Prosím o kontrolu logu z HJT

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod jaro3 » 09 bře 2009 19:25

Stahni si SREng
- rozbal na plochu a spust ho
- zvol "zvol Smart Scan", nech nastaveni tak jak je
- zvol "Verify the digital signature of process modules"
- klik na "Scan"
- klik na Save Reports, uloz log na plochu a cely obsah logu zkopirujt sem
- rozbal na plochu a spust ho
- zvol "zvol Smart Scan", nech nastaveni tak jak je
- zvol "Verify the digital signature of process modules"
- klik na "Scan"
- klik na Save Reports, uloz log na plochu a cely obsah logu zkopiruj sem

- Pak klikni na možnost System Repair
- Na první záložce File Associations pokud bude zatrhnutý/vybraný některý čtvereček z výpisu, tak klikni dole na tlačítko Repair

Popiš jakého máš poskytovatele připojení , čím se připojuješ (sít. karta + modem, modem do USB, wifi atd).
Jaké prohlížeče.Natstavení připojení podle poskytovatele.....můžeš mít vadný modem , sit. kartu , rozhraní.
Nemáš ve správci zařízení nějaké vykřičníky či otazníky?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
Phate
nováček
Příspěvky: 36
Registrován: březen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod Phate » 09 bře 2009 19:37

tak tady je ten log:
Používám připojení od O2...modem by neměl být vadný, protože přes notebook jede v pohodě, prohližeč Maxthon2, popř. IE
při kokontrole Repair neby zatrhnutý žádný čtvereček

Kód: Vybrat vše


2009-03-09,19:29:29

System Repair Engineer 2.7.0.1210
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed

Follow item(s) have been selected:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Running Processes (Including process model information)
    File Associations
    Winsock Provider
    Autorun.Inf
    HOSTS File
    Process Privileges Scan
    Scheduled Tasks
    API HOOK
    Hidden Process


Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <CTFMON.EXE><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Publisher]
    <ICQ><"C:\Program Files\ICQ6\ICQ.exe" silent>  [File is missing]
    <MSMSGS><"C:\Program Files\Messenger\msmsgs.exe" /background>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <NVRaidService><C:\WINDOWS\system32\nvraidservice.exe>  [NVIDIA Corporation]
    <SoundMan><SOUNDMAN.EXE>  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
    <NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [NVIDIA Corporation]
    <nwiz><nwiz.exe /install>  [NVIDIA Corporation]
    <NvMediaCenter><RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit>  [NVIDIA Corporation]
    <Lexmark X1100 Series><"C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe">  [Lexmark International, Inc.]
    <WinFast Schedule><C:\Program Files\WinFast\WFTVFM\WFWIZ.exe>  [Leadtek Research Inc.]
    <Sony Ericsson PC Suite><"C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions>  [Sony Ericsson Mobile Communications AB]
    <Adobe Reader Speed Launcher><"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe">  [(Verified)"Adobe Systems, Incorporated"]
    <iTunesHelper><"C:\Program Files\iTunes\iTunesHelper.exe">  [(Verified)Apple Inc.]
    <egui><"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice>  [(Verified)"ESET, spol. s r.o."]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Windows Publisher]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Publisher]
    <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Publisher]
    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Publisher]
    <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
    <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
    <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
    <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
    <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
    <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
    <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
    <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
    <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Publisher]
    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
    <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
    <Vlastní nastavení prohlížeče><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    <Adresář 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
    <Aktualizace plochy systému Windows><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Publisher]

==================================
Startup Folders
[Microsoft Office]
  <C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Microsoft Office.lnk --> C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [Microsoft Corporation]><N>
[OpenOffice.org 2.4]
  <C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění\OpenOffice.org 2.4.lnk --> C:\PROGRA~1\OPENOF~1.4\program\QUICKS~1.EXE [N/A]><N>

==================================
Services
[Apple Mobile Device / Apple Mobile Device][Running/Auto Start]
  <"C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"><Apple Inc.>
[Bonjour Service / Bonjour Service][Running/Auto Start]
  <"C:\Program Files\Bonjour\mDNSResponder.exe"><Apple Inc.>
[Eset HTTP Server / EhttpSrv][Stopped/Manual Start]
  <"C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe"><ESET>
[Eset Service / ekrn][Running/Auto Start]
  <"C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe"><ESET>
[Přístup k zařízením standardu HID / HidServ][Stopped/Disabled]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[iPod Service / iPod Service][Running/Manual Start]
  <"C:\Program Files\iPod\bin\iPodService.exe"><Apple Inc.>
[LexBce Server / LexBceS][Running/Auto Start]
  <C:\WINDOWS\system32\LEXBCES.EXE><Lexmark International, Inc.>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
  <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[Ulead Burning Helper / UleadBurningHelper][Running/Auto Start]
  <C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe><Ulead Systems, Inc.>

==================================
Drivers
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[ASFWHide / ASFWHide][Stopped/Manual Start]
  <\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ASFWHide><N/A>
[ASUS Virtual Video Capture Device Driver / asusgsb][Stopped/System Start]
  <system32\drivers\asusgsb.sys><N/A>
[catchme / catchme][Stopped/Manual Start]
  <\??\C:\ComboFix\catchme.sys><N/A>
[WinFast CX2388x WDM Video Capture. / CX23880][Running/Auto Start]
  <system32\drivers\cx88vid.sys><Leadtek Research Inc.>
[WinFast CX2388x WDM Crossbar. / CXAVXBAR][Running/Manual Start]
  <system32\drivers\cxavxbar.sys><Leadtek Research Inc.>
[WinFast CX2388x WDM TVTuner. / CXTUNE][Running/Auto Start]
  <system32\drivers\CX88TUNE.sys><Leadtek Research Inc.>
[eamon / eamon][Running/Auto Start]
  <system32\DRIVERS\eamon.sys><ESET>
[easdrv / easdrv][Running/System Start]
  <system32\DRIVERS\easdrv.sys><ESET>
[EIO / EIO][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\EIO.sys><ASUSTeK Computer Inc.>
[epfwtdir / epfwtdir][Running/System Start]
  <system32\DRIVERS\epfwtdir.sys><N/A>
[GEAR ASPI Filter Driver / GEARAspiWDM][Running/Manual Start]
  <system32\DRIVERS\GEARAspiWDM.sys><GEAR Software Inc.>
[Hardlock / Hardlock][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\hardlock.sys><Aladdin Knowledge Systems Ltd.>
[Haspnt / Haspnt][Running/Auto Start]
  <\??\C:\WINDOWS\system32\drivers\Haspnt.sys><Aladdin Knowledge Systems>
[HSFHWBS2 / HSFHWBS2][Running/Manual Start]
  <system32\DRIVERS\HSFBS2S2.sys><Conexant Systems, Inc.>
[HSF_DP / HSF_DP][Running/Manual Start]
  <system32\DRIVERS\HSFDPSP2.sys><Conexant Systems, Inc.>
[Sony Ericsson 750 driver (WDM) / k750bus][Stopped/Manual Start]
  <system32\DRIVERS\k750bus.sys><MCCI>
[Sony Ericsson 750 USB WMC Modem Filter / k750mdfl][Stopped/Manual Start]
  <system32\DRIVERS\k750mdfl.sys><MCCI>
[Sony Ericsson 750 USB WMC Modem Drivers / k750mdm][Stopped/Manual Start]
  <system32\DRIVERS\k750mdm.sys><MCCI>
[Sony Ericsson 750 USB WMC Device Management Drivers / k750mgmt][Stopped/Manual Start]
  <system32\DRIVERS\k750mgmt.sys><MCCI>
[Sony Ericsson 750 USB WMC OBEX Interface Drivers / k750obex][Stopped/Manual Start]
  <system32\DRIVERS\k750obex.sys><MCCI>
[mdmxsdk / mdmxsdk][Running/Auto Start]
  <system32\DRIVERS\mdmxsdk.sys><Conexant>
[nv / nv][Running/Manual Start]
  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[nvatabus / nvatabus][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\nvatabus.sys><NVIDIA Corporation>
[NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start]
  <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
[NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start]
  <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
[NVIDIA NForce(tm) ATA RAID Class Driver / nvraid][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\nvraid.sys><NVIDIA Corporation>
[NVIDIA nForce AGP Bus Filter / nv_agp][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\nv_agp.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Secdrv / Secdrv][Stopped/Manual Start]
  <system32\DRIVERS\secdrv.sys><N/A>
[ULCDRHlp / ULCDRHlp][Running/Manual Start]
  <System32\Drivers\ULCDRHlp.sys><Ulead Systems, Inc.>
[ASUS Video3D Service / Video3D][Stopped/Manual Start]
  <System32\Drivers\Video3D.sys><N/A>
[WinFast TV2000/DV2000 WDM Video Capture. / WF23880][Stopped/Auto Start]
  <system32\drivers\wf88vcap.sys><N/A>
[WinFast TV2000/DV2000 WDM Crossbar. / WF88XBAR][Stopped/Auto Start]
  <system32\drivers\WF88XBAR.sys><Copyright @2000-2006 Leadtek Research Inc.>
[WFIOCTL / WFIOCTL][Running/Manual Start]
  <\??\C:\Program Files\WinFast\WFTVFM\WFIOCTL.SYS><Leadtek Research Inc.>
[winachsf / winachsf][Running/Manual Start]
  <system32\DRIVERS\HSFCXTS2.sys><Conexant Systems, Inc.>

==================================
Browser Add-ons
[Adobe PDF Link Helper]
  {18DF081C-E8AD-4283-A596-FA578C2EBDC3} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems Incorporated>
[ICQ6]
  {E59EB121-F339-4851-A3BA-FE49C35617C2} <C:\Program Files\ICQ6\ICQ.exe, (Signed) ICQ, Inc.>
[Messenger]
  {FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, (Signed) Microsoft Corporation>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, (Signed) Adobe Systems, Inc.>
[]
  {055FD26D-3A88-4E15-963D-DC8493744B1D} <, >
[Adobe PDF Reader Link Helper]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll, (Signed) Adobe Systems Incorporated>
[Adobe PDF Link Helper]
  {18DF081C-E8AD-4283-A596-FA578C2EBDC3} <C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems Incorporated>
[Windows Media Player]
  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\msdxm.ocx, (Signed) Microsoft Corporation>
[]
  {855F3B16-6D32-4FE6-8A56-BBB695989046} <, >
[Webový prohlížeč společnosti Microsoft]
  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, (Signed) Microsoft Corporation>
[SearchAssistantOC]
  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, (Signed) N/A>
[]
  {D187A56B-A33F-4CBE-9D77-459FC0BAE012} <, >
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, (Signed) Adobe Systems, Inc.>
[]
  {E59EB121-F339-4851-A3BA-FE49C35617C2} <, >
[]
  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[E&xportovat do aplikace Microsoft Excel]
  <res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000, N/A>

==================================
Running Processes
[PID: 616 / SYSTEM][\SystemRoot\System32\smss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 664 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 688 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 732 / SYSTEM][C:\WINDOWS\system32\services.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 744 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 900 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 960 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]
[PID: 1052 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]
[PID: 1104 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1252 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1584 / Administrator][C:\WINDOWS\Explorer.EXE]  [(Verified) Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\BROWSEUI.dll]  [Společnost Microsoft, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\OpenOffice.org 2.4\program\stlport_vc7145.dll]  [STLport Consulting, Inc., 4.5.2003.0120]
    [C:\Program Files\OpenOffice.org 2.4\program\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 9.0.0.2008061100]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    [C:\Program Files\WinRAR\rarlng.dll]  [N/A, ]
    [C:\Program Files\Sony Ericsson\Mobile2\File Manager\fmgrgui.dll]  [Sony Ericsson Mobile Communications AB, 1, 3, 11, 0]
    [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Sony Ericsson\Mobile2\File Manager\fmgrguil.dll]  [Sony Ericsson Mobile Communications AB, 1, 3, 4, 0]
[PID: 1620 / SYSTEM][C:\WINDOWS\system32\LEXBCES.EXE]  [Lexmark International, Inc., 8.29]
    [C:\WINDOWS\system32\lexp2p32.dll]  [Lexmark International, Inc., 8.29]
    [C:\WINDOWS\system32\lex2kusb.dll]  [Lexmark International, Inc., 8.29]
[PID: 1640 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\WINDOWS\system32\LEXLMPM.DLL]  [Lexmark International, Inc., 8.29]
    [C:\WINDOWS\system32\LexBce.dll]  [Lexmark International, Inc., 8.29]
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\LXBKPP5C.dll]  [, 1.0.0.0]
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\WfxPrint2000.dll]  [BVRP Software, 5.05 built by: WinDDK]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]
    [C:\WINDOWS\system32\LXBKpwr.dll]  [Lexmark International, Inc., 0, 1, 61, 1]
[PID: 1656 / SYSTEM][C:\WINDOWS\system32\LEXPPS.EXE]  [Lexmark International, Inc., 8.29]
    [C:\WINDOWS\system32\LEXBCE.DLL]  [Lexmark International, Inc., 8.29]
[PID: 1824 / Administrator][C:\WINDOWS\system32\nvraidservice.exe]  [NVIDIA Corporation, 1.0.1]
    [C:\WINDOWS\system32\NvRaidSvENU.dll]  [NVIDIA Corporation, 1.0.1]
[PID: 1832 / Administrator][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.0.39]
[PID: 1876 / Administrator][C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe]  [Lexmark International, Inc., 0.1.1.1]
[PID: 1892 / Administrator][C:\Program Files\WinFast\WFTVFM\WFWIZ.exe]  [Leadtek Research Inc., 5.13.01.2005-2.71]
    [C:\WINDOWS\system32\msdmo.dll]  [, ]
[PID: 1932 / Administrator][C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe]  [Sony Ericsson Mobile Communications AB, 1.1.1.3]
    [C:\Program Files\Common Files\Teleca Shared\Telecalib_logging.dll]  [Teleca/Popwire AB, 1, 0, 2, 3]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Common Files\Teleca Shared\boost_log-vc71-mt-1_32.dll]  [N/A, ]
    [C:\WINDOWS\system32\MFC71U.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application LauncherLg.dll]  [Sony Ericsson Mobile Communications AB, 1.0.4.1]
    [C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application LauncherBmp.dll]  [Sony Ericsson Mobile Communications AB, 1.0.3.7]
    [C:\WINDOWS\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Common Files\Teleca Shared\TC Device Mgmt.dll]  [Teleca Software Solutions, 1, 0, 1, 1]
[PID: 1964 / Administrator][C:\Program Files\iTunes\iTunesHelper.exe]  [Apple Inc., 8.0.1.11]
    [C:\Program Files\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.DLL]  [Apple Inc., 8.0.1.11]
    [C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL]  [Apple Inc., 8.0.1.11]
    [C:\Program Files\QuickTime\QTSystem\QuickTime.qts]  [Apple Inc., 7.5.5 (990.7)]
    [C:\Program Files\Common Files\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll]  [Apple Inc., 185.7.0.1]
[PID: 1976 / Administrator][C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe]  [ESET, 3.0.669 ]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiScan.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiAmon.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiEmon.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiEpfw.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiUpdate.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\eguiMailPlugins.dll]  [ESET, 3.0.669 ]
[PID: 1992 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2008 / Administrator][C:\Program Files\ICQ6\ICQ.exe]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MKernel.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MUtils.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\ICQ6\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\ICQ6\coolcore49.dll]  [AOL LLC, 4.9.0.5711]
    [C:\Program Files\ICQ6\xprt6.dll]  [AOL LLC, 6.5.5.5711]
    [C:\Program Files\ICQ6\MDb.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MCoreLib.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MUIUtils.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MUICoreLib.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\AOLSvcMgr.dll]  [AOL LLC, 15.5.1.2]
    [c:\program files\icq6\services\boxelyRenderer\VER2_5_5_1\boxelyRenderer.dll]  [AOL LLC, 2.5.5.3]
    [C:\Program Files\ICQ6\ICQDevilImg.ocx]  [ICQ Ltd., 1, 0, 0, 1]
    [C:\Program Files\ICQ6\MBContainer.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MCore.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\MReport.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\Program Files\ICQ6\FlashPlayerControl.dll]  [Softanics, 2, 1, 7, 0]
    [C:\Program Files\ICQ6\MISB.dll]  [ICQ, Inc., 6.0.0.5011]
    [C:\Program Files\ICQ6\dBenderC14.dll]  [Red Bend Ltd., 4,0,0,22]
    [C:\Program Files\ICQ6\MUICore.dll]  [ICQ, Inc., 6.0.0.7015]
    [C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx]  [Adobe Systems, Inc., 9,0,124,0]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]
[PID: 2016 / Administrator][C:\Program Files\Messenger\msmsgs.exe]  [Microsoft Corporation, 4.7.3000]
[PID: 148 / Administrator][C:\Program Files\Lexmark X1100 Series\lxbkbmon.exe]  [Lexmark International, Inc., 0.1.1.1]
[PID: 240 / Administrator][C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe]  [Teleca Software Solutions AB, 0.0.1.48]
    [C:\Program Files\Common Files\Teleca Shared\Telecalib_logging.dll]  [Teleca/Popwire AB, 1, 0, 2, 3]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Common Files\Teleca Shared\boost_log-vc71-mt-1_32.dll]  [N/A, ]
    [C:\WINDOWS\system32\msxml4.dll]  [Microsoft Corporation, 4.20.9818.0]
[PID: 344 / Administrator][C:\Program Files\OpenOffice.org 2.4\program\soffice.exe]  [OpenOffice.org, 2.03.9286]
    [C:\Program Files\OpenOffice.org 2.4\program\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\OpenOffice.org 2.4\program\uwinapi.dll]  [Sun Microsystems, Inc., 2.03]
[PID: 420 / Administrator][C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN]  [OpenOffice.org, 2.03.9286]
    [C:\Program Files\OpenOffice.org 2.4\program\vcl680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\sot680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\tl680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\cppu3.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\OpenOffice.org 2.4\program\sal3.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\uwinapi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\stlport_vc7145.dll]  [STLport Consulting, Inc., 4.5.2003.0120]
    [C:\Program Files\OpenOffice.org 2.4\program\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\OpenOffice.org 2.4\program\vos3MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\basegfx680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\i18nisolang1MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\utl680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\salhelper3MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\comphelp4MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\cppuhelper3MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\ucbhelper4MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\icuuc36.dll]  [IBM Corporation and others, 3, 6, 0, 0]
    [C:\Program Files\OpenOffice.org 2.4\program\icudt36l.dll]  [IBM Corporation and others, 3, 6, 0, 0]
    [C:\Program Files\OpenOffice.org 2.4\program\svl680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\svt680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\tk680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\jvmfwk3.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\libxml2.dll]  [N/A, ]
    [C:\Program Files\OpenOffice.org 2.4\program\sfx680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\fwe680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\fwi680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\sb680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\xcr680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\j680mi_g.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\jvmaccess3MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\msci_uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\bootstrap.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\reg3.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\store3.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\unsafe_uno_uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\purpenvhelper3MSC.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\configmgr2.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\stocservices.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\sysmgr1.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\sax.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\localebe1.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\behelper.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\ucb1.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\fwl680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\ucpfile1.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\fwk680mi.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\oleautobridge.uno.dll]  [Sun Microsystems, Inc., 2.03]
    [C:\Program Files\OpenOffice.org 2.4\program\emser680mi.dll]  [Sun Microsystems, Inc., 2.03]
[PID: 588 / Administrator][C:\Program Files\Common Files\Teleca Shared\Generic.exe]  [Teleca Software Solutions, 1, 0, 3, 2]
    [C:\Program Files\Common Files\Teleca Shared\Telecalib_logging.dll]  [Teleca/Popwire AB, 1, 0, 2, 3]
    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Common Files\Teleca Shared\boost_log-vc71-mt-1_32.dll]  [N/A, ]
    [C:\WINDOWS\system32\msxml4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Program Files\Common Files\Teleca Shared\TC Device Mgmt.dll]  [Teleca Software Solutions, 1, 0, 1, 1]
    [C:\Program Files\Sony Ericsson\Mobile2\Device Manager\SpecificMPM.dll]  [SonyEricsson, 1, 0, 2, 1]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\anubisps.dll]  [N/A, ]
    [C:\Program Files\Common Files\Teleca Shared\SpecificUSB.dll]  [Popwire AB, 1, 2, 1, 1]
    [C:\Program Files\Common Files\Teleca Shared\tlib_log.dll]  [Popwire AB, 1, 0, 3, 3]
    [C:\Program Files\Common Files\Teleca Shared\boost_log-vc71-mt-1_33.dll]  [N/A, ]
[PID: 1116 / Administrator][C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe]  [Sony Ericsson Mobile Communications AB, 1, 2, 0,1183]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\ShowMfcDialog.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,115]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\anubisps.dll]  [N/A, ]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\cellphone_object.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,1187]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\ecsmoddata.dll]  [Sony Ericsson Mobile Communications AB, 1, 2, 0,302]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\msmeirsock_object.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,938]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\ms98irsock_object.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,983]
    [C:\WINDOWS\system32\msxml4.dll]  [Microsoft Corporation, 4.20.9818.0]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\msirsock_object.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,995]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\cabmain.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,1219]
    [C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\xpbtsock_2_object.dll]  [Sony Ericsson Mobile Communications AB, 1, 0, 0,131]
[PID: 1392 / SYSTEM][C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe]  [Apple Inc., 2.11.32.0]
[PID: 1236 / SYSTEM][C:\Program Files\Bonjour\mDNSResponder.exe]  [Apple Inc., 1,0,5,11]
[PID: 1448 / SYSTEM][C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe]  [ESET, 3.0.669 ]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnScan.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnAmon.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnEmon.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnEpfw.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnUpdate.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\updater.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\ESET\ESET NOD32 Antivirus\ekrnMailPlugins.dll]  [ESET, 3.0.669 ]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]
[PID: 2080 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.10.7777]
[PID: 2132 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    [C:\Program Files\Lexmark X1100 Series\lxbkmcro.dll]  [Lexmark International, Inc., 0.1.1.1]
    [C:\Program Files\Lexmark X1100 Series\ConvDIB.dll]  [N/A, ]
    [C:\Program Files\Lexmark X1100 Series\rtscan.dll]  [Funai, 4, 0, 0, 2]
[PID: 2204 / SYSTEM][C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe]  [Ulead Systems, Inc., 1, 0, 0, 4]
[PID: 2936 / SYSTEM][C:\Program Files\iPod\bin\iPodService.exe]  [Apple Inc., 8.0.1.11]
    [C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.DLL]  [Apple Inc., 8.0.1.11]
    [C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL]  [Apple Inc., 8.0.1.11]
[PID: 2964 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3304 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3624 / Administrator][C:\WINDOWS\system32\wbem\unsecapp.exe]  [(Verified) Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2212 / Administrator][C:\WINDOWS\system32\wuauclt.exe]  [(Verified) Microsoft Corporation, 7.2.6001.788 (winmain_oob/wu_wsuswlc(wmbla).081016-1330)]
[PID: 596 / Administrator][C:\Documents and Settings\Administrator\Plocha\SREngLdr.EXE]  [Smallfrogs Studio, 2.7.0.1210]
[PID: 796 / Administrator][C:\Documents and Settings\Administrator\Plocha\SREb59ca382.EXE]  [Smallfrogs Studio, 2.7.0.1210]
    [C:\Program Files\Bonjour\mdnsNSP.dll]  [Apple Inc., 1,0,5,11]

==================================
File Associations
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock Provider
N/A

==================================
Autorun.Inf
N/A

==================================
HOSTS File
127.0.0.1       localhost

==================================
Process Privileges Scan
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1892, C:\PROGRAM FILES\WINFAST\WFTVFM\WFWIZ.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 420, C:\PROGRAM FILES\OPENOFFICE.ORG 2.4\PROGRAM\SOFFICE.BIN]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 588, C:\PROGRAM FILES\COMMON FILES\TELECA SHARED\GENERIC.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1116, C:\PROGRAM FILES\SONY ERICSSON\MOBILE2\MOBILE PHONE MONITOR\EPMWORKER.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 2080, C:\WINDOWS\SYSTEM32\NVSVC32.EXE]
Special Privileges Enabled: SeLoadDriverPrivilege [PID = 596, C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\PLOCHA\SRENGLDR.EXE]

==================================
Scheduled Tasks
[Enabled] Ad-Aware Update (Weekly).job
        C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

==================================
API HOOK
N/A

==================================
Hidden Process
N/A

==================================




budu zde opět zítra k večeru...díky moc

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod jaro3 » 09 bře 2009 19:47

Nemáš zač, log je O.K:
Tedy modem je v pořádku, nenapsal jsi zda se připojuje do siť. karty nebo do USB.
Ty otazníky a vykřičníky ve správci. Buď je vadná sítovka nebo USB rozhraní. Koukni tam ještě jednou. Jinak přeinstalovat sítovku či ovladače USB.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Phate
nováček
Příspěvky: 36
Registrován: březen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod Phate » 10 bře 2009 11:22

tak modem je zapojený do síťové karty a ovladače jsem už přeinstalovat zkousel...a nic :-( ...síťovka je integrovaná na desce. Jo a ve správci žádné vykřičníky nejsou...Existuje nejaký soft, který by zjistil zda je vadná nebo ne...??

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod jaro3 » 10 bře 2009 13:56

Síťovka svítí(LED vzadu) ?
Zkus Everest Home Edition, jinak na funkčnost žádný soft není.
Koukni do vlastností, zda máš správnou MAC adresu, i když jí na O2 nepotřebuješ.
Start-spustit-napiš: cmd - v černém okně napiš: ipconfig /all ( před lomítkem je mezera). MAC vypsaná jako fyzická adresa zařízení.
Koukni do BIOSU , zda máš LAN kartu povolenu (ENABLED).
Jinak zkusit půjčit si sitovku do PCI a vyzkoušet. Dial-a-fix jsi vyzkoušel, tak mě nic nenapadá.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Phate
nováček
Příspěvky: 36
Registrován: březen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod Phate » 10 bře 2009 18:16

tak ta kontrolka na síťovce nesvítí, v biosu je povolena...jen me zaráží, že když kabel zastrčím do síť. karty tak se mi objeví vpravo dole ikonka "připojeno k místní síti",ale v prohlížeči prostě nic...dlouho načítá domovskou stránku a pak stránka neze zobrazit...asi budu muset přeintalovat systém :-(

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod jaro3 » 10 bře 2009 18:39

Máš tam správnou MAC adresu , jak jsem psal?
Přeinstalace systému Ti může pomoci , ale taky nemusí, zkusil bych sitovku do PCI.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Phate
nováček
Příspěvky: 36
Registrován: březen 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod Phate » 10 bře 2009 18:47

jak poznám, že je ta MAC adresa správná?? popř. jak ji změním??

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43339
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu z HJT

Příspěvekod jaro3 » 10 bře 2009 20:04

Špatně jsem se vyjáfřil, jestli se Ti tam ukazují všechny údaje , jak jsem psal výše, koukni sem:
http://www.orbisnet.cz/navody.html#1
nic neměň., jen porovnej s tím obrázkem v odkazu ( MAC máš samožřejmě jinou).
Zda se Ti tam vůbec ukazuje.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 9 hostů