Dobrý den jak už sem jednou psal mam problem se souborem sshnas21.dll zde je vypis ze souboru RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by user at 2010-03-02 19:56:51
Microsoft Windows 7 Ultimate Service Pack 3
System drive C: has 70 GB (38%) free of 187 GB
Total RAM: 3070 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:56:55, on 2.3.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
D:\Hardware\Keyboard Driver\OEMDriver.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Skype\Phone\Skype.exe
D:\Hardware\ICQ7.0\ICQ.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Program Files\vghd\VirtuaGirl_downloader.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Users\user\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\user\Desktop\RSIT.exe
C:\Program Files\trend micro\user.exe
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://search13.net/search.php?clid=486&q=%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search13.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: (no name) - *{855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - *{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: GdfrDUEn - {A3CF7606-E683-4375-A372-96B75DA0AEF7} - C:\Program Files\Stylish Profile\enlbrdr.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [KBDriver] D:\Hardware\Keyboard Driver\OEMDriver.exe
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [WebcamMaxMoniter] "D:\Hardware\WebcamMax\wcmmon.exe" /a
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [BSPlayer_WhenUSave_Installer] C:\Program Files\BSPlayer_WhenUSave_Installer\BSPlayer_WhenUSave_Installer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Hardware\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Hardware\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Internet Download Accelerator] D:\Hardware\IDA\ida.exe -autorun
O4 - HKCU\..\Run: [Steam] "D:\Hardware\Steam.exe" -silent
O4 - HKCU\..\Run: [LosAlamos] rundll32.exe C:\Users\user\AppData\Local\Temp\sshnas21.dll,AttachConsoleA
O4 - HKCU\..\Run: [F5JMWNZTHI] C:\Users\user\AppData\Local\Temp\Mzh.exe
O4 - HKCU\..\Run: [ICQ] "D:\Hardware\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [RGSC] D:\HRY\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Adobe Live.lnk = C:\Program Files\JRE\Folding@home.exe
O4 - Startup: DesktopVideoPlayer.LNK = C:\Program Files\vghd\vghd.exe
O4 - Startup: MSASCul.exe
O4 - Startup: OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Hardware\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\Hardware\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra 'Tools' menuitem: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\Hardware\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - D:\Hardware\ICQ7.0\ICQ.exe
O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
O13 - Gopher Prefix:
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... ader55.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MySQL - Unknown owner - D:\Hardware\MySQL\MySQL.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 10958 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000UA.job
C:\Windows\tasks\Norton Security Scan for user.job
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-01-04 1484056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3CF7606-E683-4375-A372-96B75DA0AEF7}]
GdfrDUEn Class - C:\Program Files\Stylish Profile\enlbrdr.dll [2010-01-07 185344]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2009-07-14 150768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-16 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-01-03 1019128]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-04-10 4431872]
"Skytel"=C:\Windows\Skytel.exe [2007-04-04 1822720]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-02-12 174872]
"KBDriver"=D:\Hardware\Keyboard Driver\OEMDriver.exe [2004-08-25 151552]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"WebcamMaxMoniter"=D:\Hardware\WebcamMax\wcmmon.exe [2007-08-01 450048]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-01-05 2033432]
"BSPlayer_WhenUSave_Installer"=C:\Program Files\BSPlayer_WhenUSave_Installer\BSPlayer_WhenUSave_Installer.exe [2006-03-22 149504]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-16 149280]
"Adobe Reader Speed Launcher"=D:\Hardware\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2009-07-14 144384]
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2009-12-10 401728]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
"DAEMON Tools Lite"=D:\Hardware\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2010-01-23 2937528]
"Google Update"=C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-23 135664]
"Internet Download Accelerator"=D:\Hardware\IDA\ida.exe -autorun []
"Steam"=D:\Hardware\Steam.exe [2010-02-25 1217872]
"LosAlamos"=C:\Users\user\AppData\Local\Temp\sshnas21.dll,AttachConsoleA []
"F5JMWNZTHI"=C:\Users\user\AppData\Local\Temp\Mzh.exe []
"ICQ"=D:\Hardware\ICQ7.0\ICQ.exe [2010-02-11 133368]
"RGSC"=D:\HRY\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2010-02-21 306088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Microsoft Office.lnk - D:\Hardware\Microsoft Office\Office10\OSA.EXE
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Live.lnk - C:\Program Files\JRE\Folding@home.exe
DesktopVideoPlayer.LNK - C:\Program Files\vghd\vghd.exe
MSASCul.exe
OpenOffice.org 3.1.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"legalnoticetext"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b4e412ad-efa6-11de-b345-806e6f6e6963}]
shell\AutoRun\command - E:\autorun.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS3\dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-03-02 19:54:48 ----D---- C:\rsit
2010-03-02 19:54:48 ----D---- C:\Program Files\trend micro
2010-03-01 22:42:13 ----D---- C:\Windows\system32\AGEIA
2010-03-01 22:42:13 ----D---- C:\Program Files\AGEIA Technologies
2010-03-01 22:41:11 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-03-01 21:55:22 ----D---- C:\HRY
2010-02-28 05:52:11 ----D---- C:\ProgramData\Symantec
2010-02-28 05:52:11 ----D---- C:\ProgramData\Norton
2010-02-28 05:52:11 ----D---- C:\Program Files\Norton Security Scan
2010-02-28 05:52:08 ----D---- C:\ProgramData\NortonInstaller
2010-02-28 05:52:08 ----D---- C:\Program Files\NortonInstaller
2010-02-28 02:50:16 ----D---- C:\Windows\system32\Adobe
2010-02-26 20:28:31 ----D---- C:\Users\user\AppData\Roaming\OpenOffice.org
2010-02-26 20:26:53 ----D---- C:\Program Files\OpenOffice.org 3
2010-02-26 20:19:32 ----D---- C:\ProgramData\FLEXnet
2010-02-25 17:19:46 ----D---- C:\Program Files\Bonjour
2010-02-25 17:18:38 ----D---- C:\Program Files\Adobe
2010-02-25 17:15:26 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-02-24 21:38:52 ----D---- C:\Users\user\AppData\Roaming\GHISLER
2010-02-21 21:35:42 ----D---- C:\Program Files\JRE
2010-02-21 14:05:19 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-02-21 14:05:19 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-02-21 13:43:20 ----A---- C:\Windows\system32\CmdLineExt.dll
2010-02-21 13:41:01 ----D---- C:\Windows\system32\xlive
2010-02-21 13:41:01 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2010-02-19 03:40:13 ----D---- C:\Users\user\AppData\Roaming\TeamViewer
2010-02-17 07:36:58 ----A---- C:\Windows\Burnout(TM) Paradise The Ultimate Box Patch Log.txt
2010-02-16 03:21:50 ----D---- C:\ProgramData\Electronic Arts
2010-02-16 03:12:43 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-02-16 03:12:43 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-02-16 03:12:42 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-02-16 03:12:41 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-02-16 03:12:23 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-02-16 02:06:00 ----A---- C:\Windows\IsUninst.exe
2010-02-15 00:09:58 ----D---- C:\Program Files\Common Files\Borland Shared
2010-02-15 00:09:27 ----A---- C:\Windows\IsUn0405.exe
2010-02-15 00:08:28 ----D---- C:\Program Files\GeoBáze
2010-02-14 02:11:15 ----A---- C:\Windows\PROTOCOL.INI
2010-02-14 02:10:35 ----A---- C:\Windows\uninst.exe
2010-02-06 02:01:00 ----D---- C:\Windows\PCHEALTH
2010-02-05 21:59:48 ----D---- C:\Program Files\Google
2010-02-05 16:02:12 ----A---- C:\Windows\system32\xvidcore.dll
2010-02-04 21:47:43 ----D---- C:\Program Files\LS
======List of files/folders modified in the last 1 months======
2010-03-02 19:54:48 ----RD---- C:\Program Files
2010-03-02 19:54:01 ----D---- C:\Users\user\AppData\Roaming\Skype
2010-03-02 19:28:50 ----D---- C:\Windows\system32\config
2010-03-02 19:19:22 ----D---- C:\Windows\Temp
2010-03-02 19:15:51 ----D---- C:\Users\user\AppData\Roaming\skypePM
2010-03-02 14:57:12 ----D---- C:\Windows\system32\drivers
2010-03-02 12:52:05 ----D---- C:\Windows\Prefetch
2010-03-02 06:00:24 ----D---- C:\Program Files\Common Files\Steam
2010-03-02 05:59:26 ----D---- C:\Users\user\AppData\Roaming\ICQ
2010-03-01 22:42:31 ----SHD---- C:\Windows\Installer
2010-03-01 22:42:31 ----D---- C:\Windows\system32\catroot
2010-03-01 22:42:31 ----D---- C:\Windows
2010-03-01 22:42:29 ----D---- C:\Windows\system32\DriverStore
2010-03-01 22:42:29 ----D---- C:\Windows\inf
2010-03-01 22:42:14 ----D---- C:\Windows\System32
2010-03-01 22:41:48 ----SHD---- C:\System Volume Information
2010-03-01 22:41:11 ----D---- C:\Program Files\Common Files
2010-02-28 05:52:21 ----D---- C:\Windows\Tasks
2010-02-28 05:52:21 ----D---- C:\Windows\system32\Tasks
2010-02-28 05:52:11 ----HD---- C:\ProgramData
2010-02-28 02:52:56 ----D---- C:\Windows\system32\Macromed
2010-02-26 20:29:22 ----D---- C:\ProgramData\Adobe
2010-02-26 20:28:00 ----RSD---- C:\Windows\assembly
2010-02-26 20:27:14 ----RSD---- C:\Windows\Fonts
2010-02-26 20:21:53 ----D---- C:\Users\user\AppData\Roaming\Adobe
2010-02-26 19:57:01 ----D---- C:\Windows\winsxs
2010-02-26 19:56:37 ----D---- C:\Program Files\Common Files\Adobe
2010-02-25 23:46:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-22 15:05:55 ----D---- C:\Windows\system32\wdi
2010-02-21 21:40:51 ----SD---- C:\Users\user\AppData\Roaming\Microsoft
2010-02-21 12:43:14 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-12 19:46:49 ----D---- C:\Program Files\vghd
2010-02-12 19:11:10 ----D---- C:\ProgramData\avg9
2010-02-06 02:07:55 ----SD---- C:\ProgramData\Microsoft
2010-02-06 02:06:29 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-06 02:00:51 ----D---- C:\Program Files\Microsoft Games
2010-02-03 01:12:11 ----D---- C:\ProgramData\AVG Security Toolbar
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2010-01-04 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2010-01-04 28424]
R1 AvgTdiX;AVG Free Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2010-01-04 360584]
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys [2009-07-14 35328]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys [2009-07-14 78336]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2009-07-14 32256]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2009-07-14 16896]
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys [2009-07-14 6656]
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys [2009-07-14 7168]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2009-07-14 74240]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2009-07-14 63488]
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys [2009-07-14 9728]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys [2009-07-14 48128]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2009-07-14 86528]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2009-07-14 586752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys [2009-07-14 60928]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2009-07-14 34816]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-08-18 4994560]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2009-07-14 69632]
R3 circlass;Uživatelská infračervená zařízení; C:\Windows\system32\DRIVERS\circlass.sys [2009-07-14 37888]
R3 CmBatt;Ovladač baterie Microsoft ACPI Control Method Battery; C:\Windows\system32\DRIVERS\CmBatt.sys [2009-07-14 14080]
R3 CompositeBus;Ovladač rozpoznávacího modulu složené sběrnice; C:\Windows\system32\DRIVERS\CompositeBus.sys [2009-07-14 31232]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2009-07-14 720896]
R3 HDAudBus;Ovladač sběrnice Microsoft UAA pro zvuk High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys [2009-07-14 108544]
R3 HidIr;Ovladač infračerveného portu HID Microsoft; C:\Windows\system32\DRIVERS\hidir.sys [2009-07-14 37888]
R3 HidUsb;Ovladač třídy standardu HID Microsoft; C:\Windows\system32\DRIVERS\hidusb.sys [2009-07-14 24064]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-04-10 1764960]
R3 intelppm;Ovladač procesoru Intel; C:\Windows\system32\DRIVERS\intelppm.sys [2009-07-14 53760]
R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-01-08 46592]
R3 kbdhid;Ovladač klávesnice standardu HID; C:\Windows\system32\DRIVERS\kbdhid.sys [2009-07-14 28160]
R3 monitor;Služba ovladače funkce třídy monitorů Microsoft; C:\Windows\system32\DRIVERS\monitor.sys [2009-07-14 23552]
R3 mouhid;Ovladač myši standardu HID; C:\Windows\system32\DRIVERS\mouhid.sys [2009-07-14 26112]
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys [2009-07-14 60416]
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys [2009-07-14 221184]
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys [2009-07-14 95744]
R3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys [2009-07-14 267264]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys [2009-07-14 49152]
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys [2009-07-14 75264]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys [2009-07-14 18944]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-02-16 70144]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys [2009-07-14 306688]
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [2009-07-14 113664]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys [2009-07-14 108544]
R3 umbus;Ovladač sběrnice UMBus Enumerator; C:\Windows\system32\DRIVERS\umbus.sys [2009-07-14 39936]
R3 usbehci;Ovladač miniportu vylepšeného hostitelského řadiče Microsoft USB 2.0; C:\Windows\system32\DRIVERS\usbehci.sys [2009-07-14 41472]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\Windows\system32\DRIVERS\usbhub.sys [2009-07-14 258560]
R3 usbuhci;Ovladač miniportu univerzálního hostitelského řadiče Microsoft USB; C:\Windows\system32\DRIVERS\usbuhci.sys [2009-07-14 24064]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2009-07-14 11264]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
S3 1394ohci;1394 OHCI Compliant Host Controller; C:\Windows\system32\DRIVERS\1394ohci.sys [2009-07-14 163328]
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys [2009-07-14 9728]
S3 adp94xx;adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [2009-07-14 422976]
S3 adpahci;adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [2009-07-14 297552]
S3 adpu320;adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [2009-07-14 146512]
S3 agp440;Intel AGP Bus Filter; C:\Windows\system32\DRIVERS\agp440.sys [2009-07-14 53312]
S3 aln4nuw9;aln4nuw9; C:\Windows\system32\drivers\aln4nuw9.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 amdide;amdide; C:\Windows\system32\DRIVERS\amdide.sys [2009-07-14 14912]
S3 AmdK8;AMD K8 Processor Driver; C:\Windows\system32\DRIVERS\amdk8.sys [2009-07-14 55296]
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys [2009-07-14 52736]
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [2009-07-14 79952]
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys [2009-07-14 159312]
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys [2009-07-14 50176]
S3 arc;arc; C:\Windows\system32\DRIVERS\arc.sys [2009-07-14 76368]
S3 arcsas;arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [2009-07-14 86608]
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbdx.sys [2009-07-13 430080]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\DRIVERS\BrFiltLo.sys [2009-07-13 13568]
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\DRIVERS\BrFiltUp.sys [2009-07-13 5248]
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys [2009-07-14 272128]
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys [2009-07-13 62336]
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys [2009-07-13 12160]
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys [2009-07-13 11904]
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\DRIVERS\bthmodem.sys [2009-07-14 56320]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbdx.sys [2009-07-13 3100160]
S3 elxstor;elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [2009-07-14 453712]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys [2009-07-14 7168]
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys [2009-07-14 142336]
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys [2009-07-14 28160]
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys [2009-07-14 46160]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\DRIVERS\gagp30kx.sys [2009-07-14 57936]
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys [2009-07-13 26624]
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys [2009-07-14 21504]
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\DRIVERS\hidbth.sys [2009-07-14 91136]
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys [2009-07-14 67152]
S3 iaStorV;iaStorV; C:\Windows\system32\DRIVERS\iaStorV.sys [2009-07-14 332352]
S3 iirsp;iirsp; C:\Windows\system32\DRIVERS\iirsp.sys [2009-07-14 41040]
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys [2009-07-14 65536]
S3 isapnp;isapnp; C:\Windows\system32\DRIVERS\isapnp.sys [2009-07-14 46656]
S3 iScsiPrt;iScsiPort Driver; C:\Windows\system32\DRIVERS\msiscsi.sys [2009-07-14 186960]
S3 LSI_FC;LSI_FC; C:\Windows\system32\DRIVERS\lsi_fc.sys [2009-07-14 95824]
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\DRIVERS\lsi_sas.sys [2009-07-14 89168]
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys [2009-07-14 54864]
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\DRIVERS\lsi_scsi.sys [2009-07-14 96848]
S3 megasas;megasas; C:\Windows\system32\DRIVERS\megasas.sys [2009-07-14 30800]
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys [2009-07-14 235584]
S3 mpio;mpio; C:\Windows\system32\DRIVERS\mpio.sys [2009-07-14 130624]
S3 msahci;msahci; C:\Windows\system32\DRIVERS\msahci.sys [2009-07-14 27712]
S3 msdsm;msdsm; C:\Windows\system32\DRIVERS\msdsm.sys [2009-07-14 115792]
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys [2009-07-14 4096]
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys [2009-07-14 162896]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2009-07-14 6144]
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys [2009-07-14 12288]
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys [2009-07-14 27136]
S3 nfrd960;nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [2009-07-14 44624]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2009-10-06 17664]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2009-10-06 22016]
S3 nv_agp;NVIDIA nForce AGP Bus Filter; C:\Windows\system32\DRIVERS\nv_agp.sys [2009-07-14 105024]
S3 nvraid;nvraid; C:\Windows\system32\DRIVERS\nvraid.sys [2009-07-14 117312]
S3 nvstor;nvstor; C:\Windows\system32\DRIVERS\nvstor.sys [2009-07-14 142416]
S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy); C:\Windows\system32\DRIVERS\ohci1394.sys [2009-07-14 62464]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 ql2300;ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [2009-07-14 1383488]
S3 ql40xx;ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [2009-07-14 106064]
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys [2009-07-14 31744]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sbp2port;sbp2port; C:\Windows\system32\DRIVERS\sbp2port.sys [2009-07-14 85568]
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys [2009-07-14 26624]
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\DRIVERS\sermouse.sys [2009-07-14 19968]
S3 sffdisk;SFF Storage Class Driver; C:\Windows\system32\DRIVERS\sffdisk.sys [2009-07-14 11264]
S3 sffp_mmc;SFF Storage Protocol Driver for MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys [2009-07-14 12288]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys [2009-07-14 12800]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\DRIVERS\SiSRaid2.sys [2009-07-14 40016]
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\DRIVERS\sisraid4.sys [2009-07-14 77888]
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys [2009-07-14 71168]
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys [2009-07-14 21072]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys [2009-07-14 1285712]
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys [2009-07-14 30208]
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\DRIVERS\uagp35.sys [2009-07-14 55888]
S3 uliagpkx;Uli AGP Bus Filter; C:\Windows\system32\DRIVERS\uliagpkx.sys [2009-07-14 57424]
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2009-07-14 8192]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-10-06 7936]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\Windows\system32\DRIVERS\usbccgp.sys [2009-07-14 75264]
S3 usbcir;eHome Infrared Receiver (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys [2009-07-14 86016]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbohci.sys [2009-07-14 20480]
S3 usbprint;Microsoft USB PRINTER Class; C:\Windows\system32\DRIVERS\usbprint.sys [2009-07-14 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-10-06 7936]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\Windows\system32\DRIVERS\USBSTOR.SYS [2009-07-14 74752]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2009-07-14 146176]
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys [2009-07-14 26112]
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys [2009-07-14 159824]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsmraid;vsmraid; C:\Windows\system32\DRIVERS\vsmraid.sys [2009-07-14 141904]
S3 vwifibus;@%SystemRoot%\System32\drivers\vwifibus.sys,-257; C:\Windows\System32\drivers\vwifibus.sys [2009-07-14 19968]
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\DRIVERS\wacompen.sys [2009-07-14 21632]
S3 Wd;Wd; C:\Windows\system32\DRIVERS\wd.sys [2009-07-14 19024]
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S3 XDva281;XDva281; \??\C:\Windows\system32\XDva281.sys []
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\DRIVERS\crcdisk.sys [2009-07-14 22096]
S4 ws2ifsl;@%systemroot%\System32\drivers\ws2ifsl.sys,-1000; C:\Windows\system32\drivers\ws2ifsl.sys [2009-07-14 16384]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-08-18 176128]
R2 AudioEndpointBuilder;@%SystemRoot%\system32\audiosrv.dll,-204; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 avg9emc;AVG Free E-mail Scanner; C:\Program Files\AVG\AVG9\avgemc.exe [2010-01-04 906520]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-01-04 285392]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 gpsvc;@gpapi.dll,-112; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-02-12 355096]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MySQL;MySQL; D:\Hardware\MySQL\MySQL Server 5.1\bin\mysqld --defaults-file=D:\Hardware\MySQL\MySQL Server 5.1\my.ini MySQL []
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe [2009-07-14 3179520]
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 UxSms;@%SystemRoot%\system32\dwm.exe,-2000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Wlansvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files\Windows Media Player\wmpnetwk.exe [2009-07-14 1121280]
R2 WSearch;@%systemroot%\system32\SearchIndexer.exe,-103; C:\Windows\system32\SearchIndexer.exe [2009-07-14 428032]
R2 wudfsvc;@%SystemRoot%\system32\wudfsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2009-06-10 42856]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 KeyIso;@keyiso.dll,-100; C:\Windows\system32\lsass.exe [2009-07-14 22528]
R3 netprofm;@%SystemRoot%\system32\netprofm.dll,-202; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-05 135664]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-06-10 66384]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe [2009-07-14 22528]
S3 ehRecvr;@%SystemRoot%\ehome\ehrecvr.exe,-101; C:\Windows\ehome\ehRecvr.exe [2009-07-14 557056]
S3 ehSched;@%SystemRoot%\ehome\ehsched.exe,-101; C:\Windows\ehome\ehsched.exe [2009-07-14 94720]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2009-07-14 522752]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-25 654848]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2009-06-10 878416]
S3 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 IPBusEnum;@%systemroot%\system32\IPBusEnum.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 KtmRm;@comres.dll,-2946; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2010-01-04 3670928]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\Windows\System32\snmptrap.exe [2009-07-14 12800]
S3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-03-02 332720]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TBS;@%SystemRoot%\system32\tbssvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\Windows\servicing\TrustedInstaller.exe [2009-07-14 204800]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\Windows\system32\UI0Detect.exe [2009-07-14 35840]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe [2009-07-14 22528]
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\Windows\System32\vds.exe [2009-07-14 452608]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2009-07-14 1202688]
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WPCSvc;@%SystemRoot%\system32\wpcsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WPDBusEnum;@%SystemRoot%\system32\wpdbusenum.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WwanSvc;@%SystemRoot%\System32\wwansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 Mcx2Svc;@%SystemRoot%\ehome\ehres.dll,-15501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201; C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-06-10 128848]
S4 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Dekuji za pomoc

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
sshnas21.dll Error
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119402
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: sshnas21.dll Error
Dejte log z Combofix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: sshnas21.dll Error
Zde to je
ComboFix 10-03-01.04 - user 02.03.2010 20:38:54.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.3070.2111 [GMT 1:00]
Spuštěný z: c:\users\user\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
SP: AVG Anti-Virus Free *enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-2152478756-3922319563-605102323-500
C:\install.exe
c:\windows\patchw.dll
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
c:\windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-02 do 2010-03-02 )))))))))))))))))))))))))))))))
.
2010-03-02 18:54 . 2010-03-02 18:57 -------- d-----w- C:\rsit
2010-03-02 18:54 . 2010-03-02 18:56 -------- d-----w- c:\program files\trend micro
2010-03-01 21:42 . 2010-03-01 21:42 -------- d-----w- c:\program files\AGEIA Technologies
2010-03-01 21:42 . 2010-03-01 21:42 -------- d-----w- c:\windows\system32\AGEIA
2010-03-01 21:41 . 2010-03-01 21:41 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-01 20:55 . 2010-03-01 20:56 -------- d-----w- C:\HRY
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\Norton
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\windows\system32\drivers\NSS
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\Symantec
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\program files\Norton Security Scan
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\NortonInstaller
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\program files\NortonInstaller
2010-02-28 01:50 . 2010-02-28 01:50 -------- d-----w- c:\windows\system32\Adobe
2010-02-27 00:49 . 2010-02-27 00:49 -------- d-----w- c:\users\user\AppData\Local\GHISLER
2010-02-26 19:28 . 2010-02-26 19:28 1 ----a-w- c:\users\user\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-02-26 19:28 . 2010-02-26 19:28 -------- d-----w- c:\users\user\AppData\Roaming\OpenOffice.org
2010-02-26 19:26 . 2010-02-26 19:26 -------- d-----w- c:\program files\OpenOffice.org 3
2010-02-26 19:19 . 2007-03-20 13:49 2781184 ----a-w- c:\users\user\AppData\Roaming\Adobe\Dreamweaver 9\Configuration\Flash Player\authplay.dll
2010-02-26 19:19 . 2010-02-26 19:19 -------- d-----w- c:\programdata\FLEXnet
2010-02-25 21:58 . 2010-02-25 21:58 -------- d-----w- c:\users\user\AppData\Local\Aspyr
2010-02-25 16:30 . 2009-06-04 08:40 43872 ------w- c:\windows\system32\drivers\PxHelp20.sys
2010-02-25 16:30 . 2009-06-04 08:40 9200 ------w- c:\windows\system32\drivers\cdralw2k.sys
2010-02-25 16:30 . 2009-06-04 08:40 9072 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2010-02-25 16:19 . 2010-02-25 16:19 -------- d-----w- c:\program files\Bonjour
2010-02-25 16:15 . 2010-02-25 16:15 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2010-02-24 20:38 . 2010-02-24 20:43 -------- d-----w- c:\users\user\AppData\Roaming\GHISLER
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2010-02-21 20:35 . 2010-02-21 20:35 -------- d-----w- c:\program files\JRE
2010-02-21 13:05 . 2009-09-04 16:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2010-02-21 13:05 . 2009-09-04 16:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2010-02-21 12:45 . 2010-02-21 20:37 -------- d-----w- c:\users\user\AppData\Local\Rockstar Games
2010-02-21 12:43 . 2010-02-21 12:43 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-21 12:41 . 2010-02-21 13:05 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-02-21 12:41 . 2010-02-21 12:41 -------- d-----w- c:\windows\system32\xlive
2010-02-19 02:40 . 2010-02-19 02:43 -------- d-----w- c:\users\user\AppData\Roaming\TeamViewer
2010-02-16 09:06 . 2010-02-16 09:06 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-02-16 02:22 . 2010-02-16 02:22 -------- d-----w- c:\users\user\AppData\Local\Criterion Games
2010-02-16 02:21 . 2010-02-16 02:21 -------- d-----w- c:\programdata\Electronic Arts
2010-02-16 02:20 . 2010-02-16 02:20 2154 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2010-02-16 02:19 . 2010-02-16 02:19 -------- d-----w- c:\users\user\AppData\Local\Downloaded Installations
2010-02-16 02:12 . 2008-10-27 09:04 514384 ----a-w- c:\windows\system32\XAudio2_3.dll
2010-02-16 02:12 . 2008-10-27 09:04 70992 ----a-w- c:\windows\system32\XAPOFX1_2.dll
2010-02-16 02:12 . 2008-10-27 09:04 235856 ----a-w- c:\windows\system32\xactengine3_3.dll
2010-02-16 02:12 . 2008-10-27 09:04 23376 ----a-w- c:\windows\system32\X3DAudio1_5.dll
2010-02-16 02:12 . 2007-03-05 11:42 15128 ----a-w- c:\windows\system32\x3daudio1_1.dll
2010-02-16 01:06 . 1997-12-17 17:33 304128 ----a-w- c:\windows\IsUninst.exe
2010-02-15 14:13 . 2010-02-15 14:13 64099864 ----a-w- c:\users\user\AppData\Roaming\Nokia\Ovi Suite\Software Updater\NokiaOviSuite2Installer.exe
2010-02-14 23:09 . 2010-02-14 23:09 -------- d-----w- c:\program files\Common Files\Borland Shared
2010-02-14 23:09 . 1998-11-13 12:58 307200 ----a-w- c:\windows\IsUn0405.exe
2010-02-14 23:08 . 2010-02-14 23:08 -------- d-----w- c:\program files\GeoBáze
2010-02-14 01:10 . 1999-03-23 08:12 299520 ----a-w- c:\windows\uninst.exe
2010-02-06 01:01 . 2010-02-06 01:01 -------- d-----w- c:\windows\PCHEALTH
2010-02-05 20:59 . 2010-02-05 21:00 -------- d-----w- c:\program files\Google
2010-02-05 15:02 . 2006-11-01 13:52 765952 ----a-w- c:\windows\system32\xvidcore.dll
2010-02-05 11:47 . 2010-02-04 17:46 52224 ----a-w- c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
2010-02-05 11:47 . 2010-02-04 17:46 101376 ----a-w- c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
2010-02-04 20:47 . 2010-02-04 20:47 -------- d-----w- c:\program files\LS
2010-02-03 00:54 . 2009-04-30 13:05 79905 ----a-w- c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MSASCul.exe
2010-02-03 00:12 . 2009-11-25 12:01 1230080 ----a-w- c:\programdata\AVG Security Toolbar\IEToolbar.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-02 19:36 . 2010-01-04 20:45 -------- d-----w- c:\users\user\AppData\Roaming\Skype
2010-03-02 18:15 . 2010-01-04 20:48 -------- d-----w- c:\users\user\AppData\Roaming\skypePM
2010-03-02 05:00 . 2010-01-29 19:38 -------- d-----w- c:\program files\Common Files\Steam
2010-03-02 04:59 . 2010-01-04 20:41 -------- d-----w- c:\users\user\AppData\Roaming\ICQ
2010-02-26 20:01 . 2010-01-09 21:24 69728 ----a-w- c:\users\user\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-26 18:56 . 2010-01-24 13:54 -------- d-----w- c:\program files\Common Files\Adobe
2010-02-25 22:46 . 2009-07-14 08:44 622660 ----a-w- c:\windows\system32\perfh005.dat
2010-02-25 22:46 . 2009-07-14 08:44 118810 ----a-w- c:\windows\system32\perfc005.dat
2010-02-21 11:43 . 2009-12-23 10:11 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-14 23:08 . 2010-02-14 23:08 -------- d-----w- c:\program files\GeoBáze
2010-02-12 18:46 . 2010-01-21 20:11 -------- d-----w- c:\program files\vghd
2010-02-12 18:11 . 2010-01-04 22:10 -------- d-----w- c:\programdata\avg9
2010-02-06 01:00 . 2009-07-14 04:52 -------- d-----w- c:\program files\Microsoft Games
2010-02-03 00:12 . 2010-01-04 22:11 -------- d-----w- c:\programdata\AVG Security Toolbar
2010-01-31 16:18 . 2010-01-31 16:17 -------- d-----w- c:\users\user\AppData\Roaming\fretsonfire
2010-01-28 02:24 . 2010-01-28 02:21 -------- d-----w- c:\users\user\AppData\Roaming\Internet Download Accelerator
2010-01-27 16:27 . 2010-01-04 20:42 -------- d-----w- c:\program files\ICQ6Toolbar
2010-01-27 16:27 . 2010-01-04 20:42 -------- d-----w- c:\programdata\ICQ
2010-01-24 13:52 . 2010-01-24 13:52 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-01-24 13:52 . 2010-01-24 13:52 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-01-23 22:10 . 2010-01-23 22:10 -------- d-----w- c:\programdata\Media Center Programs
2010-01-23 13:42 . 2010-01-06 17:34 -------- d-----w- c:\users\user\AppData\Roaming\DivX
2010-01-23 12:36 . 2010-01-21 20:11 5 ----a-w- c:\windows\sbacknt.bin
2010-01-23 12:35 . 2010-01-21 20:11 152904 ----a-w- c:\windows\system32\vghd.scr
2010-01-23 05:55 . 2010-01-23 05:55 -------- d-----w- c:\program files\Outspark
2010-01-23 05:40 . 2010-01-23 05:40 -------- d-----w- c:\programdata\PMB Files
2010-01-23 05:40 . 2010-01-23 05:40 -------- d-----w- c:\program files\Pando Networks
2010-01-21 20:11 . 2010-01-21 20:11 -------- d-----w- c:\users\user\AppData\Roaming\vghd
2010-01-20 20:07 . 2010-01-20 20:07 -------- d-----w- c:\program files\Common Files\INCA Shared
2010-01-20 06:34 . 2010-01-20 06:34 -------- d-----w- c:\programdata\MySQL
2010-01-20 06:06 . 2010-01-20 06:06 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-01-20 04:36 . 2010-01-20 04:36 -------- d-----w- c:\programdata\Blizzard
2010-01-20 04:15 . 2010-01-20 04:15 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2010-01-19 19:16 . 2010-01-19 00:43 -------- d-----w- c:\users\user\AppData\Roaming\DAEMON Tools Lite
2010-01-19 00:48 . 2010-01-19 00:48 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-01-19 00:47 . 2010-01-10 11:02 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-01-19 00:46 . 2010-01-19 00:43 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-01-18 06:30 . 2010-01-18 06:30 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-01-17 03:07 . 2010-01-17 03:06 -------- d-----w- c:\program files\Stylish Profile
2010-01-16 01:51 . 2010-01-16 01:48 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-16 01:51 . 2010-01-16 01:51 -------- d-----w- c:\program files\Java
2010-01-15 19:03 . 2010-01-15 19:03 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-01-15 19:03 . 2010-01-15 19:03 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-01-15 01:11 . 2010-01-05 16:23 737280 ----a-w- c:\windows\iun6002.exe
2010-01-14 11:53 . 2010-01-14 11:53 -------- d-----w- c:\users\user\AppData\Roaming\BSplayer
2010-01-14 11:53 . 2010-01-14 11:53 -------- d-----w- c:\program files\BSPlayer_WhenUSave_Installer
2010-01-13 21:42 . 2010-01-04 19:21 98304 ----a-w- c:\programdata\NexonEU\NGM\nxgameeu.dll
2010-01-13 21:42 . 2010-01-04 19:21 81920 ----a-w- c:\programdata\NexonEU\NGM\npNxGameeu.dll
2010-01-13 21:42 . 2010-01-04 19:21 532480 ----a-w- c:\programdata\NexonEU\NGM\NGMDll.dll
2010-01-13 21:42 . 2010-01-04 19:21 331776 ----a-w- c:\programdata\NexonEU\NGM\NGMResource.dll
2010-01-13 21:42 . 2010-01-04 19:21 258352 ----a-w- c:\programdata\NexonEU\NGM\unicows.dll
2010-01-13 21:42 . 2010-01-04 19:21 155648 ----a-w- c:\programdata\NexonEU\NGM\NGM.exe
2010-01-11 03:01 . 2010-01-07 02:53 -------- d-----w- c:\program files\Nokia
2010-01-11 02:57 . 2010-01-11 02:57 -------- d-----w- c:\programdata\Nokia
2010-01-11 02:55 . 2010-01-11 02:55 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-01-11 02:55 . 2010-01-11 02:55 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2010-01-10 13:55 . 2010-01-10 13:55 -------- d-----w- c:\program files\SimBin
2010-01-10 11:02 . 2010-01-10 11:02 -------- d-----w- c:\users\user\AppData\Roaming\DAEMON Tools
2010-01-09 21:19 . 2010-01-09 21:19 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Plocha
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Oblíbené položky
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Šablony
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Nabídka Start
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Dokumenty
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Data aplikací
2010-01-09 20:58 . 2010-01-09 20:58 21496 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-09 20:54 . 2010-01-09 02:32 -------- d-----w- c:\users\user\AppData\Roaming\SPORE
2010-01-09 20:54 . 2010-01-05 16:43 -------- d-----w- c:\users\user\AppData\Roaming\Uniblue
2010-01-09 20:54 . 2010-01-04 21:13 -------- d-----w- c:\users\user\AppData\Roaming\Webcammax
2010-01-09 20:54 . 2010-01-09 19:49 -------- d-----w- c:\users\user\AppData\Roaming\Nokia
2010-01-09 20:54 . 2010-01-09 19:49 -------- d-----w- c:\users\user\AppData\Roaming\PC Suite
2010-01-09 20:54 . 2010-01-09 02:06 -------- d--h--r- c:\users\user\AppData\Roaming\SecuROM
2010-01-09 20:54 . 2010-01-05 16:52 -------- d-----w- c:\users\user\AppData\Roaming\Nero
2010-01-09 20:53 . 2009-12-23 10:16 -------- d-----w- c:\users\user\AppData\Roaming\InstallShield
2010-01-09 20:53 . 2009-12-23 10:20 -------- d-----w- c:\users\user\AppData\Roaming\ATI
2010-01-09 20:47 . 2010-01-07 03:01 -------- d-----w- c:\program files\PC Connectivity Solution
2010-01-09 20:47 . 2010-01-09 16:33 -------- d-----w- c:\program files\Microsoft Windows 7 Upgrade Advisor
2010-01-09 20:47 . 2009-12-23 10:06 -------- d-----w- c:\program files\Intel
2010-01-09 20:47 . 2010-01-07 03:03 -------- d-----w- c:\program files\DIFX
2010-01-09 20:47 . 2010-01-04 20:44 -------- d-----w- c:\program files\Common Files\Skype
2010-01-09 20:47 . 2010-01-07 03:04 -------- d-----w- c:\program files\Common Files\Nokia
2010-01-09 20:47 . 2010-01-05 16:50 -------- d-----w- c:\program files\Common Files\Nero
2010-01-09 20:47 . 2009-12-23 10:11 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-09 20:47 . 2010-01-04 16:59 -------- d-----w- c:\program files\Common Files\Apple
2010-01-09 20:47 . 2010-01-04 22:10 -------- d-----w- c:\program files\AVG
2010-01-09 20:47 . 2009-12-23 10:09 -------- d-----w- c:\program files\ATI Technologies
2010-01-09 20:47 . 2010-01-04 16:59 -------- d-----w- c:\program files\Apple Software Update
2010-01-09 20:47 . 2009-12-23 10:09 -------- d-----w- c:\program files\ATI
2010-01-09 20:43 . 2010-01-09 20:43 0 ----a-w- c:\windows\ativpsrm.bin
2010-01-09 20:43 . 2010-01-09 20:43 -------- d-----w- c:\program files\Motorola
2010-01-07 02:54 . 2010-01-07 02:54 12212040 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X86-ENU.exe
2010-01-07 02:54 . 2010-01-07 02:54 13930312 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X64-ENU.exe
2010-01-07 02:53 . 2010-01-07 02:53 77824 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\Run_XML6_SP1.exe
2010-01-07 02:53 . 2010-01-07 02:53 61440 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMF11Runx86.exe
2010-01-07 02:53 . 2010-01-07 02:53 58880 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMF11Runx64.exe
2010-01-07 02:53 . 2010-01-07 02:53 50000 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\pcswpc.exe
2010-01-07 02:53 . 2010-01-07 02:53 95992424 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Nokia_Ovi_Suite_11_update.exe
2010-01-06 02:01 . 2010-01-06 02:01 -------- d-----w- c:\program files\MSXML 4.0
2010-01-04 22:11 . 2010-01-04 22:11 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-01-04 22:11 . 2010-01-04 22:11 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}"= "c:\users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll" [2009-07-14 150768]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{a55f9c95-2bb1-4ea2-bc77-dfaab78832ce}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO.1]
[HKEY_CLASSES_ROOT\TypeLib\{45FF696B-5284-4781-B2CA-ECF3A742A17B}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO]
[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-11-25 12:01 1230080 ----a-w- c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3CF7606-E683-4375-A372-96B75DA0AEF7}]
2010-01-07 06:51 185344 ----a-w- c:\program files\Stylish Profile\enlbrdr.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
2009-07-14 16:14 150768 ----a-w- c:\users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2009-07-14 144384]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2009-12-10 401728]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"DAEMON Tools Lite"="d:\hardware\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Pando Media Booster"="c:\program files\Pando Networks\Media Booster\PMB.exe" [2010-01-23 2937528]
"Google Update"="c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-23 135664]
"Steam"="d:\hardware\Steam.exe" [2010-02-25 1217872]
"ICQ"="d:\hardware\ICQ7.0\ICQ.exe" [2010-02-11 133368]
"RGSC"="d:\hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2010-02-21 306088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2006-11-22 630784]
"RtHDVCpl"="RtHDVCpl.exe" [2007-04-10 4431872]
"Skytel"="Skytel.exe" [2007-04-04 1822720]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-02-12 174872]
"KBDriver"="d:\hardware\Keyboard Driver\OEMDriver.exe" [2004-08-25 151552]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
"WebcamMaxMoniter"="d:\hardware\WebcamMax\wcmmon.exe" [2007-08-01 450048]
"BSPlayer_WhenUSave_Installer"="c:\program files\BSPlayer_WhenUSave_Installer\BSPlayer_WhenUSave_Installer.exe" [2006-03-22 149504]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-16 149280]
"Adobe Reader Speed Launcher"="d:\hardware\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Live.lnk - c:\program files\JRE\Folding@home.exe [2010-2-21 452608]
DesktopVideoPlayer.LNK - c:\program files\vghd\vghd.exe [2010-1-21 423248]
MSASCul.exe [2009-4-30 79905]
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Microsoft Office.lnk - d:\hardware\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\setup\disabledrunkeys]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [4.1.2010 23:11 333192]
R1 AvgTdiX;AVG Free Network Redirector;c:\windows\System32\drivers\avgtdix.sys [4.1.2010 23:11 360584]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\System32\atiesrxx.exe [18.8.2009 2:36 176128]
R2 avg9emc;AVG Free E-mail Scanner;c:\program files\AVG\AVG9\avgemc.exe [4.1.2010 23:10 906520]
R2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [4.1.2010 23:10 285392]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [4.1.2010 21:42 246520]
R3 itecir;ITECIR Infrared Receiver;c:\windows\System32\drivers\itecir.sys [8.1.2007 12:38 46592]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\System32\drivers\netw5v32.sys [10.6.2009 22:18 4231168]
S0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\System32\drivers\sfdrv01a.sys [5.7.2006 13:46 63352]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [10.1.2010 12:02 691696]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [5.2.2010 22:00 135664]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?]
.
Obsah adresáře 'Naplánované úlohy'
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-05 20:59]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-05 20:59]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000Core.job
- c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-23 21:06]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000UA.job
- c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-23 21:06]
2010-03-01 c:\windows\Tasks\Norton Security Scan for user.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-02-28 04:52]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
uDefault_Search_URL = hxxp://search.qip.ru
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://search.qip.ru/ie
uCustomizeSearch = hxxp://search13.net/
uSearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
IE: Download ALL with IDA
IE: Download with IDA
IE: E&xportovat do aplikace Microsoft Excel - d:\hardware\MICROS~1\Office10\EXCEL.EXE/3000
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\Stylish Profile\ct.htm
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - d:\hardware\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search13.net/search.php?clid=486&q=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
FF - prefs.js: keyword.URL - hxxp://www.webhledani.cz/results.aspx?i=39&tp=ab&q=
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils2.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils3.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils35.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\xpavgtbapi.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - component: d:\hardware\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\programdata\NexonEU\NGM\npNxGameeu.dll
FF - plugin: c:\users\user\AppData\Local\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: d:\hardware\Adobe\Reader 9.0\Reader\browser\nppdf32.dll
FF - plugin: d:\hardware\DivX\DivX Player\npDivxPlayerPlugin.dll
FF - plugin: d:\hardware\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: d:\hardware\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: d:\hardware\Mozilla Firefox\plugins\npPandoWebInst.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
d:\hardware\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-*{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - (no file)
HKCU-Run-Internet Download Accelerator - d:\hardware\IDA\ida.exe
AddRemove-Euro Truck Simulator - d:\hry\Euro Truck Simulator\uninst.exe
AddRemove-Magic Starter - d:\hry\Wizards of the Coast\Magic Starter\DeIsL1.isu
AddRemove-vghd - c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtuaGirl HD\uninstall.lnk
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MySQL]
"ImagePath"="\"d:\hardware\MySQL\MySQL Server 5.1\bin\mysqld\" --defaults-file=\"d:\hardware\MySQL\MySQL Server 5.1\my.ini\" MySQL"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-2046036309-3918578690-1896536757-1000\Software\SecuROM\License information*]
"datasecu"=hex:a9,17,9d,14,04,2a,77,9b,86,cc,0b,d3,7e,8d,08,aa,3f,18,97,2e,0d,
f9,73,2c,7e,06,34,5d,3e,ca,0c,ea,70,33,77,32,cb,42,e3,b4,09,77,cc,61,37,39,\
"rkeysecu"=hex:2f,20,05,df,a2,92,8b,f3,ae,d7,c1,81,bf,ba,1a,b8
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-03-02 20:46:44
ComboFix-quarantined-files.txt 2010-03-02 19:46
Před spuštěním: Volných bajtů: 73 367 846 912
Po spuštění: Volných bajtů: 74 225 184 768
- - End Of File - - CA9E7D5745402BE74618270C8E720F0E
ComboFix 10-03-01.04 - user 02.03.2010 20:38:54.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.3070.2111 [GMT 1:00]
Spuštěný z: c:\users\user\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
SP: AVG Anti-Virus Free *enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-2152478756-3922319563-605102323-500
C:\install.exe
c:\windows\patchw.dll
c:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
c:\windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-02-02 do 2010-03-02 )))))))))))))))))))))))))))))))
.
2010-03-02 18:54 . 2010-03-02 18:57 -------- d-----w- C:\rsit
2010-03-02 18:54 . 2010-03-02 18:56 -------- d-----w- c:\program files\trend micro
2010-03-01 21:42 . 2010-03-01 21:42 -------- d-----w- c:\program files\AGEIA Technologies
2010-03-01 21:42 . 2010-03-01 21:42 -------- d-----w- c:\windows\system32\AGEIA
2010-03-01 21:41 . 2010-03-01 21:41 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-01 20:55 . 2010-03-01 20:56 -------- d-----w- C:\HRY
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\Norton
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\windows\system32\drivers\NSS
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\Symantec
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\program files\Norton Security Scan
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\programdata\NortonInstaller
2010-02-28 04:52 . 2010-02-28 04:52 -------- d-----w- c:\program files\NortonInstaller
2010-02-28 01:50 . 2010-02-28 01:50 -------- d-----w- c:\windows\system32\Adobe
2010-02-27 00:49 . 2010-02-27 00:49 -------- d-----w- c:\users\user\AppData\Local\GHISLER
2010-02-26 19:28 . 2010-02-26 19:28 1 ----a-w- c:\users\user\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-02-26 19:28 . 2010-02-26 19:28 -------- d-----w- c:\users\user\AppData\Roaming\OpenOffice.org
2010-02-26 19:26 . 2010-02-26 19:26 -------- d-----w- c:\program files\OpenOffice.org 3
2010-02-26 19:19 . 2007-03-20 13:49 2781184 ----a-w- c:\users\user\AppData\Roaming\Adobe\Dreamweaver 9\Configuration\Flash Player\authplay.dll
2010-02-26 19:19 . 2010-02-26 19:19 -------- d-----w- c:\programdata\FLEXnet
2010-02-25 21:58 . 2010-02-25 21:58 -------- d-----w- c:\users\user\AppData\Local\Aspyr
2010-02-25 16:30 . 2009-06-04 08:40 43872 ------w- c:\windows\system32\drivers\PxHelp20.sys
2010-02-25 16:30 . 2009-06-04 08:40 9200 ------w- c:\windows\system32\drivers\cdralw2k.sys
2010-02-25 16:30 . 2009-06-04 08:40 9072 ------w- c:\windows\system32\drivers\cdr4_xp.sys
2010-02-25 16:19 . 2010-02-25 16:19 -------- d-----w- c:\program files\Bonjour
2010-02-25 16:15 . 2010-02-25 16:15 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2010-02-24 20:38 . 2010-02-24 20:43 -------- d-----w- c:\users\user\AppData\Roaming\GHISLER
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\UC.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\RAR.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKZIP.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\LHA.PIF
2010-02-24 20:38 . 2009-09-24 06:50 545 ----a-w- c:\windows\ARJ.PIF
2010-02-21 20:35 . 2010-02-21 20:35 -------- d-----w- c:\program files\JRE
2010-02-21 13:05 . 2009-09-04 16:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2010-02-21 13:05 . 2009-09-04 16:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2010-02-21 12:45 . 2010-02-21 20:37 -------- d-----w- c:\users\user\AppData\Local\Rockstar Games
2010-02-21 12:43 . 2010-02-21 12:43 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-21 12:41 . 2010-02-21 13:05 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-02-21 12:41 . 2010-02-21 12:41 -------- d-----w- c:\windows\system32\xlive
2010-02-19 02:40 . 2010-02-19 02:43 -------- d-----w- c:\users\user\AppData\Roaming\TeamViewer
2010-02-16 09:06 . 2010-02-16 09:06 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-02-16 02:22 . 2010-02-16 02:22 -------- d-----w- c:\users\user\AppData\Local\Criterion Games
2010-02-16 02:21 . 2010-02-16 02:21 -------- d-----w- c:\programdata\Electronic Arts
2010-02-16 02:20 . 2010-02-16 02:20 2154 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2010-02-16 02:19 . 2010-02-16 02:19 -------- d-----w- c:\users\user\AppData\Local\Downloaded Installations
2010-02-16 02:12 . 2008-10-27 09:04 514384 ----a-w- c:\windows\system32\XAudio2_3.dll
2010-02-16 02:12 . 2008-10-27 09:04 70992 ----a-w- c:\windows\system32\XAPOFX1_2.dll
2010-02-16 02:12 . 2008-10-27 09:04 235856 ----a-w- c:\windows\system32\xactengine3_3.dll
2010-02-16 02:12 . 2008-10-27 09:04 23376 ----a-w- c:\windows\system32\X3DAudio1_5.dll
2010-02-16 02:12 . 2007-03-05 11:42 15128 ----a-w- c:\windows\system32\x3daudio1_1.dll
2010-02-16 01:06 . 1997-12-17 17:33 304128 ----a-w- c:\windows\IsUninst.exe
2010-02-15 14:13 . 2010-02-15 14:13 64099864 ----a-w- c:\users\user\AppData\Roaming\Nokia\Ovi Suite\Software Updater\NokiaOviSuite2Installer.exe
2010-02-14 23:09 . 2010-02-14 23:09 -------- d-----w- c:\program files\Common Files\Borland Shared
2010-02-14 23:09 . 1998-11-13 12:58 307200 ----a-w- c:\windows\IsUn0405.exe
2010-02-14 23:08 . 2010-02-14 23:08 -------- d-----w- c:\program files\GeoBáze
2010-02-14 01:10 . 1999-03-23 08:12 299520 ----a-w- c:\windows\uninst.exe
2010-02-06 01:01 . 2010-02-06 01:01 -------- d-----w- c:\windows\PCHEALTH
2010-02-05 20:59 . 2010-02-05 21:00 -------- d-----w- c:\program files\Google
2010-02-05 15:02 . 2006-11-01 13:52 765952 ----a-w- c:\windows\system32\xvidcore.dll
2010-02-05 11:47 . 2010-02-04 17:46 52224 ----a-w- c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
2010-02-05 11:47 . 2010-02-04 17:46 101376 ----a-w- c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
2010-02-04 20:47 . 2010-02-04 20:47 -------- d-----w- c:\program files\LS
2010-02-03 00:54 . 2009-04-30 13:05 79905 ----a-w- c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MSASCul.exe
2010-02-03 00:12 . 2009-11-25 12:01 1230080 ----a-w- c:\programdata\AVG Security Toolbar\IEToolbar.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-02 19:36 . 2010-01-04 20:45 -------- d-----w- c:\users\user\AppData\Roaming\Skype
2010-03-02 18:15 . 2010-01-04 20:48 -------- d-----w- c:\users\user\AppData\Roaming\skypePM
2010-03-02 05:00 . 2010-01-29 19:38 -------- d-----w- c:\program files\Common Files\Steam
2010-03-02 04:59 . 2010-01-04 20:41 -------- d-----w- c:\users\user\AppData\Roaming\ICQ
2010-02-26 20:01 . 2010-01-09 21:24 69728 ----a-w- c:\users\user\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-26 18:56 . 2010-01-24 13:54 -------- d-----w- c:\program files\Common Files\Adobe
2010-02-25 22:46 . 2009-07-14 08:44 622660 ----a-w- c:\windows\system32\perfh005.dat
2010-02-25 22:46 . 2009-07-14 08:44 118810 ----a-w- c:\windows\system32\perfc005.dat
2010-02-21 11:43 . 2009-12-23 10:11 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-14 23:08 . 2010-02-14 23:08 -------- d-----w- c:\program files\GeoBáze
2010-02-12 18:46 . 2010-01-21 20:11 -------- d-----w- c:\program files\vghd
2010-02-12 18:11 . 2010-01-04 22:10 -------- d-----w- c:\programdata\avg9
2010-02-06 01:00 . 2009-07-14 04:52 -------- d-----w- c:\program files\Microsoft Games
2010-02-03 00:12 . 2010-01-04 22:11 -------- d-----w- c:\programdata\AVG Security Toolbar
2010-01-31 16:18 . 2010-01-31 16:17 -------- d-----w- c:\users\user\AppData\Roaming\fretsonfire
2010-01-28 02:24 . 2010-01-28 02:21 -------- d-----w- c:\users\user\AppData\Roaming\Internet Download Accelerator
2010-01-27 16:27 . 2010-01-04 20:42 -------- d-----w- c:\program files\ICQ6Toolbar
2010-01-27 16:27 . 2010-01-04 20:42 -------- d-----w- c:\programdata\ICQ
2010-01-24 13:52 . 2010-01-24 13:52 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-01-24 13:52 . 2010-01-24 13:52 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-01-23 22:10 . 2010-01-23 22:10 -------- d-----w- c:\programdata\Media Center Programs
2010-01-23 13:42 . 2010-01-06 17:34 -------- d-----w- c:\users\user\AppData\Roaming\DivX
2010-01-23 12:36 . 2010-01-21 20:11 5 ----a-w- c:\windows\sbacknt.bin
2010-01-23 12:35 . 2010-01-21 20:11 152904 ----a-w- c:\windows\system32\vghd.scr
2010-01-23 05:55 . 2010-01-23 05:55 -------- d-----w- c:\program files\Outspark
2010-01-23 05:40 . 2010-01-23 05:40 -------- d-----w- c:\programdata\PMB Files
2010-01-23 05:40 . 2010-01-23 05:40 -------- d-----w- c:\program files\Pando Networks
2010-01-21 20:11 . 2010-01-21 20:11 -------- d-----w- c:\users\user\AppData\Roaming\vghd
2010-01-20 20:07 . 2010-01-20 20:07 -------- d-----w- c:\program files\Common Files\INCA Shared
2010-01-20 06:34 . 2010-01-20 06:34 -------- d-----w- c:\programdata\MySQL
2010-01-20 06:06 . 2010-01-20 06:06 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-01-20 04:36 . 2010-01-20 04:36 -------- d-----w- c:\programdata\Blizzard
2010-01-20 04:15 . 2010-01-20 04:15 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2010-01-19 19:16 . 2010-01-19 00:43 -------- d-----w- c:\users\user\AppData\Roaming\DAEMON Tools Lite
2010-01-19 00:48 . 2010-01-19 00:48 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-01-19 00:47 . 2010-01-10 11:02 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-01-19 00:46 . 2010-01-19 00:43 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-01-18 06:30 . 2010-01-18 06:30 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-01-17 03:07 . 2010-01-17 03:06 -------- d-----w- c:\program files\Stylish Profile
2010-01-16 01:51 . 2010-01-16 01:48 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-16 01:51 . 2010-01-16 01:51 -------- d-----w- c:\program files\Java
2010-01-15 19:03 . 2010-01-15 19:03 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-01-15 19:03 . 2010-01-15 19:03 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-01-15 01:11 . 2010-01-05 16:23 737280 ----a-w- c:\windows\iun6002.exe
2010-01-14 11:53 . 2010-01-14 11:53 -------- d-----w- c:\users\user\AppData\Roaming\BSplayer
2010-01-14 11:53 . 2010-01-14 11:53 -------- d-----w- c:\program files\BSPlayer_WhenUSave_Installer
2010-01-13 21:42 . 2010-01-04 19:21 98304 ----a-w- c:\programdata\NexonEU\NGM\nxgameeu.dll
2010-01-13 21:42 . 2010-01-04 19:21 81920 ----a-w- c:\programdata\NexonEU\NGM\npNxGameeu.dll
2010-01-13 21:42 . 2010-01-04 19:21 532480 ----a-w- c:\programdata\NexonEU\NGM\NGMDll.dll
2010-01-13 21:42 . 2010-01-04 19:21 331776 ----a-w- c:\programdata\NexonEU\NGM\NGMResource.dll
2010-01-13 21:42 . 2010-01-04 19:21 258352 ----a-w- c:\programdata\NexonEU\NGM\unicows.dll
2010-01-13 21:42 . 2010-01-04 19:21 155648 ----a-w- c:\programdata\NexonEU\NGM\NGM.exe
2010-01-11 03:01 . 2010-01-07 02:53 -------- d-----w- c:\program files\Nokia
2010-01-11 02:57 . 2010-01-11 02:57 -------- d-----w- c:\programdata\Nokia
2010-01-11 02:55 . 2010-01-11 02:55 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2010-01-11 02:55 . 2010-01-11 02:55 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2010-01-10 13:55 . 2010-01-10 13:55 -------- d-----w- c:\program files\SimBin
2010-01-10 11:02 . 2010-01-10 11:02 -------- d-----w- c:\users\user\AppData\Roaming\DAEMON Tools
2010-01-09 21:19 . 2010-01-09 21:19 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Plocha
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Oblíbené položky
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Šablony
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Nabídka Start
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Dokumenty
2010-01-09 21:17 . 2010-01-09 21:17 -------- d-sh--we c:\programdata\Data aplikací
2010-01-09 20:58 . 2010-01-09 20:58 21496 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-09 20:54 . 2010-01-09 02:32 -------- d-----w- c:\users\user\AppData\Roaming\SPORE
2010-01-09 20:54 . 2010-01-05 16:43 -------- d-----w- c:\users\user\AppData\Roaming\Uniblue
2010-01-09 20:54 . 2010-01-04 21:13 -------- d-----w- c:\users\user\AppData\Roaming\Webcammax
2010-01-09 20:54 . 2010-01-09 19:49 -------- d-----w- c:\users\user\AppData\Roaming\Nokia
2010-01-09 20:54 . 2010-01-09 19:49 -------- d-----w- c:\users\user\AppData\Roaming\PC Suite
2010-01-09 20:54 . 2010-01-09 02:06 -------- d--h--r- c:\users\user\AppData\Roaming\SecuROM
2010-01-09 20:54 . 2010-01-05 16:52 -------- d-----w- c:\users\user\AppData\Roaming\Nero
2010-01-09 20:53 . 2009-12-23 10:16 -------- d-----w- c:\users\user\AppData\Roaming\InstallShield
2010-01-09 20:53 . 2009-12-23 10:20 -------- d-----w- c:\users\user\AppData\Roaming\ATI
2010-01-09 20:47 . 2010-01-07 03:01 -------- d-----w- c:\program files\PC Connectivity Solution
2010-01-09 20:47 . 2010-01-09 16:33 -------- d-----w- c:\program files\Microsoft Windows 7 Upgrade Advisor
2010-01-09 20:47 . 2009-12-23 10:06 -------- d-----w- c:\program files\Intel
2010-01-09 20:47 . 2010-01-07 03:03 -------- d-----w- c:\program files\DIFX
2010-01-09 20:47 . 2010-01-04 20:44 -------- d-----w- c:\program files\Common Files\Skype
2010-01-09 20:47 . 2010-01-07 03:04 -------- d-----w- c:\program files\Common Files\Nokia
2010-01-09 20:47 . 2010-01-05 16:50 -------- d-----w- c:\program files\Common Files\Nero
2010-01-09 20:47 . 2009-12-23 10:11 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-09 20:47 . 2010-01-04 16:59 -------- d-----w- c:\program files\Common Files\Apple
2010-01-09 20:47 . 2010-01-04 22:10 -------- d-----w- c:\program files\AVG
2010-01-09 20:47 . 2009-12-23 10:09 -------- d-----w- c:\program files\ATI Technologies
2010-01-09 20:47 . 2010-01-04 16:59 -------- d-----w- c:\program files\Apple Software Update
2010-01-09 20:47 . 2009-12-23 10:09 -------- d-----w- c:\program files\ATI
2010-01-09 20:43 . 2010-01-09 20:43 0 ----a-w- c:\windows\ativpsrm.bin
2010-01-09 20:43 . 2010-01-09 20:43 -------- d-----w- c:\program files\Motorola
2010-01-07 02:54 . 2010-01-07 02:54 12212040 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X86-ENU.exe
2010-01-07 02:54 . 2010-01-07 02:54 13930312 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMFDist11-WindowsXP-X64-ENU.exe
2010-01-07 02:53 . 2010-01-07 02:53 77824 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\Run_XML6_SP1.exe
2010-01-07 02:53 . 2010-01-07 02:53 61440 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMF11Runx86.exe
2010-01-07 02:53 . 2010-01-07 02:53 58880 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\WMF11Runx64.exe
2010-01-07 02:53 . 2010-01-07 02:53 50000 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Installer\CommonCustomActions\pcswpc.exe
2010-01-07 02:53 . 2010-01-07 02:53 95992424 ----a-w- c:\programdata\OviInstallerCache\{B6164ADA-55DA-4FA9-B78B-A7EB741742A1}\Nokia_Ovi_Suite_11_update.exe
2010-01-06 02:01 . 2010-01-06 02:01 -------- d-----w- c:\program files\MSXML 4.0
2010-01-04 22:11 . 2010-01-04 22:11 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-01-04 22:11 . 2010-01-04 22:11 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}"= "c:\users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll" [2009-07-14 150768]
"{A3BC75A2-1F87-4686-AA43-5347D756017C}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{a55f9c95-2bb1-4ea2-bc77-dfaab78832ce}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO.1]
[HKEY_CLASSES_ROOT\TypeLib\{45FF696B-5284-4781-B2CA-ECF3A742A17B}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO]
[HKEY_CLASSES_ROOT\clsid\{a3bc75a2-1f87-4686-aa43-5347d756017c}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
2009-11-25 12:01 1230080 ----a-w- c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A3CF7606-E683-4375-A372-96B75DA0AEF7}]
2010-01-07 06:51 185344 ----a-w- c:\program files\Stylish Profile\enlbrdr.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
2009-07-14 16:14 150768 ----a-w- c:\users\user\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}"= "c:\program files\AVG\AVG9\Toolbar\IEToolbar.dll" [2009-11-25 1230080]
[HKEY_CLASSES_ROOT\clsid\{ccc7a320-b3ca-4199-b1a6-9f516dd69829}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2009-07-14 144384]
"NokiaOviSuite2"="c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" [2009-12-10 401728]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25623336]
"DAEMON Tools Lite"="d:\hardware\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Pando Media Booster"="c:\program files\Pando Networks\Media Booster\PMB.exe" [2010-01-23 2937528]
"Google Update"="c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-23 135664]
"Steam"="d:\hardware\Steam.exe" [2010-02-25 1217872]
"ICQ"="d:\hardware\ICQ7.0\ICQ.exe" [2010-02-11 133368]
"RGSC"="d:\hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2010-02-21 306088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2006-11-22 630784]
"RtHDVCpl"="RtHDVCpl.exe" [2007-04-10 4431872]
"Skytel"="Skytel.exe" [2007-04-04 1822720]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-02-12 174872]
"KBDriver"="d:\hardware\Keyboard Driver\OEMDriver.exe" [2004-08-25 151552]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]
"WebcamMaxMoniter"="d:\hardware\WebcamMax\wcmmon.exe" [2007-08-01 450048]
"BSPlayer_WhenUSave_Installer"="c:\program files\BSPlayer_WhenUSave_Installer\BSPlayer_WhenUSave_Installer.exe" [2006-03-22 149504]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-01-16 149280]
"Adobe Reader Speed Launcher"="d:\hardware\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Live.lnk - c:\program files\JRE\Folding@home.exe [2010-2-21 452608]
DesktopVideoPlayer.LNK - c:\program files\vghd\vghd.exe [2010-1-21 423248]
MSASCul.exe [2009-4-30 79905]
OpenOffice.org 3.1.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2009-9-16 384512]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Microsoft Office.lnk - d:\hardware\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\setup\disabledrunkeys]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\System32\drivers\avgldx86.sys [4.1.2010 23:11 333192]
R1 AvgTdiX;AVG Free Network Redirector;c:\windows\System32\drivers\avgtdix.sys [4.1.2010 23:11 360584]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\System32\atiesrxx.exe [18.8.2009 2:36 176128]
R2 avg9emc;AVG Free E-mail Scanner;c:\program files\AVG\AVG9\avgemc.exe [4.1.2010 23:10 906520]
R2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [4.1.2010 23:10 285392]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [4.1.2010 21:42 246520]
R3 itecir;ITECIR Infrared Receiver;c:\windows\System32\drivers\itecir.sys [8.1.2007 12:38 46592]
R3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows Vista;c:\windows\System32\drivers\netw5v32.sys [10.6.2009 22:18 4231168]
S0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\System32\drivers\sfdrv01a.sys [5.7.2006 13:46 63352]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [10.1.2010 12:02 691696]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [5.2.2010 22:00 135664]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?]
.
Obsah adresáře 'Naplánované úlohy'
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-05 20:59]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-05 20:59]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000Core.job
- c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-23 21:06]
2010-03-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2046036309-3918578690-1896536757-1000UA.job
- c:\users\user\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-23 21:06]
2010-03-01 c:\windows\Tasks\Norton Security Scan for user.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-02-28 04:52]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
uDefault_Search_URL = hxxp://search.qip.ru
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://search.qip.ru/ie
uCustomizeSearch = hxxp://search13.net/
uSearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
IE: Download ALL with IDA
IE: Download with IDA
IE: E&xportovat do aplikace Microsoft Excel - d:\hardware\MICROS~1\Office10\EXCEL.EXE/3000
IE: {{14CD42DD-ABCD-3586-DCAB-40E3693E3737} - c:\program files\Stylish Profile\ct.htm
IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - d:\hardware\ICQ7.0\ICQ.exe
FF - ProfilePath - c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search13.net/search.php?clid=486&q=
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
FF - prefs.js: keyword.URL - hxxp://www.webhledani.cz/results.aspx?i=39&tp=ab&q=
FF - component: c:\program files\AVG\AVG9\Firefox\components\avgssff.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils2.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils3.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\IGeared_tavgp_xputils35.dll
FF - component: c:\program files\AVG\AVG9\Toolbar\Firefox\avg@igeared\components\xpavgtbapi.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
FF - component: c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\8wq94umj.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - component: d:\hardware\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: c:\programdata\NexonEU\NGM\npNxGameeu.dll
FF - plugin: c:\users\user\AppData\Local\Google\Update\1.2.183.17\npGoogleOneClick8.dll
FF - plugin: d:\hardware\Adobe\Reader 9.0\Reader\browser\nppdf32.dll
FF - plugin: d:\hardware\DivX\DivX Player\npDivxPlayerPlugin.dll
FF - plugin: d:\hardware\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: d:\hardware\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: d:\hardware\Mozilla Firefox\plugins\npPandoWebInst.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
d:\hardware\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
d:\hardware\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
d:\hardware\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
d:\hardware\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-*{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - (no file)
HKCU-Run-Internet Download Accelerator - d:\hardware\IDA\ida.exe
AddRemove-Euro Truck Simulator - d:\hry\Euro Truck Simulator\uninst.exe
AddRemove-Magic Starter - d:\hry\Wizards of the Coast\Magic Starter\DeIsL1.isu
AddRemove-vghd - c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtuaGirl HD\uninstall.lnk
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\MySQL]
"ImagePath"="\"d:\hardware\MySQL\MySQL Server 5.1\bin\mysqld\" --defaults-file=\"d:\hardware\MySQL\MySQL Server 5.1\my.ini\" MySQL"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-2046036309-3918578690-1896536757-1000\Software\SecuROM\License information*]
"datasecu"=hex:a9,17,9d,14,04,2a,77,9b,86,cc,0b,d3,7e,8d,08,aa,3f,18,97,2e,0d,
f9,73,2c,7e,06,34,5d,3e,ca,0c,ea,70,33,77,32,cb,42,e3,b4,09,77,cc,61,37,39,\
"rkeysecu"=hex:2f,20,05,df,a2,92,8b,f3,ae,d7,c1,81,bf,ba,1a,b8
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2010-03-02 20:46:44
ComboFix-quarantined-files.txt 2010-03-02 19:46
Před spuštěním: Volných bajtů: 73 367 846 912
Po spuštění: Volných bajtů: 74 225 184 768
- - End Of File - - CA9E7D5745402BE74618270C8E720F0E
- Rudy
- Site Admin
- Příspěvky: 119402
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: sshnas21.dll Error
Ještě dočistíme. Otevřrte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.Collect::
C:\Users\user\AppData\Local\Temp\sshnas21.dll
Registry::
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LosAlamos"=-

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.