To vypadá na problém s pluginy- java sun.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG či Avast, následně T-Cleaner smaž a zapni si AVG či Avast.
////////////////////////////////////////
Zazálohuj si záložky v FF.
Odinstaluj FF.
následně smaž tyto složky:
C:\Program Files\Mozilla Firefox
C:\Documents and Settings\Jméno\Data aplikací\Mozilla
C:\Documents and Settings\Jméno\Local Settings\Data aplikací\Mozilla
Stáhni si novou mozzilu FF, a nainstaluj si jí.
**************************************************************
Spusť F-Secure Online Scanner
Tento skener je možno použít jen v prohlížeči Internet Explorer (není již podmínkou)! Postupuj podle instrukcí na stránce F-Secure pro správnou instalaci. Akceptuj licenci. Po instalaci ActiveX, klikni na Full System Scan. Když stahování skončeno, automaticky začne sken . Vyčkej konce skenu, po jeho dobu neprováděj jiné operace ani neklikej myší. Když skončí sken klikni na tlačítko Automatic clearing (recommended). Poté klikni na tlačítko Show Report a zkopíruj a vlož sem .
prosím o kontrolu logu (nelze připojovat přílohy k mailu)
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43295
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Po spuštění T-Cleanaru se mi zobrazilo následující hlášení:
"V počítači byla nalezena složka C:\WINDOWS\erdnt. Tato složka je součástí programu ERUNT, sloužícího k zálohování registru. Do počítače se však také integruje s použitím ComboFixu a SDFixu. Pokud program nepoužíváte, může být smazána."
Zvolil jsem smazání a objevila se modrá obrazovka, nezbylo než komp natvrdo vypnout. Po novém spuštění T-Cleanaru jsem už zvolil nemazat a proces čištění úspěšně doběhl do konce.
F-Secure nalezl 16 infikovaných souborů, 2 vyléčil. Dost těch, které nešly vyléčit, bylo v Program Files ve Photoshopu, kde jsem je vymazal ručně. Jediné, co se mi nepodařilo vymazat, je Netinfo.exe, údajně na ploše. Tam ho ale nevidím, ani když v Možnostech složky nechám zobrazovat i skryté soubory a chráněné soubory operačního systému. Nenajde ho ani vyhledávání.
Hlášení kontroly
Středa, Květen 12, 2010 17:59:44 - 19:24:14
Název počítače: SVANC-855433
Typ kontroly: Kontrolovat systém na přítomnost malwaru, spywaru a programů rootkit
Cíl: C:\ E:\
Nalezený malware: 14
Suspicious:W32/Malware!Gemini (spyware)
* Systém (Vyléčeno)
TrackingCookie.Doubleclick (spyware)
* Systém (Vyléčeno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\AGED PHOTO.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONDITIONAL MODE CHANGE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONSTRAIN TO 300 PIXELS.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONSTRAIN TO 64 PIXELS.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\DROP SHADOW FRAME.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\MAKE BUTTON.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\MAKE SEPIA TONE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\SAVE AS JPEG MEDIUM.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\SAVE AS PHOTOSHOP PDF.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\REQUIRED\DROPLET TEMPLATE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\DOCUMENTS AND SETTINGS\SVANC\PLOCHA\NETINFO.EXE (Nevyčištěno)
Suspicious:W32/Malware!Gemini (virus)
* C:\DOCUMENTS AND SETTINGS\SVANC\DOKUMENTY\KINO\SOFTWARE PRO KINO\RAPGET\RAPGET.EXE (Nevyčištěno & Odesláno)
Statistika
Kontrolováno:
* Soubory: 31653
* Systém: 3152
* Nekontrolováno: 8
Akce:
* Vyléčeno: 2
* Přejmenováno: 0
* Odstraněno: 0
* Nevyčištěno: 12
* Odesláno: 11
Nekontrolované soubory:
* C:\PAGEFILE.SYS
* C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* C:\WINDOWS\SYSTEM32\CONFIG\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
* C:\DOCUMENTS AND SETTINGS\SVANC\LOCAL SETTINGS\TEMP\HSPERFDATA_SVANC\2948
* C:\DOCUMENTS AND SETTINGS\SVANC\LOCAL SETTINGS\TEMP\HSPERFDATA_SVANC\2708
"V počítači byla nalezena složka C:\WINDOWS\erdnt. Tato složka je součástí programu ERUNT, sloužícího k zálohování registru. Do počítače se však také integruje s použitím ComboFixu a SDFixu. Pokud program nepoužíváte, může být smazána."
Zvolil jsem smazání a objevila se modrá obrazovka, nezbylo než komp natvrdo vypnout. Po novém spuštění T-Cleanaru jsem už zvolil nemazat a proces čištění úspěšně doběhl do konce.
F-Secure nalezl 16 infikovaných souborů, 2 vyléčil. Dost těch, které nešly vyléčit, bylo v Program Files ve Photoshopu, kde jsem je vymazal ručně. Jediné, co se mi nepodařilo vymazat, je Netinfo.exe, údajně na ploše. Tam ho ale nevidím, ani když v Možnostech složky nechám zobrazovat i skryté soubory a chráněné soubory operačního systému. Nenajde ho ani vyhledávání.
Hlášení kontroly
Středa, Květen 12, 2010 17:59:44 - 19:24:14
Název počítače: SVANC-855433
Typ kontroly: Kontrolovat systém na přítomnost malwaru, spywaru a programů rootkit
Cíl: C:\ E:\
Nalezený malware: 14
Suspicious:W32/Malware!Gemini (spyware)
* Systém (Vyléčeno)
TrackingCookie.Doubleclick (spyware)
* Systém (Vyléčeno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\AGED PHOTO.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONDITIONAL MODE CHANGE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONSTRAIN TO 300 PIXELS.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\CONSTRAIN TO 64 PIXELS.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\DROP SHADOW FRAME.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\MAKE BUTTON.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\MAKE SEPIA TONE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\SAVE AS JPEG MEDIUM.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\SAMPLES\DROPLETS\PHOTOSHOP DROPLETS\SAVE AS PHOTOSHOP PDF.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\PROGRAM FILES\ADOBE\PHOTOSHOP 7.0 CE\REQUIRED\DROPLET TEMPLATE.EXE (Nevyčištěno & Odesláno)
Suspicious:W32/Malware!Gemini (virus)
* C:\DOCUMENTS AND SETTINGS\SVANC\PLOCHA\NETINFO.EXE (Nevyčištěno)
Suspicious:W32/Malware!Gemini (virus)
* C:\DOCUMENTS AND SETTINGS\SVANC\DOKUMENTY\KINO\SOFTWARE PRO KINO\RAPGET\RAPGET.EXE (Nevyčištěno & Odesláno)
Statistika
Kontrolováno:
* Soubory: 31653
* Systém: 3152
* Nekontrolováno: 8
Akce:
* Vyléčeno: 2
* Přejmenováno: 0
* Odstraněno: 0
* Nevyčištěno: 12
* Odesláno: 11
Nekontrolované soubory:
* C:\PAGEFILE.SYS
* C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* C:\WINDOWS\SYSTEM32\CONFIG\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
* C:\DOCUMENTS AND SETTINGS\SVANC\LOCAL SETTINGS\TEMP\HSPERFDATA_SVANC\2948
* C:\DOCUMENTS AND SETTINGS\SVANC\LOCAL SETTINGS\TEMP\HSPERFDATA_SVANC\2708
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Teď jsem ještě jednou zkoušel Připojit soubor a jak Explorer tak i Firefox spadne.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43295
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Firefox zkusil si odinstalovat , smazat složky a nainstalovat FF znovu?
Stáhni si program OTM (by OldTimer)
a ulož si ho na disk C a spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE
- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.
Toto si smazal:
C:\DOCUMENTS AND SETTINGS\SVANC\DOKUMENTY\KINO\SOFTWARE PRO KINO\RAPGET\RAPGET.EXE ?
Stáhni si program OTM (by OldTimer)
a ulož si ho na disk C a spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE
Kód: Vybrat vše
:Processes
explorer.exe
:Services
:Reg
:Files
C:\DOCUMENTS AND SETTINGS\SVANC\PLOCHA\NETINFO.EXE
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]
- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.
Toto si smazal:
C:\DOCUMENTS AND SETTINGS\SVANC\DOKUMENTY\KINO\SOFTWARE PRO KINO\RAPGET\RAPGET.EXE ?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Firefox jsem odinstaloval a znovu nainstaloval verzi 3.6.3 hned po tom předminulým pokynu.
Ten Rapget.exe jsem taky vymazal společně s těma souborama z Photoshopu.
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
File/Folder C:\DOCUMENTS AND SETTINGS\SVANC\PLOCHA\NETINFO.EXE not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Svanc
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 3383761 bytes
->Flash cache emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17024 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 3,00 mb
OTM by OldTimer - Version 3.1.12.0 log created on 05122010_205908
Files moved on Reboot...
File C:\WINDOWS\temp\_av_proI.tm~a01728\setup.lok not found!
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_7ac.dat moved successfully.
Registry entries deleted on Reboot...
Ten Rapget.exe jsem taky vymazal společně s těma souborama z Photoshopu.
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
File/Folder C:\DOCUMENTS AND SETTINGS\SVANC\PLOCHA\NETINFO.EXE not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Svanc
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 3383761 bytes
->Flash cache emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17024 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 3,00 mb
OTM by OldTimer - Version 3.1.12.0 log created on 05122010_205908
Files moved on Reboot...
File C:\WINDOWS\temp\_av_proI.tm~a01728\setup.lok not found!
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_7ac.dat moved successfully.
Registry entries deleted on Reboot...
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43295
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Smaž:
C:\_OTM.
PC je na nákazy čisté..
Stahni si SREng -- System Repair Engineer
- rozbal na plochu a spust ho
- zvol "zvol Smart Scan", nech nastaveni tak jak je
- zvol "Verify the digital signature of process modules"
- klik na "Scan"
- klik na Save Reports, uloz log na plochu a cely obsah logu zkopirujt sem
- rozbal na plochu a spust ho
+
- Spusť ho a zvol možnost System Repair
- Na první záložce File Associations pokud bude zatrhnutý/vybraný některý čtvereček z výpisu, tak klikni dole na tlačítko Repair
+
Proveď kontrolu HDD a RAM.
C:\_OTM.
PC je na nákazy čisté..
Stahni si SREng -- System Repair Engineer
- rozbal na plochu a spust ho
- zvol "zvol Smart Scan", nech nastaveni tak jak je
- zvol "Verify the digital signature of process modules"
- klik na "Scan"
- klik na Save Reports, uloz log na plochu a cely obsah logu zkopirujt sem
- rozbal na plochu a spust ho
+
- Spusť ho a zvol možnost System Repair
- Na první záložce File Associations pokud bude zatrhnutý/vybraný některý čtvereček z výpisu, tak klikni dole na tlačítko Repair
+
Proveď kontrolu HDD a RAM.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Provedl jsem všechno kromě posledního bodu - kontrola HDD a RAM. Asi trochu lama-dotaz: Je na to nějaký nástroj přímo ve windows, nebo si mám něco stáhnout?
Jinak jeden zaškrtnutý čtvereček tam byl (.CHM Error. ["%SYSTEMROOT%\hh.exe" %1]), provedl jsem Repair. Explorer i Firefox padá při "Připojit soubor" nadále. Log je tady:
2010-05-12,22:49:53
System Repair Engineer 2.8.2.1321
Smallfrogs (http://www.KZTechs.com)
Windows XP Home Edition Service Pack 3 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been selected:
All Boot Items (Including Registry, Startup Folders, Services and so on)
Browser Add-ons
Running Processes (Including process model information)
File Associations
Winsock Provider
Autorun.Inf
HOSTS File
Process Privileges Scan
Scheduled Tasks
Windows Security Update Check
API HOOK
Hidden Process
Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Skype><"C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized> [(Verified)Skype Technologies SA]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<SoundMAXPnP><C:\Program Files\Analog Devices\Core\smax4pnp.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<AGRSMMSG><AGRSMMSG.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<avast!><C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe> [(Verified)ALWIL Software]
<SynTPStart><C:\Program Files\Synaptics\SynTP\SynTPStart.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<IgfxTray><C:\WINDOWS\system32\igfxtray.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<HotKeysCmds><C:\WINDOWS\system32\hkcmd.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<Persistence><C:\WINDOWS\system32\igfxpers.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<Cobian Backup 8 interface><"C:\Program Files\Cobian Backup 8\cbInterface.exe" -service> [Luis Cobian]
<OrderReminder><C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe> [Hewlett-Packard]
<VX6000><C:\WINDOWS\vVX6000.exe> [(Verified)Microsoft Corporation]
<LifeCam><"C:\Program Files\Microsoft LifeCam\LifeExp.exe"> [(Verified)Microsoft Corporation]
<ABBYY Community Agent><C:\Program Files\Sprint & FineReader 5.0 Office Try&Buy\Sprint\CAgent.exe> [ABBYY
(BIT Software)]
<SunJavaUpdateSched><"C:\Program Files\Common Files\Java\Java Update\jusched.exe"> [(Verified)Sun
Microsystems, Inc.]
<NeroFilterCheck><; C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe> [Nero AG]
<QlbCtrl.exe><; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start>
[(Verified)Hewlett-Packard Company]
<QuickTime Task><; "C:\Program Files\QuickTime\qttask.exe" -atboottime> [Apple Computer, Inc.]
<SoundMAX><; C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray> [Analog Devices, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Component Publisher]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<PostBootReminder><%SystemRoot%\system32\shell32.dll> [(Verified)Microsoft Windows Component Publisher]
<CDBurn><%SystemRoot%\system32\SHELL32.dll> [(Verified)Microsoft Windows Component Publisher]
<WebCheck><%Systemroot%\system32\webcheck.dll> [(Verified)Microsoft Windows Component Publisher]
<SysTray><%systemroot%\system32\stobject.dll> [(Verified)Microsoft Windows Component Publisher]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
<WinlogonNotify: crypt32chain><crypt32.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
<WinlogonNotify: cryptnet><cryptnet.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
<WinlogonNotify: cscdll><cscdll.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
<WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
<WinlogonNotify: igfxcui><igfxdev.dll> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
<WinlogonNotify: ScCertProp><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
<WinlogonNotify: Schedule><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
<WinlogonNotify: sclgntfy><sclgntfy.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
<WinlogonNotify: SensLogn><WlNotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
<WinlogonNotify: termsrv><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
<WinlogonNotify: wlballoon><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
<{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Windows
Component Publisher]
<{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
<IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
<Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
<Browser Customizations><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
<Vlastní nastavení prohlížeče><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>
[File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user
/install> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
<Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\wmp11.inf,PerUserStub> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<Adresář 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [File is
missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
<Aktualizace plochy systému Windows><regsvr32.exe /s /n /i:U shell32.dll> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
<Internet Explorer><C:\WINDOWS\system32\ie4uinit.exe -BaseSettings> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install> [(Verified)Microsoft
Corporation]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\ssstars.scr> [(Verified)Microsoft Windows Component Publisher]
==================================
Startup Folders
[Adobe Gamma Loader]
<C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.lnk -->
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [Adobe Systems, Inc.]><N>
==================================
Services
[Agere Modem Call Progress Audio / AgereModemAudio][Running/Auto Start]
<C:\WINDOWS\system32\agrsmsvc.exe><Agere Systems>
[Správa aplikací / AppMgmt][Stopped/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
[avast! iAVS4 Control Service / aswUpdSv][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"><ALWIL Software>
[avast! Antivirus / avast! Antivirus][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\ashServ.exe"><ALWIL Software>
[avast! Mail Scanner / avast! Mail Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service><ALWIL Software>
[avast! Web Scanner / avast! Web Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service><ALWIL Software>
[Cobian Backup 8 service / CobBMService][Running/Auto Start]
<C:\Program Files\Cobian Backup 8\cbService.exe><Luis Cobian>
[Google Updater Service / gusvc][Stopped/Manual Start]
<"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
[hpqwmiex / hpqwmiex][Running/Auto Start]
<C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe><Hewlett-Packard Development Company, L.P.>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
<"C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
[Java Quick Starter / JavaQuickStarterService][Running/Auto Start]
<"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program
Files\Java\jre6\lib\deploy\jqs\jqs.conf"><Sun Microsystems, Inc.>
[Spyware Terminator Realtime Shield Service / sp_rssrv][Running/Auto Start]
<"C:\Program Files\Spyware Terminator\sp_rsser.exe"><Crawler.com>
==================================
Drivers
[ADI UAA Function Driver for High Definition Audio Service / ADIHdAudAddService][Running/Manual Start]
<system32\drivers\ADIHdAud.sys><Analog Devices, Inc.>
[AE Audio Service / AEAudio][Running/Manual Start]
<system32\drivers\AEAudio.sys><Andrea Electronics Corporation>
[Agere Systems Soft Modem / AgereSoftModem][Running/Manual Start]
<system32\DRIVERS\AGRSM.sys><Agere Systems>
[aswFsBlk / aswFsBlk][Running/Auto Start]
<system32\DRIVERS\aswFsBlk.sys><ALWIL Software>
[Broadcom 440x 10/100 Integrated Controller / bcm4sbxp][Running/Manual Start]
<system32\DRIVERS\bcm4sbxp.sys><Broadcom Corporation>
[HBtnKey / HBtnKey][Running/Manual Start]
<system32\DRIVERS\cpqbttn.sys><Hewlett-Packard Development Company, L.P.>
[Ovladač Microsoft UAA pro sběrnici High Definition Audio / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HpqKbFilter Driver / HpqKbFiltr][Running/Manual Start]
<system32\DRIVERS\HpqKbFiltr.sys><Hewlett-Packard Development Company, L.P.>
[ialm / ialm][Running/Manual Start]
<system32\DRIVERS\igxpmp32.sys><Intel Corporation>
[Intel AHCI Controller / iaStor][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\iaStor.sys><Intel Corporation>
[Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows XP 32 Bit / NETw4x32][Running/Manual Start]
<system32\DRIVERS\NETw4x32.sys><Intel Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and
Asia K.K.>
[Spyware Terminator Driver 2 / sp_rsdrv2][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys><>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[Conexant Setup API / UIUSys][Stopped/Manual Start]
<system32\DRIVERS\UIUSYS.SYS><N/A>
==================================
Browser Add-ons
[Skype add-on (mastermind)]
{22BF413B-C6D2-4d91-82A9-A0F997BA588C} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems,
Inc.>
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, (Signed)
Sun Microsystems, Inc.>
[Skype add-on (button)]
{77BF5300-1474-4EC7-9980-D32B190E9B07} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[&Zdroje informací]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft
Corporation>
[]
{e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>
[ICQ6]
{E59EB121-F339-4851-A3BA-FE49C35617C2} <C:\Program Files\ICQ6\ICQ.exe, (Signed) ICQ, Inc.>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, (Signed) Microsoft
Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[Java Plug-in 1.6.0_20]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, (Signed) >
[]
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[Java Plug-in 1.6.0_20]
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, (Signed) >
[Java Plug-in 1.6.0_20]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\npjpi160_20.dll, (Signed) Sun
Microsystems, Inc.>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Computer, Inc.>
[Podpora odkazu pro Adobe PDF Reader]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll,
(Signed) Adobe Systems Incorporated>
[]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, >
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft
Corporation>
[]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} <, >
[Skype add-on (mastermind)]
{22BF413B-C6D2-4D91-82A9-A0F997BA588C} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx,
(Signed) Microsoft Corporation>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <, >
[Skype add-on (button)]
{77BF5300-1474-4EC7-9980-D32B190E9B07} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[XML DOM Document 6.0]
{88D96A05-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 6.0]
{88D96A06-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XSL Template 6.0]
{88D96A08-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XML HTTP 6.0]
{88D96A0A-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[]
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[Adobe PDF Reader]
{CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll,
(Signed) Adobe Systems, Inc.>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10e.ocx, (Signed) Adobe
Systems, Inc.>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems,
Inc.>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files\QuickTime\QTSystem\QuickTimeCheck.ocx, Apple
Computer, Inc.>
[Microsoft Silverlight]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\3.0.50106.0\npctrl.dll,
(Signed) Microsoft Corporation>
[]
{E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
[]
{E59EB121-F339-4851-A3BA-FE49C35617C2} <, >
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, (Signed)
Sun Microsystems, Inc.>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 3.0]
{F5078F33-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XSL Template 3.0]
{F5078F36-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[]
{FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[Add to Google Photos Screensa&ver]
<res://C:\WINDOWS\system32\GPhotos.scr/200, N/A>
[E&xportovat do aplikace Microsoft Office Excel]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
==================================
Running Processes
[PID: 772 / SYSTEM][\SystemRoot\System32\smss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 824 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 848 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2113)]
[PID: 896 / SYSTEM][C:\WINDOWS\system32\services.exe] [(Verified) Microsoft Corporation, 5.1.2600.5755
(xpsp_sp3_gdr.090206-1234)]
[PID: 908 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2113)]
[PID: 1068 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1148 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation,
5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1292 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1324 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1372 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation,
5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1460 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1816 / SYSTEM][C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 1872 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashServ.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswInteg.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswIdle.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\AhResMai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ahResMes.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResNS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResOut.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ahResP2P.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResStd.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResWS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashSSqlt.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\asw5Ldr.dll] [ALWIL Software, 1, 0, 0, 1]
[PID: 164 / Svanc][C:\WINDOWS\Explorer.EXE] [(Verified) Microsoft Corporation, 6.00.2900.5512
(xpsp.080413-2105)]
[C:\WINDOWS\system32\BROWSEUI.dll] [Společnost Microsoft, 6.00.2900.5512 (xpsp.080413-2105)]
[C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 9.3.2.163]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll] [Nero AG, 2, 2, 1, 1]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Spyware Terminator\sptcontmenu.dll] [Crawler.com, 1.1.0.15]
[C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll] [Malwarebytes Corporation, 1.45]
[C:\Program Files\Alwil Software\Avast4\ashShell.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\WinRAR\rarlng.dll] [, ]
[PID: 536 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-0852)]
[C:\WINDOWS\system32\ZLhp1018.DLL] [Zenographics, Inc., 5, 53, 3726, 0]
[C:\WINDOWS\system32\ZLM.dll] [Zenographics, Inc., 5, 50, 1416, 0]
[C:\WINDOWS\system32\pdfports.dll] [Adobe Systems Incorporated., 5.0.000]
[C:\Program Files\Adobe\Acrobat 5.0\Distillr\adistres.dll] [N/A, ]
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\IMFPrint.DLL] [Zenographics, Inc., 5, 54, 330, 0]
[C:\WINDOWS\system32\Imf32.dll] [Zenographics, Inc., 5, 60, 1204, 0]
[C:\WINDOWS\system32\ZTAG32.dll] [Zenographics, Inc., 5, 60, 1210, 0]
[C:\WINDOWS\system32\ZSPOOL.dll] [Zenographics, Inc., 5, 51, 709, 0]
[PID: 1564 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1624 / SYSTEM][C:\WINDOWS\system32\agrsmsvc.exe] [Agere Systems, 1.0.0.8]
[PID: 1636 / SYSTEM][C:\Program Files\Cobian Backup 8\cbService.exe] [Luis Cobian, 8.4.0.100]
[C:\Program Files\Cobian Backup 8\cbEngine.dll] [Luis Cobian, 8.4.0.218]
[C:\Program Files\Cobian Backup 8\cbNTSecW.dll] [Luis Cobian, 8.4.0.119]
[PID: 1680 / SYSTEM][C:\Program Files\Java\jre6\bin\jqs.exe] [Sun Microsystems, Inc., 6.0.200.2]
[C:\Program Files\Java\jre6\bin\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\netfxperf.dll] [Microsoft Corporation, 1.1.4322.573]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll] [Microsoft Corporation, 1.1.4322.2443]
[PID: 1940 / SYSTEM][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] [Microsoft Corporation,
7.00.9466]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MSDBG2.DLL] [Microsoft Corporation, 7.00.9466]
[PID: 1960 / SYSTEM][C:\Program Files\Microsoft LifeCam\MSCamSvc.exe] [Microsoft Corporation, 1.10.148.0]
[PID: 664 / SYSTEM][C:\Program Files\Spyware Terminator\sp_rsser.exe] [Crawler.com, 2.3.0.324]
[PID: 800 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1096 / SYSTEM][C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe] [Hewlett-Packard Development
Company, L.P., 2, 0, 1, 9]
[PID: 2068 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResMai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Lang.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Alwil Software\Avast4\Czech\langmai.dll] [ALWIL Software, 4, 8, 1356, 0]
[PID: 2124 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashWebSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 2296 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-0852)]
[PID: 2452 / SYSTEM][C:\WINDOWS\system32\wbem\wmiapsrv.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2108)]
[PID: 3104 / Svanc][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 10.2.4 18Jan08]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 10.2.4 18Jan08]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 10.2.4 18Jan08]
[PID: 3136 / Svanc][C:\Program Files\Analog Devices\Core\smax4pnp.exe] [Analog Devices, Inc., 6,0,0,82]
[C:\Program Files\Analog Devices\Core\SMWDMIF.dll] [Analog Devices, Inc., 6, 0, 5100, 0]
[PID: 3152 / Svanc][C:\WINDOWS\AGRSMMSG.exe] [Agere Systems, 2.1.59 2.1.59 08/24/2005 16:24:34]
[PID: 3188 / Svanc][C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Lang.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[c:\program files\alwil software\avast4\ahruimai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\uiAux2.dll] [ALWIL Software, 4, 8, 1317, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\alwil software\avast4\ahruimes.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruins.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruiout.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruip2p.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruistd.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruiws.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 3336 / Svanc][C:\WINDOWS\system32\hkcmd.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\hccutils.DLL] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxres.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3392 / Svanc][C:\WINDOWS\system32\igfxpers.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3408 / Svanc][C:\WINDOWS\system32\igfxsrvc.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxdev.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3460 / Svanc][C:\Program Files\Cobian Backup 8\cbInterface.exe] [Luis Cobian, 8.4.0.202]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\PDM.DLL] [Microsoft Corporation, 7.00.9466]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MSDBG2.DLL] [Microsoft Corporation, 7.00.9466]
[PID: 3476 / Svanc][C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe] [Hewlett-Packard, 2, 1,
1, 29]
[PID: 3500 / Svanc][C:\WINDOWS\vVX6000.exe] [Microsoft Corporation
, 1, 0, 5, 6]
[PID: 3528 / Svanc][C:\Program Files\Sprint & FineReader 5.0 Office Try&Buy\Sprint\CAgent.exe] [ABBYY (BIT
Software), 5.0.0.312]
[PID: 3588 / Svanc][C:\Program Files\Common Files\Java\Java Update\jusched.exe] [Sun Microsystems, Inc.,
2.0.2.1]
[PID: 3660 / Svanc][C:\Program Files\Skype\Phone\Skype.exe] [Skype Technologies S.A., 3.0.0.218]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[PID: 3700 / Svanc][C:\WINDOWS\system32\ctfmon.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2105)]
[PID: 2580 / Svanc][C:\Program Files\Mozilla Firefox\firefox.exe] [Mozilla Corporation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\xul.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\sqlite3.dll] [sqlite.org, 3.6.16.1]
[C:\Program Files\Mozilla Firefox\MOZCRT19.dll] [Mozilla Foundation, 8.00.0000]
[C:\Program Files\Mozilla Firefox\js3250.dll] [N/A, ]
[C:\Program Files\Mozilla Firefox\nspr4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssutil3.dll] [Mozilla Foundation, 3.12.6.2]
[C:\Program Files\Mozilla Firefox\plc4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\plds4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\xpcom.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\softokn3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssdbm3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\freebl3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssckbi.dll] [Mozilla Foundation, 1.78]
[PID: 3084 / SYSTEM][C:\WINDOWS\system32\wuauclt.exe] [(Verified) Microsoft Corporation, 7.4.7600.226
(winmain_wtr_wsus3sp2(wmbla).090806-1834)]
[PID: 1504 / Svanc][C:\Documents and Settings\Svanc\Plocha\SREngLdr.EXE] [Smallfrogs Studio, 2.8.2.1321]
[PID: 4008 / Svanc][C:\Documents and Settings\Svanc\Plocha\SRE22216b0d.EXE] [Smallfrogs Studio, 2.8.2.1321]
[C:\Documents and Settings\Svanc\Plocha\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["%SYSTEMROOT%\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
N/A
==================================
HOSTS File
127.0.0.1 localhost
==================================
Process Privileges Scan
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3460, C:\PROGRAM FILES\COBIAN BACKUP
8\CBINTERFACE.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3476, C:\PROGRAM
FILES\HEWLETT-PACKARD\ORDERREMINDER\ORDERREMINDER.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3528, C:\PROGRAM FILES\SPRINT & FINEREADER 5.0 OFFICE
TRY&BUY\SPRINT\CAGENT.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1504, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRENGLDR.EXE]
Special Privileges Enabled: SeDebugPrivilege [PID = 4008, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRE22216B0D.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 4008, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRE22216B0D.EXE]
==================================
Scheduled Tasks
N/A
==================================
Windows Security Update Check
KB940157, Služba Windows Search 4.0 pro systém Windows XP (KB940157)
KB928416, Sada Microsoft .NET Framework 3.0: x86 Language Pack (KB928416)
KB909520, Balíček Základní zprostředkovatel kryptografických služeb společnosti Microsoft pro čipové karty:
x86 (KB909520)
KB951847, Sada Microsoft .NET Framework 3.5 Service Pack 1 (KB951847) x86 Language Pack
KB944036, Aplikace Internet Explorer 8 pro systém Windows XP
KB931125, Aktualizace pro kořenové certifikáty [listopad 2009] (KB931125)
KB971513, Aktualizace systému Windows XP (KB971513)
KB976569, Aktualizace rozhraní Microsoft .NET Framework 2.0 Service Pack 2 pro systémy Windows Server 2003 a
Windows XP x86 (KB976569)
KB976570, Aktualizace rozhraní Microsoft .NET Framework 3.0 Service Pack 2 pro systémy Windows Server 2003 a
Windows XP x86 (KB976570)
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
Jinak jeden zaškrtnutý čtvereček tam byl (.CHM Error. ["%SYSTEMROOT%\hh.exe" %1]), provedl jsem Repair. Explorer i Firefox padá při "Připojit soubor" nadále. Log je tady:
2010-05-12,22:49:53
System Repair Engineer 2.8.2.1321
Smallfrogs (http://www.KZTechs.com)
Windows XP Home Edition Service Pack 3 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been selected:
All Boot Items (Including Registry, Startup Folders, Services and so on)
Browser Add-ons
Running Processes (Including process model information)
File Associations
Winsock Provider
Autorun.Inf
HOSTS File
Process Privileges Scan
Scheduled Tasks
Windows Security Update Check
API HOOK
Hidden Process
Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Skype><"C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized> [(Verified)Skype Technologies SA]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<SoundMAXPnP><C:\Program Files\Analog Devices\Core\smax4pnp.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<AGRSMMSG><AGRSMMSG.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<avast!><C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe> [(Verified)ALWIL Software]
<SynTPStart><C:\Program Files\Synaptics\SynTP\SynTPStart.exe> [(Verified)Microsoft Windows Hardware
Compatibility Publisher]
<IgfxTray><C:\WINDOWS\system32\igfxtray.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<HotKeysCmds><C:\WINDOWS\system32\hkcmd.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<Persistence><C:\WINDOWS\system32\igfxpers.exe> [(Verified)Microsoft Windows Hardware Compatibility
Publisher]
<Cobian Backup 8 interface><"C:\Program Files\Cobian Backup 8\cbInterface.exe" -service> [Luis Cobian]
<OrderReminder><C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe> [Hewlett-Packard]
<VX6000><C:\WINDOWS\vVX6000.exe> [(Verified)Microsoft Corporation]
<LifeCam><"C:\Program Files\Microsoft LifeCam\LifeExp.exe"> [(Verified)Microsoft Corporation]
<ABBYY Community Agent><C:\Program Files\Sprint & FineReader 5.0 Office Try&Buy\Sprint\CAgent.exe> [ABBYY
(BIT Software)]
<SunJavaUpdateSched><"C:\Program Files\Common Files\Java\Java Update\jusched.exe"> [(Verified)Sun
Microsystems, Inc.]
<NeroFilterCheck><; C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe> [Nero AG]
<QlbCtrl.exe><; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start>
[(Verified)Hewlett-Packard Company]
<QuickTime Task><; "C:\Program Files\QuickTime\qttask.exe" -atboottime> [Apple Computer, Inc.]
<SoundMAX><; C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray> [Analog Devices, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Component Publisher]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<PostBootReminder><%SystemRoot%\system32\shell32.dll> [(Verified)Microsoft Windows Component Publisher]
<CDBurn><%SystemRoot%\system32\SHELL32.dll> [(Verified)Microsoft Windows Component Publisher]
<WebCheck><%Systemroot%\system32\webcheck.dll> [(Verified)Microsoft Windows Component Publisher]
<SysTray><%systemroot%\system32\stobject.dll> [(Verified)Microsoft Windows Component Publisher]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
<WinlogonNotify: crypt32chain><crypt32.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
<WinlogonNotify: cryptnet><cryptnet.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
<WinlogonNotify: cscdll><cscdll.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
<WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
<WinlogonNotify: igfxcui><igfxdev.dll> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
<WinlogonNotify: ScCertProp><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
<WinlogonNotify: Schedule><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
<WinlogonNotify: sclgntfy><sclgntfy.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
<WinlogonNotify: SensLogn><WlNotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
<WinlogonNotify: termsrv><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
<WinlogonNotify: wlballoon><wlnotify.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
<{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Windows
Component Publisher]
<{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
<IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
<Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
<Browser Customizations><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
<Vlastní nastavení prohlížeče><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>
[File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user
/install> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
<Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection
C:\WINDOWS\INF\wmp11.inf,PerUserStub> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<Adresář 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [File is
missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
<Aktualizace plochy systému Windows><regsvr32.exe /s /n /i:U shell32.dll> [(Verified)Microsoft Windows
Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
<Internet Explorer><C:\WINDOWS\system32\ie4uinit.exe -BaseSettings> [(Verified)Microsoft Windows Component
Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed
Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install> [(Verified)Microsoft
Corporation]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\ssstars.scr> [(Verified)Microsoft Windows Component Publisher]
==================================
Startup Folders
[Adobe Gamma Loader]
<C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Adobe Gamma Loader.lnk -->
C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [Adobe Systems, Inc.]><N>
==================================
Services
[Agere Modem Call Progress Audio / AgereModemAudio][Running/Auto Start]
<C:\WINDOWS\system32\agrsmsvc.exe><Agere Systems>
[Správa aplikací / AppMgmt][Stopped/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
[avast! iAVS4 Control Service / aswUpdSv][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"><ALWIL Software>
[avast! Antivirus / avast! Antivirus][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\ashServ.exe"><ALWIL Software>
[avast! Mail Scanner / avast! Mail Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service><ALWIL Software>
[avast! Web Scanner / avast! Web Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service><ALWIL Software>
[Cobian Backup 8 service / CobBMService][Running/Auto Start]
<C:\Program Files\Cobian Backup 8\cbService.exe><Luis Cobian>
[Google Updater Service / gusvc][Stopped/Manual Start]
<"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
[hpqwmiex / hpqwmiex][Running/Auto Start]
<C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe><Hewlett-Packard Development Company, L.P.>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
<"C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
[Java Quick Starter / JavaQuickStarterService][Running/Auto Start]
<"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program
Files\Java\jre6\lib\deploy\jqs\jqs.conf"><Sun Microsystems, Inc.>
[Spyware Terminator Realtime Shield Service / sp_rssrv][Running/Auto Start]
<"C:\Program Files\Spyware Terminator\sp_rsser.exe"><Crawler.com>
==================================
Drivers
[ADI UAA Function Driver for High Definition Audio Service / ADIHdAudAddService][Running/Manual Start]
<system32\drivers\ADIHdAud.sys><Analog Devices, Inc.>
[AE Audio Service / AEAudio][Running/Manual Start]
<system32\drivers\AEAudio.sys><Andrea Electronics Corporation>
[Agere Systems Soft Modem / AgereSoftModem][Running/Manual Start]
<system32\DRIVERS\AGRSM.sys><Agere Systems>
[aswFsBlk / aswFsBlk][Running/Auto Start]
<system32\DRIVERS\aswFsBlk.sys><ALWIL Software>
[Broadcom 440x 10/100 Integrated Controller / bcm4sbxp][Running/Manual Start]
<system32\DRIVERS\bcm4sbxp.sys><Broadcom Corporation>
[HBtnKey / HBtnKey][Running/Manual Start]
<system32\DRIVERS\cpqbttn.sys><Hewlett-Packard Development Company, L.P.>
[Ovladač Microsoft UAA pro sběrnici High Definition Audio / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[HpqKbFilter Driver / HpqKbFiltr][Running/Manual Start]
<system32\DRIVERS\HpqKbFiltr.sys><Hewlett-Packard Development Company, L.P.>
[ialm / ialm][Running/Manual Start]
<system32\DRIVERS\igxpmp32.sys><Intel Corporation>
[Intel AHCI Controller / iaStor][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\iaStor.sys><Intel Corporation>
[Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows XP 32 Bit / NETw4x32][Running/Manual Start]
<system32\DRIVERS\NETw4x32.sys><Intel Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and
Asia K.K.>
[Spyware Terminator Driver 2 / sp_rsdrv2][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys><>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[Conexant Setup API / UIUSys][Stopped/Manual Start]
<system32\DRIVERS\UIUSYS.SYS><N/A>
==================================
Browser Add-ons
[Skype add-on (mastermind)]
{22BF413B-C6D2-4d91-82A9-A0F997BA588C} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems,
Inc.>
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, (Signed)
Sun Microsystems, Inc.>
[Skype add-on (button)]
{77BF5300-1474-4EC7-9980-D32B190E9B07} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[&Zdroje informací]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft
Corporation>
[]
{e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>
[ICQ6]
{E59EB121-F339-4851-A3BA-FE49C35617C2} <C:\Program Files\ICQ6\ICQ.exe, (Signed) ICQ, Inc.>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, (Signed) Microsoft
Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[Java Plug-in 1.6.0_20]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, (Signed) >
[]
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[Java Plug-in 1.6.0_20]
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, (Signed) >
[Java Plug-in 1.6.0_20]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\npjpi160_20.dll, (Signed) Sun
Microsystems, Inc.>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Computer, Inc.>
[Podpora odkazu pro Adobe PDF Reader]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll,
(Signed) Adobe Systems Incorporated>
[]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, >
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft
Corporation>
[]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} <, >
[Skype add-on (mastermind)]
{22BF413B-C6D2-4D91-82A9-A0F997BA588C} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, (Signed) Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx,
(Signed) Microsoft Corporation>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, (Signed) Microsoft Corporation>
[]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <, >
[Skype add-on (button)]
{77BF5300-1474-4EC7-9980-D32B190E9B07} <C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll,
(Signed) Skype Technologies S.A.>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, (Signed) Microsoft Corporation>
[XML DOM Document 6.0]
{88D96A05-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 6.0]
{88D96A06-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XSL Template 6.0]
{88D96A08-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[XML HTTP 6.0]
{88D96A0A-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml6.dll, (Signed) Microsoft Corporation>
[]
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >
[]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[Adobe PDF Reader]
{CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll,
(Signed) Adobe Systems, Inc.>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10e.ocx, (Signed) Adobe
Systems, Inc.>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems,
Inc.>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files\QuickTime\QTSystem\QuickTimeCheck.ocx, Apple
Computer, Inc.>
[Microsoft Silverlight]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\3.0.50106.0\npctrl.dll,
(Signed) Microsoft Corporation>
[]
{E2E2DD38-D088-4134-82B7-F2BA38496583} <, >
[]
{E59EB121-F339-4851-A3BA-FE49C35617C2} <, >
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, (Signed)
Sun Microsystems, Inc.>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[Free Threaded XML DOM Document 3.0]
{F5078F33-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XSL Template 3.0]
{F5078F36-C551-11D3-89B9-0000F81FE221} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <C:\WINDOWS\system32\msxml3.dll, (Signed) Microsoft Corporation>
[]
{FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[Add to Google Photos Screensa&ver]
<res://C:\WINDOWS\system32\GPhotos.scr/200, N/A>
[E&xportovat do aplikace Microsoft Office Excel]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
==================================
Running Processes
[PID: 772 / SYSTEM][\SystemRoot\System32\smss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 824 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 848 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2113)]
[PID: 896 / SYSTEM][C:\WINDOWS\system32\services.exe] [(Verified) Microsoft Corporation, 5.1.2600.5755
(xpsp_sp3_gdr.090206-1234)]
[PID: 908 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2113)]
[PID: 1068 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1148 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation,
5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1292 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1324 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1372 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation,
5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1460 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1816 / SYSTEM][C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 1872 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashServ.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswInteg.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswIdle.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\AhResMai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ahResMes.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResNS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResOut.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ahResP2P.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResStd.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResWS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashSSqlt.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\asw5Ldr.dll] [ALWIL Software, 1, 0, 0, 1]
[PID: 164 / Svanc][C:\WINDOWS\Explorer.EXE] [(Verified) Microsoft Corporation, 6.00.2900.5512
(xpsp.080413-2105)]
[C:\WINDOWS\system32\BROWSEUI.dll] [Společnost Microsoft, 6.00.2900.5512 (xpsp.080413-2105)]
[C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 9.3.2.163]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll] [Nero AG, 2, 2, 1, 1]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Spyware Terminator\sptcontmenu.dll] [Crawler.com, 1.1.0.15]
[C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll] [Malwarebytes Corporation, 1.45]
[C:\Program Files\Alwil Software\Avast4\ashShell.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\WinRAR\rarlng.dll] [, ]
[PID: 536 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-0852)]
[C:\WINDOWS\system32\ZLhp1018.DLL] [Zenographics, Inc., 5, 53, 3726, 0]
[C:\WINDOWS\system32\ZLM.dll] [Zenographics, Inc., 5, 50, 1416, 0]
[C:\WINDOWS\system32\pdfports.dll] [Adobe Systems Incorporated., 5.0.000]
[C:\Program Files\Adobe\Acrobat 5.0\Distillr\adistres.dll] [N/A, ]
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\IMFPrint.DLL] [Zenographics, Inc., 5, 54, 330, 0]
[C:\WINDOWS\system32\Imf32.dll] [Zenographics, Inc., 5, 60, 1204, 0]
[C:\WINDOWS\system32\ZTAG32.dll] [Zenographics, Inc., 5, 60, 1210, 0]
[C:\WINDOWS\system32\ZSPOOL.dll] [Zenographics, Inc., 5, 51, 709, 0]
[PID: 1564 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1624 / SYSTEM][C:\WINDOWS\system32\agrsmsvc.exe] [Agere Systems, 1.0.0.8]
[PID: 1636 / SYSTEM][C:\Program Files\Cobian Backup 8\cbService.exe] [Luis Cobian, 8.4.0.100]
[C:\Program Files\Cobian Backup 8\cbEngine.dll] [Luis Cobian, 8.4.0.218]
[C:\Program Files\Cobian Backup 8\cbNTSecW.dll] [Luis Cobian, 8.4.0.119]
[PID: 1680 / SYSTEM][C:\Program Files\Java\jre6\bin\jqs.exe] [Sun Microsystems, Inc., 6.0.200.2]
[C:\Program Files\Java\jre6\bin\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\netfxperf.dll] [Microsoft Corporation, 1.1.4322.573]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll] [Microsoft Corporation, 1.1.4322.2443]
[PID: 1940 / SYSTEM][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] [Microsoft Corporation,
7.00.9466]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MSDBG2.DLL] [Microsoft Corporation, 7.00.9466]
[PID: 1960 / SYSTEM][C:\Program Files\Microsoft LifeCam\MSCamSvc.exe] [Microsoft Corporation, 1.10.148.0]
[PID: 664 / SYSTEM][C:\Program Files\Spyware Terminator\sp_rsser.exe] [Crawler.com, 2.3.0.324]
[PID: 800 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2111)]
[PID: 1096 / SYSTEM][C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe] [Hewlett-Packard Development
Company, L.P., 2, 0, 1, 9]
[PID: 2068 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AhResMai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Lang.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Alwil Software\Avast4\Czech\langmai.dll] [ALWIL Software, 4, 8, 1356, 0]
[PID: 2124 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashWebSv.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 2296 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-0852)]
[PID: 2452 / SYSTEM][C:\WINDOWS\system32\wbem\wmiapsrv.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2108)]
[PID: 3104 / Svanc][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 10.2.4 18Jan08]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 10.2.4 18Jan08]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 10.2.4 18Jan08]
[PID: 3136 / Svanc][C:\Program Files\Analog Devices\Core\smax4pnp.exe] [Analog Devices, Inc., 6,0,0,82]
[C:\Program Files\Analog Devices\Core\SMWDMIF.dll] [Analog Devices, Inc., 6, 0, 5100, 0]
[PID: 3152 / Svanc][C:\WINDOWS\AGRSMMSG.exe] [Agere Systems, 2.1.59 2.1.59 08/24/2005 16:24:34]
[PID: 3188 / Svanc][C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Base.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\Program Files\Alwil Software\Avast4\Czech\Lang.dll] [ALWIL Software, 4, 8, 1356, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[c:\program files\alwil software\avast4\ahruimai.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll] [ALWIL Software, 4, 8, 1367, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\uiAux2.dll] [ALWIL Software, 4, 8, 1317, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\alwil software\avast4\ahruimes.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruins.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruiout.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruip2p.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruistd.dll] [ALWIL Software, 4, 8, 1367, 0]
[c:\program files\alwil software\avast4\ahruiws.dll] [ALWIL Software, 4, 8, 1367, 0]
[PID: 3336 / Svanc][C:\WINDOWS\system32\hkcmd.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\hccutils.DLL] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxres.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3392 / Svanc][C:\WINDOWS\system32\igfxpers.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3408 / Svanc][C:\WINDOWS\system32\igfxsrvc.exe] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 6.14.10.4926]
[C:\WINDOWS\system32\igfxdev.dll] [Intel Corporation, 6.14.10.4926]
[PID: 3460 / Svanc][C:\Program Files\Cobian Backup 8\cbInterface.exe] [Luis Cobian, 8.4.0.202]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\PDM.DLL] [Microsoft Corporation, 7.00.9466]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MSDBG2.DLL] [Microsoft Corporation, 7.00.9466]
[PID: 3476 / Svanc][C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe] [Hewlett-Packard, 2, 1,
1, 29]
[PID: 3500 / Svanc][C:\WINDOWS\vVX6000.exe] [Microsoft Corporation
, 1, 0, 5, 6]
[PID: 3528 / Svanc][C:\Program Files\Sprint & FineReader 5.0 Office Try&Buy\Sprint\CAgent.exe] [ABBYY (BIT
Software), 5.0.0.312]
[PID: 3588 / Svanc][C:\Program Files\Common Files\Java\Java Update\jusched.exe] [Sun Microsystems, Inc.,
2.0.2.1]
[PID: 3660 / Svanc][C:\Program Files\Skype\Phone\Skype.exe] [Skype Technologies S.A., 3.0.0.218]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[PID: 3700 / Svanc][C:\WINDOWS\system32\ctfmon.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512
(xpsp.080413-2105)]
[PID: 2580 / Svanc][C:\Program Files\Mozilla Firefox\firefox.exe] [Mozilla Corporation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\xul.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\sqlite3.dll] [sqlite.org, 3.6.16.1]
[C:\Program Files\Mozilla Firefox\MOZCRT19.dll] [Mozilla Foundation, 8.00.0000]
[C:\Program Files\Mozilla Firefox\js3250.dll] [N/A, ]
[C:\Program Files\Mozilla Firefox\nspr4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssutil3.dll] [Mozilla Foundation, 3.12.6.2]
[C:\Program Files\Mozilla Firefox\plc4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\plds4.dll] [Mozilla Foundation, 4.8.3]
[C:\Program Files\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.12.6.2 Basic ECC]
[C:\Program Files\Mozilla Firefox\xpcom.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll] [Mozilla Foundation, 1.9.2.3]
[C:\Program Files\Mozilla Firefox\softokn3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssdbm3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\freebl3.dll] [Mozilla Foundation, 3.12.4.6 Basic ECC]
[C:\Program Files\Mozilla Firefox\nssckbi.dll] [Mozilla Foundation, 1.78]
[PID: 3084 / SYSTEM][C:\WINDOWS\system32\wuauclt.exe] [(Verified) Microsoft Corporation, 7.4.7600.226
(winmain_wtr_wsus3sp2(wmbla).090806-1834)]
[PID: 1504 / Svanc][C:\Documents and Settings\Svanc\Plocha\SREngLdr.EXE] [Smallfrogs Studio, 2.8.2.1321]
[PID: 4008 / Svanc][C:\Documents and Settings\Svanc\Plocha\SRE22216b0d.EXE] [Smallfrogs Studio, 2.8.2.1321]
[C:\Documents and Settings\Svanc\Plocha\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["%SYSTEMROOT%\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
N/A
==================================
HOSTS File
127.0.0.1 localhost
==================================
Process Privileges Scan
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3460, C:\PROGRAM FILES\COBIAN BACKUP
8\CBINTERFACE.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3476, C:\PROGRAM
FILES\HEWLETT-PACKARD\ORDERREMINDER\ORDERREMINDER.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3528, C:\PROGRAM FILES\SPRINT & FINEREADER 5.0 OFFICE
TRY&BUY\SPRINT\CAGENT.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1504, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRENGLDR.EXE]
Special Privileges Enabled: SeDebugPrivilege [PID = 4008, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRE22216B0D.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 4008, C:\DOCUMENTS AND
SETTINGS\SVANC\PLOCHA\SRE22216B0D.EXE]
==================================
Scheduled Tasks
N/A
==================================
Windows Security Update Check
KB940157, Služba Windows Search 4.0 pro systém Windows XP (KB940157)
KB928416, Sada Microsoft .NET Framework 3.0: x86 Language Pack (KB928416)
KB909520, Balíček Základní zprostředkovatel kryptografických služeb společnosti Microsoft pro čipové karty:
x86 (KB909520)
KB951847, Sada Microsoft .NET Framework 3.5 Service Pack 1 (KB951847) x86 Language Pack
KB944036, Aplikace Internet Explorer 8 pro systém Windows XP
KB931125, Aktualizace pro kořenové certifikáty [listopad 2009] (KB931125)
KB971513, Aktualizace systému Windows XP (KB971513)
KB976569, Aktualizace rozhraní Microsoft .NET Framework 2.0 Service Pack 2 pro systémy Windows Server 2003 a
Windows XP x86 (KB976569)
KB976570, Aktualizace rozhraní Microsoft .NET Framework 3.0 Service Pack 2 pro systémy Windows Server 2003 a
Windows XP x86 (KB976570)
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Ještě jedna věc, sice to zaznělo v samém úvodu, ale přesto bych to raději zmínil. Tenhle problém mají prohlížeče s gmailem. Zkušební mailová schránka na seznam.cz i volny.cz umožní přidání přílohy bez problémů, teď jsem to znovu testoval.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43295
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
To clear the Java Runtime Environment (JRE) cache, do this:
Click Start > Settings > Control Panel.
Double-click the Java icon.
- The Java Control Panel appears.
Click "Settings" under Temporary Internet Files.
- The Temporary Files Settings dialog box appears.
Click "Delete Files" at the bottom.
- The Delete Temporary Files dialog box appears with options to delete:
Applications and Applets
Trace and Log Files
Click "OK".
Click "OK" on the Temporary Files Settings window.
Close the Java Control Panel.
Překlad:
Ke smazání cache Javy Runtime udělej toto:
Ovl. Panely-poklepej na ikonu Javy- objeví se kontrolní panel javy, klikni na Setting pod
Temporary Internet Files. Objeví se dialog nastavení dočasných souborů. Klikni na Delete Files dole.
Dialogový box se objeví s volbou smazání.
Applications and Applets
Trace and Log Files
Klikni na OK.
Klikni na OK v nastavení dočasných souborů. (Temporary Files Settings)
Zavři ovládací panel Javy.
Pak si stáhni javara.
http://www.stahuj.centrum.cz/utility_a_ ... ni/javara/
a spusť.
Klini na disk pravým a vyber vlastnosti-v okně klikni na záložku Nástroje.
V okně klikni Kontrola chyb -Zkontrolovat, pak zadej automaticky opravovat chyby (zatržítko.)
Lepší kontrola je prostřednictvím utility od výrobce HDD ( ze stránek výrobce najít přesný typ , stáhnout soubor ve formátu .iso , vypálit a nabootovat z něj .)
Pak můžeš zkusit defragmentaci HDD.
Zkontroluj si RAM:
Memtest:
http://www.stahuj.centrum.cz/utility_a_ ... i/memtest/
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Click Start > Settings > Control Panel.
Double-click the Java icon.
- The Java Control Panel appears.
Click "Settings" under Temporary Internet Files.
- The Temporary Files Settings dialog box appears.
Click "Delete Files" at the bottom.
- The Delete Temporary Files dialog box appears with options to delete:
Applications and Applets
Trace and Log Files
Click "OK".
Click "OK" on the Temporary Files Settings window.
Close the Java Control Panel.
Překlad:
Ke smazání cache Javy Runtime udělej toto:
Ovl. Panely-poklepej na ikonu Javy- objeví se kontrolní panel javy, klikni na Setting pod
Temporary Internet Files. Objeví se dialog nastavení dočasných souborů. Klikni na Delete Files dole.
Dialogový box se objeví s volbou smazání.
Applications and Applets
Trace and Log Files
Klikni na OK.
Klikni na OK v nastavení dočasných souborů. (Temporary Files Settings)
Zavři ovládací panel Javy.
Pak si stáhni javara.
http://www.stahuj.centrum.cz/utility_a_ ... ni/javara/
a spusť.
Klini na disk pravým a vyber vlastnosti-v okně klikni na záložku Nástroje.
V okně klikni Kontrola chyb -Zkontrolovat, pak zadej automaticky opravovat chyby (zatržítko.)
Lepší kontrola je prostřednictvím utility od výrobce HDD ( ze stránek výrobce najít přesný typ , stáhnout soubor ve formátu .iso , vypálit a nabootovat z něj .)
Pak můžeš zkusit defragmentaci HDD.
Zkontroluj si RAM:
Memtest:
http://www.stahuj.centrum.cz/utility_a_ ... i/memtest/
Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Veškeré pokyny k Java Runtime Environement jsem provedl.
S programem Javara jsem provedl Remove Older Versions. Pak jsem ještě v Additional Tasks zaškrtl Remove Useless JRE Files, Remove Startup Entry a Remove Sun Download Manager, snad jsem něco nepodělal...
K disku (notebook HP) Seagate Momentus 5400.3 jsem zmíněnou utilitu pro kontrolu na stránkách Seagate nenašel. Spustil jsem tedy kontrolu přes Vlastnosti/Nástroje. Objevila se hláška, že kontrola může být provedena až po restartu, tak jsem restartoval, kontrola naběhla, tak jsem šel spát. Asi ve 3 ráno jsem pak koukal, že naběhly XP, na ploše byla hláška o problému se Skype.exe. Žádný log o kontrole disku se ale nezobrazil a nevím, kde ho hledat. Odklikl jsem to a pustil kontrolu RAM.
Notebook má RAM 1,5 GB, nejsem si jistý velikostí jednotlivých modulů, zadal jsem 1024. Ráno, po cca 7 hodinách testu hlásil Memtest 0 Errors a pokrytí 154%.
Po restartu opět hláška se Skype. V "Přidat nebo odebrat programy" jsem zjistil, že tam je Skype 3,0 a Skype TM 3,8. Odebral jsem 3,0 a to včetně historie. Při pokusu o odebrání verze 3,8 se objevila hláška, "že instalační služba není přístupná". Windows přitom byly v normálním režimu. To se opakovalo i po dalším restartu.
Následně jsem zjistil, že nejde spustit Internet Explorer, obrazovka jen problikne a nic víc se nestane. V dolní liště se mi přitom přestaly zobrazovat spuštěné programy a vlastně byla prázdná úplně. Vrátil jsem panel jazyků a rychlý start, ale stále se nezobrazují obdélníčky spuštěných programů - nevím, jak je tam dostat. Každopádně ve správci úloh jsem zjistil, že Internet Explorer skutečně neběží.
Firefox při "Připojit soubor" spadne.
S programem Javara jsem provedl Remove Older Versions. Pak jsem ještě v Additional Tasks zaškrtl Remove Useless JRE Files, Remove Startup Entry a Remove Sun Download Manager, snad jsem něco nepodělal...
K disku (notebook HP) Seagate Momentus 5400.3 jsem zmíněnou utilitu pro kontrolu na stránkách Seagate nenašel. Spustil jsem tedy kontrolu přes Vlastnosti/Nástroje. Objevila se hláška, že kontrola může být provedena až po restartu, tak jsem restartoval, kontrola naběhla, tak jsem šel spát. Asi ve 3 ráno jsem pak koukal, že naběhly XP, na ploše byla hláška o problému se Skype.exe. Žádný log o kontrole disku se ale nezobrazil a nevím, kde ho hledat. Odklikl jsem to a pustil kontrolu RAM.
Notebook má RAM 1,5 GB, nejsem si jistý velikostí jednotlivých modulů, zadal jsem 1024. Ráno, po cca 7 hodinách testu hlásil Memtest 0 Errors a pokrytí 154%.
Po restartu opět hláška se Skype. V "Přidat nebo odebrat programy" jsem zjistil, že tam je Skype 3,0 a Skype TM 3,8. Odebral jsem 3,0 a to včetně historie. Při pokusu o odebrání verze 3,8 se objevila hláška, "že instalační služba není přístupná". Windows přitom byly v normálním režimu. To se opakovalo i po dalším restartu.
Následně jsem zjistil, že nejde spustit Internet Explorer, obrazovka jen problikne a nic víc se nestane. V dolní liště se mi přitom přestaly zobrazovat spuštěné programy a vlastně byla prázdná úplně. Vrátil jsem panel jazyků a rychlý start, ale stále se nezobrazují obdélníčky spuštěných programů - nevím, jak je tam dostat. Každopádně ve správci úloh jsem zjistil, že Internet Explorer skutečně neběží.
Firefox při "Připojit soubor" spadne.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43295
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Zkusíme opravit ..
Stáhni si Dial-a-fix
Control Panel applets - Pokusí se o opravu Ovládacích panelů.
Explorer/IE/OE/shell/WMP - Pokusí se o opravu Internet Exploreru, Outlook Expressu, Windows Media Playeru atd.
Klikni na službu(dej zatržítko) a potom na GO.
Pokud to nepomůže:
Klikni na kladívko-další možnosti:
Repair/reinstall IE - Reinstaluje Internet Explorer (případná potřeba instalačního media Windows).
Poslední možnost:
SFC scan - Spustí nástroj pro kontrolu systémových souborů (případná potřeba instalačního media Windows).
Klikni na službu a potom na GO.
Stáhni si Dial-a-fix
Control Panel applets - Pokusí se o opravu Ovládacích panelů.
Explorer/IE/OE/shell/WMP - Pokusí se o opravu Internet Exploreru, Outlook Expressu, Windows Media Playeru atd.
Klikni na službu(dej zatržítko) a potom na GO.
Pokud to nepomůže:
Klikni na kladívko-další možnosti:
Repair/reinstall IE - Reinstaluje Internet Explorer (případná potřeba instalačního media Windows).
Poslední možnost:
SFC scan - Spustí nástroj pro kontrolu systémových souborů (případná potřeba instalačního media Windows).
Klikni na službu a potom na GO.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: prosím o kontrolu logu (nelze připojovat přílohy k mailu
Teď jsem ještě zjistil, že mi nejde kopírovat text z Firefoxu do Notepadu. Text z jednoho txt souboru přitom do jiného txt souboru kopírovat lze. Dále nejdou přetahovat soubory z jednoho okna do druhého. Pomocí pravého tlačítka myši sice mohu kopírovat, ale v jiném okně je "Vložit" šedé, neaktivní.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 115 hostů