Advertisement
Guest User

RSIT log.txt (2)

a guest
Jul 5th, 2014
249
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.52 KB | None | 0 0
  1. Logfile of random's system information tool 1.06 (written by random/random)
  2. Run by Marek at 2014-07-05 18:18:47
  3. Systém Microsoft Windows XP Professional Service Pack 3
  4. System drive C: has 100 GB (73%) free of 136 GB
  5. Total RAM: 2047 MB (50% free)
  6.  
  7. HijackThis download failed
  8.  
  9. ======Scheduled tasks folder======
  10.  
  11. C:\WINDOWS\tasks\avast! Emergency Update.job
  12. C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
  13. C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
  14. C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
  15.  
  16. ======Registry dump======
  17.  
  18. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
  19. Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-14 462760]
  20.  
  21. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
  22. avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-04-16 597816]
  23.  
  24. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
  25. Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
  26.  
  27. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DDA57003-0068-4ed2-9D32-4D1EC707D94D}]
  28. Microsoft Web Test Recorder 10.0 Helper - C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2010-03-19 61360]
  29.  
  30. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  31. "IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
  32. "PHIME2002ASync"=C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
  33. "PHIME2002A"=C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
  34. "BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
  35. "RaidTool"=C:\Program Files\VIA\RAID\raid_tool.exe [2004-10-11 589824]
  36. "AudioDeck"=C:\Program Files\VIAudioi\SBADeck\ADeck.exe [2013-01-26 450560]
  37. "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-04 98304]
  38. "PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2012-12-09 336992]
  39. "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
  40. "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
  41. "NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
  42. "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-04-16 3854640]
  43.  
  44. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  45. "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
  46. "Clip2Net"=C:\Program Files\Clip2Net\clip2net.exe [2012-12-12 1887744]
  47. "DesktopOK"=M:\programy\DesktopOK\DesktopOK_Unicode.exe [2013-11-19 166912]
  48. "Akamai NetSession Interface"=C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe [2014-04-17 4672920]
  49. "Taskix"=C:\Program Files\Taskix\Taskix32.exe [2009-11-03 72192]
  50.  
  51. C:\Documents and Settings\Marek\Nabídka Start\Programy\Po spuštění
  52. XAMPP Control Panel.lnk - C:\xampp\xampp-control.exe
  53.  
  54. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
  55. C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
  56.  
  57. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
  58.  
  59. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
  60. "dontdisplaylastusername"=0
  61. "legalnoticecaption"=
  62. "legalnoticetext"=
  63. "shutdownwithoutlogon"=1
  64. "undockwithoutlogon"=1
  65.  
  66. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
  67. "NoDriveTypeAutoRun"=145
  68.  
  69. [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
  70. "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
  71. "C:\Documents and Settings\Marek\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Marek\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
  72. "C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
  73. "C:\Program Files\Java\jdk1.7.0_45\bin\java.exe"="C:\Program Files\Java\jdk1.7.0_45\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
  74. "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
  75. "C:\xampp\apache\bin\httpd.exe"="C:\xampp\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server"
  76. "C:\xampp\mysql\bin\mysqld.exe"="C:\xampp\mysql\bin\mysqld.exe:*:Enabled:mysqld"
  77. "C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
  78. "C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
  79. "C:\Program Files\QuadCoreM2\pack\core.bin"="C:\Program Files\QuadCoreM2\pack\core.bin:*:Enabled:core"
  80. "C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe"="C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Client"
  81. "M:\programy\FileZilla\filezilla.exe"="M:\programy\FileZilla\filezilla.exe:*:Enabled:FileZilla FTP Client"
  82. "M:\java\Eclipse (IDE)\eclipse\eclipse.exe"="M:\java\Eclipse (IDE)\eclipse\eclipse.exe:*:Enabled:eclipse"
  83. "C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
  84. "H:\C&C Generals Zero Hour\game.dat"="H:\C&C Generals Zero Hour\game.dat:*:Enabled:game"
  85. "H:\Hammer_MT2\HammerMT2 Server 1 2014\HammerMT2 Server 1 2014.exe"="H:\Hammer_MT2\HammerMT2 Server 1 2014\HammerMT2 Server 1 2014.exe:*:Enabled:HammerMT2 Server 1 2014"
  86. "H:\Hammer_MT2\HammerMT2 Server 1 Easter\HammerMT2 Server 1 Easter.exe"="H:\Hammer_MT2\HammerMT2 Server 1 Easter\HammerMT2 Server 1 Easter.exe:*:Enabled:HammerMT2 Server 1 Easter"
  87.  
  88. [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
  89. "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
  90. "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
  91.  
  92. [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
  93. shell\AutoRun\command - G:\autorun.exe
  94.  
  95. [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\N]
  96. shell\AutoRun\command - N:\noautorun.exe
  97.  
  98. [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\O]
  99. shell\AutoRun\command - O:\autorun.exe
  100.  
  101. [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\P]
  102. shell\AutoRun\command - P:\noautorun.exe
  103.  
  104.  
  105. ======List of files/folders created in the last 1 months======
  106.  
  107. 2014-07-05 17:43:37 ----A---- C:\WINDOWS\system32\sqlite3.dll
  108. 2014-07-05 17:42:53 ----D---- C:\AdwCleaner
  109. 2014-07-05 15:59:34 ----D---- C:\FRST
  110. 2014-07-05 15:53:29 ----D---- C:\rsit
  111. 2014-07-05 15:53:29 ----D---- C:\Program Files\trend micro
  112. 2014-07-03 10:45:50 ----D---- C:\WINDOWS\system32\NtmsData
  113. 2014-06-26 17:22:57 ----A---- C:\WINDOWS\worldbuilder.INI
  114. 2014-06-24 16:46:54 ----D---- C:\Program Files\3DO
  115. 2014-06-23 19:13:07 ----D---- C:\Program Files\Taskix
  116. 2014-06-14 15:48:06 ----D---- C:\Program Files\DesetiPrsty
  117.  
  118. ======List of files/folders modified in the last 1 months======
  119.  
  120. 2014-07-05 18:13:37 ----D---- C:\Documents and Settings\Marek\Data aplikací\Skype
  121. 2014-07-05 17:51:07 ----D---- C:\WINDOWS\system32
  122. 2014-07-05 17:51:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
  123. 2014-07-05 17:49:11 ----D---- C:\WINDOWS\Temp
  124. 2014-07-05 17:45:37 ----D---- C:\WINDOWS\system32\CatRoot2
  125. 2014-07-05 17:45:37 ----A---- C:\WINDOWS\SchedLgU.Txt
  126. 2014-07-05 17:12:00 ----D---- C:\Documents and Settings\Marek\Data aplikací\.minecraft
  127. 2014-07-05 16:01:08 ----D---- C:\WINDOWS
  128. 2014-07-05 15:53:29 ----D---- C:\Program Files
  129. 2014-07-05 15:42:50 ----D---- C:\WINDOWS\system32\config
  130. 2014-07-05 13:10:32 ----D---- C:\Documents and Settings\Marek\Data aplikací\FileZilla
  131. 2014-07-05 13:00:30 ----D---- C:\Program Files\The KMPlayer
  132. 2014-07-03 12:00:11 ----D---- C:\Documents and Settings\Marek\Data aplikací\uTorrent
  133. 2014-07-03 10:45:49 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
  134. 2014-07-01 20:31:03 ----D---- C:\WINDOWS\Prefetch
  135. 2014-07-01 18:50:12 ----HD---- C:\Program Files\InstallShield Installation Information
  136. 2014-07-01 18:50:08 ----SHD---- C:\WINDOWS\Installer
  137. 2014-07-01 18:44:08 ----RSD---- C:\WINDOWS\Fonts
  138. 2014-06-29 14:29:37 ----D---- C:\WINDOWS\system32\drivers
  139. 2014-06-14 22:32:47 ----D---- C:\Program Files\Common Files
  140. 2014-06-10 15:22:27 ----SD---- C:\WINDOWS\Tasks
  141. 2014-06-07 17:00:19 ----D---- C:\Documents and Settings\Marek\Data aplikací\PSpad
  142.  
  143. ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
  144.  
  145. R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2014-04-16 54832]
  146. R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-04-16 776976]
  147. R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-04-16 411552]
  148. R1 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2014-04-16 57672]
  149. R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2012-12-09 113168]
  150. R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-04-16 67824]
  151. R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
  152. R3 BthEnum;Služba Bluetooth Enumerator; C:\WINDOWS\System32\DRIVERS\BthEnum.sys [2008-04-14 17024]
  153. R3 BTHMODEM;Ovladač komunikace modemu Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-14 37888]
  154. R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
  155. R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
  156. R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
  157. R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
  158. R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
  159. R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
  160. R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2009-03-18 30336]
  161. R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
  162. R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
  163. R3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2013-01-26 202112]
  164. S3 aswTap;avast! SecureLine TAP Adapter v3; C:\WINDOWS\system32\DRIVERS\aswTap.sys [2014-03-14 35272]
  165. S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
  166. S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
  167. S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
  168. S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
  169. S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
  170. S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
  171. S3 VSPerfDrv100;Performance Tools Driver 10.0; \??\C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys []
  172. S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
  173. S4 RsFx0103;RsFx0103 Driver; C:\WINDOWS\system32\DRIVERS\RsFx0103.sys [2009-03-30 239336]
  174.  
  175. ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
  176.  
  177. R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
  178. R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-04-16 50344]
  179. R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
  180. R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-04-14 182696]
  181. R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 43010392]
  182. R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
  183. S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
  184. S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-07 136176]
  185. S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
  186. S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
  187. S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
  188. S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-07 136176]
  189. S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
  190. S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-29 119408]
  191. S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
  192. S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
  193. S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-23 47128]
  194. S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
  195. S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 366936]
  196. S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
  197.  
  198. -----------------EOF-----------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement