Defaultní ikony, prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod Damned » 31 kvě 2009 02:02

Spusť si HJT a fixni (zatrhnout čtvereček před hodnotou a zmáčknout "Fix checked")

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programs\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"


Šmejdíky tam už žádný nevidím.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix[mezera]/u

takže jestli nejsou problémy,tak vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni select all found, pak klik empty selected.
Pokud chceš zachovat svoje uložená hesla, klikni na No.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache,
cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer,
Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Napadá mě jen: defragmentuj disk a vyčisti registr. Jinak asi budeš muset zkontrolovat a opět přiřadit každého zástupce zvlášť. Teoreticky by se to mohlo stát při rozháraným registru, nebo při reinstalaci programů.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod jaro3 » 31 kvě 2009 08:25

Ještě zkus toto:
Stahni si SREng
- rozbal na plochu a spust ho
- zvol "zvol Smart Scan", nech nastaveni tak jak je
- zvol "Verify the digital signature of process modules"
- klik na "Scan"
- klik na Save Reports, uloz log na plochu a cely obsah logu zkopirujt sem
- rozbal na plochu a spust ho
+
- Spusť ho a zvol možnost System Repair
- Na první záložce File Associations pokud bude zatrhnutý/vybraný některý čtvereček z výpisu, tak klikni dole na tlačítko Repair


A ještě , jak psal Blue Spirit:
Stáhni si Dial-a-fix
Klikni na kladívko-další možnosti:
FlushIcons - Pokusí se o opravu porušených ikon.

Nebo:
SFC scan - Spustí nástroj pro kontrolu systémových souborů (případná potřeba instalačního media Windows).
Klikni na službu a potom na GO.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
otaznik
nováček
Příspěvky: 33
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod otaznik » 31 kvě 2009 18:45

Log SREng:

Kód: Vybrat vše


2009-05-31,18:36:03

System Repair Engineer 2.7.1.1261
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 3 (Build 2600) - Administrative User - Completed Functions Allowed

Follow item(s) have been selected:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Running Processes (Including process model information)
    File Associations
    Winsock Provider
    Autorun.Inf
    HOSTS File
    Process Privileges Scan
    Scheduled Tasks
    API HOOK
    Hidden Process


Boot Items
Registry
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <CTHelper><CTHELPER.EXE>  [Creative Technology Ltd]
    <Cobian Backup 8><"C:\Programs\Cobian Backup 8\Cobian.exe">  [Luis Cobian]
    <egui><"C:\Programs\ESET Smart Security\egui.exe" /hide /waitservice>  [(Verified)"ESET, spol. s r.o."]
    <NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <nwiz><nwiz.exe /install>  [(Verified)NVIDIA Corporation]
    <NvMediaCenter><RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <PCSuiteTrayApplication><C:\Programs\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup>  [Nokia]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
    <WebCheck><webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
    <WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll>  [(Verified)Microsoft Windows Component Publisher]
    <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
    <WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
    <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
    <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
    <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    <WinlogonNotify: WgaLogon><WgaLogon.dll>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
    <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\System32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\System32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
    <IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
    <Browser Customizations><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <Vlastní nastavení prohlížeče><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <Adresář 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Aktualizace plochy systému Windows><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer><C:\WINDOWS\system32\ie4uinit.exe -BaseSettings>  [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
    <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [(Verified)Microsoft Corporation]

==================================
Startup Folders
[Adobe Reader Speed Launch]
  <C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Reader Speed Launch.lnk --> C:\Programs\ACROBA~1\Reader\READER~1.EXE [Adobe Systems Incorporated]><N>
[APC UPS Status]
  <C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\APC UPS Status.lnk --> C:\Programs\APCPOW~1\Display.exe [American Power Conversion Corporation]><N>
[Xfire]
  <C:\Documents and Settings\otaznik\Nabídka Start\Programy\Po spuštění\Xfire.lnk --> C:\Programs\Xfire\xfire.exe [Xfire Inc.]><N>

==================================
Services
[APC UPS Service / APC UPS Service][Running/Auto Start]
  <C:\Programs\APC PowerChute Personal Edition\mainserv.exe><American Power Conversion Corporation>
[Eset HTTP Server / EhttpSrv][Stopped/Manual Start]
  <"C:\Programs\ESET Smart Security\EHttpSrv.exe"><ESET>
[Eset Service / ekrn][Running/Auto Start]
  <"C:\Programs\ESET Smart Security\ekrn.exe"><ESET>
[Přístup k zařízením standardu HID / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
  <C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe><Macrovision Corporation>
[Java Quick Starter / JavaQuickStarterService][Running/Auto Start]
  <"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"><Sun Microsystems, Inc.>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
  <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[ServiceLayer / ServiceLayer][Stopped/Manual Start]
  <"C:\Program Files\PC Connectivity Solution\ServiceLayer.exe"><Nokia.>

==================================
Drivers
[atksgt / atksgt][Running/Auto Start]
  <System32\DRIVERS\atksgt.sys><N/A>
[Creative AC3 Software Decoder / ctac32k][Running/Manual Start]
  <System32\drivers\ctac32k.sys><Creative Technology Ltd>
[Creative Audio Driver (WDM) / ctaud2k][Running/Manual Start]
  <system32\drivers\ctaud2k.sys><Creative Technology Ltd>
[Creative DVD-Audio Device Driver / ctdvda2k][Stopped/Manual Start]
  <System32\drivers\ctdvda2k.sys><Creative Technology Ltd>
[Creative Proxy Driver / ctprxy2k][Running/Manual Start]
  <System32\drivers\ctprxy2k.sys><Creative Technology Ltd>
[Creative SoundFont Management Device Driver / ctsfm2k][Running/Manual Start]
  <System32\drivers\ctsfm2k.sys><Creative Technology Ltd>
[eamon / eamon][Running/Auto Start]
  <system32\DRIVERS\eamon.sys><ESET>
[easdrv / easdrv][Running/System Start]
  <system32\DRIVERS\easdrv.sys><ESET>
[E-mu Plug-in Architecture Driver / emupia][Running/Manual Start]
  <System32\drivers\emupia2k.sys><Creative Technology Ltd>
[ENTECH / ENTECH][Stopped/Manual Start]
  <\??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys><EnTech Taiwan>
[epfw / epfw][Running/Auto Start]
  <system32\DRIVERS\epfw.sys><ESET>
[Eset Personal Firewall / Epfwndis][Running/Manual Start]
  <system32\DRIVERS\Epfwndis.sys><ESET>
[epfwtdi / epfwtdi][Running/System Start]
  <system32\DRIVERS\epfwtdi.sys><ESET>
[GMSIPCI / GMSIPCI][Stopped/Manual Start]
  <\??\G:\INSTALL\GMSIPCI.SYS><N/A>
[Creative Hardware Abstract Layer Driver / ha10kx2k][Running/Manual Start]
  <System32\drivers\ha10kx2k.sys><Creative Technology Ltd>
[Creative P16V HAL Driver / hap16v2k][Stopped/Manual Start]
  <System32\drivers\hap16v2k.sys><Creative Technology Ltd>
[Creative P17V HAL Driver / hap17v2k][Stopped/Manual Start]
  <system32\drivers\hap17v2k.sys><Creative Technology Ltd>
[Ovladač Microsoft UAA pro sběrnici High Definition Audio / HDAudBus][Stopped/Manual Start]
  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[lirsgt / lirsgt][Running/Auto Start]
  <System32\DRIVERS\lirsgt.sys><N/A>
[Nokia USB Phone Parent / nmwcd][Stopped/Manual Start]
  <system32\drivers\nmwcd.sys><Nokia>
[Nokia USB Generic / nmwcdc][Stopped/Manual Start]
  <system32\drivers\nmwcdc.sys><Nokia>
[Nokia USB Port / nmwcdcj][Stopped/Manual Start]
  <system32\drivers\nmwcdcj.sys><Nokia>
[Nokia USB Modem / nmwcdcm][Stopped/Manual Start]
  <system32\drivers\nmwcdcm.sys><Nokia>
[nv / nv][Running/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Creative OS Services Driver / ossrv][Running/Manual Start]
  <system32\drivers\ctoss2k.sys><Creative Technology Ltd.>
[PfModNT / PfModNT][Running/Auto Start]
  <\??\C:\WINDOWS\System32\drivers\PfModNT.sys><Creative Technology Ltd.>
[PSI / PSI][Stopped/Manual Start]
  <system32\DRIVERS\psi_mf.sys><Secunia>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver / RTLE8023xp][Running/Manual Start]
  <System32\DRIVERS\Rtenicxp.sys><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Stopped/Manual Start]
  <System32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[StarForce Protection Environment Driver (version 1.x) / sfdrv01][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology (StarForce)>
[StarForce Protection Helper Driver (version 2.x) / sfhlp02][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology (StarForce)>
[StarForce Protection Synchronization Driver (version 4.x) / sfsync04][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfsync04.sys><Protection Technology (StarForce)>
[StarForce Protection VFS Driver (version 2.x) / sfvfs02][Running/Boot Start]
  <\SystemRoot\System32\drivers\sfvfs02.sys><Protection Technology (StarForce)>
[sptd / sptd][Running/Boot Start]
  <\SystemRoot\System32\Drivers\sptd.sys><N/A>

==================================
Browser Add-ons
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Programs\Acrobat 7\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
[Spybot-S&D IE Protection]
  {53707962-6F74-2D53-2644-206D7942484F} <C:\Programs\Spybot - Search & Destroy\SDHelper.dll, (Signed) Safer Networking Limited>
[Java(tm) Plug-In 2 SSV Helper]
  {DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
[JQSIEStartDetectorImpl Class]
  {E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
[&Zdroje informací]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft Corporation>
[Spybot-S&D IE Protection]
  {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} <C:\Programs\Spybot - Search & Destroy\SDHelper.dll, (Signed) Safer Networking Limited>
[]
  {e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>
[ICQ6]
  {E59EB121-F339-4851-A3BA-FE49C35617C2} <C:\Programs\ICQ6.5\ICQ.exe, (Signed) ICQ, Inc.>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, (Signed) Microsoft Corporation>
[Java Plug-in 1.6.0_13]
  {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
[]
  {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[Java Plug-in 1.6.0_13]
  {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
[Java Plug-in 1.6.0_13]
  {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\npjpi160_13.dll, (Signed) Sun Microsystems, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash10a.ocx, (Signed) Adobe Systems, Inc.>
[]
  {0295E1B6-2989-4847-BC68-A9FB3CF5C41E} <, >
[]
  {02A9F41B-F433-4C1E-81A6-ED14ADB66423} <, >
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Programs\Acrobat 7\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
[Web Browser Applet Control]
  {08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\WINDOWS\system32\msjava.dll, Microsoft Corporation>
[]
  {15581FE3-01C9-4D4D-A8B3-DEE789972216} <, >
[Windows Genuine Advantage Validation Tool]
  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>
[]
  {22BF413B-C6D2-4D91-82A9-A0F997BA588C} <, >
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
[DHTML Edit Control Safe for Scripting for IE5]
  {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, (Signed) Microsoft Corporation>
[]
  {35F47EA7-457F-4A07-90D7-DCA0CC6330C9} <, >
[IETag Factory]
  {38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, (Signed) Microsoft Corporation>
[]
  {3E157519-7612-4769-8F89-B5A91FA0326F} <, >
[QuickTime Object]
  {4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Programs\QuickTime\QTPlugin.ocx, (Signed) Apple Inc.>
[XML Document]
  {48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[]
  {4E0F980D-3274-4933-9934-342FDC91A8E2} <, >
[Microsoft Terminal Services Client Control (redist)]
  {4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[Microsoft Terminal Services Client Control (redist)]
  {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[Spybot-S&D IE Protection]
  {53707962-6F74-2D53-2644-206D7942484F} <C:\Programs\Spybot - Search & Destroy\SDHelper.dll, (Signed) Safer Networking Limited>
[]
  {5FD44E3D-4F01-4422-81BA-96C5F5359248} <, >
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[Windows Media Player]
  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[MUWebControl Class]
  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\system32\muweb.dll, (Signed) Microsoft Corporation>
[]
  {70EBD35C-EB4E-4FC1-8A3E-F254A41E3C83} <, >
[Microsoft Terminal Services Client Control (redist)]
  {7390f3d8-0439-4c05-91e3-cf5cb290c3d0} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[Microsoft Terminal Services Client Control (redist)]
  {7584c670-2274-4efb-b00b-d6aaba6d3850} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[]
  {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <, >
[]
  {77BF5300-1474-4EC7-9980-D32B190E9B07} <, >
[Microsoft Web Browser]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[XML HTTP 4.0]
  {88D969C5-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, (Signed) Microsoft Corporation>
[XML HTTP 5.0]
  {88D969EA-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSXML5.DLL, (Signed) Microsoft Corporation>
[XML DOM Document 6.0]
  {88D96A05-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 6.0]
  {88D96A06-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XSL Template 6.0]
  {88D96A08-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XML HTTP 6.0]
  {88D96A0A-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[Java Plug-in 1.6.0_13]
  {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, >
[]
  {8B1C3FCE-A770-481F-BB00-DF7ABC4AB4DD} <, >
[]
  {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[Microsoft Terminal Services Client Control (redist)]
  {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} <%systemroot%\system32\mstscax.dll, (Signed) N/A>
[]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[]
  {A94CD9A1-5735-4347-9B84-5D562AADC7F4} <, >
[]
  {AEFA0877-5E02-4FD4-A25F-6ED66054DAA8} <, >
[]
  {BE666588-F0BB-48A7-8A96-9E397E953102} <, >
[]
  {C19419B4-6302-48B1-A04E-19F63B7C8E7E} <, >
[Adobe Acrobat 7.0 Browser Document]
  {CA8A9780-280D-11CF-A24D-444553540000} <C:\Programs\Acrobat 7\ActiveX\AcroPDF.dll, (Signed) Adobe Systems, Inc.>
[AUDIO__WAV Moniker Class]
  {CD3AFA7B-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
  {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash10a.ocx, (Signed) Adobe Systems, Inc.>
[]
  {D95DC54E-DECE-4336-879B-77E7C70DE0A5} <, >
[]
  {DB493F07-5938-45BB-B841-0849F7CB10A9} <, >
[Java(tm) Plug-In 2 SSV Helper]
  {DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
[]
  {DC920535-5827-411B-A1E9-08762D351F19} <, >
[QuickTimeCheck Class]
  {DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Programs\QuickTime\QTSystem\QuickTimeCheck.ocx, (Signed) Apple Inc.>
[]
  {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} <, >
[Microsoft Silverlight]
  {DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\2.0.40115.0\npctrl.dll, (Signed)  Microsoft Corporation>
[]
  {E173AB2E-F1A4-4AD3-A7E3-C0A5FD5DEC71} <, >
[]
  {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
[]
  {E59EB121-F339-4851-A3BA-FE49C35617C2} <, >
[]
  {E5CFEBEE-1DE2-4FFC-BA11-A67B6F54A642} <, >
[JQSIEStartDetectorImpl Class]
  {E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
[]
  {EC596DAB-26BF-4A1D-ACFB-B4FF6405B24F} <, >
[XML HTTP Request]
  {ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[]
  {F0733A33-5A23-43A2-ABDF-23D066315402} <, >
[XML DOM Document 3.0]
  {F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[Free Threaded XML DOM Document 3.0]
  {F5078F33-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XML HTTP 3.0]
  {F5078F35-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XSL Template 3.0]
  {F5078F36-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XML DOM Document]
  {F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XML HTTP]
  {F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[]
  {F9A901B8-A323-4704-AC88-1E7F5287372F} <, >
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[E&xportovat do aplikace Microsoft Office Excel]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>

==================================
Running Processes
[PID: 884 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 936 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 964 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1008 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)]
[PID: 1028 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1208 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1296 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1420 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1464 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1564 / NETWORK SERVICE][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1664 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1752 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
[PID: 252 / otaznik][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
    [C:\WINDOWS\system32\BROWSEUI.dll]  [Společnost Microsoft, 6.00.2900.5512 (xpsp.080413-2105)]
    [C:\Programs\Nokia\Nokia PC Suite 6\PhoneBrowser.dll]  [Nokia, 6, 84, 83, 7]
    [C:\Programs\Nokia\Nokia PC Suite 6\PCSCM.dll]  [Nokia, 6, 84, 100, 4]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Programs\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_cze.nlr]  [Nokia, 6, 84, 51, 0]
    [C:\Programs\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr]  [Nokia, 6, 84, 15, 1]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\stlport_vc7145.dll]  [STLport Consulting, Inc., 4.5.2003.0120]
    [C:\Programs\Acrobat 7\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
[PID: 492 / LOCAL SERVICE][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 512 / otaznik][C:\Programs\Cobian Backup 8\Cobian.exe]  [Luis Cobian, 8.4.0.178]
    [C:\Programs\Cobian Backup 8\cbEngine.dll]  [Luis Cobian, 8.4.0.218]
    [C:\Programs\Cobian Backup 8\cbNTSecW.dll]  [Luis Cobian, 8.4.0.119]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
[PID: 528 / otaznik][C:\Programs\ESET Smart Security\egui.exe]  [ESET, 3.0.642 ]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL]  [Microsoft Corporation, 8.00.50727.762]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Programs\ESET Smart Security\eguiScan.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiAmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiEmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiEpfw.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiSmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiUpdate.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\eguiMailPlugins.dll]  [ESET, 3.0.642 ]
[PID: 580 / SYSTEM][C:\Programs\APC PowerChute Personal Edition\mainserv.exe]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\drvutil.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\UpsDevice.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\pdcdll.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\UpsControl.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\res.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
[PID: 612 / otaznik][C:\WINDOWS\system32\RUNDLL32.EXE]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
    [C:\WINDOWS\system32\NvMcTray.dll]  [NVIDIA Corporation, 6.14.11.8122]
    [C:\WINDOWS\system32\nvapi.dll]  [NVIDIA Corporation, 6.14.11.8122]
    [C:\WINDOWS\system32\NVRSCS.DLL]  [NVIDIA Corporation, 6.14.11.8122]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
[PID: 752 / SYSTEM][C:\Programs\ESET Smart Security\ekrn.exe]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnScan.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnAmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnEmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnEpfw.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnSmon.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnUpdate.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\updater.dll]  [ESET, 3.0.642 ]
    [C:\Programs\ESET Smart Security\ekrnMailPlugins.dll]  [ESET, 3.0.642 ]
[PID: 768 / otaznik][C:\Programs\Xfire\xfire.exe]  [Xfire Inc., 13133]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Programs\Xfire\XFIRE_LANG_us.dll]  [Xfire Inc., 11653]
    [C:\Programs\Xfire\icons.dll]  [Xfire Inc., 13133]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
[PID: 796 / otaznik][C:\Programs\Cobian Backup 8\cbInterface.exe]  [Luis Cobian, 8.4.0.202]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
[PID: 840 / SYSTEM][C:\Program Files\Java\jre6\bin\jqs.exe]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Program Files\Java\jre6\bin\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\system32\netfxperf.dll]  [Microsoft Corporation, 1.1.4322.573]
[PID: 856 / otaznik][C:\Programs\APC PowerChute Personal Edition\apcsystray.exe]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\UpsControl.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\UpsDevice.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\pdcdll.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\APC PowerChute Personal Edition\res.dll]  [American Power Conversion Corporation, 2, 0, 0, 0]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
[PID: 916 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.11.8122]
    [C:\WINDOWS\system32\nvapi.dll]  [NVIDIA Corporation, 6.14.11.8122]
[PID: 1080 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 2244 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
[PID: 2776 / SYSTEM][C:\WINDOWS\System32\wbem\wmiapsrv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]
[PID: 3684 / otaznik][C:\Programs\Azureus\Azureus.exe]  [Azureus Inc, 3.0.0.0]
    [c:\program files\java\jre6\bin\client\jvm.dll]  [Sun Microsystems, Inc., 11.3.0.02]
    [C:\Programs\Azureus\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [c:\program files\java\jre6\bin\hpi.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [c:\program files\java\jre6\bin\verify.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [c:\program files\java\jre6\bin\java.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [c:\program files\java\jre6\bin\zip.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Program Files\Java\jre6\bin\net.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Programs\Azureus\aereg.dll]  [N/A, ]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\Program Files\Java\jre6\bin\sunmscapi.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Program Files\Java\jre6\bin\management.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Program Files\Java\jre6\bin\nio.dll]  [Sun Microsystems, Inc., 6.0.130.3]
    [C:\Documents and Settings\otaznik\Local Settings\temp\swt-win32-3448.dll]  [Eclipse Foundation, 3.448]
    [C:\Documents and Settings\otaznik\Local Settings\temp\swt-gdip-win32-3448.dll]  [Eclipse Foundation, 3.448]
    [C:\WINDOWS\System32\Macromed\Flash\Flash10a.ocx]  [Adobe Systems, Inc., 10,0,12,36]
[PID: 2768 / otaznik][C:\Programs\totalcmd\TOTALCMD.EXE]  [C. Ghisler & Co., 7.02a]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
    [C:\WINDOWS\System32\browseui.dll]  [Společnost Microsoft, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 3232 / SYSTEM][C:\WINDOWS\system32\msiexec.exe]  [(Verified) Microsoft Corporation, 3.1.4001.5512]
[PID: 1000 / otaznik][C:\Programs\Mozilla Firefox\firefox.exe]  [Mozilla Corporation, 1.9.0.10]
    [C:\Programs\Mozilla Firefox\xul.dll]  [Mozilla Foundation, 1.9.0.10]
    [C:\Programs\Mozilla Firefox\sqlite3.dll]  [sqlite.org, 3.5.9]
    [C:\Programs\Mozilla Firefox\MOZCRT19.dll]  [Mozilla Foundation, 8.00.0000]
    [C:\Programs\Mozilla Firefox\js3250.dll]  [Netscape Communications Corporation, 4.0]
    [C:\Programs\Mozilla Firefox\nspr4.dll]  [Mozilla Foundation, 4.7.3]
    [C:\Programs\Mozilla Firefox\smime3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\nss3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\nssutil3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\plc4.dll]  [Mozilla Foundation, 4.7.3]
    [C:\Programs\Mozilla Firefox\plds4.dll]  [Mozilla Foundation, 4.7.3]
    [C:\Programs\Mozilla Firefox\ssl3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\xpcom.dll]  [Mozilla Foundation, 1.9.0.10]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Programs\Mozilla Firefox\components\browserdirprovider.dll]  [Mozilla Foundation, 1.9.0.10]
    [C:\Programs\Mozilla Firefox\components\brwsrcmp.dll]  [Mozilla Foundation, 1.9.0.10]
    [C:\Programs\Mozilla Firefox\softokn3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\nssdbm3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\freebl3.dll]  [Mozilla Foundation, 3.12.2.0 Basic ECC]
    [C:\Programs\Mozilla Firefox\nssckbi.dll]  [Mozilla Foundation, 1.73]
    [C:\WINDOWS\System32\browseui.dll]  [Společnost Microsoft, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 2064 / otaznik][C:\Documents and Settings\All Users\Plocha\SREngLdr.EXE]  [Smallfrogs Studio, 2.7.1.1261]
[PID: 1176 / otaznik][C:\Documents and Settings\All Users\Plocha\SRE9fdc4e94.EXE]  [Smallfrogs Studio, 2.7.1.1261]
    [C:\Programs\Xfire\xfire_toucan_37323.dll]  [Xfire Inc., 37323]
    [C:\WINDOWS\system32\MSVCR71.DLL]  [Microsoft Corporation, 7.10.3052.4]

==================================
File Associations
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock Provider
N/A

==================================
Autorun.Inf
N/A

==================================
HOSTS File
127.0.0.1       localhost

==================================
Process Privileges Scan
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 512, C:\PROGRAMS\COBIAN BACKUP 8\COBIAN.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 580, C:\PROGRAMS\APC POWERCHUTE PERSONAL EDITION\MAINSERV.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 796, C:\PROGRAMS\COBIAN BACKUP 8\CBINTERFACE.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 856, C:\PROGRAMS\APC POWERCHUTE PERSONAL EDITION\APCSYSTRAY.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3684, C:\PROGRAMS\AZUREUS\AZUREUS.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 2768, C:\PROGRAMS\TOTALCMD\TOTALCMD.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 2064, C:\DOCUMENTS AND SETTINGS\ALL USERS\PLOCHA\SRENGLDR.EXE]

==================================
Scheduled Tasks
[Enabled] AppleSoftwareUpdate.job
        C:\Program Files\Apple Software Update\SoftwareUpdate.exe

==================================
API HOOK
N/A

==================================
Hidden Process
N/A

==================================



Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod jaro3 » 31 kvě 2009 19:41

Logy se nedávají do code..
Zkus Dial-a-fix, log z SReng je O.K.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
otaznik
nováček
Příspěvky: 33
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod otaznik » 31 kvě 2009 19:55

Omlouvám se, ale jen jsem předchozí příspěvek běžně odeslal, nikde jsem nevybíral, aby se to zobrazilo jako kod.

Dial-a-fix jsem vyzkoušel, bez úspěchu. Tak to asi holt přeinstaluju, všal už by si to komp jistě zasloužil. :smile:

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Defaultní ikony, prosím o kontrolu logu

Příspěvekod jaro3 » 31 kvě 2009 21:09

Většinou dial-a-fix zabírá , ještě zkus toto:
Stáhni si :Dr. Web CureIt
dej update , po aktualizaci dej start.
Tlacitky dole muzeš soubor léčit, smazat, přesunout nebo přejmenovat
Pak zopakuj dial-a-fix.
Poté zkus přeinstalovat, abys měl jistotu že PC je bez nákazy..
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 47 hostů