Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Logfile of random's system information tool 1.06 (written by random/random)
- Run by Marek at 2014-07-05 18:18:47
- Systém Microsoft Windows XP Professional Service Pack 3
- System drive C: has 100 GB (73%) free of 136 GB
- Total RAM: 2047 MB (50% free)
- HijackThis download failed
- ======Scheduled tasks folder======
- C:\WINDOWS\tasks\avast! Emergency Update.job
- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
- C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
- ======Registry dump======
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
- Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-14 462760]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
- avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-04-16 597816]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
- Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-14 171944]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DDA57003-0068-4ed2-9D32-4D1EC707D94D}]
- Microsoft Web Test Recorder 10.0 Helper - C:\Program Files\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2010-03-19 61360]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
- "IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
- "PHIME2002ASync"=C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
- "PHIME2002A"=C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
- "BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
- "RaidTool"=C:\Program Files\VIA\RAID\raid_tool.exe [2004-10-11 589824]
- "AudioDeck"=C:\Program Files\VIAudioi\SBADeck\ADeck.exe [2013-01-26 450560]
- "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-07-04 98304]
- "PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2012-12-09 336992]
- "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
- "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
- "NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
- "AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-04-16 3854640]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
- "Clip2Net"=C:\Program Files\Clip2Net\clip2net.exe [2012-12-12 1887744]
- "DesktopOK"=M:\programy\DesktopOK\DesktopOK_Unicode.exe [2013-11-19 166912]
- "Akamai NetSession Interface"=C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe [2014-04-17 4672920]
- "Taskix"=C:\Program Files\Taskix\Taskix32.exe [2009-11-03 72192]
- C:\Documents and Settings\Marek\Nabídka Start\Programy\Po spuštění
- XAMPP Control Panel.lnk - C:\xampp\xampp-control.exe
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
- C:\WINDOWS\system32\Ati2evxx.dll [2012-07-04 192512]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
- "dontdisplaylastusername"=0
- "legalnoticecaption"=
- "legalnoticetext"=
- "shutdownwithoutlogon"=1
- "undockwithoutlogon"=1
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "NoDriveTypeAutoRun"=145
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
- "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
- "C:\Documents and Settings\Marek\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Marek\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
- "C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
- "C:\Program Files\Java\jdk1.7.0_45\bin\java.exe"="C:\Program Files\Java\jdk1.7.0_45\bin\java.exe:*:Enabled:Java(TM) Platform SE binary"
- "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
- "C:\xampp\apache\bin\httpd.exe"="C:\xampp\apache\bin\httpd.exe:*:Enabled:Apache HTTP Server"
- "C:\xampp\mysql\bin\mysqld.exe"="C:\xampp\mysql\bin\mysqld.exe:*:Enabled:mysqld"
- "C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
- "C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
- "C:\Program Files\QuadCoreM2\pack\core.bin"="C:\Program Files\QuadCoreM2\pack\core.bin:*:Enabled:core"
- "C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe"="C:\Documents and Settings\Marek\Local Settings\Data aplikací\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Client"
- "M:\programy\FileZilla\filezilla.exe"="M:\programy\FileZilla\filezilla.exe:*:Enabled:FileZilla FTP Client"
- "M:\java\Eclipse (IDE)\eclipse\eclipse.exe"="M:\java\Eclipse (IDE)\eclipse\eclipse.exe:*:Enabled:eclipse"
- "C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
- "H:\C&C Generals Zero Hour\game.dat"="H:\C&C Generals Zero Hour\game.dat:*:Enabled:game"
- "H:\Hammer_MT2\HammerMT2 Server 1 2014\HammerMT2 Server 1 2014.exe"="H:\Hammer_MT2\HammerMT2 Server 1 2014\HammerMT2 Server 1 2014.exe:*:Enabled:HammerMT2 Server 1 2014"
- "H:\Hammer_MT2\HammerMT2 Server 1 Easter\HammerMT2 Server 1 Easter.exe"="H:\Hammer_MT2\HammerMT2 Server 1 Easter\HammerMT2 Server 1 Easter.exe:*:Enabled:HammerMT2 Server 1 Easter"
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
- "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
- "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
- shell\AutoRun\command - G:\autorun.exe
- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\N]
- shell\AutoRun\command - N:\noautorun.exe
- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\O]
- shell\AutoRun\command - O:\autorun.exe
- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\P]
- shell\AutoRun\command - P:\noautorun.exe
- ======List of files/folders created in the last 1 months======
- 2014-07-05 17:43:37 ----A---- C:\WINDOWS\system32\sqlite3.dll
- 2014-07-05 17:42:53 ----D---- C:\AdwCleaner
- 2014-07-05 15:59:34 ----D---- C:\FRST
- 2014-07-05 15:53:29 ----D---- C:\rsit
- 2014-07-05 15:53:29 ----D---- C:\Program Files\trend micro
- 2014-07-03 10:45:50 ----D---- C:\WINDOWS\system32\NtmsData
- 2014-06-26 17:22:57 ----A---- C:\WINDOWS\worldbuilder.INI
- 2014-06-24 16:46:54 ----D---- C:\Program Files\3DO
- 2014-06-23 19:13:07 ----D---- C:\Program Files\Taskix
- 2014-06-14 15:48:06 ----D---- C:\Program Files\DesetiPrsty
- ======List of files/folders modified in the last 1 months======
- 2014-07-05 18:13:37 ----D---- C:\Documents and Settings\Marek\Data aplikací\Skype
- 2014-07-05 17:51:07 ----D---- C:\WINDOWS\system32
- 2014-07-05 17:51:07 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
- 2014-07-05 17:49:11 ----D---- C:\WINDOWS\Temp
- 2014-07-05 17:45:37 ----D---- C:\WINDOWS\system32\CatRoot2
- 2014-07-05 17:45:37 ----A---- C:\WINDOWS\SchedLgU.Txt
- 2014-07-05 17:12:00 ----D---- C:\Documents and Settings\Marek\Data aplikací\.minecraft
- 2014-07-05 16:01:08 ----D---- C:\WINDOWS
- 2014-07-05 15:53:29 ----D---- C:\Program Files
- 2014-07-05 15:42:50 ----D---- C:\WINDOWS\system32\config
- 2014-07-05 13:10:32 ----D---- C:\Documents and Settings\Marek\Data aplikací\FileZilla
- 2014-07-05 13:00:30 ----D---- C:\Program Files\The KMPlayer
- 2014-07-03 12:00:11 ----D---- C:\Documents and Settings\Marek\Data aplikací\uTorrent
- 2014-07-03 10:45:49 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
- 2014-07-01 20:31:03 ----D---- C:\WINDOWS\Prefetch
- 2014-07-01 18:50:12 ----HD---- C:\Program Files\InstallShield Installation Information
- 2014-07-01 18:50:08 ----SHD---- C:\WINDOWS\Installer
- 2014-07-01 18:44:08 ----RSD---- C:\WINDOWS\Fonts
- 2014-06-29 14:29:37 ----D---- C:\WINDOWS\system32\drivers
- 2014-06-14 22:32:47 ----D---- C:\Program Files\Common Files
- 2014-06-10 15:22:27 ----SD---- C:\WINDOWS\Tasks
- 2014-06-07 17:00:19 ----D---- C:\Documents and Settings\Marek\Data aplikací\PSpad
- ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2014-04-16 54832]
- R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-04-16 776976]
- R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-04-16 411552]
- R1 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2014-04-16 57672]
- R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2012-12-09 113168]
- R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-04-16 67824]
- R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-07-04 7874560]
- R3 BthEnum;Služba Bluetooth Enumerator; C:\WINDOWS\System32\DRIVERS\BthEnum.sys [2008-04-14 17024]
- R3 BTHMODEM;Ovladač komunikace modemu Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-14 37888]
- R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
- R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
- R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
- R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
- R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
- R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
- R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2009-03-18 30336]
- R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-14 59520]
- R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
- R3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2013-01-26 202112]
- S3 aswTap;avast! SecureLine TAP Adapter v3; C:\WINDOWS\system32\DRIVERS\aswTap.sys [2014-03-14 35272]
- S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
- S3 EagleXNt;EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys []
- S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
- S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
- S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
- S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
- S3 VSPerfDrv100;Performance Tools Driver 10.0; \??\C:\Program Files\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\VSPerfDrv100.sys []
- S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
- S4 RsFx0103;RsFx0103 Driver; C:\WINDOWS\system32\DRIVERS\RsFx0103.sys [2009-03-30 239336]
- ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2012-07-04 643072]
- R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-04-16 50344]
- R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
- R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-04-14 182696]
- R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 43010392]
- R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
- S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
- S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-07 136176]
- S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]
- S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
- S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
- S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-07 136176]
- S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
- S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-05-29 119408]
- S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
- S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
- S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-23 47128]
- S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
- S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 366936]
- S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]
- -----------------EOF-----------------
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement