Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:25:16, on 29.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Na šmejdy\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 6671 bytes
Prosím o kontrolu logu Vyřešeno
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Prosím o kontrolu logu
Člověk se pořád učí.
Re: Prosím o kontrolu logu
Co máš za problémy s počítačem?
Stahni CCleaner http://www.filehippo.com/download_cclea ... cbae6b492/
-nainstaluj (neinstaluj Yahoo toolbar)
-zvol záložku Čistič
-nechej v levém sloupečku zatrhnuté vše jak je a zmáčkni tlačítko analyzovat
-pak potvrď tlačítko Spustit Ccleaner
-tím se vyčistí počítač od dočasných soubborů, doporučuji pravidelně používat.
-vyber záložku registry
-klikni na tlačítko hledej problémy
-pak klikni na opravit vybrané problémy, potvrď, že chceš udělat zálohu a nech všechno opravit
**********************
Stahni Rsit http://images.malwareremoval.com/random/RSIT.exe
-spusť, klikni na tlačítko Continue
-po skenu na tebe vyběhne log.txt,obsah vlož zde
*********************
Stahni Mbam http://download.cnet.com/3001-8022_4-10 ... l-10804572
-nainstaluj, aktualizuj
-udělej uplný sken a vlož sem log
Stahni CCleaner http://www.filehippo.com/download_cclea ... cbae6b492/
-nainstaluj (neinstaluj Yahoo toolbar)
-zvol záložku Čistič
-nechej v levém sloupečku zatrhnuté vše jak je a zmáčkni tlačítko analyzovat
-pak potvrď tlačítko Spustit Ccleaner
-tím se vyčistí počítač od dočasných soubborů, doporučuji pravidelně používat.
-vyber záložku registry
-klikni na tlačítko hledej problémy
-pak klikni na opravit vybrané problémy, potvrď, že chceš udělat zálohu a nech všechno opravit
**********************
Stahni Rsit http://images.malwareremoval.com/random/RSIT.exe
-spusť, klikni na tlačítko Continue
-po skenu na tebe vyběhne log.txt,obsah vlož zde
*********************
Stahni Mbam http://download.cnet.com/3001-8022_4-10 ... l-10804572
-nainstaluj, aktualizuj
-udělej uplný sken a vlož sem log
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Děkuji za bleskovou reakci. PC to není moje. Patří sousedce a začnu - od roku 2009 nebyl aktualizován, avast v něm byl ještě modrej (zatím sem nainstaloval zkušebně ESET), nějakej kamarád jí prý včera odstraňoval breberky (neznám podrobnosti) prý se jí to občas samo vyplo a zpomaloval se. Budu jí posilovat RAM a čistil sem bednu od stoletýho prachu a aktualizoval a aktualizoval .....
, chtěl bych jí to dát do pořádku a proto sem tu požádal o pomoc jelikož už sem nějakej ten pátek chodím. Snad jí taky naučím víc než facebook
Ani nevěděla kde má soubory který stahovala, no prostě guláš
Logfile of random's system information tool 1.08 (written by random/random)
Run by AMD at 2011-03-30 07:12:07
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 1 GB (5%) free of 30 GB
Total RAM: 959 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:12:09, on 30.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\AMD\Plocha\RSIT.exe
C:\Program Files\trend micro\AMD.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 6724 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-583907252-725345543-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-583907252-725345543-1004UA.job
C:\WINDOWS\tasks\Nová složka.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll [2006-12-15 440056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-01 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-08-11 30192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-27 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ6.5\ICQ.exe [2010-11-16 172856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
C:\Program Files\IncrediMail\bin\IncMail.exe [2009-02-25 251264]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=251
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=251
"NoDrives"=0
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-03-30 06:54:14 ----D---- C:\Program Files\trend micro
2011-03-30 06:54:13 ----D---- C:\rsit
2011-03-30 06:50:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-03-30 06:50:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-30 06:50:19 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2011-03-30 06:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-03-30 06:50:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-03-30 06:49:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2011-03-30 06:49:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-03-30 06:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-03-30 06:49:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-03-30 06:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-03-30 06:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-03-30 06:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-03-30 06:49:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-03-30 06:49:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-30 06:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-03-30 06:48:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-03-30 06:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-03-30 06:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-03-30 06:48:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-03-30 06:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-03-30 06:48:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2011-03-30 06:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-03-30 06:47:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-03-30 06:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-03-30 06:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2011-03-30 06:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-03-30 06:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-03-30 06:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-03-30 06:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-03-30 06:42:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-30 06:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-03-30 06:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2011-03-30 06:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-03-30 06:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-03-30 06:41:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-03-30 06:41:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-03-30 06:41:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-03-29 20:29:25 ----AD---- C:\WINDOWS\rundll16.exe
2011-03-29 20:29:25 ----AD---- C:\WINDOWS\logo1_.exe
2011-03-29 19:08:42 ----D---- C:\Documents and Settings\AMD\Data aplikací\ESET
2011-03-29 19:07:46 ----D---- C:\Program Files\ESET
2011-03-29 19:07:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-03-29 18:41:14 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\VDLL.DLL
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\system32\runouce.exe
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\RUNDL132.EXE
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\logo_1.exe
2011-03-29 17:16:00 ----A---- C:\WINDOWS\system32\msvcr80.dll
2011-03-29 17:15:59 ----A---- C:\WINDOWS\system32\msvcp80.dll
2011-03-29 17:15:58 ----A---- C:\WINDOWS\system32\eEmpty.exe
2011-03-29 17:15:54 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\system32\T.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\REGEDIT.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\R.COM
2011-03-29 17:15:52 ----D---- C:\Program Files\Common Files\MicroWorld
2011-03-29 17:15:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2011-03-29 17:07:19 ----D---- C:\WINDOWS\Prefetch
2011-03-29 17:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2011-03-29 17:05:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2011-03-29 17:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2011-03-29 17:05:03 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2011-03-29 17:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-03-29 17:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-03-29 17:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-03-29 17:04:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-03-29 17:04:17 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-03-29 17:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-03-29 17:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2011-03-29 17:03:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2011-03-29 17:03:38 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-03-29 17:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2011-03-29 17:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-03-29 17:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-03-29 17:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2011-03-29 17:02:47 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-03-29 17:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-03-29 17:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-03-29 17:02:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-03-29 17:02:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-03-29 17:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-03-29 17:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-03-29 17:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-03-29 17:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-03-29 17:01:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-03-29 17:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-03-29 17:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2011-03-29 17:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-03-29 17:00:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-03-29 17:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-03-29 17:00:29 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2011-03-29 17:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2011-03-29 17:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2011-03-29 17:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2011-03-29 16:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-03-29 16:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2011-03-29 16:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2011-03-29 16:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-03-29 16:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2011-03-29 16:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-03-29 16:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2011-03-29 16:58:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-03-29 16:58:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2011-03-29 16:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2011-03-29 16:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-03-29 16:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-03-29 16:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-03-29 16:57:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2011-03-29 16:57:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-03-29 16:57:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2011-03-29 16:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2011-03-29 16:57:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-03-29 16:56:55 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-03-29 16:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2011-03-29 16:56:38 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-03-29 16:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2011-03-29 16:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2011-03-29 16:56:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-03-29 16:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-03-29 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-03-29 16:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2011-03-29 16:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-03-29 16:55:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2011-03-29 16:55:07 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2011-03-29 16:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2011-03-29 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-03-29 16:54:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-03-29 16:54:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-03-29 16:54:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2011-03-29 16:54:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2011-03-29 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-03-29 16:53:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2011-03-29 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-03-29 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-03-29 16:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-03-29 16:53:15 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2011-03-29 16:53:07 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-03-29 16:52:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\cs
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\bits
2011-03-29 16:50:10 ----D---- C:\WINDOWS\l2schemas
2011-03-29 16:48:13 ----D---- C:\WINDOWS\network diagnostic
2011-03-29 16:45:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-03-29 16:45:56 ----D---- C:\WINDOWS\EHome
2011-03-29 16:34:12 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-03-29 16:34:11 ----D---- C:\Program Files\CPUID
2011-03-29 16:21:34 ----D---- C:\WINDOWS\ie8updates
2011-03-29 16:20:35 ----HDC---- C:\WINDOWS\ie8
2011-03-29 16:10:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 16:00:11 ----D---- C:\Program Files\CCleaner
2011-03-29 15:23:24 ----D---- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
2011-03-29 15:23:17 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-03-29 15:23:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-03-29 15:23:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-03-29 15:23:13 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-03-29 15:10:06 ----D---- C:\WINDOWS\pss
2011-03-29 15:05:17 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2011-03-29 15:05:09 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2011-03-21 00:13:38 ----HD---- C:\WINDOWS\PIF
======List of files/folders modified in the last 1 months======
2011-03-30 07:11:47 ----D---- C:\WINDOWS
2011-03-30 07:11:31 ----D---- C:\WINDOWS\Temp
2011-03-30 06:54:14 ----RD---- C:\Program Files
2011-03-30 06:53:24 ----D---- C:\WINDOWS\system32
2011-03-30 06:51:35 ----D---- C:\WINDOWS\Microsoft.NET
2011-03-30 06:50:38 ----HD---- C:\WINDOWS\inf
2011-03-30 06:50:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-30 06:50:31 ----RSD---- C:\WINDOWS\assembly
2011-03-30 06:50:30 ----HD---- C:\WINDOWS\$hf_mig$
2011-03-30 06:50:02 ----D---- C:\WINDOWS\system32\drivers
2011-03-30 06:49:50 ----D---- C:\WINDOWS\WinSxS
2011-03-30 06:48:40 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-30 06:48:14 ----SHD---- C:\WINDOWS\Installer
2011-03-30 06:47:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-30 06:45:16 ----D---- C:\Program Files\Internet Explorer
2011-03-30 06:41:55 ----D---- C:\Program Files\Movie Maker
2011-03-30 06:41:19 ----D---- C:\Program Files\Outlook Express
2011-03-30 06:35:12 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 19:56:42 ----A---- C:\WINDOWS\win.ini
2011-03-29 19:48:26 ----D---- C:\Documents and Settings
2011-03-29 19:18:17 ----RSH---- C:\boot.ini
2011-03-29 19:18:17 ----A---- C:\WINDOWS\system.ini
2011-03-29 18:38:21 ----SHD---- C:\RECYCLER
2011-03-29 17:50:03 ----D---- C:\QooBox
2011-03-29 17:15:52 ----D---- C:\Program Files\Common Files
2011-03-29 17:14:35 ----D---- C:\WINDOWS\Debug
2011-03-29 17:06:40 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 17:06:40 ----D---- C:\WINDOWS\AppPatch
2011-03-29 17:06:39 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 17:06:39 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 17:06:06 ----D---- C:\WINDOWS\security
2011-03-29 17:06:03 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:53:26 ----D---- C:\Program Files\Messenger
2011-03-29 16:50:14 ----D---- C:\WINDOWS\ime
2011-03-29 16:50:14 ----D---- C:\WINDOWS\Help
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\cs-cz
2011-03-29 16:50:10 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:48:54 ----D---- C:\WINDOWS\ServicePackFiles
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\Restore
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:48:52 ----D---- C:\WINDOWS\srchasst
2011-03-29 16:48:52 ----D---- C:\WINDOWS\msagent
2011-03-29 16:48:51 ----D---- C:\WINDOWS\system32\Com
2011-03-29 16:48:51 ----D---- C:\Program Files\NetMeeting
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows NT
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows Media Player
2011-03-29 16:48:49 ----D---- C:\Program Files\Common Files\System
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system
2011-03-29 16:47:28 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-29 16:40:52 ----D---- C:\WINDOWS\Media
2011-03-29 16:40:51 ----D---- C:\Program Files\Microsoft Silverlight
2011-03-29 16:37:14 ----D---- C:\WINDOWS\Minidump
2011-03-29 16:10:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:02:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-03-22 13:10:00 ----D---- C:\Documents and Settings\AMD\Data aplikací\Skype
2011-03-22 12:48:15 ----D---- C:\Documents and Settings\AMD\Data aplikací\skypePM
2011-03-16 17:46:49 ----D---- C:\Documents and Settings\AMD\Data aplikací\ICQ
2011-03-09 23:07:18 ----A---- C:\WINDOWS\system32\MRT.exe
2011-03-04 20:22:15 ----A---- C:\WINDOWS\NeroDigital.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2010-08-03 55256]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2004-07-21 9856]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2010-12-21 134000]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2004-08-31 26240]
R3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [2004-06-09 3968]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2010-12-21 33120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-18 4547584]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-01-12 810144]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-08-11 30192]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------



Logfile of random's system information tool 1.08 (written by random/random)
Run by AMD at 2011-03-30 07:12:07
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 1 GB (5%) free of 30 GB
Total RAM: 959 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:12:09, on 30.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\AMD\Plocha\RSIT.exe
C:\Program Files\trend micro\AMD.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 6724 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-583907252-725345543-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-583907252-725345543-1004UA.job
C:\WINDOWS\tasks\Nová složka.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll [2006-12-15 440056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-01 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-08-11 30192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-27 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ6.5\ICQ.exe [2010-11-16 172856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
C:\Program Files\IncrediMail\bin\IncMail.exe [2009-02-25 251264]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=251
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=251
"NoDrives"=0
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-03-30 06:54:14 ----D---- C:\Program Files\trend micro
2011-03-30 06:54:13 ----D---- C:\rsit
2011-03-30 06:50:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-03-30 06:50:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-30 06:50:19 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2011-03-30 06:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-03-30 06:50:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-03-30 06:49:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2011-03-30 06:49:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-03-30 06:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-03-30 06:49:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-03-30 06:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-03-30 06:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-03-30 06:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-03-30 06:49:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-03-30 06:49:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-30 06:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-03-30 06:48:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-03-30 06:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-03-30 06:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-03-30 06:48:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-03-30 06:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-03-30 06:48:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2011-03-30 06:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-03-30 06:47:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-03-30 06:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-03-30 06:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2011-03-30 06:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-03-30 06:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-03-30 06:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-03-30 06:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-03-30 06:42:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-30 06:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-03-30 06:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2011-03-30 06:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-03-30 06:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-03-30 06:41:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-03-30 06:41:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-03-30 06:41:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-03-29 20:29:25 ----AD---- C:\WINDOWS\rundll16.exe
2011-03-29 20:29:25 ----AD---- C:\WINDOWS\logo1_.exe
2011-03-29 19:08:42 ----D---- C:\Documents and Settings\AMD\Data aplikací\ESET
2011-03-29 19:07:46 ----D---- C:\Program Files\ESET
2011-03-29 19:07:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-03-29 18:41:14 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\VDLL.DLL
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\system32\runouce.exe
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\RUNDL132.EXE
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\logo_1.exe
2011-03-29 17:16:00 ----A---- C:\WINDOWS\system32\msvcr80.dll
2011-03-29 17:15:59 ----A---- C:\WINDOWS\system32\msvcp80.dll
2011-03-29 17:15:58 ----A---- C:\WINDOWS\system32\eEmpty.exe
2011-03-29 17:15:54 ----A---- C:\WINDOWS\system32\TASKMGR.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\system32\T.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\REGEDIT.COM
2011-03-29 17:15:54 ----A---- C:\WINDOWS\R.COM
2011-03-29 17:15:52 ----D---- C:\Program Files\Common Files\MicroWorld
2011-03-29 17:15:47 ----D---- C:\Documents and Settings\All Users\Data aplikací\MicroWorld
2011-03-29 17:07:19 ----D---- C:\WINDOWS\Prefetch
2011-03-29 17:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2011-03-29 17:05:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2011-03-29 17:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2011-03-29 17:05:03 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2011-03-29 17:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-03-29 17:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-03-29 17:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-03-29 17:04:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-03-29 17:04:17 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-03-29 17:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-03-29 17:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2011-03-29 17:03:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2011-03-29 17:03:38 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-03-29 17:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2011-03-29 17:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-03-29 17:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-03-29 17:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2011-03-29 17:02:47 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-03-29 17:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-03-29 17:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-03-29 17:02:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-03-29 17:02:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-03-29 17:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-03-29 17:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-03-29 17:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-03-29 17:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-03-29 17:01:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-03-29 17:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-03-29 17:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2011-03-29 17:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-03-29 17:00:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-03-29 17:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-03-29 17:00:29 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2011-03-29 17:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2011-03-29 17:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2011-03-29 17:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2011-03-29 16:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-03-29 16:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2011-03-29 16:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2011-03-29 16:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-03-29 16:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2011-03-29 16:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-03-29 16:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2011-03-29 16:58:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-03-29 16:58:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2011-03-29 16:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2011-03-29 16:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-03-29 16:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-03-29 16:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-03-29 16:57:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2011-03-29 16:57:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-03-29 16:57:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2011-03-29 16:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2011-03-29 16:57:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-03-29 16:56:55 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-03-29 16:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2011-03-29 16:56:38 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-03-29 16:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2011-03-29 16:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2011-03-29 16:56:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-03-29 16:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-03-29 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-03-29 16:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2011-03-29 16:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-03-29 16:55:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2011-03-29 16:55:07 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2011-03-29 16:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2011-03-29 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-03-29 16:54:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-03-29 16:54:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-03-29 16:54:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2011-03-29 16:54:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2011-03-29 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-03-29 16:53:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2011-03-29 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-03-29 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-03-29 16:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-03-29 16:53:15 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2011-03-29 16:53:07 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-03-29 16:52:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\cs
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\bits
2011-03-29 16:50:10 ----D---- C:\WINDOWS\l2schemas
2011-03-29 16:48:13 ----D---- C:\WINDOWS\network diagnostic
2011-03-29 16:45:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-03-29 16:45:56 ----D---- C:\WINDOWS\EHome
2011-03-29 16:34:12 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-03-29 16:34:11 ----D---- C:\Program Files\CPUID
2011-03-29 16:21:34 ----D---- C:\WINDOWS\ie8updates
2011-03-29 16:20:35 ----HDC---- C:\WINDOWS\ie8
2011-03-29 16:10:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 16:00:11 ----D---- C:\Program Files\CCleaner
2011-03-29 15:23:24 ----D---- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
2011-03-29 15:23:17 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-03-29 15:23:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-03-29 15:23:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-03-29 15:23:13 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-03-29 15:10:06 ----D---- C:\WINDOWS\pss
2011-03-29 15:05:17 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2011-03-29 15:05:09 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2011-03-21 00:13:38 ----HD---- C:\WINDOWS\PIF
======List of files/folders modified in the last 1 months======
2011-03-30 07:11:47 ----D---- C:\WINDOWS
2011-03-30 07:11:31 ----D---- C:\WINDOWS\Temp
2011-03-30 06:54:14 ----RD---- C:\Program Files
2011-03-30 06:53:24 ----D---- C:\WINDOWS\system32
2011-03-30 06:51:35 ----D---- C:\WINDOWS\Microsoft.NET
2011-03-30 06:50:38 ----HD---- C:\WINDOWS\inf
2011-03-30 06:50:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-30 06:50:31 ----RSD---- C:\WINDOWS\assembly
2011-03-30 06:50:30 ----HD---- C:\WINDOWS\$hf_mig$
2011-03-30 06:50:02 ----D---- C:\WINDOWS\system32\drivers
2011-03-30 06:49:50 ----D---- C:\WINDOWS\WinSxS
2011-03-30 06:48:40 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-30 06:48:14 ----SHD---- C:\WINDOWS\Installer
2011-03-30 06:47:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-30 06:45:16 ----D---- C:\Program Files\Internet Explorer
2011-03-30 06:41:55 ----D---- C:\Program Files\Movie Maker
2011-03-30 06:41:19 ----D---- C:\Program Files\Outlook Express
2011-03-30 06:35:12 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 19:56:42 ----A---- C:\WINDOWS\win.ini
2011-03-29 19:48:26 ----D---- C:\Documents and Settings
2011-03-29 19:18:17 ----RSH---- C:\boot.ini
2011-03-29 19:18:17 ----A---- C:\WINDOWS\system.ini
2011-03-29 18:38:21 ----SHD---- C:\RECYCLER
2011-03-29 17:50:03 ----D---- C:\QooBox
2011-03-29 17:15:52 ----D---- C:\Program Files\Common Files
2011-03-29 17:14:35 ----D---- C:\WINDOWS\Debug
2011-03-29 17:06:40 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 17:06:40 ----D---- C:\WINDOWS\AppPatch
2011-03-29 17:06:39 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 17:06:39 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 17:06:06 ----D---- C:\WINDOWS\security
2011-03-29 17:06:03 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:53:26 ----D---- C:\Program Files\Messenger
2011-03-29 16:50:14 ----D---- C:\WINDOWS\ime
2011-03-29 16:50:14 ----D---- C:\WINDOWS\Help
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\cs-cz
2011-03-29 16:50:10 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:48:54 ----D---- C:\WINDOWS\ServicePackFiles
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\Restore
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:48:52 ----D---- C:\WINDOWS\srchasst
2011-03-29 16:48:52 ----D---- C:\WINDOWS\msagent
2011-03-29 16:48:51 ----D---- C:\WINDOWS\system32\Com
2011-03-29 16:48:51 ----D---- C:\Program Files\NetMeeting
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows NT
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows Media Player
2011-03-29 16:48:49 ----D---- C:\Program Files\Common Files\System
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system
2011-03-29 16:47:28 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-29 16:40:52 ----D---- C:\WINDOWS\Media
2011-03-29 16:40:51 ----D---- C:\Program Files\Microsoft Silverlight
2011-03-29 16:37:14 ----D---- C:\WINDOWS\Minidump
2011-03-29 16:10:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:02:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-03-22 13:10:00 ----D---- C:\Documents and Settings\AMD\Data aplikací\Skype
2011-03-22 12:48:15 ----D---- C:\Documents and Settings\AMD\Data aplikací\skypePM
2011-03-16 17:46:49 ----D---- C:\Documents and Settings\AMD\Data aplikací\ICQ
2011-03-09 23:07:18 ----A---- C:\WINDOWS\system32\MRT.exe
2011-03-04 20:22:15 ----A---- C:\WINDOWS\NeroDigital.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2010-08-03 55256]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2004-07-21 9856]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2010-12-21 134000]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2004-08-31 26240]
R3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [2004-06-09 3968]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2010-12-21 33120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-18 4547584]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-01-12 810144]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-08-11 30192]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Člověk se pořád učí.
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Verze databáze: 6211
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
30.3.2011 7:39:31
mbam-log-2011-03-30 (07-39-31).txt
Typ kontroly: Úplný test (C:\|E:\|)
Testované objekty: 180812
Uplynulý čas: 22 minut, 28 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
www.malwarebytes.org
Verze databáze: 6211
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
30.3.2011 7:39:31
mbam-log-2011-03-30 (07-39-31).txt
Typ kontroly: Úplný test (C:\|E:\|)
Testované objekty: 180812
Uplynulý čas: 22 minut, 28 sekund
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)
Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)
Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)
Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)
Člověk se pořád učí.
Re: Prosím o kontrolu logu
System drive C: has 1 GB (5%) free of 30 GB - zvětši misto na disku aspon na 4GB.
Stáhni na plochu ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Před použitím vypni všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
-Zavři všechna aktivní okna a spusť ho pod učtem s právy administrátora
- Po spuštění se zobrazí podmínky použití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování, se vytvoří log C:\ComboFix.txt, zkopíruj celý jeho obsah sem.
Stáhni na plochu ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe
- Před použitím vypni všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary
-Zavři všechna aktivní okna a spusť ho pod učtem s právy administrátora
- Po spuštění se zobrazí podmínky použití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování, se vytvoří log C:\ComboFix.txt, zkopíruj celý jeho obsah sem.
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
ComboFix 11-03-29.05 - AMD 30.03.2011 14:29:03.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.959.599 [GMT 2:00]
Spuštěný z: c:\documents and settings\AMD\Plocha\ComboFix.exe
AV: ESET Smart Security 4.2 *Disabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\AMD\Data aplikací\Mikrotik
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\advtool.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\advtool.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\dhcp.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\dhcp.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\hotspot.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\hotspot.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\ppp.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\ppp.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roteros.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roteros.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roting2.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roting2.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\secure.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\secure.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\system.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\system.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\wlan2.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\wlan2.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\winbox.cfg
c:\windows\regedit.com
c:\windows\system32\_000010_.tmp.dll
c:\windows\system32\taskmgr.com
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-02-28 do 2011-03-30 )))))))))))))))))))))))))))))))
.
.
2011-03-30 04:54 . 2011-03-30 05:12 -------- d-----w- c:\program files\trend micro
2011-03-30 04:54 . 2011-03-30 04:54 -------- d-----w- C:\rsit
2011-03-30 04:38 . 2010-09-18 06:53 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2011-03-30 04:38 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2011-03-30 04:38 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2011-03-30 04:38 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2011-03-30 04:36 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2011-03-29 18:29 . 2011-03-29 18:29 -------- d---a-w- c:\windows\rundll16.exe
2011-03-29 18:29 . 2011-03-29 18:29 -------- d---a-w- c:\windows\logo1_.exe
2011-03-29 18:13 . 2011-03-29 18:13 -------- d-sh--w- c:\documents and settings\AMD\IECompatCache
2011-03-29 18:13 . 2011-03-29 18:13 -------- d-sh--w- c:\documents and settings\AMD\PrivacIE
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\AMD\Local Settings\Data aplikací\ESET
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\AMD\Data aplikací\ESET
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\ESET
2011-03-29 17:07 . 2011-03-29 17:07 -------- d-----w- c:\program files\ESET
2011-03-29 17:07 . 2011-03-29 17:07 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ESET
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\VDLL.DLL
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\system32\runouce.exe
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\RUNDL132.EXE
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\logo_1.exe
2011-03-29 15:16 . 2011-03-29 15:15 632064 ----a-w- c:\windows\system32\msvcr80.dll
2011-03-29 15:15 . 2011-03-29 15:15 554240 ----a-w- c:\windows\system32\msvcp80.dll
2011-03-29 15:15 . 2011-03-29 15:15 34048 ----a-w- c:\windows\system32\eEmpty.exe
2011-03-29 15:15 . 2008-04-14 03:22 137216 ----a-w- c:\windows\system32\T.COM
2011-03-29 15:15 . 2008-04-14 03:22 147968 ----a-w- c:\windows\R.COM
2011-03-29 15:15 . 2011-03-29 15:15 -------- d-----w- c:\program files\Common Files\MicroWorld
2011-03-29 15:15 . 2011-03-29 15:15 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MicroWorld
2011-03-29 15:06 . 2011-03-29 15:06 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-sh--w- c:\documents and settings\AMD\IETldCache
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\system32\cs
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\system32\bits
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\l2schemas
2011-03-29 14:45 . 2011-03-29 14:45 -------- d-----w- c:\windows\EHome
2011-03-29 14:34 . 2011-01-19 15:47 22504 ----a-w- c:\windows\system32\drivers\cpuz135_x32.sys
2011-03-29 14:34 . 2011-03-29 14:34 -------- d-----w- c:\program files\CPUID
2011-03-29 14:21 . 2010-12-20 23:52 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-03-29 14:21 . 2010-12-20 23:52 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-03-29 14:21 . 2010-12-20 23:52 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-03-29 14:20 . 2011-03-29 14:21 -------- dc-h--w- c:\windows\ie8
2011-03-29 14:10 . 2011-03-29 16:52 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVAST Software
2011-03-29 14:00 . 2011-03-29 14:00 -------- d-----w- c:\program files\CCleaner
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\documents and settings\AMD\Data aplikací\Malwarebytes
2011-03-29 13:23 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-03-29 13:23 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-03-29 13:05 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2011-03-29 13:05 . 2008-04-13 18:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2011-03-20 22:13 . 2011-03-20 22:13 -------- d--h--w- c:\windows\PIF
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-29 17:21 . 2011-03-29 17:21 4496718 ----a-w- c:\windows\REGBK00.ZIP
2011-02-09 13:53 . 2006-03-02 12:00 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-09 13:53 . 2006-03-02 12:00 186880 ----a-w- c:\windows\system32\encdec.dll
2011-02-02 07:58 . 2008-08-15 09:59 2067456 ----a-w- c:\windows\system32\mstscax.dll
2011-01-27 11:57 . 2008-08-15 09:59 677888 ----a-w- c:\windows\system32\mstsc.exe
2011-01-21 14:44 . 2006-03-02 12:00 440320 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2006-03-02 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 14:04 . 2006-03-02 12:00 1854976 ----a-w- c:\windows\system32\win32k.sys
2003-05-10 19:13 . 2009-04-07 11:07 1883127 ----a-w- c:\program files\TeamSpeak2CZ.exe
2010-08-11 15:19 . 2009-12-09 06:46 119808 ----a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-09-20 68856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-31 7634944]
"nwiz"="nwiz.exe" [2006-10-31 1622016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-31 86016]
"RTHDCPL"="RTHDCPL.EXE" [2007-07-05 16380416]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2011-01-12 2219184]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2010-08-11 15:19 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2010-10-27 13:50 133104 ----atw- c:\documents and settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-11-16 12:27 172856 ----a-w- c:\program files\ICQ6.5\ICQ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
2009-02-25 11:23 251264 ----a-w- c:\program files\IncrediMail\bin\IncMail.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
2007-06-15 08:45 1826816 ------r- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2008-09-20 11:19 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"=
"c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
.
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [21.12.2010 15:04 115008]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [29.3.2011 16:34 22504]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [12.1.2011 16:41 810144]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [4.9.2008 18:59 222968]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [31.1.2010 22:32 135664]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [14.1.2009 12:12 30192]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 20:32]
.
2011-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 20:32]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://mystart.incredimail.com/website/
mStart Page = about:blank
mSearch Bar = hxxp://www.google.com/ie
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... r=1.1.9&q=
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - c:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - %profile%\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-SpybotSD TeaTimer - c:\program files\Spybot - Search & Destroy\TeaTimer.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-03-30 14:33
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(672)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\windows\system32\nvsvc32.exe
.
**************************************************************************
.
Celkový čas: 2011-03-30 14:36:08 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-03-30 12:36
.
Před spuštěním: 1 192 386 560
Po spuštění: 2 149 412 864
.
WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect /usepmtimer
.
- - End Of File - - 4C70A6C3F380B4730689886BF29A0A60
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.959.599 [GMT 2:00]
Spuštěný z: c:\documents and settings\AMD\Plocha\ComboFix.exe
AV: ESET Smart Security 4.2 *Disabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *Disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\AMD\Data aplikací\Mikrotik
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\advtool.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\advtool.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\dhcp.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\dhcp.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\hotspot.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\hotspot.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\ppp.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\ppp.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roteros.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roteros.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roting2.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\roting2.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\secure.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\secure.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\system.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\system.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\wlan2.crc
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\3.0\wlan2.dll
c:\documents and settings\AMD\Data aplikací\Mikrotik\Winbox\winbox.cfg
c:\windows\regedit.com
c:\windows\system32\_000010_.tmp.dll
c:\windows\system32\taskmgr.com
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-02-28 do 2011-03-30 )))))))))))))))))))))))))))))))
.
.
2011-03-30 04:54 . 2011-03-30 05:12 -------- d-----w- c:\program files\trend micro
2011-03-30 04:54 . 2011-03-30 04:54 -------- d-----w- C:\rsit
2011-03-30 04:38 . 2010-09-18 06:53 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2011-03-30 04:38 . 2010-09-18 06:53 953856 -c----w- c:\windows\system32\dllcache\mfc40u.dll
2011-03-30 04:38 . 2010-08-23 16:12 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2011-03-30 04:38 . 2010-11-02 15:17 40960 -c----w- c:\windows\system32\dllcache\ndproxy.sys
2011-03-30 04:36 . 2010-10-11 14:59 45568 -c----w- c:\windows\system32\dllcache\wab.exe
2011-03-29 18:29 . 2011-03-29 18:29 -------- d---a-w- c:\windows\rundll16.exe
2011-03-29 18:29 . 2011-03-29 18:29 -------- d---a-w- c:\windows\logo1_.exe
2011-03-29 18:13 . 2011-03-29 18:13 -------- d-sh--w- c:\documents and settings\AMD\IECompatCache
2011-03-29 18:13 . 2011-03-29 18:13 -------- d-sh--w- c:\documents and settings\AMD\PrivacIE
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\AMD\Local Settings\Data aplikací\ESET
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\AMD\Data aplikací\ESET
2011-03-29 17:08 . 2011-03-29 17:08 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Data aplikací\ESET
2011-03-29 17:07 . 2011-03-29 17:07 -------- d-----w- c:\program files\ESET
2011-03-29 17:07 . 2011-03-29 17:07 -------- d-----w- c:\documents and settings\All Users\Data aplikací\ESET
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\VDLL.DLL
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\system32\runouce.exe
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\RUNDL132.EXE
2011-03-29 16:34 . 2011-03-29 16:34 -------- d---a-w- c:\windows\logo_1.exe
2011-03-29 15:16 . 2011-03-29 15:15 632064 ----a-w- c:\windows\system32\msvcr80.dll
2011-03-29 15:15 . 2011-03-29 15:15 554240 ----a-w- c:\windows\system32\msvcp80.dll
2011-03-29 15:15 . 2011-03-29 15:15 34048 ----a-w- c:\windows\system32\eEmpty.exe
2011-03-29 15:15 . 2008-04-14 03:22 137216 ----a-w- c:\windows\system32\T.COM
2011-03-29 15:15 . 2008-04-14 03:22 147968 ----a-w- c:\windows\R.COM
2011-03-29 15:15 . 2011-03-29 15:15 -------- d-----w- c:\program files\Common Files\MicroWorld
2011-03-29 15:15 . 2011-03-29 15:15 -------- d-----w- c:\documents and settings\All Users\Data aplikací\MicroWorld
2011-03-29 15:06 . 2011-03-29 15:06 -------- d-sh--w- c:\windows\system32\config\systemprofile\IETldCache
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-sh--w- c:\documents and settings\AMD\IETldCache
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\system32\cs
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\system32\bits
2011-03-29 14:50 . 2011-03-29 14:50 -------- d-----w- c:\windows\l2schemas
2011-03-29 14:45 . 2011-03-29 14:45 -------- d-----w- c:\windows\EHome
2011-03-29 14:34 . 2011-01-19 15:47 22504 ----a-w- c:\windows\system32\drivers\cpuz135_x32.sys
2011-03-29 14:34 . 2011-03-29 14:34 -------- d-----w- c:\program files\CPUID
2011-03-29 14:21 . 2010-12-20 23:52 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-03-29 14:21 . 2010-12-20 23:52 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-03-29 14:21 . 2010-12-20 23:52 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-03-29 14:20 . 2011-03-29 14:21 -------- dc-h--w- c:\windows\ie8
2011-03-29 14:10 . 2011-03-29 16:52 -------- d-----w- c:\documents and settings\All Users\Data aplikací\AVAST Software
2011-03-29 14:00 . 2011-03-29 14:00 -------- d-----w- c:\program files\CCleaner
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\documents and settings\AMD\Data aplikací\Malwarebytes
2011-03-29 13:23 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-03-29 13:23 . 2011-03-29 13:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-03-29 13:23 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-03-29 13:05 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2011-03-29 13:05 . 2008-04-13 18:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
2011-03-20 22:13 . 2011-03-20 22:13 -------- d--h--w- c:\windows\PIF
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-29 17:21 . 2011-03-29 17:21 4496718 ----a-w- c:\windows\REGBK00.ZIP
2011-02-09 13:53 . 2006-03-02 12:00 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-09 13:53 . 2006-03-02 12:00 186880 ----a-w- c:\windows\system32\encdec.dll
2011-02-02 07:58 . 2008-08-15 09:59 2067456 ----a-w- c:\windows\system32\mstscax.dll
2011-01-27 11:57 . 2008-08-15 09:59 677888 ----a-w- c:\windows\system32\mstsc.exe
2011-01-21 14:44 . 2006-03-02 12:00 440320 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2006-03-02 12:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 14:04 . 2006-03-02 12:00 1854976 ----a-w- c:\windows\system32\win32k.sys
2003-05-10 19:13 . 2009-04-07 11:07 1883127 ----a-w- c:\program files\TeamSpeak2CZ.exe
2010-08-11 15:19 . 2009-12-09 06:46 119808 ----a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-09-20 68856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-31 7634944]
"nwiz"="nwiz.exe" [2006-10-31 1622016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-31 86016]
"RTHDCPL"="RTHDCPL.EXE" [2007-07-05 16380416]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2011-01-12 2219184]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2010-08-11 15:19 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
2010-10-27 13:50 133104 ----atw- c:\documents and settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
2010-11-16 12:27 172856 ----a-w- c:\program files\ICQ6.5\ICQ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
2009-02-25 11:23 251264 ----a-w- c:\program files\IncrediMail\bin\IncMail.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
2007-06-15 08:45 1826816 ------r- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2008-09-20 11:19 68856 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImApp.exe"=
"c:\\Program Files\\IncrediMail\\bin\\IncMail.exe"=
"c:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
.
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [21.12.2010 15:04 115008]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [29.3.2011 16:34 22504]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [12.1.2011 16:41 810144]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [4.9.2008 18:59 222968]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [31.1.2010 22:32 135664]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [14.1.2009 12:12 30192]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 20:32]
.
2011-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-31 20:32]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://mystart.incredimail.com/website/
mStart Page = about:blank
mSearch Bar = hxxp://www.google.com/ie
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... r=1.1.9&q=
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - c:\program files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: ICQ Toolbar: {800b5000-a755-47e1-992b-48a1c1357f07} - %profile%\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
MSConfigStartUp-SpybotSD TeaTimer - c:\program files\Spybot - Search & Destroy\TeaTimer.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-03-30 14:33
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(672)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\windows\system32\nvsvc32.exe
.
**************************************************************************
.
Celkový čas: 2011-03-30 14:36:08 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-03-30 12:36
.
Před spuštěním: 1 192 386 560
Po spuštění: 2 149 412 864
.
WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect /usepmtimer
.
- - End Of File - - 4C70A6C3F380B4730689886BF29A0A60
Člověk se pořád učí.
Re: Prosím o kontrolu logu
Zlepšilo se to?
Re: Prosím o kontrolu logu
Odinstaluj combofix přes
Start >> Spustit zkopíruj do okénka:
ComboFix /Uninstall
stiskni Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.
Stáhni T-Cleaner
http://tharifas.sweb.cz/T-Cleaner.exe
-Spusť,pro potvrzení volby mačkej klávesu A, Enter
-po použití prográmek vymaž.Pozor,antiviry ho mohou falešně označit za vir
Vlož nový log ze rsitu
Start >> Spustit zkopíruj do okénka:
ComboFix /Uninstall
stiskni Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.
Stáhni T-Cleaner
http://tharifas.sweb.cz/T-Cleaner.exe
-Spusť,pro potvrzení volby mačkej klávesu A, Enter
-po použití prográmek vymaž.Pozor,antiviry ho mohou falešně označit za vir
Vlož nový log ze rsitu
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Logfile of random's system information tool 1.08 (written by random/random)
Run by AMD at 2011-03-30 23:22:10
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 8 GB (26%) free of 30 GB
Total RAM: 959 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:22:12, on 30.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
E:\Na šmejdy\RSIT.exe
C:\Program Files\trend micro\AMD.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 6388 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll [2006-12-15 440056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-01 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-27 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ6.5\ICQ.exe [2010-11-16 172856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
C:\Program Files\IncrediMail\bin\IncMail.exe [2009-02-25 251264]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-03-30 23:20:20 ----D---- C:\rsit
2011-03-30 16:21:04 ----D---- C:\Documents and Settings\AMD\Data aplikací\Help
2011-03-30 14:49:14 ----SHD---- C:\RECYCLER
2011-03-30 14:36:11 ----D---- C:\WINDOWS\temp
2011-03-30 14:28:08 ----A---- C:\Boot.bak
2011-03-30 14:28:06 ----RASHD---- C:\cmdcons
2011-03-30 06:54:14 ----D---- C:\Program Files\trend micro
2011-03-30 06:50:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-03-30 06:50:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-30 06:50:19 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2011-03-30 06:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-03-30 06:50:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-03-30 06:49:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2011-03-30 06:49:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-03-30 06:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-03-30 06:49:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-03-30 06:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-03-30 06:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-03-30 06:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-03-30 06:49:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-03-30 06:49:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-30 06:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-03-30 06:48:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-03-30 06:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-03-30 06:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-03-30 06:48:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-03-30 06:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-03-30 06:48:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2011-03-30 06:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-03-30 06:47:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-03-30 06:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-03-30 06:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2011-03-30 06:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-03-30 06:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-03-30 06:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-03-30 06:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-03-30 06:42:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-30 06:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-03-30 06:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2011-03-30 06:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-03-30 06:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-03-30 06:41:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-03-30 06:41:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-03-30 06:41:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-03-29 19:08:42 ----D---- C:\Documents and Settings\AMD\Data aplikací\ESET
2011-03-29 19:07:46 ----D---- C:\Program Files\ESET
2011-03-29 19:07:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-03-29 18:41:14 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\VDLL.DLL
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\RUNDL132.EXE
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\logo_1.exe
2011-03-29 17:15:58 ----A---- C:\WINDOWS\system32\eEmpty.exe
2011-03-29 17:07:19 ----D---- C:\WINDOWS\Prefetch
2011-03-29 17:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2011-03-29 17:05:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2011-03-29 17:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2011-03-29 17:05:03 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2011-03-29 17:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-03-29 17:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-03-29 17:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-03-29 17:04:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-03-29 17:04:17 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-03-29 17:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-03-29 17:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2011-03-29 17:03:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2011-03-29 17:03:38 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-03-29 17:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2011-03-29 17:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-03-29 17:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-03-29 17:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2011-03-29 17:02:47 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-03-29 17:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-03-29 17:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-03-29 17:02:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-03-29 17:02:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-03-29 17:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-03-29 17:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-03-29 17:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-03-29 17:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-03-29 17:01:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-03-29 17:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-03-29 17:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2011-03-29 17:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-03-29 17:00:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-03-29 17:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-03-29 17:00:29 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2011-03-29 17:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2011-03-29 17:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2011-03-29 17:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2011-03-29 16:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-03-29 16:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2011-03-29 16:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2011-03-29 16:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-03-29 16:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2011-03-29 16:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-03-29 16:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2011-03-29 16:58:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-03-29 16:58:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2011-03-29 16:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2011-03-29 16:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-03-29 16:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-03-29 16:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-03-29 16:57:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2011-03-29 16:57:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-03-29 16:57:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2011-03-29 16:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2011-03-29 16:57:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-03-29 16:56:55 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-03-29 16:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2011-03-29 16:56:38 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-03-29 16:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2011-03-29 16:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2011-03-29 16:56:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-03-29 16:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-03-29 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-03-29 16:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2011-03-29 16:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-03-29 16:55:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2011-03-29 16:55:07 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2011-03-29 16:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2011-03-29 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-03-29 16:54:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-03-29 16:54:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-03-29 16:54:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2011-03-29 16:54:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2011-03-29 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-03-29 16:53:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2011-03-29 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-03-29 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-03-29 16:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-03-29 16:53:15 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2011-03-29 16:53:07 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-03-29 16:52:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\cs
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\bits
2011-03-29 16:50:10 ----D---- C:\WINDOWS\l2schemas
2011-03-29 16:48:13 ----D---- C:\WINDOWS\network diagnostic
2011-03-29 16:45:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-03-29 16:45:56 ----D---- C:\WINDOWS\EHome
2011-03-29 16:34:12 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-03-29 16:34:11 ----D---- C:\Program Files\CPUID
2011-03-29 16:21:34 ----D---- C:\WINDOWS\ie8updates
2011-03-29 16:20:35 ----HDC---- C:\WINDOWS\ie8
2011-03-29 16:10:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 16:00:11 ----D---- C:\Program Files\CCleaner
2011-03-29 15:23:24 ----D---- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
2011-03-29 15:23:17 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-03-29 15:23:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-03-29 15:23:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-03-29 15:23:13 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-03-29 15:10:06 ----D---- C:\WINDOWS\pss
2011-03-29 15:05:17 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2011-03-29 15:05:09 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2011-03-21 00:13:38 ----HD---- C:\WINDOWS\PIF
======List of files/folders modified in the last 1 months======
2011-03-30 23:13:11 ----D---- C:\Documents and Settings
2011-03-30 23:12:13 ----SHD---- C:\System Volume Information
2011-03-30 23:12:13 ----D---- C:\WINDOWS\system32\Restore
2011-03-30 23:12:11 ----D---- C:\WINDOWS
2011-03-30 23:12:06 ----D---- C:\WINDOWS\system32
2011-03-30 23:12:06 ----D---- C:\Program Files\Common Files
2011-03-30 23:01:22 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-30 22:25:57 ----D---- C:\WINDOWS\system32\drivers
2011-03-30 22:17:52 ----HD---- C:\WINDOWS\inf
2011-03-30 22:17:29 ----D---- C:\Program Files\Google
2011-03-30 16:23:02 ----RD---- C:\Program Files
2011-03-30 16:21:31 ----D---- C:\Program Files\AD Stahovač souborů
2011-03-30 16:07:36 ----D---- C:\Program Files\freeCommander2006
2011-03-30 14:50:18 ----A---- C:\WINDOWS\NeroDigital.ini
2011-03-30 14:35:42 ----SD---- C:\WINDOWS\Tasks
2011-03-30 14:33:25 ----A---- C:\WINDOWS\system.ini
2011-03-30 14:33:14 ----D---- C:\WINDOWS\system32\drivers\etc
2011-03-30 14:32:00 ----D---- C:\WINDOWS\system32\config
2011-03-30 14:30:26 ----D---- C:\WINDOWS\AppPatch
2011-03-30 14:28:08 ----RASH---- C:\boot.ini
2011-03-30 07:28:14 ----D---- C:\WINDOWS\Microsoft.NET
2011-03-30 07:28:07 ----RSD---- C:\WINDOWS\assembly
2011-03-30 06:50:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-30 06:50:30 ----HD---- C:\WINDOWS\$hf_mig$
2011-03-30 06:49:50 ----D---- C:\WINDOWS\WinSxS
2011-03-30 06:48:14 ----SHD---- C:\WINDOWS\Installer
2011-03-30 06:47:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-30 06:45:16 ----D---- C:\Program Files\Internet Explorer
2011-03-30 06:41:55 ----D---- C:\Program Files\Movie Maker
2011-03-30 06:41:19 ----D---- C:\Program Files\Outlook Express
2011-03-30 06:35:12 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 19:56:42 ----A---- C:\WINDOWS\win.ini
2011-03-29 17:14:35 ----D---- C:\WINDOWS\Debug
2011-03-29 17:06:40 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 17:06:39 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 17:06:39 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 17:06:06 ----D---- C:\WINDOWS\security
2011-03-29 17:06:03 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:53:26 ----D---- C:\Program Files\Messenger
2011-03-29 16:50:14 ----D---- C:\WINDOWS\ime
2011-03-29 16:50:14 ----D---- C:\WINDOWS\Help
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\cs-cz
2011-03-29 16:50:10 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:48:54 ----D---- C:\WINDOWS\ServicePackFiles
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:48:52 ----D---- C:\WINDOWS\srchasst
2011-03-29 16:48:52 ----D---- C:\WINDOWS\msagent
2011-03-29 16:48:51 ----D---- C:\WINDOWS\system32\Com
2011-03-29 16:48:51 ----D---- C:\Program Files\NetMeeting
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows NT
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows Media Player
2011-03-29 16:48:49 ----D---- C:\Program Files\Common Files\System
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system
2011-03-29 16:47:28 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-29 16:40:52 ----D---- C:\WINDOWS\Media
2011-03-29 16:40:51 ----D---- C:\Program Files\Microsoft Silverlight
2011-03-29 16:37:14 ----D---- C:\WINDOWS\Minidump
2011-03-29 16:10:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:02:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-03-22 13:10:00 ----D---- C:\Documents and Settings\AMD\Data aplikací\Skype
2011-03-22 12:48:15 ----D---- C:\Documents and Settings\AMD\Data aplikací\skypePM
2011-03-16 17:46:49 ----D---- C:\Documents and Settings\AMD\Data aplikací\ICQ
2011-03-09 23:07:18 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2010-08-03 55256]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2004-07-21 9856]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2010-12-21 134000]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2004-08-31 26240]
R3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [2004-06-09 3968]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2010-12-21 33120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-18 4547584]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-01-12 810144]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Run by AMD at 2011-03-30 23:22:10
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 8 GB (26%) free of 30 GB
Total RAM: 959 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:22:12, on 30.3.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
E:\Na šmejdy\RSIT.exe
C:\Program Files\trend micro\AMD.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
--
End of file - 6388 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll [2006-12-15 440056]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-11-22 1242504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll [2011-03-01 848952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-03-01 298160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2011-01-12 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\AMD\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2010-10-27 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
C:\Program Files\ICQ6.5\ICQ.exe [2010-11-16 172856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IncrediMail]
C:\Program Files\IncrediMail\bin\IncMail.exe [2009-02-25 251264]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-20 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\IncrediMail\bin\ImApp.exe"="C:\Program Files\IncrediMail\bin\ImApp.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\IncMail.exe"="C:\Program Files\IncrediMail\bin\IncMail.exe:*:Enabled:IncrediMail"
"C:\Program Files\IncrediMail\bin\ImpCnt.exe"="C:\Program Files\IncrediMail\bin\ImpCnt.exe:*:Enabled:IncrediMail"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-03-30 23:20:20 ----D---- C:\rsit
2011-03-30 16:21:04 ----D---- C:\Documents and Settings\AMD\Data aplikací\Help
2011-03-30 14:49:14 ----SHD---- C:\RECYCLER
2011-03-30 14:36:11 ----D---- C:\WINDOWS\temp
2011-03-30 14:28:08 ----A---- C:\Boot.bak
2011-03-30 14:28:06 ----RASHD---- C:\cmdcons
2011-03-30 06:54:14 ----D---- C:\Program Files\trend micro
2011-03-30 06:50:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-03-30 06:50:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-03-30 06:50:19 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2011-03-30 06:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-03-30 06:50:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-03-30 06:49:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2011-03-30 06:49:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-03-30 06:49:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-03-30 06:49:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2485376$
2011-03-30 06:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-03-30 06:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-03-30 06:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-03-30 06:49:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-03-30 06:49:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-03-30 06:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-03-30 06:48:54 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-03-30 06:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2479628$
2011-03-30 06:48:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-03-30 06:48:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-03-30 06:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-03-30 06:48:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2011-03-30 06:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-03-30 06:47:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-03-30 06:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-03-30 06:47:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2011-03-30 06:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-03-30 06:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-03-30 06:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476687$
2011-03-30 06:42:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-03-30 06:42:04 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-03-30 06:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-03-30 06:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2011-03-30 06:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-03-30 06:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-03-30 06:41:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-03-30 06:41:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-03-30 06:41:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-03-29 19:08:42 ----D---- C:\Documents and Settings\AMD\Data aplikací\ESET
2011-03-29 19:07:46 ----D---- C:\Program Files\ESET
2011-03-29 19:07:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ESET
2011-03-29 18:41:14 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\VDLL.DLL
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\RUNDL132.EXE
2011-03-29 18:34:04 ----AD---- C:\WINDOWS\logo_1.exe
2011-03-29 17:15:58 ----A---- C:\WINDOWS\system32\eEmpty.exe
2011-03-29 17:07:19 ----D---- C:\WINDOWS\Prefetch
2011-03-29 17:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2011-03-29 17:05:26 ----HDC---- C:\WINDOWS\$NtUninstallKB980218$
2011-03-29 17:05:13 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2011-03-29 17:05:03 ----HDC---- C:\WINDOWS\$NtUninstallKB979559$
2011-03-29 17:04:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-03-29 17:04:45 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-03-29 17:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-03-29 17:04:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-03-29 17:04:17 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-03-29 17:04:08 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-03-29 17:03:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2011-03-29 17:03:47 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2011-03-29 17:03:38 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-03-29 17:03:26 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2011-03-29 17:03:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-03-29 17:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-03-29 17:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2011-03-29 17:02:47 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-03-29 17:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-03-29 17:02:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-03-29 17:02:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-03-29 17:02:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-03-29 17:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-03-29 17:01:54 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-03-29 17:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-03-29 17:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-03-29 17:01:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-03-29 17:01:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-03-29 17:01:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2011-03-29 17:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-03-29 17:00:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-03-29 17:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-03-29 17:00:29 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2011-03-29 17:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2011-03-29 17:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2011-03-29 17:00:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2011-03-29 16:59:52 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-03-29 16:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2011-03-29 16:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2011-03-29 16:59:22 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-03-29 16:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2011-03-29 16:59:03 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-03-29 16:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2011-03-29 16:58:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-03-29 16:58:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2011-03-29 16:58:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961371$
2011-03-29 16:58:09 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-03-29 16:58:00 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-03-29 16:57:52 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-03-29 16:57:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2011-03-29 16:57:32 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-03-29 16:57:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2011-03-29 16:57:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2011-03-29 16:57:04 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-03-29 16:56:55 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2011-03-29 16:56:46 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2011-03-29 16:56:38 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-03-29 16:56:30 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2011-03-29 16:56:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2011-03-29 16:56:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-03-29 16:56:00 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-03-29 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-03-29 16:55:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2011-03-29 16:55:28 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2011-03-29 16:55:16 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_1$
2011-03-29 16:55:07 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2011-03-29 16:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2011-03-29 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-03-29 16:54:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-03-29 16:54:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-03-29 16:54:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2011-03-29 16:54:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2011-03-29 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-03-29 16:53:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2011-03-29 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-03-29 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-03-29 16:53:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-03-29 16:53:15 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2011-03-29 16:53:07 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-03-29 16:52:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\cs
2011-03-29 16:50:10 ----D---- C:\WINDOWS\system32\bits
2011-03-29 16:50:10 ----D---- C:\WINDOWS\l2schemas
2011-03-29 16:48:13 ----D---- C:\WINDOWS\network diagnostic
2011-03-29 16:45:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-03-29 16:45:56 ----D---- C:\WINDOWS\EHome
2011-03-29 16:34:12 ----A---- C:\WINDOWS\system32\drivers\cpuz135_x32.sys
2011-03-29 16:34:11 ----D---- C:\Program Files\CPUID
2011-03-29 16:21:34 ----D---- C:\WINDOWS\ie8updates
2011-03-29 16:20:35 ----HDC---- C:\WINDOWS\ie8
2011-03-29 16:10:00 ----D---- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2011-03-29 16:00:11 ----D---- C:\Program Files\CCleaner
2011-03-29 15:23:24 ----D---- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
2011-03-29 15:23:17 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-03-29 15:23:16 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-03-29 15:23:13 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-03-29 15:23:13 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-03-29 15:10:06 ----D---- C:\WINDOWS\pss
2011-03-29 15:05:17 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2011-03-29 15:05:09 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2011-03-21 00:13:38 ----HD---- C:\WINDOWS\PIF
======List of files/folders modified in the last 1 months======
2011-03-30 23:13:11 ----D---- C:\Documents and Settings
2011-03-30 23:12:13 ----SHD---- C:\System Volume Information
2011-03-30 23:12:13 ----D---- C:\WINDOWS\system32\Restore
2011-03-30 23:12:11 ----D---- C:\WINDOWS
2011-03-30 23:12:06 ----D---- C:\WINDOWS\system32
2011-03-30 23:12:06 ----D---- C:\Program Files\Common Files
2011-03-30 23:01:22 ----D---- C:\WINDOWS\system32\CatRoot2
2011-03-30 22:25:57 ----D---- C:\WINDOWS\system32\drivers
2011-03-30 22:17:52 ----HD---- C:\WINDOWS\inf
2011-03-30 22:17:29 ----D---- C:\Program Files\Google
2011-03-30 16:23:02 ----RD---- C:\Program Files
2011-03-30 16:21:31 ----D---- C:\Program Files\AD Stahovač souborů
2011-03-30 16:07:36 ----D---- C:\Program Files\freeCommander2006
2011-03-30 14:50:18 ----A---- C:\WINDOWS\NeroDigital.ini
2011-03-30 14:35:42 ----SD---- C:\WINDOWS\Tasks
2011-03-30 14:33:25 ----A---- C:\WINDOWS\system.ini
2011-03-30 14:33:14 ----D---- C:\WINDOWS\system32\drivers\etc
2011-03-30 14:32:00 ----D---- C:\WINDOWS\system32\config
2011-03-30 14:30:26 ----D---- C:\WINDOWS\AppPatch
2011-03-30 14:28:08 ----RASH---- C:\boot.ini
2011-03-30 07:28:14 ----D---- C:\WINDOWS\Microsoft.NET
2011-03-30 07:28:07 ----RSD---- C:\WINDOWS\assembly
2011-03-30 06:50:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-03-30 06:50:30 ----HD---- C:\WINDOWS\$hf_mig$
2011-03-30 06:49:50 ----D---- C:\WINDOWS\WinSxS
2011-03-30 06:48:14 ----SHD---- C:\WINDOWS\Installer
2011-03-30 06:47:24 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-03-30 06:45:16 ----D---- C:\Program Files\Internet Explorer
2011-03-30 06:41:55 ----D---- C:\Program Files\Movie Maker
2011-03-30 06:41:19 ----D---- C:\Program Files\Outlook Express
2011-03-30 06:35:12 ----D---- C:\Program Files\Mozilla Firefox
2011-03-29 19:56:42 ----A---- C:\WINDOWS\win.ini
2011-03-29 17:14:35 ----D---- C:\WINDOWS\Debug
2011-03-29 17:06:40 ----D---- C:\WINDOWS\system32\Setup
2011-03-29 17:06:39 ----RSD---- C:\WINDOWS\Fonts
2011-03-29 17:06:39 ----D---- C:\WINDOWS\system32\wbem
2011-03-29 17:06:06 ----D---- C:\WINDOWS\security
2011-03-29 17:06:03 ----D---- C:\WINDOWS\system32\CatRoot
2011-03-29 16:53:26 ----D---- C:\Program Files\Messenger
2011-03-29 16:50:14 ----D---- C:\WINDOWS\ime
2011-03-29 16:50:14 ----D---- C:\WINDOWS\Help
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\usmt
2011-03-29 16:50:11 ----D---- C:\WINDOWS\system32\cs-cz
2011-03-29 16:50:10 ----D---- C:\WINDOWS\PeerNet
2011-03-29 16:48:54 ----D---- C:\WINDOWS\ServicePackFiles
2011-03-29 16:48:53 ----D---- C:\WINDOWS\system32\npp
2011-03-29 16:48:52 ----D---- C:\WINDOWS\srchasst
2011-03-29 16:48:52 ----D---- C:\WINDOWS\msagent
2011-03-29 16:48:51 ----D---- C:\WINDOWS\system32\Com
2011-03-29 16:48:51 ----D---- C:\Program Files\NetMeeting
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows NT
2011-03-29 16:48:50 ----D---- C:\Program Files\Windows Media Player
2011-03-29 16:48:49 ----D---- C:\Program Files\Common Files\System
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system32\oobe
2011-03-29 16:48:42 ----D---- C:\WINDOWS\system
2011-03-29 16:47:28 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-03-29 16:40:52 ----D---- C:\WINDOWS\Media
2011-03-29 16:40:51 ----D---- C:\Program Files\Microsoft Silverlight
2011-03-29 16:37:14 ----D---- C:\WINDOWS\Minidump
2011-03-29 16:10:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-03-29 16:02:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2011-03-22 13:10:00 ----D---- C:\Documents and Settings\AMD\Data aplikací\Skype
2011-03-22 12:48:15 ----D---- C:\Documents and Settings\AMD\Data aplikací\skypePM
2011-03-16 17:46:49 ----D---- C:\Documents and Settings\AMD\Data aplikací\ICQ
2011-03-09 23:07:18 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-10-18 105472]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-06-18 43008]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2010-08-03 55256]
R2 cpuz135;cpuz135; \??\C:\WINDOWS\system32\drivers\cpuz135_x32.sys []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2004-07-21 9856]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2010-12-21 134000]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2004-08-31 26240]
R3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [2004-06-09 3968]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2010-12-21 33120]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-18 4547584]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2011-01-12 810144]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2011-01-12 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Člověk se pořád učí.
Re: Prosím o kontrolu logu
Ještě něco zjistím
Stáhni OTL
http://oldtimer.geekstogo.com/OTL.exe
-do spodního okénka vlož tento skript:
-dej fajfku do čtverečku u řádku Pro všechny uživatele
-nech ostatní položky jak je nastaveno na screenu
- potvrď tlačítko Prohledat.
-provede se sken, log OTL.Txt sem vlož

Stáhni OTL
http://oldtimer.geekstogo.com/OTL.exe
-do spodního okénka vlož tento skript:
Kód: Vybrat vše
netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
/md5stop
%systemroot%\*. /mp /s
CREATERESTOREPOINT
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
-dej fajfku do čtverečku u řádku Pro všechny uživatele
-nech ostatní položky jak je nastaveno na screenu
- potvrď tlačítko Prohledat.
-provede se sken, log OTL.Txt sem vlož
- šulda
- Level 4.5
- Příspěvky: 1598
- Registrován: srpen 08
- Bydliště: Tam kde se vrány otáčejí
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
OTL logfile created on: 31.3.2011 0:26:36 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\AMD\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
959,00 Mb Total Physical Memory | 543,00 Mb Available Physical Memory | 57,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 86,00% Paging File free
Paging file location(s): C:\pagefile.sys 1440 2880 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,29 Gb Total Space | 7,71 Gb Free Space | 26,33% Space Free | Partition Type: NTFS
Drive E: | 119,75 Gb Total Space | 109,64 Gb Free Space | 91,56% Space Free | Partition Type: NTFS
Computer Name: WINDOWS | User Name: AMD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
PRC - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe
PRC - [2011.01.12 16:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
PRC - [2009.08.16 14:01:16 | 000,222,968 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (SafeList) ==========
MOD - [2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
MOD - [2010.08.23 18:12:33 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011.01.12 16:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv)
SRV - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2009.08.16 14:01:16 | 000,222,968 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
========== Driver Services (SafeList) ==========
DRV - [2011.01.19 17:47:12 | 000,022,504 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135)
DRV - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010.12.21 15:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010.12.21 13:47:38 | 000,134,000 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw)
DRV - [2010.12.21 13:47:38 | 000,033,120 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis)
DRV - [2010.08.03 12:28:36 | 000,055,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi)
DRV - [2008.08.15 14:05:26 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2007.07.18 13:26:04 | 004,547,584 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006.11.27 16:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006.11.27 16:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2006.10.18 16:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2006.06.18 23:59:28 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2004.08.31 20:07:08 | 000,026,240 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2004.06.09 00:13:49 | 000,003,968 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyDelay.sys -- (ElbyDelay)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.cz"
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q="
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.03.30 16:20:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.03.30 06:35:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011.03.29 19:07:46 | 000,000,000 | ---D | M]
[2009.04.07 13:18:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Extensions
[2011.03.29 18:53:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions
[2010.06.29 20:31:18 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.03.29 18:53:32 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.03.28 20:56:28 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-1.xml
[2010.04.03 12:35:17 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-10.xml
[2010.05.03 08:34:50 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-11.xml
[2010.06.27 14:12:45 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-12.xml
[2010.06.28 16:12:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-13.xml
[2010.07.20 11:58:29 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-14.xml
[2010.07.25 14:05:03 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-15.xml
[2010.08.12 08:51:31 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-16.xml
[2010.09.10 13:41:45 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-17.xml
[2010.09.19 19:55:26 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-18.xml
[2010.10.26 17:13:39 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-19.xml
[2009.08.07 08:20:02 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-2.xml
[2010.11.12 14:23:30 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-20.xml
[2010.12.11 23:04:23 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-21.xml
[2011.03.29 15:27:43 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-22.xml
[2011.03.30 06:35:21 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-23.xml
[2011.03.30 16:23:54 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-24.xml
[2009.09.11 11:06:06 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-3.xml
[2009.10.29 08:56:04 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-4.xml
[2009.12.17 17:40:44 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-5.xml
[2010.01.07 09:19:03 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-6.xml
[2010.02.19 13:15:12 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-7.xml
[2010.03.18 08:52:03 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-8.xml
[2010.03.24 13:25:49 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-9.xml
[2009.08.31 18:26:44 | 000,000,944 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin.xml
[2011.03.29 18:51:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2009.09.09 22:49:46 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\AMD\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\3PLG0EL3.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\AMD\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\3PLG0EL3.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
[2010.03.18 08:51:13 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.03.18 08:51:13 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.03.18 08:51:13 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.03.18 08:51:13 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.03.18 08:51:13 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.03.30 14:33:14 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Podpora odkazu pro Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\NPJPI150_11.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.11.1 10.1.0.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\AMD\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\AMD\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lhacm - C:\WINDOWS\System32\lhacm.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (56308606093492224)
========== Files/Folders - Created Within 30 Days ==========
[2011.03.31 00:24:48 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
[2011.03.30 23:33:27 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler
[2011.03.30 23:31:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Dokumenty\Downloads
[2011.03.30 23:20:20 | 000,000,000 | ---D | C] -- C:\rsit
[2011.03.30 22:26:48 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\AMD\Recent
[2011.03.30 16:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\Help
[2011.03.30 16:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\Help
[2011.03.30 14:49:14 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011.03.30 14:36:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011.03.30 14:28:06 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011.03.30 06:54:14 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.03.30 06:38:52 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll
[2011.03.30 06:38:52 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll
[2011.03.30 06:38:40 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comctl32.dll
[2011.03.30 06:38:13 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndproxy.sys
[2011.03.30 06:36:13 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2011.03.29 20:13:54 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\IECompatCache
[2011.03.29 20:13:19 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\PrivacIE
[2011.03.29 19:08:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\ESET
[2011.03.29 19:08:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\ESET
[2011.03.29 19:08:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\VDLL.DLL
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\RUNDL132.EXE
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\logo_1.exe
[2011.03.29 17:15:58 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2011.03.29 17:07:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011.03.29 16:50:28 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\IETldCache
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\cs
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2011.03.29 16:48:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2011.03.29 16:45:59 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2011.03.29 16:45:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2011.03.29 16:34:12 | 000,022,504 | ---- | C] (CPUID) -- C:\WINDOWS\System32\drivers\cpuz135_x32.sys
[2011.03.29 16:34:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\CPUID
[2011.03.29 16:34:11 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID
[2011.03.29 16:21:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011.03.29 16:21:09 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2011.03.29 16:20:35 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011.03.29 16:10:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2011.03.29 16:00:11 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.03.29 15:23:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
[2011.03.29 15:23:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011.03.29 15:23:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.03.29 15:23:13 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011.03.29 15:23:13 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.03.29 15:10:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011.03.21 00:13:38 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
[2011.03.31 00:22:31 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011.03.31 00:22:29 | 000,081,496 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011.03.31 00:22:24 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.03.31 00:05:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011.03.30 23:33:28 | 000,001,585 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Defraggler.lnk
[2011.03.30 23:01:42 | 000,041,472 | ---- | M] () -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.03.30 14:50:18 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011.03.30 14:33:14 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011.03.30 14:28:08 | 000,000,339 | RHS- | M] () -- C:\boot.ini
[2011.03.30 06:53:25 | 000,103,824 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.03.30 06:47:24 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.03.30 06:47:24 | 000,429,024 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2011.03.30 06:47:24 | 000,078,052 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2011.03.30 06:47:24 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.03.29 20:04:51 | 000,003,617 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\pinfect.zip
[2011.03.29 19:21:59 | 004,496,718 | ---- | M] () -- C:\WINDOWS\REGBK00.ZIP
[2011.03.29 19:18:17 | 000,000,223 | ---- | M] () -- C:\Boot.bak
[2011.03.29 18:52:30 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.03.29 17:15:57 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2011.03.29 17:07:07 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.03.29 16:48:02 | 000,250,576 | RHS- | M] () -- C:\ntldr
[2011.03.29 16:13:28 | 000,002,246 | ---- | M] () -- C:\Documents and Settings\AMD\Plocha\Google Chrome.lnk
[2011.03.29 16:00:13 | 000,000,687 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.03.23 20:59:07 | 000,050,479 | ---- | M] () -- C:\WINDOWS\System32\QuickTime.qtp
[2011.03.22 13:09:54 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2011.03.02 13:59:01 | 036,278,136 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\skoleni praxe, prezentace.mp3
[2011.03.02 13:58:57 | 057,629,633 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\o sjednani schuzky.wma
[2011.03.02 13:55:26 | 035,687,003 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\Petr_Partner_28_únor_2011.wma
[2011.03.02 13:47:39 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\prezentace vzorova, nahravka.mp3
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.03.30 23:33:28 | 000,001,585 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Defraggler.lnk
[2011.03.30 14:28:08 | 000,000,223 | ---- | C] () -- C:\Boot.bak
[2011.03.30 14:28:06 | 000,261,312 | RHS- | C] () -- C:\cmldr
[2011.03.29 19:54:15 | 000,003,617 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\pinfect.zip
[2011.03.29 19:21:23 | 004,496,718 | ---- | C] () -- C:\WINDOWS\REGBK00.ZIP
[2011.03.29 16:00:13 | 000,000,687 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.03.02 13:50:43 | 036,278,136 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\skoleni praxe, prezentace.mp3
[2011.03.02 13:47:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\prezentace vzorova, nahravka.mp3
[2011.03.02 13:47:31 | 035,687,003 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\Petr_Partner_28_únor_2011.wma
[2011.03.02 13:47:25 | 057,629,633 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\o sjednani schuzky.wma
[2009.04.07 13:18:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009.04.07 13:07:51 | 001,883,127 | ---- | C] () -- C:\Program Files\TeamSpeak2CZ.exe
[2009.04.04 21:42:24 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2009.01.19 23:21:10 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009.01.15 10:37:10 | 000,001,462 | ---- | C] () -- C:\WINDOWS\ADStahovac.INI
[2008.12.28 20:38:07 | 000,000,079 | ---- | C] () -- C:\WINDOWS\101_asb.ini
[2008.12.28 20:37:18 | 000,002,330 | ---- | C] () -- C:\WINDOWS\disney.ini
[2008.09.03 17:11:44 | 000,041,472 | ---- | C] () -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.09.02 21:14:00 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.08.15 14:04:22 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2008.08.15 13:59:40 | 000,001,732 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2008.08.15 13:50:11 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008.08.15 13:49:00 | 000,103,824 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008.08.15 12:04:45 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008.08.15 12:00:24 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006.10.31 08:35:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2006.10.31 08:35:00 | 001,622,016 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2006.10.31 08:35:00 | 001,470,464 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2006.10.31 08:35:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2006.10.31 08:35:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2006.10.31 08:35:00 | 000,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2006.10.31 08:35:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2006.10.31 08:35:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2006.10.31 08:35:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2006.10.31 08:35:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006.10.31 08:35:00 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2006.03.02 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006.03.02 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006.03.02 14:00:00 | 000,432,492 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006.03.02 14:00:00 | 000,429,024 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2006.03.02 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006.03.02 14:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2006.03.02 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006.03.02 14:00:00 | 000,078,052 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2006.03.02 14:00:00 | 000,067,448 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006.03.02 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006.03.02 14:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2006.03.02 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006.03.02 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006.03.02 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006.03.02 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006.03.02 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,778,240 | ---- | C] () -- C:\WINDOWS\System32\DivXsm.exe
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 003,223,552 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll
[2005.10.14 11:56:48 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll
[2005.10.14 11:56:48 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\TomsMoComp_ff.dll
[2005.10.14 11:56:48 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\libmpeg2_ff.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2005.10.14 11:56:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\MMAVILNG.exe
========== Custom Scans ==========
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"swg" = "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" -- [2008.09.20 13:19:47 | 000,068,856 | ---- | M] (Google Inc.)
< c:\windows\*.* /U >
[5 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]
< MD5 for: AGP440.SYS >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006.03.02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006.03.02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2006.03.02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\explorer.exe
[2006.03.02 14:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007.06.13 15:11:59 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=9B32416BD5988C97B6397CE0B02CAF97 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007.06.13 15:23:39 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=ED7B460B142A32097B8A8F6ECC941815 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\hal.dll
[2008.04.13 20:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2006.03.02 14:00:00 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: LSASS.EXE >
[2006.03.02 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006.03.02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys
< MD5 for: NETLOGON.DLL >
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2006.03.02 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: NVATA.SYS >
[2006.10.18 16:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) MD5=EF9941593B2E9B436F64A87DDB570D1A -- C:\WINDOWS\system32\drivers\nvata.sys
< MD5 for: SCECLI.DLL >
[2006.03.02 14:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2006.03.02 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2004.08.17 15:49:28 | 000,164,864 | ---- | M] (Microsoft Corporation) MD5=3C100B7FDB179B63829103DF6541337F -- C:\cmdcons\SYSTEM32\SMSS.EXE
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
< MD5 for: SVCHOST.EXE >
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2006.03.02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: USERINIT.EXE >
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2006.03.02 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2006.03.02 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2006.03.02 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< End of report >
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\AMD\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
959,00 Mb Total Physical Memory | 543,00 Mb Available Physical Memory | 57,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 86,00% Paging File free
Paging file location(s): C:\pagefile.sys 1440 2880 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,29 Gb Total Space | 7,71 Gb Free Space | 26,33% Space Free | Partition Type: NTFS
Drive E: | 119,75 Gb Total Space | 109,64 Gb Free Space | 91,56% Space Free | Partition Type: NTFS
Computer Name: WINDOWS | User Name: AMD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
PRC - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe
PRC - [2011.01.12 16:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
PRC - [2009.08.16 14:01:16 | 000,222,968 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
========== Modules (SafeList) ==========
MOD - [2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
MOD - [2010.08.23 18:12:33 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2011.01.12 16:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv)
SRV - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2009.08.16 14:01:16 | 000,222,968 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
========== Driver Services (SafeList) ==========
DRV - [2011.01.19 17:47:12 | 000,022,504 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135)
DRV - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010.12.21 15:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010.12.21 13:47:38 | 000,134,000 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw)
DRV - [2010.12.21 13:47:38 | 000,033,120 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis)
DRV - [2010.08.03 12:28:36 | 000,055,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi)
DRV - [2008.08.15 14:05:26 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2007.07.18 13:26:04 | 004,547,584 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006.11.27 16:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006.11.27 16:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2006.10.18 16:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2006.06.18 23:59:28 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2004.08.31 20:07:08 | 000,026,240 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2004.06.09 00:13:49 | 000,003,968 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyDelay.sys -- (ElbyDelay)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/website/
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-1202660629-583907252-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.cz"
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q="
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.03.30 16:20:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.03.30 06:35:02 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011.03.29 19:07:46 | 000,000,000 | ---D | M]
[2009.04.07 13:18:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Extensions
[2011.03.29 18:53:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions
[2010.06.29 20:31:18 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011.03.29 18:53:32 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.03.28 20:56:28 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-1.xml
[2010.04.03 12:35:17 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-10.xml
[2010.05.03 08:34:50 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-11.xml
[2010.06.27 14:12:45 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-12.xml
[2010.06.28 16:12:01 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-13.xml
[2010.07.20 11:58:29 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-14.xml
[2010.07.25 14:05:03 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-15.xml
[2010.08.12 08:51:31 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-16.xml
[2010.09.10 13:41:45 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-17.xml
[2010.09.19 19:55:26 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-18.xml
[2010.10.26 17:13:39 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-19.xml
[2009.08.07 08:20:02 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-2.xml
[2010.11.12 14:23:30 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-20.xml
[2010.12.11 23:04:23 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-21.xml
[2011.03.29 15:27:43 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-22.xml
[2011.03.30 06:35:21 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-23.xml
[2011.03.30 16:23:54 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-24.xml
[2009.09.11 11:06:06 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-3.xml
[2009.10.29 08:56:04 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-4.xml
[2009.12.17 17:40:44 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-5.xml
[2010.01.07 09:19:03 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-6.xml
[2010.02.19 13:15:12 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-7.xml
[2010.03.18 08:52:03 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-8.xml
[2010.03.24 13:25:49 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin-9.xml
[2009.08.31 18:26:44 | 000,000,944 | ---- | M] () -- C:\Documents and Settings\AMD\Data aplikací\Mozilla\Firefox\Profiles\3plg0el3.default\searchplugins\icqplugin.xml
[2011.03.29 18:51:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2009.09.09 22:49:46 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\AMD\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\3PLG0EL3.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\AMD\DATA APLIKACĂ\MOZILLA\FIREFOX\PROFILES\3PLG0EL3.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
[2010.03.18 08:51:13 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.03.18 08:51:13 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.03.18 08:51:13 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.03.18 08:51:13 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.03.18 08:51:13 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2011.03.30 14:33:14 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Podpora odkazu pro Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1202660629-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\NPJPI150_11.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe (ICQ, LLC.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.11.1 10.1.0.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\AMD\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\AMD\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lhacm - C:\WINDOWS\System32\lhacm.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (56308606093492224)
========== Files/Folders - Created Within 30 Days ==========
[2011.03.31 00:24:48 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
[2011.03.30 23:33:27 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler
[2011.03.30 23:31:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Dokumenty\Downloads
[2011.03.30 23:20:20 | 000,000,000 | ---D | C] -- C:\rsit
[2011.03.30 22:26:48 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\AMD\Recent
[2011.03.30 16:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\Help
[2011.03.30 16:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\Help
[2011.03.30 14:49:14 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011.03.30 14:36:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2011.03.30 14:28:06 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2011.03.30 06:54:14 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.03.30 06:38:52 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll
[2011.03.30 06:38:52 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll
[2011.03.30 06:38:40 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comctl32.dll
[2011.03.30 06:38:13 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndproxy.sys
[2011.03.30 06:36:13 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2011.03.29 20:13:54 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\IECompatCache
[2011.03.29 20:13:19 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\PrivacIE
[2011.03.29 19:08:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\ESET
[2011.03.29 19:08:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\ESET
[2011.03.29 19:08:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
[2011.03.29 19:07:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\VDLL.DLL
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\RUNDL132.EXE
[2011.03.29 18:34:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\logo_1.exe
[2011.03.29 17:15:58 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2011.03.29 17:07:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011.03.29 16:50:28 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\AMD\IETldCache
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\cs
[2011.03.29 16:50:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2011.03.29 16:48:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2011.03.29 16:45:59 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2011.03.29 16:45:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2011.03.29 16:34:12 | 000,022,504 | ---- | C] (CPUID) -- C:\WINDOWS\System32\drivers\cpuz135_x32.sys
[2011.03.29 16:34:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\CPUID
[2011.03.29 16:34:11 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID
[2011.03.29 16:21:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011.03.29 16:21:09 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2011.03.29 16:20:35 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011.03.29 16:10:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\AVAST Software
[2011.03.29 16:00:11 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.03.29 15:23:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\AMD\Data aplikací\Malwarebytes
[2011.03.29 15:23:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011.03.29 15:23:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.03.29 15:23:13 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011.03.29 15:23:13 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.03.29 15:10:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011.03.21 00:13:38 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.03.31 00:23:41 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\AMD\Plocha\OTL.exe
[2011.03.31 00:22:31 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011.03.31 00:22:29 | 000,081,496 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011.03.31 00:22:24 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.03.31 00:05:00 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011.03.30 23:33:28 | 000,001,585 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Defraggler.lnk
[2011.03.30 23:01:42 | 000,041,472 | ---- | M] () -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.03.30 14:50:18 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011.03.30 14:33:14 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011.03.30 14:28:08 | 000,000,339 | RHS- | M] () -- C:\boot.ini
[2011.03.30 06:53:25 | 000,103,824 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011.03.30 06:47:24 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011.03.30 06:47:24 | 000,429,024 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2011.03.30 06:47:24 | 000,078,052 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2011.03.30 06:47:24 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011.03.29 20:04:51 | 000,003,617 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\pinfect.zip
[2011.03.29 19:21:59 | 004,496,718 | ---- | M] () -- C:\WINDOWS\REGBK00.ZIP
[2011.03.29 19:18:17 | 000,000,223 | ---- | M] () -- C:\Boot.bak
[2011.03.29 18:52:30 | 000,002,504 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011.03.29 17:15:57 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\WINDOWS\System32\eEmpty.exe
[2011.03.29 17:07:07 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011.03.29 16:48:02 | 000,250,576 | RHS- | M] () -- C:\ntldr
[2011.03.29 16:13:28 | 000,002,246 | ---- | M] () -- C:\Documents and Settings\AMD\Plocha\Google Chrome.lnk
[2011.03.29 16:00:13 | 000,000,687 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.03.23 20:59:07 | 000,050,479 | ---- | M] () -- C:\WINDOWS\System32\QuickTime.qtp
[2011.03.22 13:09:54 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2011.03.02 13:59:01 | 036,278,136 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\skoleni praxe, prezentace.mp3
[2011.03.02 13:58:57 | 057,629,633 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\o sjednani schuzky.wma
[2011.03.02 13:55:26 | 035,687,003 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\Petr_Partner_28_únor_2011.wma
[2011.03.02 13:47:39 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\AMD\Dokumenty\prezentace vzorova, nahravka.mp3
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.03.30 23:33:28 | 000,001,585 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Defraggler.lnk
[2011.03.30 14:28:08 | 000,000,223 | ---- | C] () -- C:\Boot.bak
[2011.03.30 14:28:06 | 000,261,312 | RHS- | C] () -- C:\cmldr
[2011.03.29 19:54:15 | 000,003,617 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\pinfect.zip
[2011.03.29 19:21:23 | 004,496,718 | ---- | C] () -- C:\WINDOWS\REGBK00.ZIP
[2011.03.29 16:00:13 | 000,000,687 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2011.03.02 13:50:43 | 036,278,136 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\skoleni praxe, prezentace.mp3
[2011.03.02 13:47:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\prezentace vzorova, nahravka.mp3
[2011.03.02 13:47:31 | 035,687,003 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\Petr_Partner_28_únor_2011.wma
[2011.03.02 13:47:25 | 057,629,633 | ---- | C] () -- C:\Documents and Settings\AMD\Dokumenty\o sjednani schuzky.wma
[2009.04.07 13:18:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009.04.07 13:07:51 | 001,883,127 | ---- | C] () -- C:\Program Files\TeamSpeak2CZ.exe
[2009.04.04 21:42:24 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2009.01.19 23:21:10 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2009.01.15 10:37:10 | 000,001,462 | ---- | C] () -- C:\WINDOWS\ADStahovac.INI
[2008.12.28 20:38:07 | 000,000,079 | ---- | C] () -- C:\WINDOWS\101_asb.ini
[2008.12.28 20:37:18 | 000,002,330 | ---- | C] () -- C:\WINDOWS\disney.ini
[2008.09.03 17:11:44 | 000,041,472 | ---- | C] () -- C:\Documents and Settings\AMD\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.09.02 21:14:00 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008.08.15 14:04:22 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2008.08.15 13:59:40 | 000,001,732 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2008.08.15 13:50:11 | 000,004,249 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008.08.15 13:49:00 | 000,103,824 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008.08.15 12:04:45 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008.08.15 12:00:24 | 000,021,812 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2006.10.31 08:35:00 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2006.10.31 08:35:00 | 001,622,016 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2006.10.31 08:35:00 | 001,470,464 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2006.10.31 08:35:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2006.10.31 08:35:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2006.10.31 08:35:00 | 000,581,632 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2006.10.31 08:35:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2006.10.31 08:35:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2006.10.31 08:35:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2006.10.31 08:35:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006.10.31 08:35:00 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2006.03.02 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006.03.02 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006.03.02 14:00:00 | 000,432,492 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006.03.02 14:00:00 | 000,429,024 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2006.03.02 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006.03.02 14:00:00 | 000,269,162 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2006.03.02 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006.03.02 14:00:00 | 000,078,052 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2006.03.02 14:00:00 | 000,067,448 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006.03.02 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006.03.02 14:00:00 | 000,032,072 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2006.03.02 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006.03.02 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006.03.02 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006.03.02 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006.03.02 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,778,240 | ---- | C] () -- C:\WINDOWS\System32\DivXsm.exe
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 003,223,552 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll
[2005.10.14 11:56:48 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll
[2005.10.14 11:56:48 | 000,266,240 | ---- | C] () -- C:\WINDOWS\System32\TomsMoComp_ff.dll
[2005.10.14 11:56:48 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\libmpeg2_ff.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
[2005.10.14 11:56:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\MMAVILNG.exe
========== Custom Scans ==========
< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"swg" = "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" -- [2008.09.20 13:19:47 | 000,068,856 | ---- | M] (Google Inc.)
< c:\windows\*.* /U >
[5 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]
< MD5 for: AGP440.SYS >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:AGP440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\agp440.sys
[2008.04.13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
< MD5 for: ATAPI.SYS >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\atapi.sys
[2008.04.13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006.03.02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006.03.02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\eventlog.dll
[2008.04.14 05:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2006.03.02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: EXPLORER.EXE >
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008.04.14 05:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\explorer.exe
[2006.03.02 14:00:00 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007.06.13 15:11:59 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=9B32416BD5988C97B6397CE0B02CAF97 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007.06.13 15:23:39 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=ED7B460B142A32097B8A8F6ECC941815 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2006.03.02 14:00:00 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2011.03.29 16:45:55 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\sp3.cab:hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2008.04.13 20:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\hal.dll
[2008.04.13 20:31:28 | 000,131,840 | ---- | M] (Microsoft Corporation) MD5=6F61D3287A6A15A08A9433222C09D17F -- C:\WINDOWS\system32\HAL.DLL
[2006.03.02 14:00:00 | 000,131,968 | ---- | M] (Microsoft Corporation) MD5=F9A0F579FC18036FFDD9E26E0D268CCD -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
< MD5 for: LSASS.EXE >
[2006.03.02 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\lsass.exe
[2008.04.14 05:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe
< MD5 for: NDIS.SYS >
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\ndis.sys
[2008.04.13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006.03.02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys
< MD5 for: NETLOGON.DLL >
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009.02.06 20:47:20 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=1F43B8C0F4C767FBED89711C30E704D9 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2006.03.02 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\netlogon.dll
[2008.04.14 05:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll
< MD5 for: NVATA.SYS >
[2006.10.18 16:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) MD5=EF9941593B2E9B436F64A87DDB570D1A -- C:\WINDOWS\system32\drivers\nvata.sys
< MD5 for: SCECLI.DLL >
[2006.03.02 14:00:00 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\scecli.dll
[2008.04.14 05:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SMSS.EXE >
[2006.03.02 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2004.08.17 15:49:28 | 000,164,864 | ---- | M] (Microsoft Corporation) MD5=3C100B7FDB179B63829103DF6541337F -- C:\cmdcons\SYSTEM32\SMSS.EXE
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\smss.exe
[2008.04.14 05:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe
< MD5 for: SVCHOST.EXE >
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\svchost.exe
[2008.04.14 05:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2006.03.02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
< MD5 for: USERINIT.EXE >
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\userinit.exe
[2008.04.14 05:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2006.03.02 14:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2006.03.02 14:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\winlogon.exe
[2008.04.14 05:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\system32\winlogon.exe
< MD5 for: WS2_32.DLL >
[2006.03.02 14:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\SoftwareDistribution\Download\1dab8d41b73a912c39f7d3fd77a4df39\ws2_32.dll
[2008.04.14 05:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON
< End of report >
Člověk se pořád učí.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 103 hostů