Prosim o kontorlu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

ahmedan
nováček
Příspěvky: 6
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Prosim o kontorlu logu

Příspěvekod ahmedan » 16 črc 2011 00:19

Prosim o kontorlu logu -- nefunguje mi zvuk !
Dekuji


Logfile of random's system information tool 1.09 (written by random/random)
Run by Admin at 2011-07-16 00:12:17
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 870 MB (2%) free of 57 GB
Total RAM: 1014 MB (23% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:12:40, on 16.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\Program Files\FileServe Manager\FSStarter.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\Program Files\AVAST Software\Avast\sfzone\SafeZoneBrowser.exe
C:\totalcmd\TOTALCMD.EXE
C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... p=aus&qkw=%s&tbid=60327
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O2 - BHO: FileServeManager - {00000001-AB3B-4334-9DA2-EC6B2A02AFC6} - C:\Program Files\FileServe Manager\FileServeBHO.dll
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe
O4 - HKLM\..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [FileServe Manager Task] "C:\Program Files\FileServe Manager\FSStarter.exe"
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\RunOnce: [WMC_0] C:\WINDOWS\system32\cmd.exe /c """""C:\WINDOWS\inf\unregmp2.exe"" /ShowWMP"""
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [USDownloader] "C:\USDownloader_Plus\USDownloader Plus 1.35.40 Update 22.06.2010\USDownloader.exe"
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Download with FileServe Manager - C:\Program Files\FileServe Manager\GetUrl.htm
O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {26522409-8BBF-4C5B-A4D3-CF4B1D6F255B} (UMediaPlayer Class) - http://www.hdprint.co.uk/UMediaControl5.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab
O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} (BitDefender QuickScan Control) - http://quickscan.bitdefender.com/qsax/qsax.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ABDZFIBZPGZB - Sysinternals - www.sysinternals.com - C:\DOCUME~1\Admin\LOCALS~1\Temp\ABDZFIBZPGZB.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: OBJPPNFXMTW - Sysinternals - www.sysinternals.com - C:\DOCUME~1\Admin\LOCALS~1\Temp\OBJPPNFXMTW.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TEJIDH - Sysinternals - www.sysinternals.com - C:\DOCUME~1\Admin\LOCALS~1\Temp\TEJIDH.exe

--
End of file - 8260 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\ASC4_PerformanceMonitor.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-776561741-1343024091-842925246-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-776561741-1343024091-842925246-1003.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\xzqlctyu.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "jqs@sun.com:1.0, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=723823&p="

"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"{9F6FB1C9-22DA-4123-A7D4-9E7844B60EE5}"=C:\Program Files\FileServe Manager\FireFox_Extension\{9F6FB1C9-22DA-4123-A7D4-9E7844B60EE5}
"searchpredict@speedbit.com"=C:\Program Files\SearchPredict\PRFireFox
"{0329E7D6-6F54-462D-93F6-F5C3118BADF2}"=C:\Program Files\SpeedBit Video Downloader\SPFireFox
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/wpi,version=1.0]
"Description"=
"Path"=C:\Program Files\Microsoft\Web Platform Installer\\npwpidetector.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
npwachk.dll
QuickTimePlugin.class

C:\Program Files\Mozilla Firefox\searchplugins\
crawlersrch.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml

C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\xzqlctyu.default\extensions\
{bb6bc1bb-f824-4702-90cd-35e2fb24f25d}

C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\xzqlctyu.default\searchplugins\
daemon-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000001-AB3B-4334-9DA2-EC6B2A02AFC6}]
FileServeManager - C:\Program Files\FileServe Manager\FileServeBHO.dll [2011-05-25 1253656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-05-30 210352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}]
IObit Toolbar - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-15 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-09-15 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - IObit Toolbar - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2003-10-02 155648]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2003-10-02 118784]
"LoadFujitsuQuickTouch"=C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [2002-08-29 353792]
"LoadBtnHnd"=C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe [2003-08-20 61440]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-09-08 421888]
"FileServe Manager Task"=C:\Program Files\FileServe Manager\FSStarter.exe [2011-05-25 954648]
"TrojanScanner"=C:\Program Files\Trojan Remover\Trjscan.exe [2011-05-18 1233856]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2004-07-06 88363]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2011-07-11 2216960]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2007-11-21 86016]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-07-04 3493720]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WMC_0"=C:\WINDOWS\system32\cmd.exe [2008-04-14 390144]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2011-04-06 399736]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"USDownloader"=C:\USDownloader_Plus\USDownloader Plus 1.35.40 Update 22.06.2010\USDownloader.exe [2010-12-01 545792]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2011-06-25 3380632]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2011-07-11 3037696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeBridge]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\egui]
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe /hide /waitservice []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IpSharkk]
C:\Program Files\IpSharkk\IpSharkk.exe /auto []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2011-06-24 534880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2010-07-12 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Admin^Nabídka Start^Programy^Po spuštění^_uninst_.lnk]
C:\DOCUME~1\Admin\LOCALS~1\Temp\_uninst_.bat [2011-07-10 216]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Admin^Nabídka Start^Programy^Po spuštění^_uninst_39012686.lnk]
C:\DOCUME~1\Admin\LOCALS~1\Temp\_UNINS~1.BAT [2011-07-09 216]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Aktualizovat ESET licenci.lnk]
C:\PROGRA~1\ESET\MINODL~1\MINODL~1.EXE -u -d 10000 []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"Browser Defender Update Service"=2

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2003-10-02 319488]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableTaskMgr"=0
"DisableCMD"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoSetActiveDesktop"=0
"NoActiveDesktopChanges"=0
"NoFolderOptions"=0
"NoRun"=0
"NoDriveAutoRun"=67108863

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSetActiveDesktop"=0
"NoActiveDesktopChanges"=0
"NoFolderOptions"=0
"NoRun"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe"="C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4"
"C:\Program Files\VertrigoServ\Mysql\bin\v_mysqld.exe"="C:\Program Files\VertrigoServ\Mysql\bin\v_mysqld.exe:*:Enabled:v_mysqld"
"C:\Program Files\VertrigoServ\Apache\bin\v_apache.exe"="C:\Program Files\VertrigoServ\Apache\bin\v_apache.exe:*:Enabled:Apache HTTP Server"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Dictionaries\eclipse-php-helios-SR1-win32\eclipse\eclipse.exe"="C:\Dictionaries\eclipse-php-helios-SR1-win32\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\Dictionaries\eclipse-cpp-helios-SR1-win32\eclipse\eclipse.exe"="C:\Dictionaries\eclipse-cpp-helios-SR1-win32\eclipse\eclipse.exe:*:Enabled:eclipse"
"C:\Program Files\Google\Google Talk\googletalk.exe"="C:\Program Files\Google\Google Talk\googletalk.exe:*:Enabled:Google Talk"
"E:\eclipse-cpp-helios-SR1-win32\eclipse.exe"="E:\eclipse-cpp-helios-SR1-win32\eclipse.exe:*:Enabled:eclipse"
"E:\Program Files\Opera\opera.exe"="E:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\USDownloader_Plus\USDownloader Plus 1.35.40 Update 22.06.2010\USDownloader.exe"="C:\USDownloader_Plus\USDownloader Plus 1.35.40 Update 22.06.2010\USDownloader.exe:*:Enabled:Universal Share Downloader"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Internet Download Manager\IDMan.exe"="C:\Program Files\Internet Download Manager\IDMan.exe:*:Enabled:Internet Download Manager (IDM)"
"C:\Documents and Settings\Admin\Local Settings\Temp\is-6OQVQ.tmp\SpywareDoctor.tmp"="C:\Documents and Settings\Admin\Local Settings\Temp\is-6OQVQ.tmp\SpywareDoctor.tmp:*:Enabled:Setup/Uninstall"
"C:\Program Files\Spyware Doctor\Update.exe"="C:\Program Files\Spyware Doctor\Update.exe:*:Enabled:PC Tools Smart Update"
"C:\Program Files\Trojan Remover\trupd.exe"="C:\Program Files\Trojan Remover\trupd.exe:*:Enabled:Trojan Remover Updater"
"C:\Program Files\IObit\Protected Folder\ProtectedFolder.exe"="C:\Program Files\IObit\Protected Folder\ProtectedFolder.exe:*:Enabled:Protected Folder"
"C:\Documents and Settings\Admin\Local Settings\Temp\_iu14D2N.tmp"="C:\Documents and Settings\Admin\Local Settings\Temp\_iu14D2N.tmp:*:Enabled:Setup/Uninstall"
"C:\Documents and Settings\Admin\Local Settings\Temp\is-SPFGF.tmp\IObitToolbar-stub-1.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\is-SPFGF.tmp\IObitToolbar-stub-1.exe:*:Enabled:Setup Launcher Unicode"
"C:\Program Files\IObit\IObit Security 360\is360tray.exe"="C:\Program Files\IObit\IObit Security 360\is360tray.exe:*:Enabled:IObit Security 360"
"C:\Program Files\IObit\IObit Security 360\is360updater.exe"="C:\Program Files\IObit\IObit Security 360\is360updater.exe:*:Enabled:IObit Security 360 Updater"
"C:\Program Files\IObit\IObit Security 360\is360.exe"="C:\Program Files\IObit\IObit Security 360\is360.exe:*:Enabled:IObit Security 360"
"C:\WINDOWS\system32\msiexec.exe"="C:\WINDOWS\system32\msiexec.exe:*:Enabled:Windows® installer"
"C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"="C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe:*:Enabled:Search Settings"
"C:\Program Files\FileServe Manager\FileManager.exe"="C:\Program Files\FileServe Manager\FileManager.exe:*:Enabled:FileManager"
"C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT.exe"="C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT.exe:*:Enabled:RSIT"
"C:\RSIT.exe"="C:\RSIT.exe:*:Enabled:RSIT"
"C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT_2.exe"="C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT_2.exe:*:Enabled:RSIT_2"
"C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT_3.exe"="C:\Documents and Settings\Admin\Dokumenty\Downloads\Programs\RSIT_3.exe:*:Enabled:RSIT_3"
"C:\WINDOWS\explorer.exe"="C:\WINDOWS\explorer.exe:*:Enabled:Průzkumník Windows"
"C:\ResEdit-win32\ResEdit.exe"="C:\ResEdit-win32\ResEdit.exe:*:Enabled:ResEdit"
"C:\Program Files\Ultimate Process Manager\UPM.exe"="C:\Program Files\Ultimate Process Manager\UPM.exe:*:Enabled:UPM"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2011 11.0.2.556\cs\setup.exe"="C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2011 11.0.2.556\cs\setup.exe:*:Enabled:Kaspersky Internet Security"
"C:\Documents and Settings\Admin\Local Settings\Temp\1962986\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\1962986\3613614.exe:*:Enabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Local Settings\Temp\0049736\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\0049736\3613614.exe:*:Enabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Local Settings\Temp\1230811\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\1230811\3613614.exe:*:Disabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Local Settings\Temp\8685005\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\8685005\3613614.exe:*:Enabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Local Settings\Temp\2539940\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\2539940\3613614.exe:*:Enabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Local Settings\Temp\3955766\3613614.exe"="C:\Documents and Settings\Admin\Local Settings\Temp\3955766\3613614.exe:*:Enabled:Kaspersky Virus Removal Tool"
"C:\Documents and Settings\Admin\Dokumenty\Downloads\Compressed\MCG\MCG (tomtest.net).exe"="C:\Documents and Settings\Admin\Dokumenty\Downloads\Compressed\MCG\MCG (tomtest.net).exe:*:Enabled:MCG 2.1 by TomTest - tomtest.net"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=iyvu9_32.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.tscc"=tsccvid.dll
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux5"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"msacm.vorbis"=vorbis.acm
"Midi"=wdmaud.drv

======File associations======

.txt - open - Notepad.exe %1

======List of files/folders created in the last 1 month======

2011-07-15 19:24:00 ----A---- C:\WINDOWS\system32\drivers\DrvAgent32.sys
2011-07-15 18:52:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2011-07-14 23:54:09 ----N---- C:\WINDOWS\system32\spmsg.dll
2011-07-14 23:54:08 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2011-07-14 23:53:13 ----D---- C:\Program Files\Windows Media Connect 2
2011-07-14 23:52:48 ----DC---- C:\WINDOWS\$NtUninstallwmp11$
2011-07-14 23:50:50 ----A---- C:\WINDOWS\system32\wvc1dmod.dll
2011-07-14 23:50:49 ----DC---- C:\WINDOWS\$NtUninstallWMFDist11$
2011-07-14 23:49:43 ----D---- C:\WINDOWS\system32\LogFiles
2011-07-14 23:49:43 ----D---- C:\WINDOWS\system32\drivers\UMDF
2011-07-14 23:49:35 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2011-07-14 02:03:12 ----A---- C:\WINDOWS\system32\drivers\SET718.tmp
2011-07-14 02:01:40 ----A---- C:\WINDOWS\system32\drivers\cdrom.sys
2011-07-14 00:59:08 ----SHD---- C:\RECYCLER
2011-07-14 00:51:40 ----D---- C:\Documents and Settings\Admin\Data aplikací\ElevatedDiagnostics
2011-07-14 00:46:20 ----D---- C:\WINDOWS\system32\windowspowershell
2011-07-14 00:46:16 ----HDC---- C:\WINDOWS\$NtUninstallKB926139-v2$
2011-07-13 18:45:48 ----D---- C:\Program Files\trend micro
2011-07-13 18:08:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\Agnitum
2011-07-12 23:47:11 ----A---- C:\WINDOWS\isRS-000.tmp
2011-07-12 02:40:20 ----A---- C:\WINDOWS\system32\drivers\aswFsBlk.sys
2011-07-12 02:40:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2011-07-12 02:40:17 ----A---- C:\WINDOWS\system32\drivers\aswRdr.sys
2011-07-12 02:40:16 ----A---- C:\WINDOWS\system32\drivers\aswTdi.sys
2011-07-12 02:40:16 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2011-07-12 02:40:14 ----A---- C:\WINDOWS\system32\drivers\aswmon2.sys
2011-07-12 02:40:14 ----A---- C:\WINDOWS\system32\drivers\aswmon.sys
2011-07-12 02:39:50 ----A---- C:\WINDOWS\system32\drivers\aavmker4.sys
2011-07-12 02:36:08 ----A---- C:\WINDOWS\avastSS.scr
2011-07-12 02:36:06 ----A---- C:\WINDOWS\system32\aswBoot.exe
2011-07-12 02:11:02 ----D---- C:\Program Files\AVAST Software
2011-07-12 02:11:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-07-11 22:43:01 ----D---- C:\Documents and Settings\Admin\Data aplikací\GetRightToGo
2011-07-11 21:37:06 ----SD---- C:\ComboFix
2011-07-11 20:45:44 ----A---- C:\WINDOWS\zip.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\SWSC.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\SWREG.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\sed.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\PEV.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\NIRCMD.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\MBR.exe
2011-07-11 20:45:44 ----A---- C:\WINDOWS\grep.exe
2011-07-11 20:45:33 ----D---- C:\WINDOWS\ERDNT
2011-07-11 20:29:56 ----D---- C:\Program Files\Common Files\BitDefender
2011-07-11 02:20:23 ----D---- C:\Program Files\WinClamAVShield
2011-07-11 02:11:12 ----D---- C:\Documents and Settings\Admin\Data aplikací\Spyware Terminator
2011-07-11 02:11:12 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2011-07-11 02:11:06 ----D---- C:\Program Files\Spyware Terminator
2011-07-11 02:11:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2011-07-11 01:49:07 ----D---- C:\Documents and Settings\Admin\Data aplikací\QuickScan
2011-07-10 00:34:23 ----HD---- C:\WINDOWS\PIF
2011-07-09 23:24:09 ----D---- C:\Program Files\Common Files\EZB Systems
2011-07-09 23:24:08 ----D---- C:\Program Files\UltraISO
2011-07-09 17:10:01 ----D---- C:\Qoobox
2011-07-09 15:28:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files
2011-07-09 00:50:49 ----D---- C:\Program Files\Ultimate Process Manager
2011-07-08 21:50:39 ----D---- C:\RootkitRevealer
2011-07-08 20:16:31 ----D---- C:\rsit
2011-07-08 16:15:09 ----D---- C:\Documents and Settings\Admin\Data aplikací\Search Settings
2011-07-08 16:15:04 ----D---- C:\Program Files\IObit Toolbar
2011-07-08 16:15:04 ----D---- C:\Program Files\Common Files\Spigot
2011-07-08 16:15:04 ----D---- C:\Program Files\Application Updater
2011-07-07 23:49:22 ----SHD---- C:\WINDOWS\CSC
2011-07-07 23:49:11 ----A---- C:\WINDOWS\ntbtlog.txt
2011-07-07 23:37:18 ----D---- C:\Program Files\Common Files\PC Tools
2011-07-07 23:37:17 ----D---- C:\Program Files\Spyware Doctor
2011-07-07 12:50:43 ----D---- C:\Documents and Settings\Admin\Data aplikací\IObit
2011-07-05 00:58:42 ----A---- C:\WINDOWS\system32\wups2.dll
2011-07-05 00:58:39 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2011-07-04 18:05:09 ----D---- C:\Data
2011-06-30 18:57:56 ----A---- C:\WINDOWS\system32\kbdkor.dll
2011-06-30 18:57:56 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2011-06-30 18:57:56 ----A---- C:\WINDOWS\system32\kbd103.dll
2011-06-30 18:57:56 ----A---- C:\WINDOWS\system32\kbd101c.dll
2011-06-30 18:57:55 ----A---- C:\WINDOWS\system32\kbd101b.dll
2011-06-30 18:57:54 ----A---- C:\WINDOWS\system32\kbd106.dll
2011-06-30 18:55:57 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2011-06-26 21:59:34 ----D---- C:\Documents and Settings\All Users\Data aplikací\IObit
2011-06-26 21:59:32 ----D---- C:\Program Files\IObit
2011-06-26 16:18:23 ----A---- C:\WINDOWS\system32\ztvunace26.dll
2011-06-26 16:18:22 ----A---- C:\WINDOWS\system32\ztvunrar36.dll
2011-06-26 16:18:22 ----A---- C:\WINDOWS\system32\ztvcabinet.dll
2011-06-26 16:18:22 ----A---- C:\WINDOWS\system32\UNRAR3.dll
2011-06-26 16:18:22 ----A---- C:\WINDOWS\system32\unacev2.dll
2011-06-26 16:18:18 ----D---- C:\Program Files\Trojan Remover
2011-06-26 16:18:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Simply Super Software
2011-06-26 16:18:18 ----D---- C:\Documents and Settings\Admin\Data aplikací\Simply Super Software
2011-06-26 16:09:52 ----A---- C:\WINDOWS\system32\drivers\bghx.sys
2011-06-25 16:57:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\ESET
2011-06-25 15:45:52 ----D---- C:\Program Files\Common Files\SynthEdit
2011-06-25 14:58:43 ----D---- C:\Documents and Settings\All Users\Data aplikací\SynthEdit
2011-06-24 23:53:27 ----D---- C:\Program Files\SynthEdit 1.2 Alpha
2011-06-20 00:15:14 ----D---- C:\Program Files\Common Files\SoundToys
2011-06-19 23:04:23 ----A---- C:\WINDOWS\AF_Osc.dat

======List of files/folders modified in the last 1 month======

2011-07-16 00:11:30 ----A---- C:\WINDOWS\WINCMD.INI
2011-07-16 00:10:57 ----D---- C:\Documents and Settings\Admin\Data aplikací\uTorrent
2011-07-15 21:28:50 ----D---- C:\WINDOWS\Temp
2011-07-15 19:24:04 ----HD---- C:\WINDOWS\inf
2011-07-15 19:24:00 ----D---- C:\WINDOWS\system32\drivers
2011-07-15 19:00:13 ----D---- C:\WINDOWS\system32
2011-07-15 19:00:13 ----D---- C:\Program Files\Windows Media Player
2011-07-15 19:00:11 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-15 18:59:36 ----D---- C:\WINDOWS
2011-07-15 18:57:44 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-15 18:57:28 ----D---- C:\WINDOWS\Help
2011-07-15 18:57:27 ----A---- C:\WINDOWS\win.ini
2011-07-15 17:19:41 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-07-14 23:58:59 ----D---- C:\Documents and Settings\Admin\Data aplikací\DMCache
2011-07-14 23:53:58 ----A---- C:\WINDOWS\imsins.BAK
2011-07-14 23:53:13 ----RD---- C:\Program Files
2011-07-14 17:56:28 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-14 14:16:00 ----RSD---- C:\WINDOWS\assembly
2011-07-14 14:16:00 ----D---- C:\WINDOWS\Microsoft.NET
2011-07-14 01:57:05 ----D---- C:\Program Files\DAEMON Tools Toolbar
2011-07-14 00:53:46 ----D---- C:\WINDOWS\AppPatch
2011-07-14 00:46:28 ----D---- C:\WINDOWS\system32\config
2011-07-14 00:19:16 ----D---- C:\WINDOWS\system32\CatRoot
2011-07-14 00:05:21 ----D---- C:\WINDOWS\Registration
2011-07-13 19:11:21 ----D---- C:\WINDOWS\Minidump
2011-07-12 20:17:54 ----SHD---- C:\System Volume Information
2011-07-12 19:46:35 ----D---- C:\Program Files\Fileserve Link Generator
2011-07-12 00:31:21 ----D---- C:\Downloads
2011-07-11 23:47:33 ----D---- C:\Documents and Settings\Admin\Data aplikací\IDM
2011-07-11 20:29:56 ----D---- C:\Program Files\Common Files
2011-07-11 20:00:23 ----D---- C:\WINDOWS\pss
2011-07-11 20:00:22 ----ASH---- C:\boot.ini
2011-07-11 20:00:22 ----A---- C:\WINDOWS\system.ini
2011-07-11 03:21:18 ----D---- C:\WINDOWS\system
2011-07-11 01:49:07 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-07-11 01:38:49 ----HDC---- C:\WINDOWS\$NtUninstallKB958655-v2$
2011-07-11 00:49:46 ----SHD---- C:\WINDOWS\Installer
2011-07-10 19:37:03 ----D---- C:\WINDOWS\symbols
2011-07-10 19:36:30 ----D---- C:\WINDOWS\Cursors
2011-07-09 23:10:24 ----D---- C:\a
2011-07-09 22:35:50 ----D---- C:\Software
2011-07-08 16:15:04 ----D---- C:\WINDOWS\WinSxS
2011-07-08 15:16:51 ----D---- C:\WINDOWS\Prefetch
2011-07-08 15:03:41 ----D---- C:\Program Files\ESET
2011-07-07 13:01:21 ----SD---- C:\WINDOWS\Tasks
2011-07-05 00:58:48 ----D---- C:\WINDOWS\SoftwareDistribution
2011-07-03 21:01:26 ----D---- C:\Program Files\VSTPlugins
2011-07-01 20:00:09 ----D---- C:\Dictionaries
2011-06-28 19:40:19 ----D---- C:\Release
2011-06-27 16:46:11 ----D---- C:\audio
2011-06-27 02:15:17 ----D---- C:\WINDOWS\srchasst
2011-06-26 23:14:35 ----D---- C:\WINDOWS\Logs
2011-06-26 16:09:52 ----RSD---- C:\WINDOWS\Fonts
2011-06-26 02:36:17 ----D---- C:\Program Files\Internet Download Manager
2011-06-25 16:51:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-06-25 01:56:32 ----D---- C:\Program Files\Mozilla Firefox
2011-06-23 16:08:17 ----D---- C:\Drivers

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-07-29 691696]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-07-04 30808]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-07-04 25432]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-07-04 441176]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-07-04 309848]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-07-04 43608]
R1 IDMTDI;IDMTDI; C:\WINDOWS\system32\DRIVERS\idmtdi.sys [2011-06-09 101360]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R2 adfs;adfs; C:\WINDOWS\system32\drivers\adfs.sys [2008-08-14 74720]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-07-04 19544]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-07-04 102616]
R2 BtnHnd;BtnHnd; \??\C:\Program Files\Fujitsu\BtnHnd\BtnHnd.sys []
R2 irda;Protokol IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-14 88192]
R2 PfFilter;PfFilter; \??\C:\Program Files\IObit\Protected Folder\pffilter.sys []
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-10-08 120830]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-10-08 98842]
R3 {E2B953A6-195A-44F9-9BA3-3D5F4E32BB55};AIM 3.0 Part 01 Codec Driver CH-7009-A/CH-7011; C:\WINDOWS\system32\drivers\wA301a.sys [2003-10-08 33847]
R3 {E6759E0C-470B-44DC-A4A1-627E68BB3A85};AIM 3.0 SI164; C:\WINDOWS\system32\drivers\A302.sys [2003-10-08 11831]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-07-06 1267724]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2004-08-05 121344]
R3 CONAN;CONAN; C:\WINDOWS\system32\drivers\o2mmb.sys [2004-04-06 191264]
R3 DrvAgent32;DrvAgent32; \??\C:\WINDOWS\system32\Drivers\DrvAgent32.sys []
R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\WINDOWS\system32\DRIVERS\FUJ02B1.sys [2001-08-01 5248]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2003-10-08 93979]
R3 MbxStby;MbxStby; C:\WINDOWS\system32\drivers\MbxStby.sys [2004-04-06 5760]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 Phase26;PHASE26 WDM Audio; C:\WINDOWS\system32\drivers\Phase26m.sys [2005-11-10 19008]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 SMCIRDA;SMC IrCC Miniport Device Driver; C:\WINDOWS\system32\DRIVERS\smcirda.sys [2001-10-24 35913]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-14 60032]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S0 ufneadd;ufneadd; C:\WINDOWS\System32\drivers\ufohmo.sys []
S0 vagxvgx;vagxvgx; C:\WINDOWS\System32\drivers\wxkcsr.sys []
S1 6495500drv;6495500drv; C:\WINDOWS\system32\DRIVERS\6495500drv.sys []
S1 anf0100.sys;anf0100.sys; \??\C:\WINDOWS\system32\drivers\anf0100.sys []
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 1280335526;Virtual Bus for Microsoft ACPI-Compliant System; C:\WINDOWS\system32\drivers\1280335526.sys []
S3 a9sk4ibr;a9sk4ibr; C:\WINDOWS\system32\drivers\a9sk4ibr.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\Admin\LOCALS~1\Temp\catchme.sys []
S3 DELTAFW;%FW.SvcDesc%; C:\WINDOWS\system32\drivers\deltafw.sys []
S3 MAFWBOOT;Bootloader Service for M-Audio FW Driver (WDM); C:\WINDOWS\system32\drivers\mafwboot.sys []
S3 PHASE26U;usb-audio.de driver for Terratec Phase 26 USB; C:\WINDOWS\System32\Drivers\PHASE26U.sys [2008-03-18 344064]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2011-04-26 111280]
S3 VBoxNetFlt;VBoxNetFlt Service; C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys []
S3 VBoxUSB;VirtualBox USB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [2011-04-26 33712]
S3 w29n51;Intel(R) PRO/Wireless 2200BG Network Connection Driver for Windows XP; C:\WINDOWS\system32\DRIVERS\w29n51.sys [2005-09-12 3298432]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 RsFx0103;RsFx0103 Driver; C:\WINDOWS\system32\DRIVERS\RsFx0103.sys [2009-03-30 239336]
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2011-07-09 387072]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-07-04 42184]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 43010392]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2011-07-11 496128]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 Irmon;Sledování infračerveného přenosu; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 spupdsvc;Windows Service Pack Installer update service; C:\WINDOWS\system32\spupdsvc.exe [2007-11-30 26488]
S2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 ABDZFIBZPGZB;ABDZFIBZPGZB; C:\DOCUME~1\Admin\LOCALS~1\Temp\ABDZFIBZPGZB.exe [2011-07-10 486272]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-08-01 655624]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 OBJPPNFXMTW;OBJPPNFXMTW; C:\DOCUME~1\Admin\LOCALS~1\Temp\OBJPPNFXMTW.exe [2011-07-10 588672]
S3 TEJIDH;TEJIDH; C:\DOCUME~1\Admin\LOCALS~1\Temp\TEJIDH.exe [2011-07-09 424832]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-23 47128]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 366936]
S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]

-----------------EOF-----------------

Reklama
Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosim o kontorlu logu

Příspěvekod bledulka » 16 črc 2011 08:48

Ahoj,
odkdy Ti nejde zvuk, instaloval jsi něco?


Stáhni na plochu ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Před použitím vypni všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
-Zavři všechna aktivní okna a spusť ho pod učtem s právy administrátora
- Po spuštění se zobrazí podmínky použití, potvrď je stiskem tlačítka Ano

- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna

- Po dokončení skenování, se vytvoří log C:\ComboFix.txt, zkopíruj celý jeho obsah sem.

ahmedan
nováček
Příspěvky: 6
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontorlu logu

Příspěvekod ahmedan » 16 črc 2011 22:41

Ahoj,

Nejdrive se chci zeptat jestli je muj LOG naprosto v poradku a nemam tam vubec zadne viry ??

Ja jsem mel v pocitaci nejaky spatny virus ktery mi zpusoboval to ze mi nesly spustit programy jako napriklad IOBit malware atd..

Potom se mi ho podarilo zneskodnit a nainstaloval jsem si tam Spyware Terminator a Avast

Deje se mi to ze kdyz zapnu windows a system nabehne tam mi jde zvuk pouze na externi zvukovce a kdyz kliknu na Hlasitost v pravo dole tak mi to zahlasi ze nejsou k dipozici zadna smerovaci zarizeni nebo tak nejak ?

Kdyz se podivam do zpravce zarizeni tak je vsechno v poradku a vsechny ovladace mi funguji !

Proste mi nejde zvuk pri prehravani treba z youtube nebo windows player a tak, ale kdyz pustim treba program na tvorbu hudby tak mi to hraje !

Ja si pamatuju ze kdyz jsem mel v pocitaci ESET tak mi to delalo to same a kdyz jsem to odinstaloval tak mi to zase bezelo ?

Tak jestli to neni tim Spayware Terminatorem ??

Dekuji

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosim o kontorlu logu

Příspěvekod bledulka » 16 črc 2011 23:20

Tak to nevím, ale zkus ten combofix, pokud az to může nějaká breberka, přijdeme na to.

ahmedan
nováček
Příspěvky: 6
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: Prosim o kontorlu logu

Příspěvekod ahmedan » 17 črc 2011 15:32

Dobre,

mam ten LOG ktery jsem Vam poslal naprosto v poradku -- neni tam vubec nic ??

Zadny viry ??

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosim o kontorlu logu

Příspěvekod bledulka » 17 črc 2011 18:23

Vidím tam nějaké podezdřelé drivery.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 85 hostů