Prosim o kontorlu logu - porad se mi vypina pc

Sekce věnovaná virům a jiným škodlivým kódům, rovněž ale nástrojům, kterým se lze proti nim bránit…

Moderátoři: Mods_senior, Security team

rosnatka
nováček
Příspěvky: 3
Registrován: březen 08
Pohlaví: Nespecifikováno
Stav:
Offline

Prosim o kontorlu logu - porad se mi vypina pc

Příspěvekod rosnatka » 11 bře 2008 12:07

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:59:34, on 11.3.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
D:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
D:\Program Files\HP\HP Software Update\HPWuSchd2.exe
D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Program Files\ICQLite\ICQLite.exe
D:\Program Files\Microcom\ADSL DeskPorte USB\CnxDslTb.exe
D:\Program Files\Logitech\Video\LogiTray.exe
D:\WINDOWS\system32\LVCOMSX.EXE
D:\WINDOWS\vsnpstd.exe
D:\Program Files\QuickTime\QTTask.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\Logitech\Video\FxSvr2.exe
D:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\Program Files\Skype\Plugin Manager\skypePM.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - D:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQToolbar\toolbaru.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DAEMON Tools] "D:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] D:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [.nvsvc] D:\WINDOWS\system\smss.exe /w
O4 - HKLM\..\Run: [AudioDeck] D:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [WhenUSearchWHSE] "D:\Program Files\WhenUSearch\whse.exe"
O4 - HKLM\..\Run: [avast!] D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ICQ Lite] "D:\Program Files\ICQLite\ICQLite.exe" -minimize
O4 - HKLM\..\Run: [CnxDslTaskBar] "D:\Program Files\Microcom\ADSL DeskPorte USB\CnxDslTb.exe" "Microcom\ADSL DeskPorte USB"
O4 - HKLM\..\Run: [devenv] D:\WINDOWS\system\smvss.exe /w
O4 - HKLM\..\Run: [LogitechVideoRepair] D:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] D:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LVCOMSX] D:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [snpstd] D:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] D:\Program Files\T-Mobile Communication Centre\Centre.exe
O4 - HKCU\..\RunOnce: [ICQ Lite] D:\Program Files\ICQLite\ICQLite.exe -trayboot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = D:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: GlobeTrotter Mobility Manager.lnk = D:\Program Files\Option\GlobeTrotter Mobility Manager\MobilityManager.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 1246706437
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple, Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - D:\Program Files\CyberLink\Shared files\RichVideo.exe (file missing)

--
End of file - 8307 bytes



dekuju dekuju,,,,,

Reklama
Uživatelský avatar
Baron Prášil
Master Level 7
Master Level 7
Příspěvky: 4882
Registrován: červen 06
Pohlaví: Muž
Stav:
Offline

Příspěvekod Baron Prášil » 11 bře 2008 14:00

tak tě vítám na PC-HELP :bigups: a přívítám tedy i tu tvou zoologickou zahradu
která ti řádí v kompu :smile:

takže bych doporučil použít zprvu SDFix
Stáhni si SDFix
a spusť ho,vybalí se do vlastní složky (bude asi na C:\SDfix).

Poté restartuj PC do nouzového režimu.Otevři složku kde je vybalený SDFix a spusť soubor RunThis.bat a stiskni Y pro zahájení čistícího procesu.
Pro dokončení bude třeba stisknout libovolnou klávesu a počítač se restartuje.
Při nabíhání operačního systému budeš muset po vyzvání stisknout libovolnou klávesu pro vstup do do Win.

Po naběhnutí OS by ti měl zobrazit výpis SDFixu tak ho sem zkopíruj. pokud ti nevyběhne tak je umístěný ve své vlastní složce jako Report.txt+ pošli nový HJT log.

také bych doporučoval nainstalovat firewall a to nejlépe před akcí s sdfixem
vyber si tady,doporučuju ZoneAlarm nebo Comodo
návod na ZA http://www.kn.vutbr.cz/docs/conf/zonealarm/
na comodo http://www.nforce.cz/modules.php?name=N ... cle&sid=18

a nově přihazuji též Ashampoo Firewall free + čeština
(když někdo přihodí návod nebudu se zlobit)

rosnatka
nováček
Příspěvky: 3
Registrován: březen 08
Pohlaví: Nespecifikováno
Stav:
Offline

Příspěvekod rosnatka » 11 bře 2008 15:06

Zoologicka? :o)
jak to?,,

ja teda sem pocitacovej analfabet,,, ale zvladla jsem SDfix
a jeste jednou vyjela ten hjt ci co to je,,,


SDFix: Version 1.155

Run by Administrator on Łt 11.03.2008 at 14:35

Microsoft Windows XP [Verze 5.1.2600]
Running From: D:\SDFix

Checking Services :


Restoring Windows Registry Values
Restoring Windows Default Hosts File
Restoring Missing Security Center Service

Rebooting


Checking Files :

Trojan Files Found:

D:\autorun.inf - Deleted
D:\WINDOWS\system\smss.exe - Deleted
D:\WINDOWS\system\smvss.exe - Deleted





Removing Temp Files

ADS Check :



Final Check :

catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-11 14:42:09
Windows 5.1.2600 Service Pack 2 FAT NTAPI

scanning hidden processes ...

scanning hidden services ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Remaining Services :



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\\Program Files\\ICQLite\\ICQLite.exe"="D:\\Program Files\\ICQLite\\ICQLite.exe:*:Enabled:ICQ Lite"
"D:\\Zaloha\\Plocha\\SDC202\\StrongDC.exe"="D:\\Zaloha\\Plocha\\SDC202\\StrongDC.exe:*:Enabled:StrongDC++"
"D:\\Program Files\\Minions of Mirth\\bin\\MinionsOfMirth.exe"="D:\\Program Files\\Minions of Mirth\\bin\\MinionsOfMirth.exe:*:Enabled:MinionsOfMirth"
"D:\\Program Files\\Turbine Entertainment Software\\Asheron's Call\\aclauncher.exe"="D:\\Program Files\\Turbine Entertainment Software\\Asheron's Call\\aclauncher.exe:*:Enabled:AC Launcher"
"D:\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\acclient.exe"="D:\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\acclient.exe:*:Enabled:acclient"
"\\\\146.102.120.2\\acerdata (d)\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\aclauncher.exe"="\\\\146.102.120.2\\acerdata (d)\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\aclauncher.exe:*:Enabled:AC Launcher"
"\\\\146.102.120.2\\acerdata (d)\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\acclient.exe"="\\\\146.102.120.2\\acerdata (d)\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\acclient.exe:*:Enabled:acclient"
"D:\\Zaloha\\sdc202\\StrongDC.exe"="D:\\Zaloha\\sdc202\\StrongDC.exe:*:Enabled:StrongDC++"
"\\\\146.102.120.2\\acerdata (d)\\Program Files\\ICQLite\\ICQLite.exe"="\\\\146.102.120.2\\acerdata (d)\\Program Files\\ICQLite\\ICQLite.exe:*:Enabled:ICQLite"
"C:\\wincmd\\WINCMD32.EXE"="C:\\wincmd\\WINCMD32.EXE:*:Enabled:Windows Commander 32 bit international version, file manager replacement for Windows"
"D:\\Program Files\\World of Warcraft\\WoW-1.12.x-to-2.0.1-enGB-patch-downloader.exe"="D:\\Program Files\\World of Warcraft\\WoW-1.12.x-to-2.0.1-enGB-patch-downloader.exe:*:Enabled:Blizzard Downloader"
"C:\\Documents and Settings\\home\\Plocha\\sdc202\\StrongDC.exe"="C:\\Documents and Settings\\home\\Plocha\\sdc202\\StrongDC.exe:*:Enabled:StrongDC++"
"D:\\WINDOWS\\system32\\svchost.exe"="D:\\WINDOWS\\system32\\svchost.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\62exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\62exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\24exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\24exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.t.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.t.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\15exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\15exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\aclauncher.exe"="D:\\Program Files\\Turbine\\Asheron's Call - Throne of Destiny\\aclauncher.exe:*:Enabled:AC Launcher"
"C:\\Program Files\\WinMX\\WinMX.exe"="C:\\Program Files\\WinMX\\WinMX.exe:*:Enabled:WinMX Application"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\51exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\51exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\0exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\0exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.y.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.y.exe:*:Enabled:Microsoft Update"
"D:\\Documents and Settings\\Le\\Local Settings\\Temp\\Rar$EX01.891\\StrongDC.exe"="D:\\Documents and Settings\\Le\\Local Settings\\Temp\\Rar$EX01.891\\StrongDC.exe:*:Enabled:StrongDC++"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exml32.7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exml32.7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exed32_2.a.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exed32_2.a.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\71exed32_2.a.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\71exed32_2.a.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\97exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\97exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\28exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\28exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\5exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\5exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\4exed32_2.a.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\4exed32_2.a.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\75exinjs.z.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\75exinjs.z.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\72exinjs.a1.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\72exinjs.a1.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exml32.7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exml32.7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a1.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a1.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\7exed32_2.a.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\7exed32_2.a.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a1.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a1.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exinjs.a1.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exinjs.a1.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\51exinjs.a1.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\51exinjs.a1.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\68exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\68exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\67exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\67exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a2.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a2.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\57exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\57exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\78exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\78exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\36exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\36exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\59exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\59exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\43exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\43exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\39exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\39exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\48exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\48exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\52exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\52exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\64exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\64exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\71exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\71exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\42exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\42exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\4exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\4exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\77exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\77exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\60exinjs.a3.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\60exinjs.a3.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\33exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\33exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\55exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\55exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\18exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\18exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\16exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\16exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\66exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\66exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a4.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a4.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\17exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\17exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\56exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\56exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\83exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\83exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\74exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\74exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\97exinjs.a5.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\97exinjs.a5.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\20exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\20exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\26exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\26exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\45exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\45exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\67exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\67exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\50exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\50exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\92exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\92exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\19exinjs.a6.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\19exinjs.a6.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\50exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\50exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\92exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\92exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a7.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a7.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\76exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\76exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\49exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\49exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\56exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\56exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\63exinjs.a8.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\63exinjs.a8.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\48exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\48exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\22exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\13exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\61exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\31exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\31exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\46exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\46exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\77exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\77exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\38exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\38exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\68exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\68exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\30exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\89exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\82exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\58exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\58exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\15exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\15exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\94exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\49exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\49exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\64exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\64exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\73exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\73exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\85exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\27exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\39exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\39exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\43exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\43exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\59exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\59exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\35exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\35exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\79exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\79exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\17exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\17exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\3exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\3exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\84exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\84exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\9exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\95exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\41exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\93exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\91exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\6exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\6exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\16exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\16exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\57exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\57exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\33exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\33exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\55exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\55exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\29exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\74exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\74exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\24exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\24exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\28exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\28exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\63exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\63exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\20exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\20exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\86exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\36exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\36exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\99exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\99exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\52exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\52exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\54exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\32exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\18exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\18exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\81exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\81exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\5exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\5exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\66exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\66exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\25exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\25exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\12exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\12exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\78exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\78exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\80exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\34exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\14exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\1exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\11exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\44exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\37exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\37exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\53exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\53exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\10exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\10exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\69exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\83exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\83exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\62exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\62exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\65exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\65exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\40exinjs.a9.exe"="D:\\DOCUME~1\\Le\\LOCALS~1\\Temp\\40exinjs.a9.exe:*:Enabled:Microsoft Update"
"D:\\Program Files\\Messenger\\msmsgs.exe"="D:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"="D:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\\Program Files\\iTunes\\iTunes.exe"="D:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"D:\\Program Files\\Skype\\Phone\\Skype.exe"="D:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\\Program Files\\Minions of Mirth\\bin\\MinionsOfMirth.exe"="D:\\Program Files\\Minions of Mirth\\bin\\MinionsOfMirth.exe:*:Enabled:MinionsOfMirth"

Remaining Files :


File Backups: - D:\SDFix\backups\backups.zip

Files with Hidden Attributes :

Mon 21 Jan 2008 26,624 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL1659.tmp"
Mon 21 Jan 2008 21,504 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL2329.tmp"
Mon 21 Jan 2008 29,696 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL2673.tmp"
Mon 21 Jan 2008 26,624 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL0092.tmp"
Mon 21 Jan 2008 32,256 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL3107.tmp"
Mon 21 Jan 2008 43,008 ...H. --- "D:\Documents and Settings\Le\Plocha\~WRL0282.tmp"

Finished!



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:00:57, on 11.3.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\ZONELABS\vsmon.exe
D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
D:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
D:\Program Files\HP\HP Software Update\HPWuSchd2.exe
D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Program Files\Microcom\ADSL DeskPorte USB\CnxDslTb.exe
D:\Program Files\Logitech\Video\LogiTray.exe
D:\WINDOWS\system32\LVCOMSX.EXE
D:\WINDOWS\vsnpstd.exe
D:\Program Files\QuickTime\QTTask.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
D:\Program Files\Logitech\Video\FxSvr2.exe
D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Skype\Plugin Manager\skypePM.exe
D:\Program Files\Mozilla Firefox\firefox.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\SoftwareDistribution\Download\Install\IE7-WindowsXP-x86-csy.exe
c:\4bb536bf293f49e1430eee7d\update\iesetup.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\wincmd\WINCMD32.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - D:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\2.0.1121.2472\swg.dll
O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - D:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Program Files\ICQToolbar\toolbaru.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar3.dll
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - D:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DAEMON Tools] "D:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HP Software Update] D:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AudioDeck] D:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [WhenUSearchWHSE] "D:\Program Files\WhenUSearch\whse.exe"
O4 - HKLM\..\Run: [avast!] D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [CnxDslTaskBar] "D:\Program Files\Microcom\ADSL DeskPorte USB\CnxDslTb.exe" "Microcom\ADSL DeskPorte USB"
O4 - HKLM\..\Run: [LogitechVideoRepair] D:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] D:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LVCOMSX] D:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [snpstd] D:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [T-Mobile Communication Centre] D:\Program Files\T-Mobile Communication Centre\Centre.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = D:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: GlobeTrotter Mobility Manager.lnk = D:\Program Files\Option\GlobeTrotter Mobility Manager\MobilityManager.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 1246706437
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple, Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - D:\Program Files\CyberLink\Shared files\RichVideo.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - D:\WINDOWS\system32\ZONELABS\vsmon.exe

--
End of file - 8761 bytes


tak tady to je,,, a co ted s tim? :o)))

Uživatelský avatar
Baron Prášil
Master Level 7
Master Level 7
Příspěvky: 4882
Registrován: červen 06
Pohlaví: Muž
Stav:
Offline

Příspěvekod Baron Prášil » 13 bře 2008 21:28

ježíš,na tebe sem zapomněl(psal sem ti na odchodu na ples :smile: no,víš jak tohle dopadá :lol: )

fixni
v okně programu HJT zaškrtni nalevo u položek co napíšu a potom klik na Fix checked
O4 - HKLM\..\Run: [WhenUSearchWHSE] "D:\Program Files\WhenUSearch\whse.exe"

podívej se do přidat/odebrat programy,najdi WhenUSearch a odinstaluj ho.

jinak jsme zoologickou celkem slušně vyhubili,Fejk mě netrestej :lol: udělej co sem napsal
a napiš zpětně jak se chová komp

rosnatka
nováček
Příspěvky: 3
Registrován: březen 08
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontorlu logu - porad se mi vypina pc

Příspěvekod rosnatka » 17 bře 2008 18:31

dekuju :o)
udelala jsem to a snad to bude dobry,,,,
kdyby neco,tak pisu,, :)o

a dekuju dekuju dekuju,,,
Le :o


Zpět na “Viry, antiviry, firewally…”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 2 hosti