Prosím o kontrolu Logu HJT.. Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod jaro3 » 25 úno 2011 08:38

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::
FCOPY::
c:\windows\system32\dllcache\spoolsv.exe | c:\Windows\system32\spoolsv.exe   

File::
c:\windows\SETFE.tmp
c:\windows\SETF2.tmp
c:\windows\SETEF.tmp
c:\windows\system32\tmp7DF62.FOT
c:\windows\system32\tmp60072.FOT
c:\windows\system32\tmpE9E62.FOT
c:\windows\system32\tmpDDE62.FOT
c:\windows\system32\tmpC0F62.FOT
c:\windows\system32\tmpA3F62.FOT
c:\windows\system32\tmp21E62.FOT
c:\windows\system32\tmp04E62.FOT
c:\windows\system32\perfc009.dat
c:\windows\system32\perfc009.dat
c:\windows\system32\perfc005.dat
c:\windows\system32\perfc005.dat

Driver::
pht

DDS::
uStart Page = hxxp://www.geewa.com/?language=cs

Firefox::
FF - ProfilePath - c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?clien ... YYYYYCZ&q=
FF - Ext: Ask Toolbar: toolbar@ask.com - %profile%\extensions\toolbar@ask.com

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 25 úno 2011 23:46

ComboFix 11-02-24.05 - Milan Šindelář 25.02.2011 23:35:36.10.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2047.1563 [GMT 1:00]
Spuštěný z: c:\documents and settings\Milan Šindelář\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Milan Šindelář\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}

FILE ::
"c:\windows\SETEF.tmp"
"c:\windows\SETF2.tmp"
"c:\windows\SETFE.tmp"
"c:\windows\system32\perfc005.dat"
"c:\windows\system32\perfc009.dat"
"c:\windows\system32\tmp04E62.FOT"
"c:\windows\system32\tmp21E62.FOT"
"c:\windows\system32\tmp60072.FOT"
"c:\windows\system32\tmp7DF62.FOT"
"c:\windows\system32\tmpA3F62.FOT"
"c:\windows\system32\tmpC0F62.FOT"
"c:\windows\system32\tmpDDE62.FOT"
"c:\windows\system32\tmpE9E62.FOT"
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\datastore\cache.sqlite
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\defaults.js.bak
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\defaults\preferences\defaults.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome.manifest
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\about.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\about.xul
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\cache.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\constants.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\core.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\custom-command-listener.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\events.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\feeds.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\json.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\lifecycle.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\listeners.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\locale.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\logger.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\network.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\observer.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\options.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\options.xul
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\preferences.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\prefetch.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\ss-popup-bindings.xml
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\suggestions.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\update.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\utilities.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\webframe-bindings.xml
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\webframe-manager.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\widget-controller.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\widget-popup.xul
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\content\widgets.js
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\abc.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\amazon_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\as.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\ask_16x16.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\ask_32x32.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\ask_browser_ff_chrome.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\asklogo.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\bbc_news.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\beppe_grillo.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\bg.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\bild.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\blogs.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\business.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\celebrity.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\close.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\cnn_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\corriere_della_sera.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\dictionary.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\el_mundo.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\email_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\expansion.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\facebook_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\folha.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\ft.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\ftd.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\g1.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\games_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\gazzetta_dello_sport.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\globe_18x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\gripper.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\highlight_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\highlighter_off.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\highlighter_on.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\hola.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\chevron.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_film1_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_history_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_news_ru_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_nu_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_radiodigital_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_sports_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_sportsru_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icon_vk_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\icons_business_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\images.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\kicker.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-de.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-en.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-es.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-fr.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-it.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-nl.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-pt.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\labels-ru.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\laposte.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\lemonde.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\lequipe.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\libero_it.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-BR.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-DE.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-ES.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-EU.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-FR.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-IT.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-NL.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-RU.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-UK.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\links-US.properties
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\logo_32x32.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\magnify_search.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\magnify_search_grey_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\maps.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\mtv.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\news.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\oglobo.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\orkut.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\personas.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\preferences.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_de.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_es.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_fr.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_it.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_nl.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pl.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_pt.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ask_ru.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_cobrand.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_current_site.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_de.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_es.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_fr.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_grey_73x24.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_it.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_nl.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_pl.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_pt.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\search_ru.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\shopping.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\sports.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\stocks.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\terra.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\titlebar_bg.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\toolbar.css
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\toolbar.xul
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\tv.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\tv_movie_de.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\uol.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\voici_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\weather.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\weather_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\web.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\web_de.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\wordoftheday_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\youtube_16x.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\skin\zoomall.png
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-22-Feb-2011-17-06-34-GMT\ff-config.zip
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\install.rdf
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\logs\asktb-log-1298592231105.html
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\logs\asktb-log-1298595769071.html
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\logs\asktb-log-1298595804050.html
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\logs\asktb-log-1298672952458.html
c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\toolbar@ask.com\searchplugins\askcom.xml
c:\windows\SETEF.tmp
c:\windows\SETF2.tmp
c:\windows\SETFE.tmp
c:\windows\system32\perfc005.dat
c:\windows\system32\tmp04E62.FOT
c:\windows\system32\tmp21E62.FOT
c:\windows\system32\tmp60072.FOT
c:\windows\system32\tmp7DF62.FOT
c:\windows\system32\tmpA3F62.FOT
c:\windows\system32\tmpC0F62.FOT
c:\windows\system32\tmpDDE62.FOT
c:\windows\system32\tmpE9E62.FOT

.
--------------- FCopy ---------------

c:\windows\system32\dllcache\spoolsv.exe --> c:\windows\system32\spoolsv.exe
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_pht


((((((((((((((((((((((((( Soubory vytvořené od 2011-01-25 do 2011-02-25 )))))))))))))))))))))))))))))))
.

2011-02-25 10:09 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2011-02-25 10:09 . 2010-09-18 06:53 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2011-02-25 10:09 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2011-02-25 10:08 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2011-02-25 10:07 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2011-02-24 22:47 . 2010-12-20 23:52 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-02-24 22:47 . 2010-12-20 23:52 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2011-02-24 22:47 . 2010-12-20 23:52 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2011-02-24 22:47 . 2010-12-20 23:52 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-02-24 22:47 . 2010-12-20 23:52 1991680 -c----w- c:\windows\system32\dllcache\iertutil.dll
2011-02-24 22:47 . 2010-12-20 23:52 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-02-24 22:47 . 2010-12-20 10:52 11080704 -c----w- c:\windows\system32\dllcache\ieframe.dll
2011-02-24 22:30 . 2009-07-31 09:05 1372672 -c----w- c:\windows\system32\dllcache\msxml6.dll
2011-02-24 22:30 . 2008-04-14 02:30 80896 -c----w- c:\windows\system32\dllcache\msxml6r.dll
2011-02-24 22:29 . 2008-04-14 03:21 81920 ------w- c:\windows\system32\ieencode.dll
2011-02-24 22:29 . 2006-12-28 19:01 19569 ----a-w- c:\windows\003113_.tmp
2011-02-24 22:29 . 2008-04-14 03:22 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2011-02-24 22:08 . 2008-06-14 17:35 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2011-02-24 22:08 . 2010-08-26 13:39 357248 -c----w- c:\windows\system32\dllcache\srv.sys
2011-02-24 22:08 . 2010-02-24 13:11 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-02-24 22:08 . 2009-11-21 16:03 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2011-02-24 22:06 . 2010-12-09 15:14 2029056 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2011-02-24 22:05 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2011-02-24 22:03 . 2008-10-15 16:38 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2011-02-24 22:03 . 2010-07-16 11:58 219136 -c----w- c:\windows\system32\dllcache\wordpad.exe
2011-02-24 17:38 . 2004-08-18 12:00 5632 -c--a-w- c:\windows\system32\dllcache\kbdinkan.dll
2011-02-24 17:37 . 2003-04-14 19:48 16384 -c--a-w- c:\windows\system32\dllcache\tcptsat.dll
2011-02-24 17:37 . 2003-04-14 19:48 212992 -c--a-w- c:\windows\system32\dllcache\fpmmcsat.dll
2011-02-24 17:36 . 2004-08-18 12:00 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
2011-02-24 17:36 . 2004-08-18 12:00 16384 ----a-w- c:\program files\Internet Explorer\Connection Wizard\isignup.exe
2011-02-24 17:20 . 2004-08-18 12:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
2011-02-24 17:20 . 2004-08-18 12:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
2011-02-24 17:20 . 2004-08-18 12:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
2011-02-24 17:20 . 2004-08-18 12:00 13312 ----a-w- c:\windows\system32\irclass.dll
2011-02-22 16:52 . 2001-06-18 09:53 57344 ----a-w- c:\windows\system\bpenhan.dll
2011-02-22 16:52 . 1995-05-22 23:00 776240 ----a-w- c:\windows\system\Lead52.dll
2011-02-22 16:52 . 2000-10-24 17:09 19552 ----a-w- c:\windows\system32\SBUSD.DLL
2011-02-22 16:50 . 2011-02-22 16:50 -------- d-----w- c:\program files\SmartTweak Software
2011-02-22 16:50 . 2011-02-22 16:50 -------- d-----w- c:\documents and settings\Milan Šindelář\Local Settings\Data aplikací\PackageAware
2011-02-21 19:12 . 2011-02-21 19:12 388096 ----a-r- c:\documents and settings\Milan Šindelář\Data aplikací\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-02-21 16:44 . 2011-02-21 16:45 -------- d-----w- C:\col9695
2011-02-21 11:36 . 2011-02-21 14:54 -------- d-----w- c:\documents and settings\Milan Šindelář\DoctorWeb
2011-02-19 21:25 . 2011-02-19 21:25 -------- d-----w- c:\program files\Remote Professional
2011-02-17 11:17 . 2011-02-17 11:17 -------- d-----w- c:\program files\Symbian OS Tools
2011-02-15 23:06 . 2008-04-14 04:22 54272 ----a-w- c:\windows\system32\drivers\vfwwdm32.dll
2011-02-15 23:06 . 2008-04-14 03:22 129536 ----a-w- c:\windows\system32\ksproxy.ax
2011-02-15 22:46 . 2011-02-15 22:46 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Nokia
2011-02-15 21:58 . 2011-02-15 21:58 -------- d-----w- c:\documents and settings\Milan Šindelář\Data aplikací\Nokia Ovi Suite
2011-02-15 19:43 . 2011-02-15 19:47 -------- d-----w- c:\documents and settings\Milan Šindelář\Local Settings\Data aplikací\Nokia
2011-02-15 19:34 . 2011-02-15 19:34 -------- d-----w- c:\program files\Common Files\PCSuite
2011-02-15 19:33 . 2011-02-15 19:42 -------- d-----w- c:\program files\Common Files\Nokia
2011-02-15 19:33 . 2011-02-15 19:33 -------- d-----w- c:\program files\PC Connectivity Solution
2011-02-15 19:32 . 2010-07-30 13:16 8192 ----a-w- c:\windows\system32\drivers\usbser_lowerfltj.sys
2011-02-15 19:32 . 2010-07-30 13:16 8192 ----a-w- c:\windows\system32\drivers\usbser_lowerflt.sys
2011-02-15 19:32 . 2010-07-30 13:16 23040 ----a-w- c:\windows\system32\drivers\ccdcmbo.sys
2011-02-15 19:32 . 2010-07-30 13:17 111104 ----a-w- c:\windows\system32\ccdcmbwu.dll
2011-02-15 19:32 . 2010-07-30 13:17 604160 ----a-w- c:\windows\system32\nmwcdcocls.dll
2011-02-15 19:32 . 2010-07-30 13:16 18048 ----a-w- c:\windows\system32\drivers\ccdcmb.sys
2011-02-15 19:32 . 2010-02-26 13:19 1461992 ----a-w- c:\windows\system32\wdfcoinstaller01009.dll
2011-02-13 21:30 . 2011-02-13 22:38 -------- d-----w- c:\documents and settings\Milan Šindelář\Data aplikací\LCDHype
2011-02-10 11:46 . 2011-01-13 08:47 38848 ----a-w- c:\windows\avastSS.scr
2011-02-10 11:41 . 2011-01-13 08:37 17744 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-02-10 11:41 . 2011-01-13 08:41 294608 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-02-10 11:41 . 2011-01-13 08:37 23632 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-02-10 11:41 . 2011-01-13 08:40 47440 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-02-10 11:41 . 2011-01-13 08:40 100176 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2011-02-10 11:41 . 2011-01-13 08:39 94544 ----a-w- c:\windows\system32\drivers\aswmon.sys
2011-02-10 11:41 . 2011-01-13 08:37 29392 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2011-02-10 11:41 . 2011-01-13 08:47 188216 ----a-w- c:\windows\system32\aswBoot.exe
2011-01-30 21:29 . 2011-01-30 21:29 -------- d-----w- c:\documents and settings\Milan Šindelář\Local Settings\Data aplikací\Stefan_Wobbe
2011-01-30 20:02 . 2008-04-14 03:22 24576 ----a-w- c:\windows\system32\wsock32.dlb
2011-01-30 18:12 . 2011-01-30 18:12 -------- d-----w- c:\program files\FreeTime
2011-01-30 17:06 . 2011-01-30 17:06 -------- d-----w- c:\program files\LizardTech
2011-01-30 17:06 . 2009-07-31 12:06 1654784 ----a-w- c:\program files\Mozilla Firefox\plugins\npdjvu.dll
2011-01-30 13:57 . 2011-01-30 13:57 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2011-01-30 13:57 . 2011-01-30 13:57 103864 ----a-w- c:\program files\Internet Explorer\PLUGINS\nppdf32.dll
2011-01-29 08:29 . 2011-01-29 08:29 -------- d-----w- c:\program files\Satellite TV On My PC

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-21 14:44 . 2004-08-18 12:00 440320 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-16 12:00 . 2011-01-16 12:00 626688 ----a-w- c:\windows\system32\msvcr80.dll
2011-01-16 12:00 . 2011-01-16 12:00 548864 ----a-w- c:\windows\system32\msvcp80.dll
2011-01-16 12:00 . 2011-01-16 12:00 28672 ----a-w- c:\windows\system32\eEmpty.exe
2011-01-12 19:41 . 2011-01-12 19:41 203576 ----a-w- c:\windows\system32\richtx32.ocx
2011-01-12 19:41 . 2011-01-12 19:41 140288 ----a-w- c:\windows\system32\comdlg32.ocx
2011-01-12 19:41 . 2011-01-12 19:41 124688 ----a-w- c:\windows\system32\mswinsck.ocx
2011-01-07 14:09 . 2004-08-18 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 14:04 . 2004-08-18 12:00 1854976 ----a-w- c:\windows\system32\win32k.sys
2010-12-24 08:15 . 2010-12-24 08:15 86016 ----a-w- c:\windows\system32\frapsvid.dll
2010-12-22 12:34 . 2004-08-18 12:00 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-20 23:52 . 2004-08-18 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:52 . 2004-08-18 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-20 23:52 . 2004-08-18 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-12-20 17:25 . 2004-08-18 12:00 729088 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 17:09 . 2011-01-16 11:43 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-12-20 17:08 . 2011-01-16 11:43 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-20 12:55 . 2004-08-18 12:00 385024 ----a-w- c:\windows\system32\html.iec
2010-12-09 15:15 . 2004-08-18 12:00 713216 ----a-w- c:\windows\system32\ntdll.dll
2010-12-09 15:14 . 2004-08-17 15:45 2029056 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-12-09 15:14 . 2004-08-18 12:00 2150912 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-12-09 14:30 . 2004-08-18 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2010-12-02 03:35 . 2010-12-02 03:35 4280320 ----a-w- c:\windows\system32\GPhotos.scr
.

((((((((((((((((((((((((((((( SnapShot_2011-02-24_18.19.39 )))))))))))))))))))))))))))))))))))))))))
.
- 2010-05-26 16:32 . 2008-04-14 03:07 57344 c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcirt.dll
+ 2011-02-24 22:29 . 2008-04-14 03:07 57344 c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcirt.dll
+ 2011-02-24 22:29 . 2008-04-14 03:06 74802 c:\windows\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.9792.0_x-ww_08a6620a\atl.dll
- 2010-05-26 16:32 . 2008-04-14 03:06 74802 c:\windows\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.9792.0_x-ww_08a6620a\atl.dll
+ 2004-08-18 12:00 . 2008-04-14 03:22 50688 c:\windows\twain_32.dll
- 2004-08-18 12:00 . 2004-08-18 12:00 50688 c:\windows\twain_32.dll
+ 2011-02-25 22:41 . 2011-02-25 22:41 16384 c:\windows\temp\Perflib_Perfdata_200.dat
- 2010-05-26 15:33 . 2004-08-18 12:00 11776 c:\windows\system32\xolehlp.dll
+ 2010-05-26 15:33 . 2008-04-14 03:22 11776 c:\windows\system32\xolehlp.dll
- 2004-08-18 12:00 . 2004-08-18 12:00 50176 c:\windows\system32\xmlprovi.dll
+ 2004-08-18 12:00 . 2008-04-14 03:22 50176 c:\windows\system32\xmlprovi.dll
- 2004-08-18 12:00 . 2004-08-18 12:00 30720 c:\windows\system32\xcopy.exe
+ 2004-08-18 12:00 . 2008-04-14 03:22 30720 c:\windows\system32\xcopy.exe

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 25 úno 2011 23:48

.
.
.
vynechány soubory z opravy systému
.
.
.
+ 2011-02-24 22:07 . 2010-12-09 15:14 2194944 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2011-02-24 22:06 . 2010-12-09 15:14 2029056 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-02-10 18:09 . 2010-12-09 15:14 2071552 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2011-02-24 22:07 . 2010-12-09 15:14 2150912 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2004-08-18 12:00 . 2008-04-14 03:21 1852928 c:\windows\AppPatch\acgenral.dll
+ 2010-05-02 08:09 . 2010-05-02 08:09 1851264 c:\windows\$hf_mig$\KB979559\SP3GDR\win32k.sys
+ 2010-05-02 07:58 . 2010-05-02 07:58 1859968 c:\windows\$hf_mig$\KB979559\SP2QFE\win32k.sys
+ 2010-02-05 18:27 . 2010-02-05 18:27 1294336 c:\windows\$hf_mig$\KB975562\SP3GDR\quartz.dll
+ 2010-02-05 18:24 . 2010-02-05 18:24 1294336 c:\windows\$hf_mig$\KB975562\SP2QFE\quartz.dll
+ 2011-02-24 17:38 . 2008-04-14 03:16 13463552 c:\windows\system32\dllcache\hwxjpn.dll
- 2011-02-24 17:38 . 2004-08-18 12:00 13463552 c:\windows\system32\dllcache\hwxjpn.dll
+ 2011-02-24 22:30 . 2008-04-14 03:16 13463552 c:\windows\ServicePackFiles\i386\lang\hwxjpn.dll
+ 2011-02-10 11:27 . 2010-05-06 10:35 11076096 c:\windows\ie8updates\KB2482017-IE8\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE" [2004-06-18 67584]
"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2011-01-13 3396624]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-18 44544]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Hlavní panel ATI CATALYST.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Hlavní panel ATI CATALYST.lnk
backup=c:\windows\pss\Hlavní panel ATI CATALYST.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^HP Digital Imaging Monitor.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Rychlé spuštění aplikace HP Image Zone.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Rychlé spuštění aplikace HP Image Zone.lnk
backup=c:\windows\pss\Rychlé spuštění aplikace HP Image Zone.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^Windows Search.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Windows Search.lnk
backup=c:\windows\pss\Windows Search.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^WinZip Quick Pick.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\WinZip Quick Pick.lnk
backup=c:\windows\pss\WinZip Quick Pick.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
c:\program files\Common Files\Nokia\MPlatform\NokiaMServer [X]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-09-20 22:07 932288 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-01-31 08:44 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
2011-02-22 17:06 500208 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
2010-07-22 21:10 402432 ----a-w- c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
2009-04-24 03:21 203928 ----a-w- c:\program files\Alcohol Soft\Alcohol 120\AxCmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICCC]
2005-06-28 23:09 32768 ----a-w- c:\program files\ATI Technologies\ATI.ACE\CLI.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
2005-06-28 19:05 344064 ----a-w- c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion]
2009-05-07 19:05 75048 ----a-w- c:\program files\CyberLink\Shared files\brs.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
2006-08-22 07:52 94208 ----a-w- c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]
2008-04-14 03:22 110592 ----a-w- c:\windows\system32\bthprops.cpl

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Easy-PrintToolBox]
2004-01-14 02:10 409600 ----a-w- c:\program files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 10:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-11-13 15:50 1289000 ----a-w- c:\program files\Microsoft ActiveSync\wcescomm.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HydraVisionDesktopManager]
2003-09-15 19:00 270336 ----a-w- c:\program files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-11-24 22:28 133432 ----a-w- c:\program files\ICQ7.2\ICQ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 14:40 155648 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2010-12-21 10:53 1483264 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVD9LanguageShortcut]
2009-04-27 15:50 50472 ----a-w- c:\program files\CyberLink\PowerDVD9\Language\Language.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
2009-04-27 18:41 87336 ----a-w- c:\program files\CyberLink\PowerDVD9\PDVD9Serv.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
2004-08-06 05:27 860160 ----a-w- c:\program files\Analog Devices\SoundMAX\SMax4.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2010-12-21 17:50 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
2010-02-19 12:37 517096 ----a-w- c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
2010-12-10 12:28 247144 ----a-w- c:\program files\TomTom HOME 2\TomTomHOMERunner.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
2004-08-02 13:32 176128 ----a-w- c:\program files\WinFast\WFTVFM\WFWIZ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"TomTomHOMEService"=2 (0x2)
"SwitchBoard"=3 (0x3)
"StarWindServiceAE"=2 (0x2)
"SoundMAX Agent Service (default)"=2 (0x2)
"ServiceLayer"=3 (0x3)
"RichVideo"=2 (0x2)
"PDEngine"=3 (0x3)
"PDAgent"=2 (0x2)
"ose"=3 (0x3)
"odserv"=3 (0x3)
"NBService"=3 (0x3)
"Microsoft Office Groove Audit Service"=3 (0x3)
"KMService"=2 (0x2)
"JavaQuickStarterService"=2 (0x2)
"idsvc"=3 (0x3)
"gusvc"=2 (0x2)
"gupdate"=2 (0x2)
"avast! Antivirus"=2 (0x2)
"ATI Smart"=2 (0x2)
"Ati HotKey Poller"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Vuze\\Azureus.exe"=
"c:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Nokia\\Nokia Ovi Suite\\NokiaOviSuite.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Remote Professional\\RemotePRO.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [10.2.2011 12:41 294608]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/05/29 00:55];c:\program files\CyberLink\PowerDVD9\000.fcl [7.5.2009 20:05 87536]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [10.2.2011 12:41 17744]
R2 WF23880;WinFast TV2000/DV2000 WDM Video Capture.;c:\windows\system32\drivers\wf88vcap.sys [26.5.2010 18:25 209171]
R2 WF88XBAR;WinFast TV2000/DV2000 WDM Crossbar.;c:\windows\system32\drivers\WF88XBAR.sys [26.5.2010 18:25 9284]
R2 WFTUNE;WinFast TV2000/DV2000 WDM Tuner.;c:\windows\system32\drivers\wf88tune.sys [26.5.2010 18:25 36261]
S4 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [26.5.2010 19:33 133104]
S4 KMService;KMService;c:\windows\system32\srvany.exe [17.12.2010 22:20 8192]
S4 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [19.2.2010 13:37 517096]
S4 TomTomHOMEService;TomTomHOMEService;c:\program files\TomTom HOME 2\TomTomHOMEService.exe [10.12.2010 13:29 92008]
.
Obsah adresáře 'Naplánované úlohy'

2011-02-25 c:\windows\Tasks\AdobeAAMUpdater-1.0-PCHOME-Milan Šindelář.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2011-02-22 17:06]

2011-02-25 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-05-30 17:50]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: Spustit klienta k monitoru &1 - c:\windows\web\AOpenClient.htm
IE: Spustit klienta k monitoru &2 - c:\windows\web\AOpenClient.htm
FF - ProfilePath - c:\documents and settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Flagfox: {1018e4d6-728f-4b20-ad56-37578a4de76b} - %profile%\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension

.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

MSConfigStartUp-HP Software Update - c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-02-25 23:41
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{B154377D-700F-42cc-9474-23858FBDF4BD}]
"ImagePath"="\??\c:\program files\CyberLink\PowerDVD9\000.fcl"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(716)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'explorer.exe'(2320)
c:\program files\Windows Desktop Search\deskbar.dll
c:\program files\Windows Desktop Search\cs-cz\dbres.dll.mui
c:\program files\Windows Desktop Search\dbres.dll
c:\program files\Windows Desktop Search\wordwheel.dll
c:\program files\Windows Desktop Search\cs-cz\msnlExtRes.dll.mui
c:\program files\Windows Desktop Search\msnlExtRes.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\System32\snmp.exe
c:\windows\system32\SearchIndexer.exe
c:\windows\SOUNDMAN.EXE
c:\progra~1\MI3AA1~1\rapimgr.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Celkový čas: 2011-02-25 23:45:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-02-25 22:45
ComboFix2.txt 2011-02-24 18:22
ComboFix3.txt 2011-02-22 23:11
ComboFix4.txt 2011-02-22 09:09
ComboFix5.txt 2011-02-25 22:32

Před spuštěním: 2 124 959 744
Po spuštění: 2 110 140 416

WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect

Current=1 Default=1 Failed=0 LastKnownGood=4 Sets=1,2,3,4
- - End Of File - - 53F75B04B1960DE7D5AC25F9EF92BA0F

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 25 úno 2011 23:49

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:49:04, on 25.2.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\WINDOWS\system32\SearchProtocolHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Spustit klienta k monitoru &1 - C:\WINDOWS\web\AOpenClient.htm
O8 - Extra context menu item: Spustit klienta k monitoru &2 - C:\WINDOWS\web\AOpenClient.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Vytvořit mobilní oblíbenou položku… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 8584604203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 4894595140
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

--
End of file - 6555 bytes

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 25 úno 2011 23:50

Mám zkusit instalaci HP nebo mám počkat? Zatím díky..

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 27 úno 2011 11:19

Zkusil jsem instalaci, po vložení CD se vůbec nic neděje, ani se neotevře okno se soubory na disku. Po manuálním spuštění instalace mi opět vyběhne "!"...

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 27 úno 2011 21:56

Je ještě nějaká možnost než reinstal? Díky..

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 28 úno 2011 21:26

prosím, prosím :-)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod jaro3 » 01 bře 2011 19:15

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
c:\windows\system32\spoolsv.exe

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/40 , nebo 1/40. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 02 bře 2011 17:11


milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 02 bře 2011 17:20

OTL logfile created on: 2.3.2011 17:12:51 - Run 1
OTL by OldTimer - Version 3.2.22.2 Folder = C:\Documents and Settings\Milan Šindelář\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 76,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): c:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 2,12 Gb Free Space | 4,34% Space Free | Partition Type: NTFS
Drive D: | 184,05 Gb Total Space | 32,85 Gb Free Space | 17,85% Space Free | Partition Type: NTFS
Drive F: | 443,23 Gb Total Space | 6,96 Gb Free Space | 1,57% Space Free | Partition Type: NTFS
Drive G: | 488,28 Gb Total Space | 5,09 Gb Free Space | 1,04% Space Free | Partition Type: NTFS
Drive H: | 149,04 Gb Total Space | 148,01 Gb Free Space | 99,31% Space Free | Partition Type: NTFS
Drive I: | 232,88 Gb Total Space | 3,63 Gb Free Space | 1,56% Space Free | Partition Type: NTFS

Computer Name: PCHOME | User Name: Milan Šindelář | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Milan Šindelář\Plocha\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe (Analog Devices, Inc.)
PRC - C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Milan Šindelář\Plocha\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\snxhk.dll (AVAST Software)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (HidServ) -- File not found
SRV - (AppMgmt) -- File not found
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (TomTomHOMEService) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TomTom)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (SwitchBoard) -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (PDEngine) -- C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe (Raxco Software, Inc.)
SRV - (PDAgent) -- C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe (Raxco Software, Inc.)
SRV - (StarWindServiceAE) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
SRV - (KMService) -- C:\WINDOWS\system32\srvany.exe ()
SRV - (SoundMAX Agent Service (default)) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)


========== Driver Services (SafeList) ==========

DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (UsbserFilt) -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (upperdev) -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia)
DRV - (DefragFS) -- C:\WINDOWS\System32\drivers\DefragFs.sys (Raxco Software, Inc.)
DRV - ({B154377D-700F-42cc-9474-23858FBDF4BD}) -- C:\Program Files\CyberLink\PowerDVD9\000.fcl (CyberLink Corp.)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - (ati2mtag) -- C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (BlueletAudio) -- C:\WINDOWS\system32\drivers\blueletaudio.sys (IVT Corporation)
DRV - (Btcsrusb) -- C:\WINDOWS\system32\drivers\btcusb.sys (IVT Corporation)
DRV - (BTHidEnum) -- C:\WINDOWS\system32\drivers\vbtenum.sys ()
DRV - (BTHidMgr) -- C:\WINDOWS\System32\Drivers\BTHidMgr.sys (IVT Corporation)
DRV - (BT) -- C:\WINDOWS\system32\drivers\BtNetDrv.sys (IVT Corporation)
DRV - (VcommMgr) -- C:\WINDOWS\system32\drivers\VcommMgr.sys (IVT Corporation)
DRV - (BTNetFilter) -- C:\WINDOWS\system32\drivers\BTNetFilter.sys ()
DRV - (VComm) -- C:\WINDOWS\system32\drivers\VComm.sys (IVT Corporation)
DRV - (MidiSyn) -- C:\WINDOWS\system32\drivers\MidiSyn.sys (Analog Devices, Inc.)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS (Realtek Semiconductor Corp.)
DRV - (senfilt) -- C:\WINDOWS\system32\drivers\senfilt.sys (Sensaura)
DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys (Realtek Semiconductor Corporation )
DRV - (WF23880) -- C:\WINDOWS\system32\drivers\wf88vcap.sys (Copyright @2000-2006 Leadtek Research Inc.)
DRV - (WFTUNE) -- C:\WINDOWS\system32\drivers\wf88tune.sys (Copyright @2000-2006 Leadtek Research Inc.)
DRV - (WF88XBAR) -- C:\WINDOWS\system32\drivers\WF88XBAR.sys (Copyright @2000-2006 Leadtek Research Inc.)
DRV - (ALCXSENS) -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS (Sensaura)
DRV - (BrPar) -- C:\WINDOWS\System32\drivers\BrPar.sys (Brother Industries Ltd.)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://scrabbleslovnik.tym.cz/search_k.php
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.cz/"
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.2.1
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.1.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13


FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010.06.06 15:13:46 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010.06.17 18:27:57 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2011.02.15 20:34:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2011.02.15 20:42:09 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.01.16 00:18:18 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.02.10 16:01:10 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011.02.15 20:42:10 | 000,000,000 | ---D | M]

[2011.01.08 13:16:12 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Extensions
[2010.05.26 18:01:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2011.01.08 13:16:12 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Extensions\home2@tomtom.com
[2011.03.01 16:30:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions
[2011.02.24 18:56:29 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2010.05.29 00:35:17 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.05.29 00:35:21 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.05.29 00:35:21 | 000,000,000 | ---D | M] (Vuze Remote Toolbar) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}
[2011.02.11 08:45:55 | 000,000,000 | ---D | M] (Fast Video Download (with SearchMenu)) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{c50ca3c4-5656-43c2-a061-13e717f73fc8}
[2011.01.15 23:52:59 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010.10.12 21:11:14 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011.02.26 11:11:18 | 000,002,378 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\anagrammer.xml
[2011.02.25 23:29:14 | 000,002,397 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\askcom.xml
[2010.04.11 09:51:14 | 000,000,903 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\conduit.xml
[2011.02.26 11:11:17 | 000,002,311 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\filmova-databaze-fdbcz.xml
[2011.02.26 11:11:17 | 000,000,947 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\icqplugin.xml
[2010.09.06 16:13:20 | 000,002,304 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Profiles\6rvybb52.default\searchplugins\inbox-hledat.xml
[2011.03.01 05:49:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011.01.16 00:18:17 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.06.17 18:28:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.27 19:03:03 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010.10.16 18:12:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011.01.04 22:54:07 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\MILAN ŠINDELář\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\6RVYBB52.DEFAULT\EXTENSIONS\{1018E4D6-728F-4B20-AD56-37578A4DE76B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\MILAN ŠINDELář\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\6RVYBB52.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\MILAN ŠINDELář\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\6RVYBB52.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}
[2010.12.03 20:39:33 | 000,025,048 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.12.03 20:39:33 | 000,140,248 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2010.11.12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2009.07.31 13:06:48 | 001,654,784 | ---- | M] (LizardTech) -- C:\Program Files\Mozilla Firefox\plugins\npdjvu.dll
[2010.12.03 20:39:33 | 000,066,520 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2006.10.26 20:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
[2011.01.30 14:57:00 | 000,103,864 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2010.06.17 10:38:44 | 000,001,353 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\crawlersrch.xml
[2010.12.03 19:08:29 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2010.12.03 19:08:29 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.12.03 19:08:29 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.12.03 19:08:29 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.12.03 19:08:29 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.12.03 19:08:29 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2011.02.25 23:41:27 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Easy-WebPrint) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O3 - HKCU\..\Toolbar\WebBrowser: (&Odkazy) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe (Analog Devices, Inc.)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - HKCU..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\System32\Macromed\Flash\FlashUtil10l_Plugin.exe (Adobe Systems, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Easy-WebPrint Add To Print List - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint High Speed Print - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Preview - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Print - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Spustit klienta k monitoru &1 - C:\WINDOWS\Web\AOpenClient.htm ()
O8 - Extra context menu item: Spustit klienta k monitoru &2 - C:\WINDOWS\Web\AOpenClient.htm ()
O9 - Extra Button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Vytvořit mobilní oblíbenou položku… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 8584604203 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 4894595140 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 88.83.161.210 192.168.2.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Pozadí plochy.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Milan Šindelář\Data aplikací\Mozilla\Firefox\Pozadí plochy.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011.02.24 18:37:35 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (PDBoot.exe) - C:\WINDOWS\System32\PDBoot.exe (Raxco Software, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011.03.02 17:11:30 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Milan Šindelář\Plocha\OTL.exe
[2011.02.25 23:39:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011.02.25 23:33:47 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011.02.25 11:09:38 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll
[2011.02.25 11:09:37 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll
[2011.02.25 11:09:19 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comctl32.dll
[2011.02.25 11:08:59 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndproxy.sys
[2011.02.25 11:07:34 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2011.02.25 00:23:27 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Milan Šindelář\Recent
[2011.02.25 00:12:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011.02.24 23:57:30 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2011.02.24 23:47:54 | 011,080,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2011.02.24 23:47:54 | 001,991,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2011.02.24 23:47:54 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2011.02.24 23:47:54 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2011.02.24 23:47:54 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2011.02.24 23:30:34 | 000,086,016 | ---- | C] (Sipro Lab Telecom Inc.) -- C:\WINDOWS\System32\dllcache\sl_anet.acm
[2011.02.24 23:30:17 | 001,372,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6.dll
[2011.02.24 23:30:17 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6r.dll
[2011.02.24 23:30:11 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msaud32.acm
[2011.02.24 23:30:00 | 000,290,816 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\System32\dllcache\l3codeca.acm

milancz
Level 3
Level 3
Příspěvky: 400
Registrován: srpen 08
Bydliště: České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu Logu HJT..

Příspěvekod milancz » 02 bře 2011 17:22

[2011.02.24 23:29:55 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll
[2011.02.24 23:29:44 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dlimport.exe
[2011.02.24 23:08:34 | 000,272,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
[2011.02.24 23:08:17 | 000,357,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
[2011.02.24 23:08:08 | 000,455,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2011.02.24 23:08:02 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aclayers.dll
[2011.02.24 23:07:52 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe
[2011.02.24 23:07:16 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\t2embed.dll
[2011.02.24 23:07:16 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fontsub.dll
[2011.02.24 23:07:02 | 002,194,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2011.02.24 23:07:01 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lsasrv.dll
[2011.02.24 23:07:00 | 002,150,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2011.02.24 23:06:59 | 002,029,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2011.02.24 23:05:26 | 000,203,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rmcast.sys
[2011.02.24 23:03:59 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\netapi32.dll
[2011.02.24 18:39:50 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
[2011.02.24 18:39:50 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
[2011.02.24 18:39:50 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
[2011.02.24 18:39:49 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
[2011.02.24 18:39:49 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
[2011.02.24 18:39:49 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
[2011.02.24 18:39:48 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
[2011.02.24 18:39:48 | 000,031,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
[2011.02.24 18:39:47 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
[2011.02.24 18:39:46 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
[2011.02.24 18:39:46 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
[2011.02.24 18:39:42 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
[2011.02.24 18:39:42 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
[2011.02.24 18:39:40 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
[2011.02.24 18:39:39 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
[2011.02.24 18:39:39 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
[2011.02.24 18:39:39 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
[2011.02.24 18:39:39 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
[2011.02.24 18:39:39 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
[2011.02.24 18:39:39 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
[2011.02.24 18:39:38 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
[2011.02.24 18:39:38 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
[2011.02.24 18:39:36 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
[2011.02.24 18:39:35 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
[2011.02.24 18:39:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll
[2011.02.24 18:39:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
[2011.02.24 18:39:33 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
[2011.02.24 18:39:33 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll
[2011.02.24 18:39:32 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
[2011.02.24 18:39:32 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
[2011.02.24 18:39:32 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
[2011.02.24 18:39:32 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
[2011.02.24 18:39:32 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
[2011.02.24 18:39:32 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
[2011.02.24 18:39:32 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
[2011.02.24 18:39:32 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
[2011.02.24 18:39:32 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
[2011.02.24 18:39:32 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
[2011.02.24 18:39:32 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
[2011.02.24 18:39:30 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll
[2011.02.24 18:39:28 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll
[2011.02.24 18:39:27 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll
[2011.02.24 18:39:26 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2011.02.24 18:39:26 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2011.02.24 18:39:25 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
[2011.02.24 18:39:24 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
[2011.02.24 18:39:24 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2011.02.24 18:39:23 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
[2011.02.24 18:39:23 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2011.02.24 18:39:22 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2011.02.24 18:39:21 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2011.02.24 18:39:21 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
[2011.02.24 18:39:21 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
[2011.02.24 18:39:21 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2011.02.24 18:39:21 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2011.02.24 18:39:20 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
[2011.02.24 18:39:20 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
[2011.02.24 18:39:20 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
[2011.02.24 18:39:19 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2011.02.24 18:39:19 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
[2011.02.24 18:39:19 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
[2011.02.24 18:39:19 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2011.02.24 18:39:16 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
[2011.02.24 18:39:14 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2011.02.24 18:39:10 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2011.02.24 18:39:10 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2011.02.24 18:39:05 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2011.02.24 18:39:05 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2011.02.24 18:39:04 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
[2011.02.24 18:39:02 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2011.02.24 18:39:01 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
[2011.02.24 18:39:01 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
[2011.02.24 18:39:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
[2011.02.24 18:39:00 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2011.02.24 18:39:00 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2011.02.24 18:39:00 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2011.02.24 18:39:00 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
[2011.02.24 18:39:00 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
[2011.02.24 18:39:00 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
[2011.02.24 18:39:00 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
[2011.02.24 18:38:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
[2011.02.24 18:38:59 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
[2011.02.24 18:38:58 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2011.02.24 18:38:58 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2011.02.24 18:38:58 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
[2011.02.24 18:38:58 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
[2011.02.24 18:38:58 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
[2011.02.24 18:38:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
[2011.02.24 18:38:58 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
[2011.02.24 18:38:56 | 000,315,455 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
[2011.02.24 18:38:55 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2011.02.24 18:38:55 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
[2011.02.24 18:38:55 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
[2011.02.24 18:38:55 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
[2011.02.24 18:38:55 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
[2011.02.24 18:38:55 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
[2011.02.24 18:38:55 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2011.02.24 18:38:55 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2011.02.24 18:38:54 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
[2011.02.24 18:38:54 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
[2011.02.24 18:38:54 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
[2011.02.24 18:38:54 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
[2011.02.24 18:38:54 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
[2011.02.24 18:38:54 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2011.02.24 18:38:53 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
[2011.02.24 18:38:53 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
[2011.02.24 18:38:53 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2011.02.24 18:38:53 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
[2011.02.24 18:38:53 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2011.02.24 18:38:53 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
[2011.02.24 18:38:53 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
[2011.02.24 18:38:53 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2011.02.24 18:38:48 | 010,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2011.02.24 18:38:40 | 010,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2011.02.24 18:38:38 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2011.02.24 18:38:36 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe
[2011.02.24 18:38:35 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll
[2011.02.24 18:38:35 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll
[2011.02.24 18:38:35 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll
[2011.02.24 18:38:34 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2011.02.24 18:38:33 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
[2011.02.24 18:38:33 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2011.02.24 18:38:32 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2011.02.24 18:38:32 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2011.02.24 18:38:32 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2011.02.24 18:38:32 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2011.02.24 18:38:27 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
[2011.02.24 18:38:25 | 000,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
[2011.02.24 18:38:25 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2011.02.24 18:38:24 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
[2011.02.24 18:38:24 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
[2011.02.24 18:38:23 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2011.02.24 18:38:23 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
[2011.02.24 18:38:23 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
[2011.02.24 18:38:23 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
[2011.02.24 18:38:22 | 001,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2011.02.24 18:38:22 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2011.02.24 18:38:22 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2011.02.24 18:38:22 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2011.02.24 18:38:22 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2011.02.24 18:38:21 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
[2011.02.24 18:38:20 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2011.02.24 18:38:20 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2011.02.24 18:38:20 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2011.02.24 18:38:07 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
[2011.02.24 18:38:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll
[2011.02.24 18:37:57 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptsat.dll
[2011.02.24 18:37:53 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmcsat.dll
[2011.02.24 18:36:06 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
[2011.02.24 18:20:28 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2011.02.24 18:20:28 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
[2011.02.24 18:20:28 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2011.02.24 18:20:28 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
[2011.02.22 23:53:59 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Milan Šindelář\Plocha\TFC.exe
[2011.02.22 17:53:01 | 000,111,104 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfpng70n.dll
[2011.02.22 17:53:01 | 000,035,328 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFFPX70N.DLL
[2011.02.22 17:53:01 | 000,032,768 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfgif70n.dll
[2011.02.22 17:53:01 | 000,028,672 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFLMA70N.DLL
[2011.02.22 17:53:01 | 000,026,112 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFICA70N.DLL
[2011.02.22 17:53:01 | 000,025,088 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFLMB70N.DLL
[2011.02.22 17:53:01 | 000,024,576 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfpcx70n.dll
[2011.02.22 17:53:01 | 000,024,576 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFBMP70N.DLL
[2011.02.22 17:53:01 | 000,024,064 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFPCT70N.DLL
[2011.02.22 17:53:01 | 000,024,064 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfeps70n.dll
[2011.02.22 17:53:01 | 000,022,016 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfpsd70n.dll
[2011.02.22 17:53:01 | 000,020,992 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lftga70n.dll
[2011.02.22 17:53:01 | 000,020,480 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfwpg70n.dll
[2011.02.22 17:53:01 | 000,020,480 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFIMG70N.DLL
[2011.02.22 17:53:01 | 000,019,968 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFCAL70N.DLL
[2011.02.22 17:53:01 | 000,019,456 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfras70n.dll
[2011.02.22 17:53:01 | 000,019,456 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFPCD70N.DLL
[2011.02.22 17:53:01 | 000,019,456 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfmsp70n.dll
[2011.02.22 17:53:01 | 000,018,944 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lfwfx70n.dll
[2011.02.22 17:53:01 | 000,018,944 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFMAC70N.DLL
[2011.02.22 17:53:01 | 000,017,920 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFAVI70N.DLL
[2011.02.22 17:53:00 | 000,350,208 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LTKRN70N.DLL
[2011.02.22 17:53:00 | 000,224,768 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFCMP70N.DLL
[2011.02.22 17:53:00 | 000,212,480 | ---- | C] (Eastman Kodak) -- C:\WINDOWS\System\Pcdlib32.dll
[2011.02.22 17:53:00 | 000,093,184 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFTIF70N.DLL
[2011.02.22 17:53:00 | 000,055,808 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LFFAX70N.DLL
[2011.02.22 17:53:00 | 000,055,296 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\LTFIL70N.DLL
[2011.02.22 17:52:58 | 000,776,240 | ---- | C] (LEAD Technologies, Inc.) -- C:\WINDOWS\System\Lead52.dll
[2011.02.22 17:52:57 | 000,019,552 | ---- | C] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\System32\SBUSD.DLL
[2011.02.22 17:50:19 | 000,000,000 | ---D | C] -- C:\Program Files\SmartTweak Software
[2011.02.22 17:50:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\PackageAware
[2011.02.22 10:02:02 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2011.02.22 10:02:02 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2011.02.22 10:02:02 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2011.02.22 10:02:02 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2011.02.22 10:01:48 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011.02.21 22:48:44 | 000,050,688 | ---- | C] (Atribune.org) -- C:\Documents and Settings\Milan Šindelář\Plocha\ATF-Cleaner.exe
[2011.02.21 20:12:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Nabídka Start\Programy\HiJackThis
[2011.02.21 18:30:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2011.02.21 17:44:53 | 000,000,000 | ---D | C] -- C:\col9695
[2011.02.21 12:36:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\DoctorWeb
[2011.02.19 22:25:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Remote Professional
[2011.02.19 22:25:05 | 000,000,000 | ---D | C] -- C:\Program Files\Remote Professional
[2011.02.17 12:17:18 | 000,000,000 | ---D | C] -- C:\Program Files\Symbian OS Tools
[2011.02.17 10:59:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Dokumenty\Ovi
[2011.02.16 00:09:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Dokumenty\Bluetooth
[2011.02.16 00:06:10 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\vfwwdm32.dll
[2011.02.16 00:06:10 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\vidcap.ax
[2011.02.16 00:06:09 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\kswdmcap.ax
[2011.02.16 00:06:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ksxbar.ax
[2011.02.16 00:06:08 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\kstvtune.ax
[2011.02.16 00:06:07 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax
[2011.02.16 00:05:42 | 000,086,016 | R--- | C] (Socket Communications Inc.) -- C:\WINDOWS\System32\drivers\SCBaud.w9x
[2011.02.16 00:05:42 | 000,077,824 | R--- | C] (Socket Communications Inc.) -- C:\WINDOWS\System32\drivers\SioUi2k.dll
[2011.02.16 00:05:42 | 000,073,728 | R--- | C] (Socket Communications Inc.) -- C:\WINDOWS\System32\drivers\SCBaud.cpl
[2011.02.16 00:05:42 | 000,063,488 | R--- | C] (National Semiconductor Sweden AB) -- C:\WINDOWS\System32\drivers\wssbtr1f.sys
[2011.02.16 00:05:42 | 000,051,169 | R--- | C] (OEM) -- C:\WINDOWS\System32\drivers\OXSER.SYS
[2011.02.16 00:05:42 | 000,048,556 | R--- | C] (Socket Communications, Inc. ) -- C:\WINDOWS\System32\drivers\SktBt2k.sys
[2011.02.16 00:05:42 | 000,048,076 | R--- | C] (Socket Communications, Inc. ) -- C:\WINDOWS\System32\drivers\Sio9502k.sys
[2011.02.16 00:05:42 | 000,040,960 | R--- | C] (Socket Communications Inc.) -- C:\WINDOWS\System32\drivers\SCTray.exe
[2011.02.16 00:05:13 | 000,148,830 | ---- | C] (Broadcom Corporation) -- C:\WINDOWS\System32\drivers\bcbthub.sys
[2011.02.16 00:05:13 | 000,116,021 | ---- | C] (Broadcom) -- C:\WINDOWS\System32\drivers\fw203x.sys
[2011.02.16 00:05:13 | 000,082,148 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\VcommMgr.sys
[2011.02.16 00:05:13 | 000,061,312 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\VComm.sys
[2011.02.16 00:05:13 | 000,049,152 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\btfunc.dll
[2011.02.16 00:05:13 | 000,028,271 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\BTHidMgr.sys
[2011.02.16 00:05:13 | 000,023,000 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\btcusb.sys
[2011.02.16 00:05:13 | 000,020,480 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\blueletaudio.sys
[2011.02.16 00:05:13 | 000,011,736 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\VHIDMini.sys
[2011.02.16 00:05:13 | 000,010,804 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\drivers\BtNetDrv.sys
[2011.02.16 00:05:13 | 000,007,680 | ---- | C] (IVT Corporation) -- C:\WINDOWS\System32\btinstall.dll
[2011.02.16 00:05:13 | 000,000,000 | ---D | C] -- C:\Program Files\IVT Corporation
[2011.02.15 23:46:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Nokia
[2011.02.15 22:58:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Nokia Ovi Suite
[2011.02.15 20:43:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\Nokia
[2011.02.15 20:43:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Nokia
[2011.02.15 20:41:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\NokiaInstallerCache
[2011.02.15 20:34:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Nokia PC Suite
[2011.02.15 20:34:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite
[2011.02.15 20:33:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2011.02.15 20:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2011.02.15 20:32:31 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2011.02.15 20:32:30 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2011.02.15 20:32:29 | 000,023,040 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2011.02.15 20:32:28 | 001,461,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01009.dll
[2011.02.15 20:32:28 | 000,604,160 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll
[2011.02.15 20:32:28 | 000,111,104 | ---- | C] (Nokia) -- C:\WINDOWS\System32\ccdcmbwu.dll
[2011.02.15 20:32:28 | 000,018,048 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2011.02.15 12:50:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Plocha\ucebnice
[2011.02.13 22:30:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Data aplikací\LCDHype
[2011.02.10 16:00:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
[2011.02.10 12:46:16 | 000,038,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011.02.10 12:41:44 | 000,017,744 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011.02.10 12:41:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\avast! Free Antivirus
[2011.02.10 12:41:43 | 000,294,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011.02.10 12:41:42 | 000,023,632 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011.02.10 12:41:41 | 000,047,440 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011.02.10 12:41:39 | 000,100,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011.02.10 12:41:39 | 000,094,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011.02.10 12:41:39 | 000,029,392 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011.02.10 12:41:28 | 000,188,216 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011.02.07 21:22:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Plocha\uLaunchELF_v4.21
[2011.02.07 21:21:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Plocha\Noobie_Package
[2011.02.07 21:21:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Milan Šindelář\Plocha\Apache1.1
[2010.05.29 00:13:03 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Milan Šindelář\Data aplikací\pcouffin.sys
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.03.02 17:11:32 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Milan Šindelář\Plocha\OTL.exe
[2011.03.02 16:53:30 | 000,000,484 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{42E4E326-DB1E-4841-A2F5-5C4F17BBE5EF}.job
[2011.03.02 16:53:05 | 000,000,972 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011.03.02 16:52:38 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.03.02 16:52:31 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.03.01 20:51:54 | 000,000,191 | ---- | M] () -- C:\WINDOWS\Brownie.ini
[2011.03.01 18:03:13 | 000,000,896 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\SRDownloader.nast
[2011.02.28 20:01:22 | 000,000,423 | ---- | M] () -- C:\WINDOWS\BRWMARK.INI
[2011.02.27 18:45:45 | 002,276,014 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\dvd_rekorder_panasonic_dmr_e55ep_s_diga_stribrny.pdf
[2011.02.26 02:00:00 | 000,000,360 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-PCHOME-Milan Šindelář.job
[2011.02.25 23:48:50 | 000,002,459 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\HiJackThis.lnk
[2011.02.25 23:41:27 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011.02.25 23:35:33 | 000,001,251 | ---- | M] () -- C:\CF-Submit.htm
[2011.02.25 23:33:54 | 000,000,310 | RHS- | M] () -- C:\boot.ini
[2011.02.25 23:31:52 | 004,274,659 | R--- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\ComboFix.exe
[2011.02.25 23:29:11 | 000,461,898 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2011.02.25 23:29:11 | 000,444,164 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.02.25 23:29:11 | 000,072,040 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.02.25 23:27:26 | 003,578,464 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.02.25 13:02:56 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011.02.25 12:33:00 | 000,001,176 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\vso_ts_preview.xml
[2011.02.25 01:01:51 | 000,000,195 | ---- | M] () -- C:\Boot.bak
[2011.02.25 00:13:46 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011.02.24 19:02:25 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011.02.24 19:02:15 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.24 18:41:01 | 000,000,288 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2011.02.24 18:37:35 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011.02.24 18:37:31 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011.02.24 18:37:31 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011.02.24 18:37:19 | 000,004,249 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2011.02.24 18:35:17 | 000,023,544 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011.02.24 17:30:17 | 000,000,132 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Adobe Formát PNG CS5 – předvolby
[2011.02.23 13:08:26 | 000,000,964 | ---- | M] () -- C:\WINDOWS\setupapi.old
[2011.02.22 23:54:02 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Milan Šindelář\Plocha\TFC.exe
[2011.02.22 18:03:48 | 000,000,000 | ---- | M] () -- C:\WINDOWS\WATCH.INI
[2011.02.22 14:04:34 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Remote Professional.lnk
[2011.02.22 01:13:44 | 000,073,658 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\SRDownloader.err
[2011.02.21 23:20:35 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2011.02.21 22:48:45 | 000,050,688 | ---- | M] (Atribune.org) -- C:\Documents and Settings\Milan Šindelář\Plocha\ATF-Cleaner.exe
[2011.02.21 12:35:37 | 000,020,198 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Dokumenty\pinfect.zip
[2011.02.21 12:03:49 | 000,000,054 | ---- | M] () -- C:\WINDOWS\Lic.xxx
[2011.02.17 23:36:51 | 000,099,465 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\hlidani_hladiny_9sond_CZ.pdf
[2011.02.17 23:12:12 | 000,316,479 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\screenAdmin.PNG
[2011.02.17 18:24:06 | 000,083,088 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\KT8D5-08-Zvonec.FK14.pdf
[2011.02.17 12:55:06 | 000,001,513 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\bmw.csr
[2011.02.17 12:54:54 | 000,000,329 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\bmw.cnf
[2011.02.17 10:47:28 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2011.02.17 10:47:26 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.02.16 08:26:01 | 000,140,690 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\nar0022.gif
[2011.02.15 20:38:26 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011.02.15 20:38:23 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf
[2011.02.15 20:34:04 | 000,001,763 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
[2011.02.10 15:57:48 | 000,000,288 | ---- | M] () -- C:\WINDOWS\hpqgrcpy.INI
[2011.02.10 12:46:17 | 000,002,553 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.02.07 21:43:33 | 001,614,640 | ---- | M] () -- C:\Documents and Settings\Milan Šindelář\Plocha\klimatizace.pdf
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.02.27 18:45:45 | 002,276,014 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\dvd_rekorder_panasonic_dmr_e55ep_s_diga_stribrny.pdf
[2011.02.25 23:53:05 | 000,000,484 | -H-- | C] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{42E4E326-DB1E-4841-A2F5-5C4F17BBE5EF}.job
[2011.02.25 23:35:33 | 000,001,251 | ---- | C] () -- C:\CF-Submit.htm
[2011.02.25 12:58:02 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2011.02.24 23:30:46 | 000,674,168 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2011.02.24 23:30:46 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2011.02.24 23:30:46 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2011.02.24 23:30:46 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2011.02.24 23:30:46 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2011.02.24 23:30:46 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2011.02.24 23:30:46 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2011.02.24 23:30:46 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2011.02.24 23:30:46 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2011.02.24 23:30:46 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2011.02.24 23:30:46 | 000,069,570 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2011.02.24 23:30:46 | 000,058,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2011.02.24 23:30:46 | 000,028,164 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2011.02.24 23:30:46 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2011.02.24 23:30:46 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2011.02.24 23:30:46 | 000,001,746 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2011.02.24 23:30:46 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2011.02.24 23:30:44 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2011.02.24 23:30:44 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2011.02.24 23:30:44 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2011.02.24 23:30:44 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2011.02.24 23:30:44 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2011.02.24 23:30:44 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2011.02.24 23:30:44 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2011.02.24 23:30:44 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2011.02.24 23:30:44 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2011.02.24 23:30:44 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2011.02.24 23:30:44 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2011.02.24 23:30:42 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2011.02.24 23:30:42 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2011.02.24 23:30:42 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2011.02.24 23:30:39 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2011.02.24 23:30:39 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2011.02.24 23:30:39 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2011.02.24 23:30:39 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2011.02.24 23:30:38 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2011.02.24 23:30:38 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2011.02.24 23:30:38 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2011.02.24 23:30:38 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2011.02.24 23:30:38 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2011.02.24 23:30:38 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2011.02.24 23:30:35 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2011.02.24 23:30:33 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2011.02.24 23:30:30 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2011.02.24 23:30:29 | 000,066,170 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2011.02.24 23:30:26 | 000,086,446 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2011.02.24 23:30:26 | 000,001,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2011.02.24 23:30:26 | 000,001,480 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2011.02.24 23:30:26 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2011.02.24 23:30:26 | 000,001,462 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2011.02.24 23:30:26 | 000,001,042 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2011.02.24 23:30:26 | 000,001,034 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2011.02.24 23:30:26 | 000,000,777 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2011.02.24 23:30:25 | 000,001,465 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2011.02.24 23:30:25 | 000,001,263 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2011.02.24 23:30:25 | 000,001,059 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2011.02.24 23:30:25 | 000,000,809 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2011.02.24 23:30:25 | 000,000,806 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2011.02.24 23:30:25 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2011.02.24 23:30:25 | 000,000,774 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2011.02.24 23:30:25 | 000,000,722 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2011.02.24 23:30:22 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2011.02.24 23:30:20 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2011.02.24 23:30:20 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2011.02.24 23:30:10 | 000,036,870 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2011.02.24 23:30:10 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2011.02.24 23:30:10 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2011.02.24 23:30:06 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2011.02.24 23:29:47 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2011.02.24 23:29:41 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2011.02.24 23:29:41 | 000,184,130 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2011.02.24 23:29:41 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2011.02.24 23:29:41 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2011.02.24 23:29:41 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2011.02.24 23:29:41 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2011.02.24 23:29:40 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2011.02.24 23:29:40 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2011.02.24 23:29:40 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2011.02.24 23:29:40 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2011.02.24 23:29:38 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2011.02.24 18:39:20 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2011.02.24 18:39:02 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2011.02.24 18:38:55 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2011.02.24 18:38:54 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2011.02.24 18:38:53 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2011.02.24 18:38:44 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2011.02.24 18:38:38 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2011.02.24 18:38:23 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2011.02.24 18:37:35 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2011.02.24 18:20:17 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2011.02.24 18:20:17 | 000,809,394 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2011.02.24 18:20:17 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2011.02.24 18:20:17 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2011.02.24 18:20:17 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2011.02.24 18:20:17 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2011.02.24 18:20:17 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2011.02.23 11:39:24 | 000,000,964 | ---- | C] () -- C:\WINDOWS\setupapi.old
[2011.02.23 00:59:36 | 000,000,972 | ---- | C] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2011.02.22 18:14:30 | 000,000,854 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Photoshop CS5.lnk
[2011.02.22 18:03:48 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WATCH.INI
[2011.02.22 17:53:01 | 000,306,688 | ---- | C] () -- C:\WINDOWS\System\LFFPX7.DLL
[2011.02.22 17:53:01 | 000,095,232 | ---- | C] () -- C:\WINDOWS\System\LFKODAK.DLL
[2011.02.22 17:53:00 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System\Capi2032.dll
[2011.02.22 17:52:58 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System\bpenhan.dll
[2011.02.22 10:02:02 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011.02.22 10:02:02 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011.02.22 10:02:02 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011.02.22 10:02:02 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011.02.22 10:02:02 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011.02.22 10:00:30 | 004,274,659 | R--- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\ComboFix.exe
[2011.02.21 23:20:35 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2011.02.21 20:12:44 | 000,002,459 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\HiJackThis.lnk
[2011.02.19 22:25:06 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Remote Professional.lnk
[2011.02.17 23:36:51 | 000,099,465 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\hlidani_hladiny_9sond_CZ.pdf
[2011.02.17 23:12:12 | 000,316,479 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\screenAdmin.PNG
[2011.02.17 18:24:06 | 000,083,088 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\KT8D5-08-Zvonec.FK14.pdf
[2011.02.17 12:24:08 | 000,001,513 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\bmw.csr
[2011.02.17 12:24:05 | 000,000,329 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\bmw.cnf
[2011.02.17 10:47:28 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2011.02.17 10:47:26 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.02.16 08:25:59 | 000,140,690 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\nar0022.gif
[2011.02.16 00:05:42 | 000,016,486 | R--- | C] () -- C:\WINDOWS\System32\drivers\sktsio9x.vxd
[2011.02.16 00:05:42 | 000,014,380 | R--- | C] () -- C:\WINDOWS\System32\drivers\OXSER.VXD
[2011.02.16 00:05:42 | 000,005,787 | R--- | C] () -- C:\WINDOWS\System32\drivers\SCTB.VXD
[2011.02.16 00:05:42 | 000,000,208 | R--- | C] () -- C:\WINDOWS\System32\drivers\vssver.scc
[2011.02.16 00:05:13 | 000,013,304 | ---- | C] () -- C:\WINDOWS\System32\drivers\BTNetFilter.sys
[2011.02.16 00:05:13 | 000,011,860 | ---- | C] () -- C:\WINDOWS\System32\drivers\vbtenum.sys
[2011.02.15 20:38:26 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011.02.15 20:38:23 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf
[2011.02.15 20:34:04 | 000,001,763 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Nokia PC Suite.lnk
[2011.02.14 15:07:03 | 000,073,658 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\SRDownloader.err
[2011.02.14 15:05:35 | 000,000,896 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Local Settings\Data aplikací\SRDownloader.nast
[2011.02.07 21:43:33 | 001,614,640 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Plocha\klimatizace.pdf
[2010.12.27 18:48:53 | 000,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2010.12.17 22:20:34 | 000,008,192 | ---- | C] () -- C:\WINDOWS\System32\srvany.exe
[2010.12.10 06:18:11 | 000,510,448 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2010.12.05 15:53:38 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Milan Šindelář\Data aplikací\Adobe Formát PNG CS5 – předvolby


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 127 hostů