:\program files\Common Files\Merge Modules
2010-02-26 17:28 . 2010-02-26 17:28 -------- d-----w- c:\program files\Microsoft SDKs
2010-02-25 17:14 . 2010-02-25 17:14 -------- d-----w- c:\program files\Winamp Toolbar

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-25 15:52 . 2009-11-27 17:03 -------- d-----w- c:\program files\Common Files\Akamai
2010-03-22 20:42 . 2009-10-23 14:19 -------- d-----w- c:\program files\trend micro
2010-03-21 14:19 . 2010-03-21 14:19 8316 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-03-21 14:19 . 2010-03-21 14:18 1840 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-03-21 14:19 . 2010-03-21 14:19 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-03-08 14:50 . 2008-10-10 16:44 -------- d-----w- c:\program files\ICQ6Toolbar
2010-03-07 14:48 . 2007-12-01 19:33 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-26 17:54 . 2006-03-02 12:00 506734 ----a-w- c:\windows\system32\perfh005.dat
2010-02-26 17:54 . 2006-03-02 12:00 108790 ----a-w- c:\windows\system32\perfc005.dat
2010-02-26 17:53 . 2008-04-09 15:17 -------- d-----w- c:\program files\Microsoft SQL Server
2010-02-26 17:50 . 2007-12-02 11:39 -------- d-----w- c:\program files\Microsoft.NET
2010-02-19 13:44 . 2010-02-19 13:44 -------- d-----w- c:\program files\TopCD
2010-02-12 16:08 . 2010-02-12 16:08 -------- d-----w- c:\program files\Common Files\Apple
2010-02-12 16:08 . 2010-02-12 16:08 -------- d-----w- c:\program files\Apple Software Update
2009-12-31 16:50 . 2006-03-02 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
.

((((((((((((((((((((((((((((( SnapShot@2010-03-23_18.12.09 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-03-25 15:52 . 2010-03-25 15:52 16384 c:\windows\Temp\Perflib_Perfdata_944.dat
+ 2010-03-25 15:52 . 2010-03-25 15:52 16384 c:\windows\Temp\Perflib_Perfdata_2f8.dat
+ 2010-03-25 15:52 . 2010-03-25 15:52 16384 c:\windows\Temp\Perflib_Perfdata_1ec.dat
- 2007-12-02 11:40 . 2010-03-20 19:02 35088 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\oisicon.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 35088 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\oisicon.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 18704 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\mspicons.exe
- 2007-12-02 11:40 . 2010-03-20 19:02 18704 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\mspicons.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 20240 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\cagicon.exe
- 2007-12-02 11:40 . 2010-03-20 19:02 20240 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\cagicon.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 69120 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\xlicons.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 69120 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\xlicons.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 35328 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\wordicon.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 35328 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\wordicon.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 30208 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\pptico.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 30208 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\pptico.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 11264 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\PEicons.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 11264 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\PEicons.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 28160 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\misc.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 28160 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\misc.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 73216 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\fpicon.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 73216 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\fpicon.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 22528 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\bindico.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 22528 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\bindico.exe
- 2007-12-02 11:40 . 2010-03-20 19:02 888080 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 888080 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\wordicon.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 922384 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\pptico.exe
- 2007-12-02 11:40 . 2010-03-20 19:02 922384 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\pptico.exe
+ 2007-12-02 11:40 . 2010-03-24 17:47 217864 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\misc.exe
- 2007-12-02 11:40 . 2010-03-20 19:02 217864 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\misc.exe
- 2009-02-15 21:17 . 2010-03-20 19:02 184080 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\joticon.exe
+ 2009-02-15 21:17 . 2010-03-24 17:47 184080 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-03-24 17:46 . 2010-03-24 17:46 217864 c:\windows\Installer\{90120000-006E-0405-0000-0000000FF1CE}\misc.exe
- 2010-03-20 19:01 . 2010-03-20 19:01 217864 c:\windows\Installer\{90120000-006E-0405-0000-0000000FF1CE}\misc.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 104960 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\outicon.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 104960 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\outicon.exe
- 2007-12-02 11:04 . 2010-03-20 20:40 155136 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\accicons.exe
+ 2007-12-02 11:04 . 2010-03-23 19:13 155136 c:\windows\Installer\{00010405-78E1-11D2-B60F-006097C998E7}\accicons.exe
- 2009-02-15 21:17 . 2010-03-20 19:02 1172240 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\xlicons.exe
+ 2009-02-15 21:17 . 2010-03-24 17:47 1172240 c:\windows\Installer\{91120000-002F-0000-0000-0000000FF1CE}\xlicons.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}"= "c:\program files\Winamp Toolbar\winamptb.dll" [2009-05-06 1262888]

[HKEY_CLASSES_ROOT\clsid\{57bca5fa-5dbb-45a2-b558-1755c3f6253b}]
[HKEY_CLASSES_ROOT\WINAMPTB.AOLTBSearch.1]
[HKEY_CLASSES_ROOT\TypeLib\{538CD77C-BFDD-49b0-9562-77419CAB89D1}]
[HKEY_CLASSES_ROOT\WINAMPTB.AOLTBSearch]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{39AA6D29-4236-4F25-A36A-3410EF5283D9}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-06-01 94208]
"Nero PhotoShow Media Manager"="c:\progra~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe" [2006-05-10 249856]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AudioDeck"="c:\program files\VIAudioi\SBADeck\ADeck.exe" [2004-09-30 7957504]
"ATICCC"="c:\program files\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-05-10 90112]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
"VMware hqtray"="m:\vmware\hqtray.exe" [2009-03-26 64048]
"USB Storage Toolbox"="c:\windows\UMStor\Res.EXE" [2005-09-14 65536]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
"QuickTime Task"="t:\video\quick\QTTask.exe" [2009-11-10 417792]
"WinampAgent"="t:\video\Winamp\winampa.exe" [2010-01-12 37888]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2009-11-26 917504]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Microsoft Office.lnk - e:\program files\Microsoft Office_1\Office\OSA9.EXE [1999-2-17 65588]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sprestrt

[HKLM\~\startupfolder\C:^Documents and Settings^Pavel Prokš^Nabídka Start^Programy^Po spuštění^utorrent.exe]
path=c:\documents and settings\Pavel Prokš\Nabídka Start\Programy\Po spuštění\utorrent.exe
backup=c:\windows\pss\utorrent.exeStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2009-11-16 15:36 172792 ----a-w- t:\tom\ICQ6.5\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"AVGEMS"=2 (0x2)
"Avg7UpdSvc"=2 (0x2)
"Avg7Alrt"=2 (0x2)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Outlook Express"=c:\program files\Outlook Express\msimn.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"m:\\utorrent\\utorrent.exe"=
"m:\\Computer\\Miranda IM\\miranda32.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\Program Files\\Microsoft Office2007\\Office12\\ONENOTE.EXE"=
"t:\\Tom\\ICQ6.5\\ICQ.exe"=
"t:\\3ds max2009\\3dsmax.exe"=
"t:\\Hry\\BF2\\BF2.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"=
"c:\\WINDOWS\\system32\\ftp.exe"=
"j:\\programy\\ICQ\\ICQ7.0\\ICQ.exe"=
"j:\\programy\\ICQ\\ICQ7.0\\aolload.exe"=
"j:\\programy\\ICQ\\ICQ6.5\\ICQ.exe"=
"m:\\Computer\\Xamp\\xampp\\apache\\bin\\httpd.exe"=
"m:\\hry\\swat4\\Content\\System\\Swat4DedicatedServer.exe"=
"m:\\hry\\quake\\quake2.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1032:TCP"= 1032:TCP:Akamai NetSession Interface
"5000:UDP"= 5000:UDP:Akamai NetSession Interface

R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [2.3.2006 13:00 14336]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [10.10.2008 17:44 246520]
R2 Prvflder;Prvflder;c:\windows\system32\drivers\prvflder.sys [21.4.2006 8:22 70912]
R2 vmci;VMware vmci;c:\windows\system32\drivers\vmci.sys [26.3.2009 21:58 54960]
R3 GETNDIS;VIA Networking Velocity Family Giga-bit Ethernet Adapter Driver;c:\windows\system32\drivers\getnd5b.sys [1.12.2007 20:16 44032]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.6.2008 19:34 717296]
S2 gupdate1c9e8653ca0ca62;Služba Google Update (gupdate1c9e8653ca0ca62);c:\program files\Google\Update\GoogleUpdate.exe [8.6.2009 19:16 133104]
S3 ANTS Profiler 3 Service;ANTS Profiler 3 Service;"m:\visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe" --> m:\visual\ANTS Profiler 3\RedGate.Profiler.IISProfileHost.exe [?]
S3 FT31B2;FT31B2 Filter;c:\windows\system32\drivers\FT31B2.sys [23.1.2008 15:08 29765]
S3 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [6.7.2009 7:47 34064]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\sqladhlp.exe [11.7.2008 1:28 47128]
S4 RsFx0102;RsFx0102 Driver;c:\windows\system32\drivers\RsFx0102.sys [10.7.2008 2:49 242712]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [11.7.2008 1:28 369688]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Akamai REG_MULTI_SZ Akamai
.
Obsah adresáře 'Naplánované úlohy'

2010-03-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-08 18:16]

2010-03-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-08 18:16]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
uSearchAssistant = 687474703a2f2f7777772e476f6f676c652e636f6d2f
IE: E&xportovat do aplikace Microsoft Excel - e:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - j:\programy\ICQ\ICQ7.0\ICQ.exe
IE: {{39AA6D29-4236-4F25-A36A-3410EF5283D9} - {39AA6D29-4236-4F25-A36A-3410EF5283D9} - c:\progra~1\PIVIMM~1\MULTIS~1.DLL
LSP: imon.dll
LSP: m:\vmware\vsocklib.dll
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Pavel Prokš\Data aplikací\Mozilla\Firefox\Profiles\ps6m0w3o.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz
FF - component: c:\documents and settings\Pavel Prokš\Data aplikací\Mozilla\Firefox\Profiles\ps6m0w3o.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components\WinampTBPlayer.dll
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: e:\adobe\Acrobat 7.0\Reader\browser\nppdf32.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin2.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin3.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin4.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin5.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin6.dll
FF - plugin: t:\video\quick\Plugins\npqtplugin7.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: content.max.tokenizing.time - 200000
FF - user.js: content.notify.interval - 100000
FF - user.js: content.switch.threshold - 650000
FF - user.js: nglayout.initialpaint.delay - 300
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
.
------- Asociace souborů -------
.
.scr=DWGTrueViewScriptFile
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-25 16:53
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1028)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'lsass.exe'(1084)
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll

- - - - - - - > 'explorer.exe'(2440)
c:\program files\ScanSoft\OmniPageSE4\OpHookSE4.dll
c:\windows\system32\msi.dll
c:\windows\system32\imon.dll
c:\program files\Eset\pr_imon.dll
c:\windows\system32\WPDShServiceObj.dll
t:\tom\Private Folder\ShellExt.dll
c:\windows\system32\PFLib.dll
e:\virtual pc\VPCShExH.DLL
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
c:\program files\Java\jre6\bin\jqs.exe
t:\3ds max2009\mentalray\satellite\raysat_3dsmax9_32server.exe
c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
c:\program files\Eset\nod32krn.exe
c:\windows\system32\PnkBstrA.exe
t:\tom\Private Folder\PrfldSvc.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\ATI Technologies\ATI.ACE\CLI.EXE
c:\windows\system32\vmnat.exe
c:\windows\system32\vmnetdhcp.exe
m:\vmware\vmware-authd.exe
c:\program files\ATI Technologies\ATI.ACE\cli.exe
c:\program files\ATI Technologies\ATI.ACE\cli.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2010-03-25 16:57:38 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-03-25 15:57
ComboFix2.txt 2010-03-23 18:15

Před spuštěním: Volných bajtů: 33 920 831 488
Po spuštění: Volných bajtů: 33 769 824 256

Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - E8EBF309EEF266E51883ABD256C1533A

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#10 Příspěvek od stell »

Skus spustit ten program od dougknoxa a a napis ci uz funguje help,este dal log z OTL:
Stahni OTListIt2>> OTL
- spust
-zafajkni
-Scan all users.
-Lop check.
-Purity check.
-v sekciiExtra Registry>zaboduj>Use SafeList
- klik Run SCAN
-scan trva [10-15 min]>.potom vloz sem
-OTL.txt (bude na ploche).
-Extras.txt [bude dole na hlavnom panely]
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#11 Příspěvek od abcd »

Zkoušel jsem ten OTL, ale bohužel zkončil chybou ('1/1/2099 12:00' is not a valid date and time) a bez logu.
Nápověda stále nejede. Tohle to dělá ve wordu:
Obrázek

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#12 Příspěvek od stell »

('1/1/2099 12:00' is not a valid date and time)

Nastav datum aj cas,aky datum a cas ,,ty tam mas nastavene v pc??
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#13 Příspěvek od abcd »

Datum a čas mám nastavený správně. Jak v dolní liště tak systemový vypsaný pomocí date a time v příkazové řádce. Trochu to nechápu. :shock:

Uživatelský avatar
stell
VIP
VIP
Příspěvky: 5175
Registrován: 09 pro 2007 09:27
Bydliště: SK-REVUCA
Kontaktovat uživatele:

Re: Nefunguje help xp

#14 Příspěvek od stell »

No ani ja uz teraz nechapem,pises
Nefunguje help xp
ale ako vidim tebe nefunguje help microsoft sadu office a nie pre xp.
Takze odinstaluj a znova nainstaluj,
Stiahni http://downloads.malwareremoval.com/CKScanner.exe CKScanner na plochu. Spust program dvojklikom na ikonu. Otvori sa okno, v nom klik na "Search For Files". Zacne scan, po jeho skonceni klikni na "Save List To File" -> "OK". Na ploche by sa mal objavit subor s nazvom CKFiles.txt, jeho obsah mi sem skopiruj.
Dôležité informácie.
NEŠLAPE Vám počítač?
Je zavirovaný? Šlape pomalu? Nefunguje program? Problém s instalací?
Využíjte služby vzdálené pomoci!
Obrázek
e-mail: stell(zavináč)forum.viry.cz
Thanks! Vďaka!

Obrázek

abcd
Návštěvník
Návštěvník
Příspěvky: 8
Registrován: 23 říj 2009 14:11

Re: Nefunguje help xp

#15 Příspěvek od abcd »

:D konec trápení reinstal pomohl a ted všechno jede na čisté instalaci XP.
Díííííííík moc za všechny příspěvky. :worship:
:closed:

Odpovědět