Prosím o kontrolu Logu mám asi šmejda Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 07 lis 2009 15:21

========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
C:\32788R22FWJFW\License moved successfully.
C:\32788R22FWJFW\EN-US moved successfully.
Folder move failed. C:\32788R22FWJFW scheduled to be moved on reboot.
C:\WINDOWS\tasks\SA.DAT moved successfully.
C:\WINDOWS\System32\trlantsvrp32.ime moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.20091031-222913.backup moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.20091031-222557.backup moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.20091030-192100.backup moved successfully.
C:\WINDOWS\imsins.BAK moved successfully.
C:\WINDOWS\cfplogvw.INI moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.20091025-145415.backup moved successfully.
C:\Documents and Settings\Milan\Data aplikací\inst.exe moved successfully.
C:\Documents and Settings\All Users\Data aplikací\KGyGaAvL.sys moved successfully.
C:\Documents and Settings\All Users\Data aplikací\14CDC500DA.sys moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.20091014-172019.backup moved successfully.
DllUnregisterServer procedure not found in C:\WINDOWS\System32\BReWErS.dll
C:\WINDOWS\System32\BReWErS.dll NOT unregistered.
C:\WINDOWS\System32\BReWErS.dll moved successfully.
C:\WINDOWS\cavscan.INI moved successfully.
C:\WINDOWS\WaterIllusion.ini moved successfully.
C:\WINDOWS\mngui.INI moved successfully.
C:\WINDOWS\System32\drivers\atmapi.sys moved successfully.
C:\WINDOWS\System32\System32.sys moved successfully.
C:\Documents and Settings\Milan\Data aplikací\ezpinst.exe moved successfully.
C:\WINDOWS\System32\SystemInfo32.sys moved successfully.
C:\Documents and Settings\All Users\Data aplikací\sysqcl1129139270.dat moved successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\Milan\LOCALS~1\Temp\WER4c70.dir00\OTM.exe.mdmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
File delete failed. C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6cc.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_8e4.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.1 log created on 11072009_151836

V rámci bezpečnosti mi system tento program ukončil a k restartu nedošlo
Snad vše se dá vyřešit.Chce to trpělivost.

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 07 lis 2009 15:37

Proveď restart do norm. režimu a pak zkus v nouz. režimu Combofix.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 07 lis 2009 17:42

Tady je ten log z nouzového režimu ale vše se zpomalilo a nešel internet tak jsem musel dát Obnovení systému ze včerejška.


ComboFix 09-11-06.03 - Milan 07.11.2009 16:24.1.2 - NTFSx86 MINIMAL
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2046.1738 [GMT 1:00]
Spuštěný z: c:\documents and settings\Milan\Dokumenty\Stažené soubory\ComboFix.exe
AV: avast! antivirus 4.8.1351 [VPS 091106-2] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: COMODO Antivirus *On-access scanning enabled* (Updated) {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}

VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system\oeminfo.ini
c:\windows\system32\FOLESVR.DLL

.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_RKHIT


((((((((((((((((((((((((( Soubory vytvořené od 2009-10-07 do 2009-11-07 )))))))))))))))))))))))))))))))
.

2009-11-07 14:18 . 2009-11-07 14:18 -------- d-----w- C:\_OTM
2009-11-07 14:14 . 2009-06-10 06:42 389632 ----a-w- C:\OTM.exe
2009-11-06 15:31 . 2009-11-06 15:32 -------- d-----w- C:\$WIN_NT$.~BT
2009-11-03 20:05 . 2009-11-03 20:05 -------- d-----w- c:\windows\system32\wbem\Repository
2009-11-03 19:33 . 2009-11-03 19:51 -------- d-----w- c:\program files\Syncrosoft
2009-11-03 19:27 . 2009-11-03 19:27 -------- d-----w- c:\program files\Eleco
2009-11-01 12:56 . 2009-11-01 12:56 -------- d-----w- c:\program files\Common Files\Xuisoft
2009-11-01 12:56 . 2009-11-01 12:56 -------- d-----w- c:\program files\GifCreator
2009-10-31 17:12 . 2009-10-31 17:12 -------- d-----w- c:\program files\Atari
2009-10-30 16:59 . 2008-10-10 03:52 452440 ----a-w- c:\windows\system32\d3dx10_40.dll
2009-10-30 16:59 . 2008-10-10 03:52 2036576 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2009-10-30 16:59 . 2008-10-10 03:52 4379984 ----a-w- c:\windows\system32\D3DX9_40.dll
2009-10-30 16:59 . 2008-10-27 09:04 514384 ----a-w- c:\windows\system32\XAudio2_3.dll
2009-10-30 16:59 . 2008-10-27 09:04 70992 ----a-w- c:\windows\system32\XAPOFX1_2.dll
2009-10-30 16:59 . 2008-10-27 09:04 235856 ----a-w- c:\windows\system32\xactengine3_3.dll
2009-10-30 16:59 . 2008-10-27 09:04 23376 ----a-w- c:\windows\system32\X3DAudio1_5.dll
2009-10-30 16:59 . 2008-07-30 05:20 68616 ----a-w- c:\windows\system32\XAPOFX1_1.dll
2009-10-30 16:59 . 2008-07-30 05:20 509448 ----a-w- c:\windows\system32\XAudio2_2.dll
2009-10-30 16:59 . 2008-07-30 05:20 238088 ----a-w- c:\windows\system32\xactengine3_2.dll
2009-10-30 16:59 . 2008-07-10 10:01 467984 ----a-w- c:\windows\system32\d3dx10_39.dll
2009-10-30 16:59 . 2008-07-10 10:00 1493528 ----a-w- c:\windows\system32\D3DCompiler_39.dll
2009-10-28 20:09 . 2009-10-28 20:09 -------- d-----w- c:\program files\TDK
2009-10-28 18:17 . 2009-10-28 18:17 -------- d-----w- c:\documents and settings\Milan\dwhelper
2009-10-20 16:25 . 2009-10-20 16:25 -------- d-----w- c:\program files\Common Files\ArcSoft
2009-10-20 16:25 . 2009-10-20 16:25 -------- d-----w- c:\program files\ArcSoft
2009-10-20 16:25 . 1995-08-01 02:44 212480 ----a-w- c:\windows\PCDLIB32.DLL
2009-10-14 22:52 . 2009-10-14 23:05 -------- d-----w- c:\windows\system32\oodag
2009-10-14 22:36 . 2009-10-14 22:36 -------- d-----w- c:\program files\OO Software
2009-10-14 16:36 . 2009-10-14 16:54 -------- d-----w- c:\program files\Total Video Converter
2009-10-13 21:01 . 2009-10-13 21:01 -------- d-----w- c:\program files\DVDFab 5
2009-10-13 20:15 . 2009-10-13 20:15 -------- d-----w- c:\documents and settings\Milan\Corel
2009-10-12 17:47 . 2009-10-12 18:31 -------- d-----w- C:\GTR2
2009-10-12 17:44 . 2009-10-12 17:44 -------- d-----w- c:\program files\GTR 2 Game
2009-10-11 16:22 . 2009-10-10 23:18 -------- d-----w- c:\program files\18.WoS-EXTREME.TRUCKER

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-07 11:28 . 2007-10-29 12:00 437832 ----a-w- c:\windows\system32\perfh005.dat
2009-11-07 11:28 . 2007-10-29 12:00 82552 ----a-w- c:\windows\system32\perfc005.dat
2009-11-06 22:44 . 2008-10-01 15:59 -------- d-----w- c:\program files\Mozilla Thunderbird
2009-11-06 18:43 . 2008-10-03 14:21 -------- d-----w- c:\program files\Trend Micro
2009-11-06 14:45 . 2008-10-03 12:24 -------- d-----w- c:\program files\SpeedFan
2009-11-03 19:33 . 2008-09-30 08:10 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-11-02 13:57 . 2008-10-01 14:44 -------- d-----w- c:\program files\AceMoney
2009-11-01 13:12 . 2008-10-02 21:07 -------- d-----w- c:\program files\FrameShow
2009-11-01 12:36 . 2008-12-09 14:28 -------- d---a-w- c:\program files\SeznamDVD2008
2009-10-30 23:15 . 2009-07-28 14:40 -------- d-----w- c:\program files\Codemasters
2009-10-30 17:22 . 2008-10-19 12:36 -------- d-----w- c:\program files\Ubisoft
2009-10-30 12:03 . 2008-10-02 19:43 -------- d-----w- c:\program files\SlySoft
2009-10-13 21:02 . 2008-10-02 20:36 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2009-10-13 20:57 . 2009-01-20 22:18 -------- d-----w- c:\program files\Corel
2009-10-12 14:43 . 2008-10-02 20:36 -------- d-----w- c:\program files\Magic Video Converter
2009-10-06 21:02 . 2009-10-06 20:59 -------- d-----w- c:\program files\Save z youtube
2009-10-06 16:46 . 2009-10-06 16:36 -------- d-----w- c:\program files\Photo DVD Slideshow Professional
2009-10-06 16:44 . 2009-10-06 16:44 -------- d-----w- c:\program files\Common Files\Anvsoft
2009-10-05 15:58 . 2009-10-05 15:58 -------- d-----w- c:\program files\TML-Studios
2009-10-04 19:43 . 2009-10-04 19:42 -------- d-----w- c:\program files\Hunting Unlimited 2009
2009-10-04 12:56 . 2008-10-02 22:08 -------- d-----w- c:\program files\Zoner
2009-10-04 12:34 . 2008-10-03 10:38 -------- d-----w- c:\program files\Lavalys
2009-10-03 14:21 . 2008-10-02 19:47 -------- d-----w- c:\program files\Apollo DVD Creator
2009-10-03 13:59 . 2008-10-01 16:27 -------- d-----w- c:\program files\SuperDVD Player 5.0
2009-10-01 07:50 . 2009-10-01 07:41 -------- d-----w- c:\program files\Attack on Pearl Harbor
2009-09-18 14:11 . 2009-09-18 14:11 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-09-18 14:04 . 2009-07-18 15:00 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-09-18 14:04 . 2009-07-18 15:00 107832 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-09-18 14:04 . 2009-07-18 14:59 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-09-18 14:04 . 2009-09-13 19:59 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2009-09-18 07:19 . 2009-09-18 07:18 -------- d-----w- c:\program files\VisualConnection
2009-09-18 06:59 . 2008-12-23 13:57 179792 ----a-w- c:\windows\system32\guard32.dll
2009-09-18 06:59 . 2008-12-23 13:57 87104 ----a-w- c:\windows\system32\drivers\inspect.sys
2009-09-18 06:59 . 2008-12-23 13:57 25160 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2009-09-18 06:59 . 2008-12-23 13:57 132296 ----a-w- c:\windows\system32\drivers\cmdguard.sys
2009-09-14 11:26 . 2008-10-01 14:38 -------- d-----w- c:\program files\Spyware Terminator
2009-09-14 11:24 . 2008-10-01 14:11 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-09-14 07:12 . 2009-01-13 17:36 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-09-13 19:52 . 2008-10-03 16:24 -------- d-----w- c:\program files\Activision
2009-09-11 16:48 . 2008-10-01 14:32 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-09-11 14:19 . 2008-04-14 06:51 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-10 12:54 . 2009-01-13 17:37 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 12:53 . 2009-01-13 17:37 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-04 21:05 . 2008-04-14 06:51 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-29 07:58 . 2008-04-14 06:52 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-26 08:02 . 2008-04-14 06:52 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-17 21:33 . 2009-08-17 21:33 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-08-17 16:10 . 2008-10-01 13:41 1279456 ----a-w- c:\windows\system32\aswBoot.exe
2009-08-17 16:06 . 2008-10-01 13:41 93392 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-08-17 16:06 . 2008-10-01 13:41 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-08-17 16:05 . 2008-10-01 13:41 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-08-17 16:05 . 2008-10-01 13:41 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-08-17 16:04 . 2008-10-01 13:41 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-08-17 16:04 . 2008-10-01 13:41 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-08-17 16:03 . 2008-10-01 13:41 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-08-17 16:02 . 2008-10-01 13:41 97480 ----a-w- c:\windows\system32\AvastSS.scr
2008-10-02 19:44 . 2008-10-02 19:43 48 --sh--w- c:\windows\S2674FF5A.tmp
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-08-29 1966080]
"ioCentre"="c:\genius\ioCentre\gTaskBar.exe" [2006-12-08 241664]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-03-24 13524992]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 1312080]
"combofix"="c:\combofix\CF8401.exe" [2009-11-07 390144]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2008-02-13 16857600]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\system32\guard32.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk lsdelete\0OODBS

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Blobby\\volley.exe"=
"c:\\Program Files\\EA GAMES\\MOHAA\\MOHAA.exe"=
"c:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"=
"c:\\Program Files\\Intuwave\\Shared\\mRouterRuntime\\mRouterRuntime.exe"=
"c:\\Program Files\\Return to Castle Wolfenstein\\WolfMP.exe"=
"c:\\Program Files\\Curling 2006\\Curling2006.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Codemasters\\FUEL\\FUEL.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"=

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [1.10.2008 14:41 114768]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdguard.sys [23.12.2008 14:57 132296]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [23.12.2008 14:57 25160]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [1.10.2008 15:38 141312]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};c:\program files\CyberLink\PowerDVD8\000.fcl [8.8.2008 10:15 41456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [1.10.2008 14:41 20560]
R3 bbcap;bbcap;c:\windows\system32\drivers\bbcap.sys [1.12.2008 22:47 4096]
R3 gMouPS2;PS2 Scroll Mouse Device;c:\windows\system32\drivers\gMouPS2.sys [6.10.2008 15:36 17408]
S2 gupdate1c9cdab48401712;Služba Google Update (gupdate1c9cdab48401712);c:\program files\Google\Update\GoogleUpdate.exe [5.5.2009 18:59 133104]
S3 motport;Motorola USB Diagnostic Port;c:\windows\system32\drivers\motport.sys [6.10.2008 15:18 21376]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [6.11.2007 21:22 34064]

--- Ostatní služby/ovladače v paměti ---

*NewlyCreated* - MBR
*Deregistered* - mbr

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"c:\program files\Common Files\LightScribe\LSRunOnce.exe"
.
Obsah adresáře 'Naplánované úlohy'

2009-11-06 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-21 12:49]

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-05 17:59]

2009-11-07 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-05 17:59]

2009-11-06 c:\windows\Tasks\Úklid 1 kliknutím.job
- c:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-21 12:49]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{230D1201-7607-4CF6-A11F-9E4BF0A333E0} - {0DB13731-CEFD-43CF-A8FD-B61DCBC4D5B8} - c:\program files\Verdict Free\etnxp.dll
IE: {{2C73F784-D2DE-4422-B070-2E3332FE5744} - {0320AC26-52C8-4316-B2C4-24BB6FA73C9A} - c:\program files\Verdict Free\etnxp.dll
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\documents and settings\All Users\Data aplikací\LangSoft\WebIE.dll
FF - ProfilePath - c:\documents and settings\Milan\Data aplikací\Mozilla\Firefox\Profiles\tvro34im.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... id=afex&q=
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-connections-per-server - 4
FF - user.js: content.max.tokenizing.time - 1500000
FF - user.js: content.notify.interval - 750000
FF - user.js: nglayout.initialpaint.delay - 100
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-07 16:39
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys spdh.sys >>UNKNOWN [0x8A742938]<<
kernel: MBR read successfully
user & kernel MBR OK
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

atapi.sys @ 0x0 0x0 bytes

\Driver\atapi [ IRP_MJ_CREATE ] 0xA6F2 != 0xBA5FBB40 atapi.sys
\Driver\atapi [ IRP_MJ_CLOSE ] 0xA6F2 != 0xBA5FBB40 atapi.sys
\Driver\atapi [ IRP_MJ_DEVICE_CONTROL ] 0xA712 != 0xBA5FBB40 atapi.sys
\Driver\atapi [ IRP_MJ_INTERNAL_DEVICE_CONTROL ] 0x6852 != 0xBA5FBB40 atapi.sys
\Driver\atapi [ IRP_MJ_POWER ] 0xA73C != 0xBA5FBB40 atapi.sys
\Driver\atapi [ IRP_MJ_SYSTEM_CONTROL ] 0x11336 != 0xBA5FBB40 atapi.sys
\Driver\atapi IRP hooks detected !

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD8\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-436374069-2052111302-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{E52C9CCE-06DC-F746-F6EC-08EC00832507}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"oafgbkmlphhlccbjejifcnkanocgak"=hex:61,69,70,62,63,68,66,6b,67,65,6a,6b,6e,70,
70,65,69,70,70,70,6a,6a,66,67,69,69,62,61,66,6c,6b,63,6e,61,64,6b,6c,6e,66,\
"iaahflblnacjecojal"=hex:6a,61,6d,62,70,64,62,6d,68,70,6b,68,6b,64,6d,65,63,64,
68,67,00,00
"hakgphajbmhhpnll"=hex:6a,61,6d,62,70,64,62,6d,68,70,6b,68,6b,64,6d,65,63,64,
68,67,00,e9

[HKEY_USERS\S-1-5-21-436374069-2052111302-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:c8,de,ea,dd,d7,b7,c5,8f,c6,67,83,ab,08,f8,92,0f,f7,e0,42,2a,f7,
cd,cc,89,ec,51,84,eb,5b,5f,80,58,4a,fb,1e,88,c4,b6,c9,8d,38,70,21,a4,c2,7e,\
"rkeysecu"=hex:1b,b5,52,6d,b9,b0,2c,c1,55,51,23,8c,25,8e,a7,8c

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG10.00.00.01WORKSTATION"="DAE99B435783E36917F9DFD1E79180A31CB699E072181810AD34EDCBEB9D61239DE7376AA327EBDD6BD46E45298F92EAEA10A99BB9B28108FD8D2C3349DE5446E1C606828D28B19609A3BEA1A6768AA103C01890CCF3DAFB7BFAD9CB954586984158B02EC810B9A0E02C1C273CD35E05D0A370404D912CF3AB0EE172DDC934117902A2466ABB8D7F8A4B934BAA088AC3E3AB025DC58FFE6F366CF4B6933497986CBF0F576DDBBB2AC1ED773815C90D03F05ADECB234BE4DC6ACD07DB0CA8F00DA09EE92330F5568CE51A5D4B81A3E75ACE49DDA834F071A236805059009886C0BF41EC1DF460718477E4A116FEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CA6A0AC4980AC79338EDD5E5BE2F6E6675D575E7D6A3B9808C038D530D6EB34525F4018D9DCC19B3BC371E0F381171B7E92B68CE140A8D394F8DA326C9FBF4E3552351A501B5AC90C78ACA98ABC582767299457744701683F72D1AE32714DC209BC54EB6C308D3ADDD8E01D5F90D94FEA2229DD3424CEBF3BB5B01C32761F53472F8B68B7A0F6BC5DFB61E786D9AA84D3C249C163A8360B0E51F128FD1B8F14D1201871319044E7EA63CF3B0F16ED7F9EB11FA1BACEF043733464081AEF8A5E41678EEB4ACAB6141B6F27CCF468DAB6FDF929A767B149235933AB72FEA9934C61C4D73FE8BDA55EB66733D7AC973CEA568CB77C878F21A86186BCA31AA13EBEB0D6AD58E7F97B2839F494971C0FF19DC1B971CEAFCE6C18E2CBE3DB4D5434DAE2A522299336B59655284150205D6F950D3BD0D1E77633F7E801BF5DECE23388E01917A4B0CBE7936DF1014585363CDB3BABA23D2DB11294310C42F041130C72447E4545F139B6CA1A29704190EEF23E808B0849EE5138FA2E36B3E009CBA40B5D08380684205EAE29088191F803C35046BC77B511C86A8087A92D7E741BF404B04B4FE70446AA739A2DF609E892EFE7AB07BB47EB3002BB17F71E1CA8B20BD773C0BFEF84950013A29A6C7BFE5E501E0117F1C0CA446A076A16C9123D6588C094468FA70A1CD2C92B374C444ECF50D24BFA8B70ED622481C55C46BC41AEA2BF301D9B998F8CAF994FCC583F5E6FEE26C526CDA20A90C20F9E85FEF93529A21A1C6B93D7843B33C65F8A25CF2AEDBE00DCF0542AC6776FD61F34322E0D97E4D55E39FA77C7A2105B60821C5AA11D6709B1160B5EBF60E5C327EBF24133DD5B41B2F42A9032E18CA40BAB7849A573A5319AB4349A853DF6054894289F04058B6A0AEFCBBE8D3903B24CDECB0B8F0E47A92050663C1CA0070EC8FA8C3851398EA607DEDF24958F62DB43DB7C0F28A9AEE702D00AA67B440D95A3CFAD7DDECC128D805C3B647EEE2B38464541CBB02A55A62F81DEBF8F82971608A6F069E5B3D67C036405A9EC"
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
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\windows\system32\HDDSvc.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\windows\notepad.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\oodag.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\genius\ioCentre\gMouseTask.exe
c:\windows\system32\PSIService.exe
c:\genius\ioCentre\gKbdTask.exe
c:\genius\ioCentre\gAutoPan.exe
c:\genius\ioCentre\gAutoScroll.exe
c:\genius\ioCentre\gZoom.exe
c:\program files\Spyware Terminator\sp_rsser.exe
c:\genius\ioCentre\gMGlass.exe
c:\genius\ioCentre\gIMMgm.exe
c:\genius\ioCentre\gDeskMgm.exe
c:\genius\ioCentre\gTaskSwitch.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Alwil Software\Avast4\ashMaiSv.exe
c:\program files\Alwil Software\Avast4\ashWebSv.exe
c:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2009-11-07 16:45 - počítač byl restartován
ComboFix-quarantined-files.txt 2009-11-07 15:45

Před spuštěním: Volných bajtů: 147 058 515 968
Po spuštění: Volných bajtů: 146 895 245 312

- - End Of File - - B02857D2A0F9AD3EAF625E11DEE27F40
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 07 lis 2009 18:06

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::
File::
c:\windows\S2674FF5A.tmp

Folder::
c:\windows\S2674FF5A.tmp

DirLook::
C:\$WIN_NT$.~BT

RegNull::
[HKEY_USERS\S-1-5-21-436374069-2052111302-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{E52C9CCE-06DC-F746-F6EC-08EC00832507}*]


Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Ještě jednou se ptám , máš tam COMODO Internet Security, používáš z něj pouze firewall , nebo celý?
Pokud celý , odinstaluj:
Avast4
Spyware Terminator


Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 07 lis 2009 18:39

COMODO Internet Security poušívám celý tak avast a Spyware Terminator odinstaluji.
Při spuštění CFScript do ComboFix se mi oběvilo tohle.
Přílohy
error.jpg
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 07 lis 2009 19:52

avast a Spyware Terminator odinstaluj.

Píše to , že je Combofix jen pro win2000 a Xp a Ty máš XP (mimochodem funguje i ve vistě x64).

Zkus to znovu.V norm. režimu.

Pokud nepůjde:
Stáhni si program OTM (by OldTimer)
http://www.edisk.cz/stahni/07995/OTMove ... .39KB.html
a ulož si ho na disk C a spusť ho.
- Do levého sloupce (Paste Instructions for Items to be Moved) zkopíruj tyto cesty:
Poznámka: Nepoužij k označení funkci VYBRAT VŠE

Kód: Vybrat vše

:Processes
explorer.exe

:Services

:Reg

:Files
c:\windows\S2674FF5A.tmp

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


- Po zkopírování klikni na tlačítko MoveIt! a vlož sem následně celý obsah z pravého sloupce, jinak uložený ve složce C:\_OTMoveIt\MovedFiles\, který bude informovat o výsledcích
- Je možné, že pokud nebudou moci být soubory odstraněny, budeš dotázán na restart počítače, v tom případě restart potvrď.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 07 lis 2009 20:41

========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
========== REGISTRY ==========
========== FILES ==========
File move failed. c:\windows\S2674FF5A.tmp scheduled to be moved on reboot.
========== COMMANDS ==========
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Milan\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat scheduled to be deleted on reboot.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
File delete failed. C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6cc.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_898.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully

OTM by OldTimer - Version 2.1.0.1 log created on 11072009_203529

Files moved on Reboot...
File move failed. c:\windows\S2674FF5A.tmp scheduled to be moved on reboot.
C:\WINDOWS\temp\Perflib_Perfdata_6cc.dat moved successfully.
File C:\WINDOWS\temp\Perflib_Perfdata_898.dat not found!

Registry entries deleted on Reboot...
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 07 lis 2009 21:15

Pošli screen z obsahu této složky:
C:\$WIN_NT$.~BT

Zkus znovu MbAM , jak jsem psal předminule.

Stáhni si ToolsCleaner2( by de A.Rothstein & Dj Quiou )

na plochu a spusť ho.
Klikni na Pt. Restauration (obnova) a poté na OK.
Klikni na Corbeille (koš) a poté na OK.
Klikni na Fichiers temp (temp složky) a poté na OK.
Klikni na Recherche (hledání) a nech Cleaner pracovat. Může se během čištění zastavit , ale nech ho pokračovat.
Když program skončí , klikni na Suppression (odstranění)a odstraň nalezené.
Zavři program.
Program maže i všechny nástroje na odvirování a vytváření logů , které se zde používají (HJT, Combofix, OTM, OTL, OTS atd.)

Pak znovu stáhni Combofix a udělej sken.

+ info o PC. Dnes končím , zítra se podívám.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 07 lis 2009 22:03

C:\$WIN_NT$.~BT není složka ale soubor.ComboFix nespustím ani v nouzovém režimu,tak mi pak prosím napiš jákým programem ti mám log poslat.Zatím moc děkuji.
Přílohy
LDR.jpg
LDR.jpg (3.77 KiB) Zobrazeno 797 x
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43295
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod jaro3 » 08 lis 2009 08:26

Ten soubor je v pořádku, ale můžeš smazat.

Stáhni si MBR Rootkit Detektor
- ulož si ho přímo na disk C a spusť ho
- za chvíli se ti vytvoří jeho log (mbr.log) vlož sem celý jeho obsah.

Stáhni si RSIT (by random/random)
- spusť ho, objeví se ti okno, tak pro pokračování klikni na Continue
- počkej až program proběhne a zobrazí se ti log jinak ho najdeš zde: C:\rsit\log.txt zkopíruj sem prosím celý jeho obsah
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 09:16

MBR Rootkit Detektor nejde spustit
info.txt logfile of random's system information tool 1.06 2009-11-08 09:14:05

======Uninstall list======

-->"C:\Program Files\InstallShield Installation Information\{BB8AE808-F003-4C7F-B56B-8C80EEAFFE23}\setup.exe" --u:{BB8AE808-F003-4C7F-B56B-8C80EEAFFE23}
101 MP3 Splitter & Joiner V3.1-->C:\PROGRA~1\101MP3~1\UNWISE.EXE C:\PROGRA~1\101MP3~1\INSTALL.LOG
4Media iPhone Video Converter-->C:\Program Files\4Media\iPhone Video Converter 3\Uninstall.exe
50 FREE MP3s +1 Free Audiobook!-->"C:\Program Files\Winamp\eMusic\Uninst-eMusic-promotion.exe"
AAA Logo 1.2-->"C:\Program Files\AAALOGO\unins000.exe"
Absolute Video Converter 2.8-->"C:\Program Files\Absolute Video Converter\unins000.exe"
AceMoney Lite-->"C:\Program Files\AceMoney\unins000.exe"
Acoustica CD/DVD Label Maker-->C:\Program Files\Acoustica CD Label Maker\cdlabel.exe UNINSTALL
Adam 1.0 build 005-->"C:\Program Files\Adam\unins000.exe"
Adobe Acrobat 4.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 4.0\NT\Uninst.dll"
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 8 - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-A81200000003}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Aktualizace systému Windows Internet Explorer 8 (KB968220)-->"C:\WINDOWS\ie8updates\KB968220-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows Internet Explorer 8 (KB976749)-->"C:\WINDOWS\ie8updates\KB976749-IE8\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizace systému Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Aktualizace zabezpečení aplikace Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB923689)-->"C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Aktualizace zabezpečení produktu Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB969897)-->"C:\WINDOWS\ie8updates\KB969897-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB972260)-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows Internet Explorer 8 (KB974455)-->"C:\WINDOWS\ie8updates\KB974455-IE8\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Aktualizace zabezpečení systému Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizace zabezpečení systému Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Alldj PSP Converter 3.0-->"C:\Program Files\Alldj_PSP_Converter\unins000.exe"
Alone In The Dark-->"C:\Program Files\Atari\AITD\Uninstall\unins000.exe"
AMS Photo Effects 1.67-->"C:\Program Files\AMS Photo Effects\unins000.exe"
AnonymMailer (pouze odebrat) - nedelej to! :)-->"C:\Program Files\AnonymMailer\uninstall.exe"
Apollo DVD Creator 4.2.7-->"C:\Program Files\Apollo DVD Creator\unins000.exe"
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
ArcSoft PhotoStudio 6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9A4D3FF6-FFDD-4E4E-B887-4BF378174F04}\Setup.exe" -l0x9
Archivarius 3000 (Version 4.21)-->"C:\Program Files\Archivarius 3000\unins000.exe"
ArtRage 2-->MsiExec.exe /I{78E232B0-C337-4695-BBF0-C1033156CE7B}
ASCII Art Maker 1.6-->"C:\Program Files\ASCII Art Maker 1.6\uninstall.exe"
Ashampoo ClipFinder 1.44-->"C:\Program Files\Ashampoo\Ashampoo ClipFinder\unins000.exe"
Ashampoo Photo Commander 6.21-->"C:\Program Files\Ashampoo\Ashampoo Photo Commander 6\unins000.exe"
Ashampoo Photo Optimizer 3.03-->"C:\Program Files\Ashampoo\Ashampoo Photo Optimizer 3\unins000.exe"
Ask Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Attack on Pearl Harbor-->"C:\Program Files\Attack on Pearl Harbor\Uninstall.exe"
Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Balíček ovladače systému Windows - Nokia Modem (06/01/2009 4.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokia_blue_C08496D7A0050438DFE13C55799AE2D4157A8E7A\nokia_bluetooth.inf
Balíček ovladače systému Windows - Nokia Modem (06/01/2009 7.01.0.3)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_9C48E34C57B7D4AAE5FFF5FB9B476B538394FD30\nokbtmdm.inf
Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\B4723E9A0713E5B1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf
BB FlashBack 2-->"C:\Documents and Settings\All Users\Data aplikací\{925D0C31-5256-42ED-B53A-2E541689BD38}\BB FlashBack.exe" REMOVE=TRUE MODIFY=FALSE
BB FlashBack 2-->C:\Documents and Settings\All Users\Data aplikací\{925D0C31-5256-42ED-B53A-2E541689BD38}\BB FlashBack.exe
Beauty Pilot Full 2.0.5-->"C:\Program Files\Beauty Pilot\unins000.exe"
Blaze DVD Player 6.52-->"C:\Program Files\BlazeVideo\BlazeDVD\unins000.exe"
BlazePhoto 1.0-->"C:\Program Files\BlazeVideo\BlazePhoto\unins000.exe"
BusinessCardsMX 3.6-->"C:\Program Files\MOJOSOFT\BusinessCardsMX3\unins000.exe"
Call of Duty(R) - World at War(TM)-->C:\Program Files\InstallShield Installation Information\{D80A6A73-E58A-4673-AFF5-F12D7110661F}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 2-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{D0A05794-48C2-4424-A15A-9F20FCFDD374} /l2057
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch-->C:\Program Files\InstallShield Installation Information\{931C37FC-594D-43A9-B10F-A2F2B1F03498}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\uninstall.exe -runfromtemp -l0x0409
Call of Duty-->C:\PROGRA~1\CALLOF~1\Uninstall\Unwise.exe /u C:\PROGRA~1\CALLOF~1\Uninstall\Install.log
Caricature Studio 3.0-->MsiExec.exe /I{D69B3E66-A198-4DE5-AAE0-D08DC0764D9F}
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
CDex extraction audio-->"C:\Program Files\CDex_150\uninstall.exe"
City Bus Simulator 2010 - New York-->"C:\Program Files\InstallShield Installation Information\{0190000A-A5F5-41EE-9E20-BE784015214C}\setup.exe" -runfromtemp -l0x0009 -removeonly
CloneCD-->"C:\Program Files\SlySoft\CloneCD\ccd-uninst.exe" /D="C:\Program Files\SlySoft\CloneCD"
CloneDVD2-->"C:\Program Files\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD2"
CoD 2 čeština 1.1-->"C:\Program Files\Activision\Call of Duty 2\main\unins000.exe"
CodeStuff Starter-->"C:\Program Files\CodeStuff\Starter\unStarter.exe"
Comic Life-->MsiExec.exe /X{BB148BFF-D96D-48B6-9B4A-243DCC6DD444}
COMODO Internet Security-->C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe -u
Copernic Desktop Search 2-->C:\Program Files\Copernic Desktop Search 2\uninst.exe
Corel VideoStudio 12-->C:\Program Files\InstallShield Installation Information\{F0FDF9C9-1DDC-401F-B638-36F1CAE8A875}\setup.exe -runfromtemp -l0x0409
CyberLink PowerDVD 8-->"C:\Program Files\InstallShield Installation Information\{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}\setup.exe" /z-uninstall
Čeština do WinAVI Video Converter 7.6-->C:\Program Files\WinAVI Video Converter 9.0\Odinstalovat.exe
čeština GTR2 v.1.1-->C:\GTR2\Uninstal.exe
DesetiPrsty5 5.3-->C:\Program Files\DesetiPrsty\pmqUnInstall.exe
DiRT-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57B89E30-0BBA-4F20-9F2C-8E8CDE1CEDB6}\setup.exe" -l0x9 -removeonly
Dispecer-->C:\Program Files\Dispecer\uninstall.exe
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
DreamLight Photo Editor 2.35-->"C:\Program Files\DreamLight Photo Editor\unins000.exe"
Důležitá aktualizace aplikace Windows Media Player 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
DVD Shrink 3.2-->"C:\Program Files\DVD Shrink\unins000.exe"
DVD X Player 5.2 Professional-->"C:\Program Files\DVD X Studios\DVD X Player 5.2 Professional\unins000.exe"
DVDFab (Platinum/Gold/HD Decrypter) (Option: Mobile) 5.3.0.0 Be-->"C:\Program Files\DVDFab 5\unins000.exe"
EAGLE 5.4.0-->cmd.exe /c start "EAGLE Uninstaller" /min "C:\Program Files\EAGLE-5.4.0\bin\uninstall.bat" C:\Program Files\EAGLE-5.4.0\bin
Easy Screen Capture 2-->"C:\Program Files\Easy Screen Capture 2\unins000.exe"
easyHDR PRO-->"C:\Program Files\easyHDR\uninstall.exe"
EclipseCrossword-->MsiExec.exe /I{C61177FD-37C4-4C5F-BE6C-E04A8AC399B6}
Error Repair Professional 3.9.4-->"C:\Program Files\Error Repair Professional\unins000.exe"
Euro Truck Simulator-->C:\Program Files\Euro Truck Simulator\Uninstal_EuroTruckSimulator.exe
EVEREST Home Edition v2.20-->"C:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe"
EVEREST Ultimate Edition v5.30-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
EximiousSoft GIF Creator V5.58-->"C:\Program Files\GifCreator\unins000.exe"
F1 Challenge 2007 Full version-->MsiExec.exe /I{C6E3F362-AAF3-48CF-B8C4-B3EBC2F2E832}
FantasyDVD Player 9 Platinum-->"C:\Program Files\Fantasysoft-Studio\FantasyDVD Platinum\unins000.exe"
Far Cry 2-->"C:\Program Files\InstallShield Installation Information\{F2835483-37F2-4123-B4FE-0E77D58447F2}\setup.exe" -runfromtemp -l0x0005 -removeonly
FastStone Image Viewer 2.6-->C:\Program Files\FastStone Image Viewer\uninst.exe
FastStone MaxView 2.1-->C:\Program Files\FastStone MaxView\uninst.exe
Ferrari Virtual Race (remove only)-->"C:\Program Files\Ferrari Virtual Race\Uninstall.exe"
FitLinie FULL-->"C:\Program Files\FitLinie\unins000.exe"
FlvRecorder-->"C:\Program Files\StreamingStar\FlvRecorder\unins000.exe"
FormatFactory 1.90-->C:\Program Files\FormatFactory\uninst.exe
FotoSlate 4-->MsiExec.exe /I{03ACA757-D71B-467C-96AA-70012641B7C5}
Free Video to Mp3 Converter version 3.1-->"C:\Program Files\DVDVideoSoft\Free Video to Mp3 Converter\unins000.exe"
FUEL-->C:\Program Files\InstallShield Installation Information\{F51FF206-2273-4B3E-A90A-4752AE288C12}\setup.exe -runfromtemp -l0x0009 -removeonly
Fun Morph 3.0-->"C:\Program Files\Zeallsoft\Fun Morph\unins000.exe"
FunPhotor 5.0-->"C:\Program Files\Zeallsoft\FunPhotor\unins000.exe"
GoldWave v5.25-->"C:\Program Files\GoldWave\unstall.exe" "GoldWave v5.25" "C:\Program Files\GoldWave\unstall.log"
GOM Player-->"C:\Program Files\GRETECH\GomPlayer\Uninstall.exe"
Google Earth Plug-in-->MsiExec.exe /X{FE24D361-A3E8-11DE-88F3-005056806466}
Google Earth-->MsiExec.exe /X{CC016F21-3970-11DE-B878-005056806466}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
GTR 2 1.0.0.0-->"C:\GTR2\Support\unins000.exe"
GX::Transcoder.net-->"C:\Program Files\GXTranscoder.net\unins000.exe"
Hair Studio - Vlasové studio 1.0-->"C:\Program Files\Hair Studio - Vlasové studio\unins000.exe"
Hard Drive Inspector Professional 2.47 build # 427-->C:\Program Files\Hard Drive Inspector\Uninst.exe
Helium Music Manager 2009 (build 6635)-->"C:\Program Files\Intermedia Software\Helium 2009\unins000.exe"
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Image Zone 3.5-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 3.5-->"C:\Program Files\HP\Digital Imaging\{0FABD3D7-3036-4e78-B29D-58957ADB0A12}\setup\hpzscr01.exe" -datfile hposcr03.dat
HP Software Update-->MsiExec.exe /X{34957B51-9676-41CE-9E52-44AE91B73F1C}
Hunting Unlimited 2009 1.0-->C:\Program Files\Hunting Unlimited 2009\uninst.exe
Chinese Symbol Studio 2-->"C:\Program Files\Chinese Symbol Studio\unins000.exe"
Icon Searcher 3.50-->"C:\Program Files\Icon Searcher\unins000.exe"
ICQ6.5-->"C:\Program Files\InstallShield Installation Information\{60DE4033-9503-48D1-A483-7846BD217CA9}\setup.exe" -runfromtemp -l0x0009 -removeonly
Image Resizer Powertoy for Windows XP-->MsiExec.exe /I{1CB92574-96F2-467B-B793-5CEB35C40C29}
Imager 2.6 - Freeware graphics viewer-->"C:\Program Files\Imager\Uninstall.exe"
ImTOO 3GP Video Converter-->C:\Program Files\ImTOO\3GP Video Converter 3\Uninstall.exe
ImTOO DVD Creator-->C:\Program Files\ImTOO\DVD Creator3\Uninstall.exe
ImTOO MPEG Encoder Ultimate-->C:\Program Files\ImTOO\MPEG Encoder Ultimate\Uninstall.exe
InternetTV 7.13-->"C:\Program Files\MMToolz\InternetTV\unins000.exe"
InterVideo WinDVD Creator 3-->"C:\Program Files\InstallShield Installation Information\{7FC3BBEC-5A91-41B0-9CB8-960EC4421411}\setup.exe" REMOVEALL
iRadio 1.4-->"C:\Program Files\iRadio\unins000.exe"
iRadio skin SEA 2-->"C:\Program Files\iRadio\Skins\Sea2\unins000.exe"
iRadio skin WinXP-Silver Skin by ZeRo-->"C:\Program Files\iRadio\Skins\WinXP-Silver Skin by ZeRo\unins000.exe"
IrfanView (remove only)-->C:\Program Files\IrfanView\iv_uninstall.exe
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
JGoodies JDiskReport 1.3.1-->"C:\Program Files\JGoodies\JDiskReport 1.3.1\uninstall.exe"
K-Lite Codec Pack 3.2.5 Full-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Kobra 11 Nitro-->"C:\Program Files\Kobra 11 Nitro\unins000.exe"
Life Photo Maker-->"C:\Program Files\LifePhotoMaker\Uninstall.exe"
LightScribe System Software 1.12.29.2-->MsiExec.exe /X{CF8C077A-B467-4C43-8DB5-3A9B94FF9681}
Magic DVD Ripper V5.2-->"C:\Program Files\MagicDVDRipper\unins000.exe"
Magic Photo Editor 3.9-->"C:\Program Files\Magic Photo Editor\unins000.exe"
Magic Video Converter 8.0.6.24-->"C:\Program Files\Magic Video Converter\unins000.exe"
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Medal of Honor Allied Assault v 1.0.0.1-->"C:\Program Files\EA GAMES\MOHAA\unins000.exe"
Media Tagger v1.3.5-->"C:\Program Files\Media Tagger\unins000.exe"
Memories Disc Creator 2.0-->MsiExec.exe /X{2E132061-C78A-48D4-A899-1D13B9D189FA}
Menu Template Package 1 Ver 1.10-->C:\Program Files\Common Files\Anvsoft\Anvsoft DVD Menu Template Package 1\uninst.exe
Microsoft .NET Framework 1.1 Czech Language Pack-->MsiExec.exe /X{5E65E94D-69F2-4850-9E93-6459C53A0F50}
Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{A2C9CD1B-2551-3AED-B244-6698FB929FA6}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Czech Language Pack-->c:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 Czech Language Pack\setup.exe
Microsoft .NET Framework 3.0 Czech Language Pack-->MsiExec.exe /X{FB09515C-8E3E-4E0F-A1F2-032F38DEC185}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY-->MsiExec.exe /I{546C143E-68DC-314D-97BC-1E454E3BA429}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - csy-->MsiExec.exe /I{DD73CA82-EA82-38AA-863D-9A24A018DC96}
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - csy\setup.exe
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Games for Windows - LIVE -->MsiExec.exe /X{4D243BA7-9AC4-46D1-90E5-EEB88974F501}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"C:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0405-0000-0000000FF1CE} /uninstall {E12F9D31-4025-4BC6-B1B2-AB262C5580B0}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0405-0000-0000000FF1CE} /uninstall {1FC5BC34-0301-40D2-9432-05BA220277B8}
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2007-->MsiExec.exe /X{90120000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2007-->MsiExec.exe /X{90120000-0044-0405-0000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2007-->MsiExec.exe /X{90120000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0405-0000-0000000FF1CE} /uninstall {294B4278-CF7B-40B9-86A1-2D3FF0C2C524}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-041B-0000-0000000FF1CE} /uninstall {10EC59E5-9BCE-4884-BB1A-E28627220232}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Plus! Dancer LE-->MsiExec.exe /X{1A103D70-5C9B-4E1A-B306-5106C68F9914}
Microsoft Train Simulator-->"C:\Program Files\Microsoft Games\Train Simulator\UNINSTAL.EXE" /runtemp /addremove
Microsoft User-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWudf01005$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft® Winter Fun Pack 2004 for Windows® XP-->MsiExec.exe /X{038A524F-58DB-438A-8391-8F7F0CA14B9E}
Moorhuhn 2 V1.1-->C:\WINDOWS\IsUn0407.exe -f"c:\program files\slepice 3\Uninst.isu"
Moorhuhn Winter-Edition-->C:\WINDOWS\IsUn0407.exe -f"c:\program files\slepice 2\Uninst.isu"
Morpheus Photo Animation Suite v3.10-->"C:\Program Files\Morpheus Photo Animation Suite\unins000.exe"
MotoGP-->"C:\Program Files\MotoGP\unins000.exe"
Mozilla Firefox (3.5.4)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Mozilla Thunderbird (2.0.0.19)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
MP3 Manažér 2.4 Freeware-->"C:\Program Files\TMW Hardware Software\MP3 Manager 2.4\unins000.exe"
MP3 Speed Changer 2.75-->"C:\Program Files\MP3 Speed Changer\unins000.exe"
MPEG Joiner version 2.21-->"C:\Program Files\MPEGJOINER\unins000.exe"
MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
Multilingual Speaking Clock ver 2.52-->"C:\Program Files\Speaking Clock\unins000.exe"
Music DVD Creator 2.0-->"C:\Program Files\BlazeVideo\Music DVD Creator\unins000.exe"
Nature Illusion Studio-->C:\Program Files\Nufsoft\NatureStudio\Uninstall.exe
Need For Speed Hot Pursuit 2-->C:\Program Files\EA Games\Need For Speed Hot Pursuit 2\EAUninstall.exe
Need for Speed Underground 2-->C:\Program Files\EA GAMES\Need for Speed Underground 2\EAUninstall.exe
Nero Media Player-->C:\WINDOWS\UNNMP.exe /UNINSTALL
Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
NeroVision Express 2-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NET Rádio Rekordér 3.1.4-->"C:\Program Files\Redsystem\NET Radio Rekorder 3.1.4\uninstall.exe"
Neuview Standard and Professional 6.08-->"C:\Program Files\QO Developments\Neuview Media Player\unins000.exe"
No23 Recorder-->MsiExec.exe /X{22B0E143-2B0B-435B-9F56-136A3D16065F}
Nokia Connectivity Cable Driver-->MsiExec.exe /I{52D02A2B-03D2-4E34-A358-DC5D951FD296}
Nokia PC Suite-->C:\Documents and Settings\All Users\Data aplikací\Installations\{3D39E775-DDDA-4327-B747-0BDC5F191331}\Nokia_PC_Suite_7_1_30_9_cze.exe
Nokia PC Suite-->MsiExec.exe /I{3D39E775-DDDA-4327-B747-0BDC5F191331}
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
O&O Defrag Professional Edition-->MsiExec.exe /I{53480330-E1D1-41CA-B8F8-7F78644F7F50}
OpenOffice.org 2.4-->MsiExec.exe /I{C2ED62F4-4F0B-44DF-B630-DD02FD7E8C60}
Oprava hotfix aplikace Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB942288-v3)-->"C:\WINDOWS\$NtUninstallKB942288-v3$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Oprava Hotfix systému Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Panzer Elite Action-->MsiExec.exe /I{B75EF7C9-E289-4EEF-8676-B46349F210C2}
PC Connectivity Solution-->MsiExec.exe /I{0C973594-7DDF-4BD0-84ED-3517F7622037}
PC Translator-->C:\WINDOWS\UN32.EXE -UP
PcMedik-->"C:\Program Files\PcMedik\unins000.exe"
Photo Collage Maker 1.31-->"C:\Program Files\Photo Collage Maker\unins000.exe"
Photo DVD Maker Professional 7.04-->C:\Program Files\Photo DVD Maker Professional\uninst.exe
Photo DVD Slideshow Pro 8.04-->C:\Program Files\Photo DVD Slideshow Professional\uninst.exe
Photo Frame Show-->C:\PROGRA~1\FRAMES~1\UNWISE.EXE C:\PROGRA~1\FRAMES~1\INSTALL.LOG
Photodex Presenter-->C:\Program Files\Photodex Presenter\uninst.exe
PhotoFiltre Studio-->"C:\Program Files\PhotoFiltre Studio\Uninst.exe"
PhotoFusion 1.02-->"C:\Program Files\PhotoFusion\unins000.exe"
Picasa 2-->"C:\Program Files\Picasa2\Uninstall.exe"
Picture Resize Genius 2.9.1-->"C:\Program Files\Picture Resize Genius\unins000.exe"
Plane Arcade-->C:\Program Files\Plane Arcade\uninstall.exe
Podnikový a domácí právník 8.3-->"C:\Program Files\legis\pdp82\unins000.exe"
Pool 'm Up-->C:\PROGRA~1\POOL'M~1\UNINSTALL\UNINSTALL.EXE C:\PROGRA~1\POOL'M~1\UNINSTALL\INSTALL.LOG
Popeláři-->"C:\Program Files\Popeláři\unins000.exe"
Popisovač CD/DVD 3.20-->"C:\Program Files\Popisovač CD-DVD\unins000.exe"
Portrait Professional Max 6.3-->"C:\Program Files\Portrait Professional Max 6\unins000.exe"
Print Envelope 2.0.0.0-->"C:\Program Files\RKComputer\PrintEnvelope\unins000.exe"
ProfiCAD-->"C:\Program Files\ProfiCAD\unins000.exe"
ProShow Producer-->C:\Program Files\Photodex\ProShowProducer\uninst.exe
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
Pure Sudoku 1.10-->"C:\Program Files\Pure Sudoku\unins000.exe"
QuickTime-->MsiExec.exe /I{C78EAC6F-7A73-452E-8134-DBB2165C5A68}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -l0x0005 -removeonly
Return to Castle Wolfenstein-->C:\PROGRA~1\RETURN~1\Uninstall\Unwise.exe /u C:\PROGRA~1\RETURN~1\Uninstall\Install.log
save2pc Light 3.44-->"C:\Program Files\FDRLab\save2pc\unins000.exe"
save2pc Pro 3.51-->"C:\Program Files\Save z youtube\save2pc\unins000.exe"
SaveSnap-->C:\Program Files\SaveSnap\uninst.exe
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB969679)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C66E4A6C-6E07-4C63-8CCD-2493B5087C73}
Security Update for Microsoft Office Excel 2007 (KB969682)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C03803BD-745A-46F8-8557-817DED578780}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
Ski Challenge 2005 - Bormio-->"C:\Program Files\SkiChallenge2005Bormio\uninstall.exe"
Ski Challenge 2005 - Kitzbühel-->"C:\Program Files\SkiChallenge2005Kitzbuehel\uninstall.exe"
Ski Racing 2005 featuring Hermann Maier-->C:\PROGRA~1\JoWooD\SKIRAC~1\unwise.exe C:\PROGRA~1\JoWooD\SKIRAC~1\install.log
Skype 2.5-->"C:\Program Files\Skype\Phone\unins000.exe"
Smarty Uninstaller 2007 Pro 1.8.0-->"C:\Program Files\Smarty Uninstaller Pro\unins000.exe"
SpeedFan (remove only)-->"C:\Program Files\SpeedFan\uninstall.exe"
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Streamripper (Remove only)-->C:\Program Files\Streamripper\Uninstall.exe
Streamripper Plugin 1.61.27 (Remove only)-->C:\Program Files\Winamp\streamripper_uninstall.exe
Super Video Joiner 4.8-->"C:\Program Files\Witcobber\Super Video Joiner\unins000.exe"
SuperCleaner-->"C:\Program Files\SuperCleaner\Uninst.exe" C:\Program Files\SuperCleaner\Uninst.ini
SuperDVD Player 5.0-->"C:\Program Files\SuperDVD Player 5.0\unins000.exe"
Superstars® V8 Racing-->"C:\Program Files\InstallShield Installation Information\{3E397763-CFBE-4FEF-B1A6-B0A9661EF032}\setup.exe" -runfromtemp -l0x0009 -removeonly
Texas Hold'em Poker 3D - Deluxe Edition 1.0-->"C:\Program Files\Play+Smile\Texas Hold'em Poker 3D - Deluxe Edition\unins000.exe"
Throttle-->"C:\Program Files\Throttle\unins000.exe"
Tom Clancy's H.A.W.X-->"C:\Program Files\InstallShield Installation Information\{6E36A172-06FB-4BC8-B7FC-D30D219E6776}\setup.exe" -runfromtemp -l0x0009 -removeonly
Total Commander (Remove or Repair)-->C:\Program Files\Total Commander\totalcmd\tcuninst.exe
Total Video Converter 3.50-->"C:\Program Files\Total Video Converter\unins000.exe"
Trojan Remover 6.7.5-->"C:\Program Files\Trojan Remover\unins000.exe"
TuneUp Utilities 2008-->MsiExec.exe /I{5888428E-699C-4E71-BF71-94EE06B497DA}
TweakNow RegCleaner Standard-->"C:\Program Files\TweakNow RegCleaner Std\unins000.exe"
Ultra AVI Converter 5.0.1123-->"C:\Program Files\Ultra AVI Converter\unins000.exe"
Uninstall 1.0.0.1-->"C:\Program Files\Common Files\DVDVideoSoft\unins000.exe"
Universal Viewer-->"C:\Program Files\Universal Viewer\Uninstall.exe"
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Outlook 2007 Junk Email Filter (KB974810)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C05FBAD5-A211-4E86-BB51-7E07B80C9233}
Vallen JPegger-->"C:\Program Files\Vallen JPegger\jpegger.exe" -ui -q
vanBasco's Karaoke Player-->C:\Program Files\vanBasco's Karaoke Player\uninst.exe
VideoAvatar-->"C:\Program Files\GeoVid\Video Avatar\unins000.exe"
Virtual Desktop Manager Powertoy for Windows XP-->MsiExec.exe /I{F251B999-08A9-4704-999C-9962F0DFD88E}
Visual Business Cards 4-->"C:\Program Files\Visual Business Cards\unins000.exe"
Wave Splitter 2.10-->"C:\Program Files\Wave Splitter\unins000.exe"
WhiteCap-->C:\Program Files\SoundSpectrum\WhiteCap\Uninstall.exe
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
WinAVI Video Converter 9.0-->"C:\WINDOWS\WinAVI Video Converter 9.0\uninstall.exe" "/U:C:\Program Files\WinAVI Video Converter 9.0\Uninstall\uninstall.xml"
Windows Internet Explorer 7-->"C:\WINDOWS\ie7\spuninst\spuninst.exe"
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows Presentation Foundation Language Pack (CSY)-->MsiExec.exe /X{AAB6D0F8-02B3-4E89-B24C-0BB153C21445}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
WinPcap 4.0.2-->C:\Program Files\WinPcap\uninstall.exe
WinRAR-->C:\Program Files\WinRAR\uninstall.exe
WinZip 11.1-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}
World Racing-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{B151F020-1DEE-4716-944F-2759FC3C51DA} /l1033
Xilisoft DVD Creator-->C:\Program Files\Xilisoft\DVD Creator3\Uninstall.exe
Xilisoft DVD to MP4 Converter-->C:\Program Files\Xilisoft\DVD to MP4 Converter 4\Uninstall.exe
Xilisoft Video Converter 3-->C:\Program Files\Xilisoft\Video Converter 3\Uninstall.exe
Xilisoft Video Converter Ultimate-->C:\Program Files\Xilisoft\Video Converter Ultimate\Uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
XnView 1.80.3-->"C:\Program Files\XnView\unins000.exe"
Your Uninstaller! Version 6.2-->"C:\Program Files\Your Uninstaller\unins000.exe"
Zoner GIF Animator 5-->MsiExec.exe /I{2EE90F26-20B3-4423-81DE-E57E5D2E4FEF}
Zoner Photo Studio 10-->"C:\Program Files\Zoner\Photo Studio 10\unins000.exe" /SILENT
Zoner Photo Studio 11-->"C:\Program Files\Zoner\Photo Studio 11\unins000.exe" /SILENT
Zoner Photo Studio 12-->"C:\Program Files\Zoner\Photo Studio 12\unins000.exe" /SILENT
Zoner Photo Studio 9-->"C:\Program Files\Zoner\Photo Studio 9\unins000.exe"

======Security center information======

AV: COMODO Antivirus
AV: avast! antivirus 4.8.1351 [VPS 091107-1] (disabled)
FW: COMODO Firewall

======System event log======

Computer Name: SESTAVA-24433
Event Code: 7035
Message: Řídící příkaz Spuštěno byl službě Kompatibilita pro rychlé přepínání uživatelů úspěšně odeslán.

Record Number: 5
Source Name: Service Control Manager
Time Written: 20091030180851.000000+060
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: SESTAVA-24433
Event Code: 7036
Message: Stav služby Terminálová služba byl změněn na: Spuštěno

Record Number: 4
Source Name: Service Control Manager
Time Written: 20091030180851.000000+060
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 7036
Message: Stav služby Služba Google Update (gupdate1c9cdab48401712) byl změněn na: Zastaveno

Record Number: 3
Source Name: Service Control Manager
Time Written: 20091030180851.000000+060
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 6005
Message: Služba Event Log byla spuštěna.

Record Number: 2
Source Name: EventLog
Time Written: 20091030180718.000000+060
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20091030180718.000000+060
Event Type: Informace
User:

=====Application event log=====

Computer Name: SESTAVA-24433
Event Code: 0
Message:
Record Number: 2409
Source Name: ServiceLayer
Time Written: 20090504171743.000000+120
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 1800
Message: Služba Centrum zabezpečení systému Windows byla spuštěna.

Record Number: 2408
Source Name: SecurityCenter
Time Written: 20090504171739.000000+120
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 4
Message: The LightScribe Service started successfully.

Record Number: 2407
Source Name: LightScribeService
Time Written: 20090504171728.000000+120
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 0
Message:
Record Number: 2406
Source Name: ICQ Service
Time Written: 20090504171722.000000+120
Event Type: Informace
User:

Computer Name: SESTAVA-24433
Event Code: 4
Message: Service started

Record Number: 2405
Source Name: HDD Info Service
Time Written: 20090504171721.000000+120
Event Type:
User: NT AUTHORITY\SYSTEM

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=C:\Program Files\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\Intuwave\Shared\mRouterRuntime;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=1706
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------
Snad vše se dá vyřešit.Chce to trpělivost.

Uživatelský avatar
-Milan64-
Level 1.5
Level 1.5
Příspěvky: 109
Registrován: prosinec 06
Bydliště: Severní Morava
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu Logu mám asi šmejda

Příspěvekod -Milan64- » 08 lis 2009 09:17

Logfile of random's system information tool 1.06 (written by random/random)
Run by Milan at 2009-11-08 09:13:39
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 139 GB (46%) free of 305 GB
Total RAM: 2046 MB (68% free)

HijackThis download failed

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Úklid 1 kliknutím.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{968631B6-4729-440D-9BF4-251F5593EC9A} - Copernic Desktop Search 2 - C:\Program Files\Copernic Desktop Search 2\DesktopSearchBand2515.dll [2006-10-13 1029936]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-02-13 16857600]
"36X Raid Configurer"=C:\WINDOWS\system32\xRaidSetup.exe [2007-08-29 1966080]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-08-17 81000]
"ioCentre"=C:\Genius\ioCentre\gTaskBar.exe [2006-12-08 241664]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-03-24 13524992]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2009-09-18 1799952]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" C:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveSearch"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\NeroExpress\Installation\Setupx.exe"="D:\NeroExpress\Installation\Setupx.exe:*:Enabled:Nero ProductSetup"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Blobby\volley.exe"="C:\Program Files\Blobby\volley.exe:*:Disabled:volley"
"C:\Program Files\EA GAMES\MOHAA\MOHAA.exe"="C:\Program Files\EA GAMES\MOHAA\MOHAA.exe:*:Disabled:Medal of Honor Allied Assault"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Disabled:CoD2MP_s"
"C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterRuntime.exe"="C:\Program Files\Intuwave\Shared\mRouterRuntime\mRouterRuntime.exe:*:Enabled:mRouterRuntime Module"
"C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe"="C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe:*:Disabled:WolfMP"
"C:\Program Files\Curling 2006\Curling2006.exe"="C:\Program Files\Curling 2006\Curling2006.exe:*:Disabled:Curling2006"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Codemasters\FUEL\FUEL.exe"="C:\Program Files\Codemasters\FUEL\FUEL.exe:*:Enabled:FUEL"
"C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe"="C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe"="C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d4c13f8c-2dae-11de-80eb-001fd055266f}]
shell\AutoRun\command - K:\LaunchU3.exe -a


======File associations======

.inf - install -
.scr - install -
.cpl - cplopen -

======List of files/folders created in the last 1 months======

2009-11-08 09:13:39 ----D---- C:\rsit
2009-11-08 09:12:59 ----A---- C:\RSIT.exe
2009-11-08 08:52:44 ----A---- C:\WINDOWS\ntbtlog.txt
2009-11-07 23:15:58 ----A---- C:\WINDOWS\system32\ssubtmr6.dll
2009-11-07 23:15:48 ----A---- C:\WINDOWS\system32\wt_menu.dll
2009-11-07 23:15:14 ----D---- C:\Program Files\Smarty Uninstaller Pro
2009-11-07 23:00:57 ----D---- C:\Documents and Settings\Milan\Data aplikací\URSoft
2009-11-07 22:59:56 ----D---- C:\Program Files\Your Uninstaller
2009-11-07 21:52:21 ----D---- C:\32788R22FWJFW
2009-11-07 18:24:00 ----D---- C:\32788R22FWJFW.0.tmp
2009-11-07 18:23:08 ----A---- C:\Bug.txt
2009-11-07 17:31:58 ----D---- C:\32788R22FWJFW(2)
2009-11-07 16:31:17 ----D---- C:\WINDOWS\temp
2009-11-07 15:53:51 ----D---- C:\WINDOWS\ERDNT
2009-11-07 15:47:33 ----SHD---- C:\WINDOWS\CSC
2009-11-06 16:31:51 ----D---- C:\$WIN_NT$.~BT
2009-11-06 16:31:22 ----D---- C:\WINDOWS\setupupd
2009-11-06 16:19:41 ----RASH---- C:\BOOT.BAK
2009-11-06 15:38:54 ----D---- C:\WINDOWS\Minidump
2009-11-03 20:33:05 ----D---- C:\Program Files\Syncrosoft
2009-11-03 20:27:33 ----D---- C:\Program Files\Eleco
2009-11-01 13:56:50 ----D---- C:\Program Files\Common Files\Xuisoft
2009-11-01 13:56:29 ----D---- C:\Program Files\GifCreator
2009-10-31 18:20:53 ----RHD---- C:\Documents and Settings\Milan\Data aplikací\SecuROM
2009-10-31 18:12:51 ----D---- C:\Program Files\Atari
2009-10-31 18:12:49 ----D---- C:\Documents and Settings\Milan\Data aplikací\gnupg
2009-10-30 17:59:47 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2009-10-30 17:59:47 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2009-10-30 17:59:46 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2009-10-30 17:59:45 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2009-10-30 17:59:45 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2009-10-30 17:59:44 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2009-10-30 17:59:43 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2009-10-30 17:59:42 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2009-10-30 17:59:42 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2009-10-30 17:59:42 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2009-10-30 17:59:40 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2009-10-30 17:59:40 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2009-10-30 17:08:01 ----HDC---- C:\WINDOWS\$NtUninstallKB942288-v3$
2009-10-28 21:09:34 ----D---- C:\Program Files\TDK
2009-10-28 19:29:09 ----A---- C:\WINDOWS\Sierra.ini
2009-10-20 17:26:27 ----D---- C:\Documents and Settings\All Users\Data aplikací\ArcSoft
2009-10-20 17:25:14 ----D---- C:\Program Files\Common Files\ArcSoft
2009-10-20 17:25:13 ----D---- C:\Program Files\ArcSoft
2009-10-20 17:25:13 ----A---- C:\WINDOWS\PCDLIB32.DLL
2009-10-20 17:24:59 ----D---- C:\Documents and Settings\Milan\Data aplikací\ArcSoft
2009-10-16 15:33:57 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-10-16 15:33:45 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-10-16 15:33:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-10-16 15:33:17 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-10-16 15:33:09 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-10-16 15:32:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-10-16 15:32:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-10-16 15:32:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-10-16 15:32:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-10-14 23:52:02 ----D---- C:\WINDOWS\system32\oodag
2009-10-14 23:36:38 ----D---- C:\Program Files\OO Software
2009-10-14 17:36:13 ----D---- C:\Program Files\Total Video Converter
2009-10-13 22:02:10 ----A---- C:\Documents and Settings\Milan\Data aplikací\inst.exe
2009-10-13 22:01:09 ----D---- C:\Program Files\DVDFab 5
2009-10-12 18:47:06 ----D---- C:\GTR2
2009-10-12 18:44:03 ----D---- C:\Program Files\GTR 2 Game
2009-10-11 17:22:30 ----D---- C:\Program Files\18.WoS-EXTREME.TRUCKER

======List of files/folders modified in the last 1 months======

2009-11-08 09:12:14 ----D---- C:\Program Files\Mozilla Firefox
2009-11-08 09:08:26 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-08 09:07:23 ----D---- C:\WINDOWS\system32\config
2009-11-08 09:06:06 ----D---- C:\WINDOWS\system32\wbem
2009-11-08 09:06:00 ----D---- C:\WINDOWS\Registration
2009-11-08 09:05:27 ----SHD---- C:\WINDOWS\Installer
2009-11-08 09:05:27 ----D---- C:\Config.Msi
2009-11-08 09:05:22 ----D---- C:\WINDOWS\system32
2009-11-08 09:04:41 ----D---- C:\WINDOWS
2009-11-08 01:00:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-07 23:41:11 ----D---- C:\Program Files\Mozilla Thunderbird
2009-11-07 23:33:55 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2009-11-07 23:28:43 ----HD---- C:\WINDOWS\inf
2009-11-07 23:28:43 ----D---- C:\WINDOWS\system32\DirectX
2009-11-07 23:15:14 ----RD---- C:\Program Files
2009-11-07 22:41:35 ----D---- C:\Documents and Settings\Milan\Data aplikací\Spyware Terminator
2009-11-07 22:08:51 ----D---- C:\WINDOWS\Debug
2009-11-07 21:36:16 ----D---- C:\Program Files\Trend Micro
2009-11-07 20:41:45 ----A---- C:\WINDOWS\TRNCOM.INI
2009-11-07 17:32:02 ----D---- C:\WINDOWS\system32\drivers
2009-11-07 17:31:43 ----D---- C:\WINDOWS\system
2009-11-07 16:38:50 ----A---- C:\WINDOWS\system.ini
2009-11-07 16:38:32 ----SD---- C:\WINDOWS\Tasks
2009-11-07 16:27:00 ----D---- C:\WINDOWS\AppPatch
2009-11-07 16:26:54 ----D---- C:\Program Files\Common Files
2009-11-06 16:45:28 ----SHD---- C:\System Volume Information
2009-11-06 16:45:28 ----D---- C:\WINDOWS\system32\Restore
2009-11-06 16:32:34 ----RASH---- C:\boot.ini
2009-11-06 16:31:52 ----A---- C:\WINDOWS\UPGRADE.TXT
2009-11-06 15:45:38 ----D---- C:\Program Files\SpeedFan
2009-11-03 21:28:02 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-11-03 21:27:16 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-03 20:33:42 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-03 20:25:34 ----D---- C:\WINDOWS\Prefetch
2009-11-03 16:40:06 ----D---- C:\WINDOWS\ie8updates
2009-11-03 16:39:15 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-02 15:04:08 ----D---- C:\Documents and Settings\Milan\Data aplikací\OpenOffice.org2
2009-11-02 14:57:40 ----D---- C:\Program Files\AceMoney
2009-11-02 00:26:57 ----A---- C:\WINDOWS\wincmd.ini
2009-11-01 21:25:21 ----A---- C:\WINDOWS\NeroDigital.ini
2009-11-01 14:12:15 ----D---- C:\Program Files\FrameShow
2009-11-01 13:36:34 ----AD---- C:\Program Files\SeznamDVD2008
2009-10-31 00:35:43 ----RSD---- C:\WINDOWS\assembly
2009-10-31 00:15:17 ----D---- C:\Program Files\Codemasters
2009-10-30 18:22:06 ----D---- C:\Program Files\Ubisoft
2009-10-30 17:08:13 ----D---- C:\WINDOWS\system32\mui
2009-10-30 13:03:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\SlySoft
2009-10-30 13:03:39 ----D---- C:\Program Files\SlySoft
2009-10-28 14:51:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\DVD Shrink
2009-10-22 10:18:24 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-10-19 23:07:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2009-10-16 16:22:47 ----D---- C:\Program Files\Internet Explorer
2009-10-16 16:07:29 ----D---- C:\WINDOWS\Microsoft.NET
2009-10-16 15:35:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2009-10-16 15:33:46 ----D---- C:\WINDOWS\WinSxS
2009-10-16 15:30:26 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-10-15 07:08:35 ----A---- C:\WINDOWS\cfplogvw.INI
2009-10-13 22:02:18 ----D---- C:\Documents and Settings\Milan\Data aplikací\Vso
2009-10-13 21:57:51 ----D---- C:\Program Files\Corel
2009-10-13 21:57:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Corel
2009-10-12 15:43:06 ----D---- C:\Program Files\Magic Video Converter
2009-10-12 15:39:48 ----A---- C:\WINDOWS\ShortCutInf.ini
2009-10-12 15:39:48 ----A---- C:\WINDOWS\FantasyDVD.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-08-17 26944]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2008-10-06 43488]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-08-17 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-08-17 51376]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2009-09-18 132296]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2009-09-18 25160]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2007-08-07 25160]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054}; \??\C:\Program Files\CyberLink\PowerDVD8\000.fcl []
R2 Aspi32;Aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2005-11-21 16512]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-08-17 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-08-17 94160]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2008-10-06 165376]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2008-10-06 18048]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-08-17 23152]
R3 bbcap;bbcap; C:\WINDOWS\system32\DRIVERS\bbcap.sys [2008-12-01 4096]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [2007-02-16 11984]
R3 gMouPS2;PS2 Scroll Mouse Device; C:\WINDOWS\system32\DRIVERS\gMouPS2.sys [2006-07-12 17408]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-02-14 4676096]
R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-11 21060]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-03-24 6547872]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2009-10-13 47360]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-01-03 105856]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 aifo5a61;aifo5a61; C:\WINDOWS\system32\drivers\aifo5a61.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-01-05 51056]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-01-05 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-01-05 21488]
S3 Maplom;Maplom; C:\WINDOWS\system32\drivers\Maplom.sys [2007-08-14 31744]
S3 motmodem;Motorola USB CDC ACM Driver; C:\WINDOWS\system32\DRIVERS\motmodem.sys [2007-02-12 21376]
S3 motport;Motorola USB Diagnostic Port; C:\WINDOWS\system32\DRIVERS\motport.sys [2007-02-12 21376]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 MSICPL;MSICPL; \??\D:\install4\MSICPL.sys []
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2009-02-09 17664]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-02-09 22016]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 NTACCESS;NTACCESS; \??\D:\BetaSoft\NTACCESS.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-14 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2009-02-06 109056]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-08-17 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-08-17 138680]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2009-09-18 723632]
R2 HDDSvc;HDD Information Service; C:\WINDOWS\system32\HDDSvc.exe [2007-08-23 189704]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-01-24 73728]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-03-24 155716]
R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2007-05-11 1050120]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-09-18 66872]
R2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2009-09-18 107832]
R2 ProtexisLicensing;ProtexisLicensing; C:\WINDOWS\system32\PSIService.exe [2006-11-02 174656]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2008-10-01 570880]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2008-06-09 53392]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate1c9cdab48401712;Služba Google Update (gupdate1c9cdab48401712); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-05-05 133104]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-08-17 254040]
S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-08-17 352920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-01-05 65795]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-06-02 637952]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2008-10-17 306432]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
Snad vše se dá vyřešit.Chce to trpělivost.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 73 hostů