log z upm
[code]
Windows XP SP 2 (build 2600)
Boot Mode: Normal
Ověření souborů Microsoftu: Ano
Internet Explorer v6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Log vygenerován: 3.4.2009 11:19:28
================================================================
Test UPM
Testuji funkce... OK
Běžící procesy
================================================================
(thread rootkit / zombie) 924
C:\WINDOWS\SYSTEM32\SMSS.EXE
C:\WINDOWS\SYSTEM32\CSRSS.EXE
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
C:\WINDOWS\SYSTEM32\SERVICES.EXE
C:\WINDOWS\SYSTEM32\LSASS.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
C:\PROGRAM FILES\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\VSNPSTD2.EXE
C:\PROGRAM FILES\QUICKTIME\QTTASK.EXE
C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
C:\WINDOWS\SYSTEM32\CTFMON.EXE
C:\WINDOWS\ATKKBSERVICE.EXE
C:\PROGRAM FILES\COMMON FILES\AUTODESK SHARED\SERVICE\ADSKSCSRV.EXE
C:\WINDOWS\SYSTEM32\BGSVCGEN.EXE
C:\PROGRAM FILES\IVT CORPORATION\BLUESOLEIL\BTNTSERVICE.EXE
C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE
C:\WINDOWS\SYSTEM32\LKCITDL.EXE
C:\WINDOWS\SYSTEM32\LKADS.EXE
C:\WINDOWS\SYSTEM32\LKTSRV.EXE
C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VS7DEBUG\MDM.EXE
D:\PROGRAMY\AUTODESK\3DS MAX 9\MENTALRAY\SATELLITE\RAYSAT_3DSMAX9_32SERVER.EXE
C:\PROGRAM FILES\NATIONAL INSTRUMENTS\SHARED\SECURITY\NIDMSRV.EXE
C:\WINDOWS\SYSTEM32\NISVCLOC.EXE
D:\PROGRAMY\ESET\NOD32KRN.EXE
C:\WINDOWS\SYSTEM32\NVSVC32.EXE
C:\PROGRAM FILES\COMMON FILES\PROTEXIS\LICENSE SERVICE\PSISERVICE_2.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\PROGRAM FILES\VIEWPOINT\COMMON\VIEWPOINTSERVICE.EXE
C:\WINDOWS\SYSTEM32\ALG.EXE
C:\WINDOWS\SYSTEM32\WSCNTFY.EXE
C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
C:\WINDOWS\SYSTEM32\MSIEXEC.EXE
C:\PROGRAM FILES\JAVA\JRE6\BIN\JUSCHED.EXE
C:\PROGRAM FILES\JAVA\JRE6\BIN\JQS.EXE
C:\PROGRAM FILES\WINAMP\WINAMP.EXE
D:\PROGRAMY\QIP INFIUM\INFIUM.EXE
D:\PROGRAMY\UPM_4_1_0\UPM.EXE
D:\PROGRAMY\UPM_4_1_0\UPM.EXE
Scanner
================================================================
[S] svchost.exe
Skrytý modul: 73D30000h C:\WINDOWS\system32\wbem\wbemcons.dll
[R] GoogleUpdate.exe
Spouští se po startu Job [GOOGLE~1.JOB]
[S] explorer.exe
Spouští se po startu HKLM Winlogon [Shell]
Skrytý modul: 03EE0000h C:\Program Files\Common Files\Autodesk Shared\DWF Common\DWFShellExtensionRes.dll
[?] SoundMan.exe
Bez výrobce
Spouští se po startu HKLM Run [SoundMan]
[?] vsnpstd2.exe
Bez výrobce
Spouští se po startu HKLM Run [SNPSTD2]
[?] qttask.exe
Bez výrobce
Spouští se po startu HKLM Run [QuickTime Task]
Skrytý modul: 676F0000h C:\WINDOWS\system32\QuickTime\QuickTimeStreamingExtras.qtx
Soubor 7%
[S] rundll32.exe
Spouští se po startu HKLM Run [NvCplDaemon]
[S] ctfmon.exe
Spouští se po startu HKCU Run [ctfmon.exe]
Skrytý modul: 773D0000h C:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
[?] ATKKBService.exe
Bez výrobce
Soubor 14%
[?] bgsvcgen.exe
Bez výrobce v System32
Nemá okno
Soubor 7%
[?] BTNtService.exe
Bez výrobce
Nemá okno
Soubor 12%
[?] mDNSResponder.exe
Bez výrobce
Nemá okno
Soubor 7%
[?] lkcitdl.exe
Bez výrobce v System32
Skrytý modul: 45850000h C:\Program Files\National Instruments\Shared\Security\nidm_client_thinauth.dll
Nemá okno
Soubor 7%
[?] lkads.exe
Bez výrobce v System32
Skrytý modul: 45850000h C:\Program Files\National Instruments\Shared\Security\nidm_client_thinauth.dll
Nemá okno
Soubor 7%
[?] lktsrv.exe
Bez výrobce v System32
Skrytý modul: 45850000h C:\Program Files\National Instruments\Shared\Security\nidm_client_thinauth.dll
Nemá okno
Soubor 7%
[?] mdm.exe
Bez výrobce
Nemá okno
Soubor 12%
[?] raysat_3dsmax9_32server.exe
Bez výrobce
Nemá okno
Soubor 12%
[?] nidmsrv.exe
Bez výrobce
Skrytý modul: 45850000h C:\Program Files\National Instruments\Shared\Security\nidm_client_thinauth.dll
Nemá okno
Soubor 7%
[?] nisvcloc.exe
Bez výrobce v System32
Nemá okno
Soubor 7%
[?] nod32krn.exe
Bez výrobce
Soubor 7%
[?] nvsvc32.exe
Bez výrobce v System32
[?] ViewpointService.exe
Bez výrobce
Nemá okno
Soubor 7%
[S] msiexec.exe
Skrytý modul: 692C0000h C:\WINDOWS\system32\wbem\framedyn.dll
[R] jusched.exe
Spouští se po startu HKLM Run [SunJavaUpdateSched]
[?] infium.exe
Bez výrobce
EntryPoint v sekci: CODE
|_ Celkový počet sekcí: 9
Soubor 63%
Po spuštění
================================================================
HKLM Run: 09:13:27 03.04. 2009
HKLM RunOnce: 08:53:02 03.04. 2009
HKCU RunOnce: 07:55:34 03.04. 2009
HKCU Run
|_ [?][OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
HKLM Run
|_ [?][NvCplDaemon] C:\WINDOWS\system32\NvCpl.dll ,NvStartup
|_ [?][SoundMan] C:\windows\SOUNDMAN.EXE
|_ [?][SNPSTD2] C:\WINDOWS\vsnpstd2.exe
|_ [?][nwiz] nwiz.exe /install
|_ [?][QuickTime Task] C:\Program Files\QuickTime\qttask.exe -atboottime
|_ [?][NvMediaCenter] C:\WINDOWS\system32\NvMcTray.dll ,NvTaskbarInit
Po spuštění
|_ C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
HKLM BHO
|_ [?][{DBC80044-A445-435b-BC74-9C25C1C588A9}] C:\Program Files\Java\jre6\bin\jp2ssv.dll
|_ [?][{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
Služby (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] ATK Keyboard Service
|_ Cesta: C:\WINDOWS\ATKKBService.exe
| |_ Výrobce: ASUSTeK COMPUTER INC.
| |_ Popis: ASUS Keyboard Service
| |_ MD5: CA517080B3808E17019E26855FDD0F5F
|
|_ Jméno: ATKKeyboardService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:
[?] B's Recorder GOLD Library General Service
|_ Cesta: C:\WINDOWS\system32\bgsvcgen.exe
| |_ Výrobce: B.H.A Corporation
| |_ Popis: B's Recorder GOLD Service Library
| |_ MD5: 71489FA2C4A238F178E30AE6E4449013
|
|_ Jméno: bgsvcgen
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] BlueSoleil Hid Service
|_ Cesta: C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
| |_ Výrobce:
| |_ Popis:
| |_ MD5: 55F24E6EC983FCC7510293B05A27CEEC
|
|_ Jméno: BlueSoleil Hid Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##
|_ Cesta: C:\Program Files\Bonjour\mDNSResponder.exe
| |_ Výrobce: Apple Computer, Inc.
| |_ Popis: Bonjour Service
| |_ MD5: 73686FE0B2E0469F89FD2075BE724704
|
|_ Jméno: Bonjour Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency: Tcpip
[?] COM+ Event System
|_ Cesta: C:\WINDOWS\system32\svchost.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Generic Host Process for Win32 Services
| |_ MD5: 8F078AE4ED187AAABC0A305146DE6716
|
|_ ServiceDLL: C:\WINDOWS\system32\es.dll
| |_ Výrobce: Microsoft Corporation
| |_ Popis: ?
| |_ MD5: 60D1A6342238378BFB7545C81EE3606C
|
|_ Jméno: EventSystem
|_ StartName: LocalSystem
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Win32 Share Process
|_ Dependency: RPCSS
[X] Služba Google Update (gupdate1c98ddefeae80b8)
|_ Cesta: C:\Program Files\Google\Update\GoogleUpdate.exe /svc
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: gupdate1c98ddefeae80b8
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Zastaveno
|_ Typ: Win32 Own Process
|_ Dependency: RPCSS
[?] Lookout Citadel Server
|_ Cesta: C:\WINDOWS\system32\lkcitdl.exe
| |_ Výrobce: National Instruments, Inc.
| |_ Popis: Part of Logos
| |_ MD5: 47A111A4DC0D67DA431DF9F91EE09682
|
|_ Jméno: LkCitadelServer
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] National Instruments PSP Server Locator
|_ Cesta: C:\WINDOWS\system32\lkads.exe
| |_ Výrobce: National Instruments, Inc.
| |_ Popis: Part of Logos
| |_ MD5: 93CD77EF951E426A2C36A33D750D9321
|
|_ Jméno: lkClassAds
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] National Instruments Time Synchronization
|_ Cesta: C:\WINDOWS\system32\lktsrv.exe
| |_ Výrobce: National Instruments, Inc.
| |_ Popis: Part of Logos
| |_ MD5: 9F616DF9EC606BA99323DAC363C4D414
|
|_ Jméno: lkTimeSync
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] Machine Debug Manager
|_ Cesta: C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
| |_ Výrobce: Microsoft Corporation
| |_ Popis: Machine Debug Manager
| |_ MD5: 0EFEE4F2D23BA2D8B27FBA942106E0E1
|
|_ Jméno: MDM
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: RPCSS
[?] mental ray 3.5 Satellite (32-bit)
|_ Cesta: D:\Programy\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe
| |_ Výrobce:
| |_ Popis:
| |_ MD5: AA0C4A2C33CE075DF2C272D678734991
|
|_ Jméno: mi-raysat_3dsmax9_32
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] National Instruments Domain Service
|_ Cesta: C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
| |_ Výrobce: National Instruments, Inc.
| |_ Popis:
| |_ MD5: B60EB6D73C59436200A5B9AD8504A0BD
|
|_ Jméno: NIDomainService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] NI Service Locator
|_ Cesta: C:\WINDOWS\system32\nisvcloc.exe
| |_ Výrobce: National Instruments Corp.
| |_ Popis: Service Locator
| |_ MD5: 44C898CA05D4DAA83EAEA9708F87DCFB
|
|_ Jméno: niSvcLoc
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:
[?] NOD32 Kernel Service
|_ Cesta: D:\Programy\Eset\nod32krn.exe
| |_ Výrobce: Eset
| |_ Popis: NOD32 Kernel Service
| |_ MD5: B03D93D0AC9905FADBAE50FAA64371C9
|
|_ Jméno: NOD32krn
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency:
[?] NVIDIA Display Driver Service
|_ Cesta: C:\windows\system32\nvsvc32.exe
| |_ Výrobce: NVIDIA Corporation
| |_ Popis: NVIDIA Driver Helper Service, Version 175.19
| |_ MD5: 0C41C4ACFE00D826DB479C40C1D9EDC8
|
|_ Jméno: NVSvc
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
[?] Viewpoint Manager Service
|_ Cesta: C:\Program Files\Viewpoint\Common\ViewpointService.exe
| |_ Výrobce: Viewpoint Corporation
| |_ Popis: ViewMgr
| |_ MD5: 5F974FDE801C73952770736BECDE11E7
|
|_ Jméno: Viewpoint Manager Service
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ:
|_ Dependency: RPCSS
[X] Java Quick Starter
|_ Cesta: C:\Program Files\Java\jre6\bin\jqs.exe -service -config C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: JavaQuickStarterService
|_ StartName: LocalSystem
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Win32 Own Process
|_ Dependency:
Ovladače (Zobraz běžící: True, Zobraz zastavené: False, Zobraz i bezpečné služby: False)
================================================================
[?] Service for Realtek AC97 Audio (WDM)
|_ Cesta: C:\windows\system32\drivers\ALCXWDM.SYS
| |_ Výrobce: Realtek Semiconductor Corp.
| |_ Popis: Realtek AC'97 Audio Driver (WDM)
| |_ MD5: 34149A136B2B7525113950233F259EC1
|
|_ Jméno: ALCXWDM
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] AMD Processor Driver
|_ Cesta: C:\windows\system32\DRIVERS\AmdK8.sys
| |_ Výrobce: Advanced Micro Devices
| |_ Popis: AMD Processor Driver
| |_ MD5: 59301936898AE62245A6F09C0ABA9475
|
|_ Jméno: AmdK8
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Enhanced Display Driver Helper Service
|_ Cesta: C:\windows\system32\drivers\atkkbnt.sys
| |_ Výrobce: ASUSTeK COMPUTER INC.
| |_ Popis: ASUS Help driver For Keyboard Service.
| |_ MD5: F5C2CCDB273A546E9C3A15250F1D9165
|
|_ Jméno: asuskbnt
|_ StartName:
|_ Typ spouštění: System Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Bluetooth Audio Service
|_ Cesta: C:\windows\system32\DRIVERS\blueletaudio.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluelet Audio Driver
| |_ MD5: 534B95FBD867D0512DCB43E6CC1AA91E
|
|_ Jméno: BlueletAudio
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Bluetooth SCO Audio Service
|_ Cesta: C:\windows\system32\DRIVERS\BlueletSCOAudio.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluelet Audio Driver
| |_ MD5: 01D1832F2B13DFAF7384884F7C3E0124
|
|_ Jméno: BlueletSCOAudio
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Bluetooth PAN Network Adapter
|_ Cesta: C:\windows\system32\DRIVERS\btnetdrv.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluetooth PAN Network Adapter Driver
| |_ MD5: 15E4B7FA0E204807D437E6C9C81D6F47
|
|_ Jméno: BT
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Bluetooth HID Enumerator
|_ Cesta: C:\windows\system32\DRIVERS\vbtenum.sys
| |_ Výrobce:
| |_ Popis:
| |_ MD5: E69D9E7854095A9C81ACEE40D766FE2D
|
|_ Jméno: BTHidEnum
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Bluetooth HID Manager Service
|_ Cesta: C:\windows\System32\Drivers\BTHidMgr.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluetooth HID Manager driver
| |_ MD5: A9164C2A39BD917B9F42AE087560AC3D
|
|_ Jméno: BTHidMgr
|_ StartName:
|_ Typ spouštění: Boot Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] EIO
|_ Cesta: C:\WINDOWS\system32\drivers\EIO.sys
| |_ Výrobce: ASUSTeK Computer Inc.
| |_ Popis: ASUS Kernel Mode Driver for NT
| |_ MD5: 0DAF3544804650526751C478AECCCE63
|
|_ Jméno: EIO
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] nv
|_ Cesta: C:\windows\system32\DRIVERS\nv4_mini.sys
| |_ Výrobce: NVIDIA Corporation
| |_ Popis: NVIDIA Compatible Windows 2000 Miniport Driver, Version 175.19
| |_ MD5: 9F4384AA43548DDD438F7B7825D11699
|
|_ Jméno: nv
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] nvata
|_ Cesta: C:\windows\system32\DRIVERS\nvata.sys
| |_ Výrobce: NVIDIA Corporation
| |_ Popis: NVIDIA® nForce(TM) IDE Performance Driver
| |_ MD5: 0344AA9113DC16EEC379F4652020849D
|
|_ Jméno: nvata
|_ StartName:
|_ Typ spouštění: Boot Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] NVIDIA nForce Networking Controller Driver
|_ Cesta: C:\windows\system32\DRIVERS\NVENETFD.sys
| |_ Výrobce: NVIDIA Corporation
| |_ Popis: NVIDIA Networking Function Driver.
| |_ MD5: 720CC533EECB65553BD86B139CA04433
|
|_ Jméno: NVENETFD
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] NVIDIA Network Bus Enumerator
|_ Cesta: C:\windows\system32\DRIVERS\nvnetbus.sys
| |_ Výrobce: NVIDIA Corporation
| |_ Popis: NVIDIA Networking Bus Driver.
| |_ MD5: 5F9F545CC5904DD8765F84EE1D056406
|
|_ Jméno: nvnetbus
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Direct Parallel Link Driver
|_ Cesta: C:\windows\system32\DRIVERS\ptilink.sys
| |_ Výrobce: Parallel Technologies, Inc.
| |_ Popis: Parallel Technologies DirectParallel IO Library
| |_ MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
|
|_ Jméno: Ptilink
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver
|_ Cesta: C:\windows\system32\DRIVERS\RTL8139.SYS
| |_ Výrobce: Realtek Semiconductor Corporation
| |_ Popis: Realtek RTL8139 NDIS 5.0 Driver
| |_ MD5: D507C1400284176573224903819FFDA3
|
|_ Jméno: rtl8139
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Secdrv
|_ Cesta: C:\windows\system32\DRIVERS\secdrv.sys
| |_ Výrobce: Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.
| |_ Popis: Macrovision SECURITY Driver
| |_ MD5: 07F7F501AD50DE2BA2D5842D9B6D6155
|
|_ Jméno: Secdrv
|_ StartName:
|_ Typ spouštění: Auto Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] Trek 310
|_ Cesta: C:\windows\system32\DRIVERS\snpstd2.sys
| |_ Výrobce:
| |_ Popis: PC Camera driver
| |_ MD5: 68071A3F784A31E9A386BD6F0A548F3B
|
|_ Jméno: snpstd2
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] sptd
|_ Cesta: C:\windows\System32\Drivers\sptd.sys
| |_ Výrobce:
| |_ Popis:
| |_ MD5:
|
|_ Jméno: sptd
|_ StartName:
|_ Typ spouštění: Boot Start
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[?] TeamViewer VPN Adapter
|_ Cesta: C:\windows\system32\DRIVERS\teamviewervpn.sys
| |_ Výrobce: TeamViewer GmbH
| |_ Popis: TeamViewerVPN Network Adapter
| |_ MD5: 9101FFFCFCCD1A30E870A5B8A9091B10
|
|_ Jméno: teamviewervpn
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[!] Virtual Serial port driver
|_ Cesta: C:\windows\system32\DRIVERS\VComm.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluetooth Serial Port Driver
| |_ MD5: 9EBEE4A060C5364A31AEAA04EAC2AF1E
|
|_ Jméno: VComm
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
[!] Bluetooth VComm Manager Service
|_ Cesta: C:\windows\System32\Drivers\VcommMgr.sys
| |_ Výrobce: IVT Corporation
| |_ Popis: Bluetooth VcommMgr driver
| |_ MD5: 630BBDBF5490F8F57ABE650DA63661A0
|
|_ Jméno: VcommMgr
|_ StartName:
|_ Typ spouštění: Ruční spuštění
|_ Status: Spuštěno
|_ Typ: Kernel Driver
|_ Dependency:
lNetStat
================================================================
Typ PID Proces Lokální <-> Vzdálená Stav
-------------------------------------------------------------------------------------
TCP (1460) svchost.exe 0.0.0.0:135 LISTENING
TCP (4) Systém 0.0.0.0:445 LISTENING
TCP (2108) nisvcloc.exe 0.0.0.0:3580 LISTENING
TCP (2072) 3dsmax9_32server.exe0.0.0.0:7504 LISTENING
TCP (4) Systém 5.159.67.50:139 LISTENING
TCP (3496) alg.exe 127.0.0.1:1031 LISTENING
TCP (2908) firefox.exe 127.0.0.1:1047 <-> 127.0.0.1:1048 ESTABLISHED
TCP (2908) firefox.exe 127.0.0.1:1048 <-> 127.0.0.1:1047 ESTABLISHED
TCP (2908) firefox.exe 127.0.0.1:1050 <-> 127.0.0.1:1051 ESTABLISHED
TCP (2908) firefox.exe 127.0.0.1:1051 <-> 127.0.0.1:1050 ESTABLISHED
TCP (3412) jqs.exe 127.0.0.1:5152 LISTENING
TCP (1828) mDNSResponder.exe 127.0.0.1:5354 LISTENING
TCP (4) Systém 192.168.142.150:139 LISTENING
TCP (3964) infium.exe 192.168.142.150:1150 <-> 209.85.137.125:5223 ESTABLISHED
TCP (3964) infium.exe 192.168.142.150:1151 <-> 64.12.25.32:5190 ESTABLISHED
TCP (0) 192.168.142.150:1155 TIME_WAIT
TCP (0) 192.168.142.150:1200 TIME_WAIT
TCP (0) 192.168.142.150:1215 TIME_WAIT
TCP (0) 192.168.142.150:1216 TIME_WAIT
TCP (0) 192.168.142.150:1222 TIME_WAIT
TCP (0) 192.168.142.150:1235 TIME_WAIT
TCP (0) 192.168.142.150:1242 TIME_WAIT
TCP (0) 192.168.142.150:1243 TIME_WAIT
TCP (0) 192.168.142.150:1244 TIME_WAIT
TCP (0) 192.168.142.150:1245 TIME_WAIT
TCP (0) 192.168.142.150:1246 TIME_WAIT
TCP (0) 192.168.142.150:1247 TIME_WAIT
TCP (0) 192.168.142.150:1248 TIME_WAIT
TCP (0) 192.168.142.150:1255 TIME_WAIT
TCP (0) 192.168.142.150:1256 TIME_WAIT
TCP (0) 192.168.142.150:1258 TIME_WAIT
TCP (0) 192.168.142.150:1259 TIME_WAIT
TCP (0) 192.168.142.150:1260 TIME_WAIT
TCP (0) 192.168.142.150:1261 TIME_WAIT
TCP (0) 192.168.142.150:1262 TIME_WAIT
TCP (0) 192.168.142.150:1263 TIME_WAIT
TCP (0) 192.168.142.150:1268 TIME_WAIT
TCP (0) 192.168.142.150:1269 TIME_WAIT
TCP (0) 192.168.142.150:1275 TIME_WAIT
TCP (0) 192.168.142.150:1293 TIME_WAIT
TCP (0) 192.168.142.150:1298 TIME_WAIT
TCP (0) 192.168.142.150:1302 TIME_WAIT
TCP (0) 192.168.142.150:1303 TIME_WAIT
TCP (0) 192.168.142.150:1305 TIME_WAIT
TCP (0) 192.168.142.150:1307 TIME_WAIT
TCP (0) 192.168.142.150:1308 TIME_WAIT
TCP (0) 192.168.142.150:1309 TIME_WAIT
TCP (0) 192.168.142.150:1310 TIME_WAIT
TCP (0) 192.168.142.150:1311 TIME_WAIT
TCP (0) 192.168.142.150:1312 TIME_WAIT
TCP (0) 192.168.142.150:1314 TIME_WAIT
TCP (0) 192.168.142.150:1315 TIME_WAIT
TCP (0) 192.168.142.150:1317 TIME_WAIT
TCP (0) 192.168.142.150:1318 TIME_WAIT
TCP (0) 192.168.142.150:1319 TIME_WAIT
TCP (0) 192.168.142.150:1320 TIME_WAIT
TCP (0) 192.168.142.150:1321 TIME_WAIT
TCP (0) 192.168.142.150:1322 TIME_WAIT
TCP (0) 192.168.142.150:1325 TIME_WAIT
TCP (0) 192.168.142.150:1326 TIME_WAIT
TCP (0) 192.168.142.150:1327 TIME_WAIT
TCP (0) 192.168.142.150:1328 TIME_WAIT
TCP (0) 192.168.142.150:1330 TIME_WAIT
TCP (0) 192.168.142.150:1335 TIME_WAIT
TCP (0) 192.168.142.150:1336 TIME_WAIT
TCP (0) 192.168.142.150:1361 TIME_WAIT
TCP (0) 192.168.142.150:1371 TIME_WAIT
TCP (0) 192.168.142.150:1375 TIME_WAIT
TCP (0) 192.168.142.150:1381 TIME_WAIT
TCP (0) 192.168.142.150:1393 TIME_WAIT
TCP (0) 192.168.142.150:1394 TIME_WAIT
TCP (0) 192.168.142.150:1395 TIME_WAIT
TCP (0) 192.168.142.150:1401 TIME_WAIT
TCP (0) 192.168.142.150:1402 TIME_WAIT
TCP (2908) firefox.exe 192.168.142.150:1403 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1409 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1410 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1411 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1412 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1413 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1415 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1416 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1417 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1418 <-> 84.53.182.17:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1424 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1425 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1426 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1427 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1428 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1437 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1438 <-> 84.53.182.19:80 ESTABLISHED
TCP (2908) firefox.exe 192.168.142.150:1439 <-> 84.53.182.19:80 ESTABLISHED
UDP (4) Systém 0.0.0.0:445 TIME_WAIT
UDP (1252) lsass.exe 0.0.0.0:500
UDP (1828) mDNSResponder.exe 0.0.0.0:1025
UDP (1776) svchost.exe 0.0.0.0:1027
UDP (1776) svchost.exe 0.0.0.0:1037
UDP (3964) infium.exe 0.0.0.0:1147
UDP (1776) svchost.exe 0.0.0.0:1219
UDP (1776) svchost.exe 0.0.0.0:1220
UDP (1776) svchost.exe 0.0.0.0:1228
UDP (1776) svchost.exe 0.0.0.0:1229
UDP (1776) svchost.exe 0.0.0.0:1230
UDP (372) lkads.exe 0.0.0.0:2343
UDP (1252) lsass.exe 0.0.0.0:4500
UDP (344) lkcitdl.exe 0.0.0.0:5000
UDP (400) lktsrv.exe 0.0.0.0:5001
UDP (2092) nidmsrv.exe 0.0.0.0:5002
UDP (344) lkcitdl.exe 0.0.0.0:6000
UDP (400) lktsrv.exe 0.0.0.0:6001
UDP (2092) nidmsrv.exe 0.0.0.0:6002
UDP (1712) svchost.exe 5.159.67.50:123
UDP (4) Systém 5.159.67.50:137
UDP (4) Systém 5.159.67.50:138
UDP (1896) svchost.exe 5.159.67.50:1900
UDP (1828) mDNSResponder.exe 5.159.67.50:5353
UDP (1712) svchost.exe 127.0.0.1:123
UDP (1896) svchost.exe 127.0.0.1:1900
UDP (1712) svchost.exe 192.168.142.150:123
UDP (4) Systém 192.168.142.150:137
UDP (4) Systém 192.168.142.150:138
UDP (1896) svchost.exe 192.168.142.150:1900
UDP (1828) mDNSResponder.exe 192.168.142.150:5353
Moduly (Zobraz i bezpečné DLL: False, Jen bez výrobce: True, Zobraz registrované: False)
================================================================
[?] imon.dll
|_ Cesta: C:\WINDOWS\system32\imon.dll
|_ MD5: A10728A17F3A4490ED462DBD46116B9F
|_ Výrobce: Eset
|_ Procesy
|_ lsass.exe (1252)
|_ svchost.exe (1460)
|_ svchost.exe (1712)
|_ svchost.exe (1776)
|_ svchost.exe (1896)
|_ mDNSResponder.exe (1828)
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ raysat_3dsmax9_32server.exe (2072)
|_ nidmsrv.exe (2092)
|_ nisvcloc.exe (2108)
|_ nod32krn.exe (2184)
|_ alg.exe (3496)
|_ firefox.exe (2908)
|_ jqs.exe (3412)
|_ winamp.exe (3764)
|_ infium.exe (3964)
|_ upm.exe (3912)
[?] mdnsnsp.dll
|_ Cesta: C:\Program Files\Bonjour\mdnsNSP.dll
|_ MD5: 1F5A570AD942DFCFE4500326ABDD72B2
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ svchost.exe (1460)
|_ svchost.exe (1712)
|_ spoolsv.exe (580)
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ raysat_3dsmax9_32server.exe (2072)
|_ nidmsrv.exe (2092)
|_ firefox.exe (2908)
|_ winamp.exe (3764)
|_ infium.exe (3964)
|_ upm.exe (3912)
[?] filterpipelineprintproc.dll
|_ Cesta: C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
|_ MD5: D5C9DC605E1ACB57BF37BE3E9890B936
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ spoolsv.exe (580)
[?] mmfinfo.dll
|_ Cesta: C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll
|_ MD5: 4B315E7C40FAC5D3BD63948253B45D4F
|_ Výrobce:
|_ Procesy
|_ explorer.exe (704)
[?] mkunicode.dll
|_ Cesta: C:\Program Files\Haali\MatroskaSplitter\mkunicode.dll
|_ MD5: ED98404959DEEA58F0657864CC04D8FA
|_ Výrobce:
|_ Procesy
|_ explorer.exe (704)
[?] dragext.dll
|_ Cesta: D:\Programy\WinSCP\DragExt.dll
|_ MD5: F3FC8FA429EAF706F8FFABF5EA710C2E
|_ Výrobce: Martin Prikryl
|_ Procesy
|_ explorer.exe (704)
[?] nvshell.dll
|_ Cesta: C:\WINDOWS\system32\nvshell.dll
|_ MD5: 70BDDEE1D46FC4E98AD76A4B4EBE63FF
|_ Výrobce: ?
|_ Procesy
|_ explorer.exe (704)
[?] nodshex.dll
|_ Cesta: D:\Programy\Eset\nodshex.dll
|_ MD5: 6CF2D65C36A44D98F9BBF2CE8BE9B71F
|_ Výrobce:
|_ Procesy
|_ explorer.exe (704)
[?] rarext.dll
|_ Cesta: C:\Program Files\WinRAR\RarExt.dll
|_ MD5: 7801791108C9FA442DD48BCD98869F21
|_ Výrobce:
|_ Procesy
|_ explorer.exe (704)
[!] misosh.dll
|_ Cesta: D:\Programy\MagicISO\misosh.dll
|_ MD5: 83026F9F60F32EFB2CE74B71C0CAE054
|_ Výrobce: MagicISO, Inc.
|_ Procesy
|_ explorer.exe (704)
[?] dropboxext.dll
|_ Cesta: D:\Programy\Dropbox\DropboxExt.dll
|_ MD5: 5BB0E62D62E985280F6B30A933062C0A
|_ Výrobce: Evenflow, Inc.
|_ Procesy
|_ explorer.exe (704)
[?] nppcm.dll
|_ Cesta: D:\Programy\Notepad++\nppcm.dll
|_ MD5: F0FEFC2F4321B8990D561B64EE6CEB28
|_ Výrobce: Burgaud.com
|_ Procesy
|_ explorer.exe (704)
[?] msvcr71.dll
|_ Cesta: D:\Programy\Dropbox\msvcr71.dll
|_ MD5: 86F1895AE8C5E8B17D99ECE768A70732
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ explorer.exe (704)
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
|_ nisvcloc.exe (2108)
|_ jqs.exe (3412)
[?] msvcp71.dll
|_ Cesta: D:\Programy\Dropbox\msvcp71.dll
|_ MD5: 561FA2ABB31DFA8FAB762145F81667C2
|_ Výrobce: Microsoft Corporation
|_ Procesy
|_ explorer.exe (704)
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
[?] quicktime.qts
|_ Cesta: C:\WINDOWS\system32\QuickTime.qts
|_ MD5: 3F700EBFC389B700FD95B48FC0182E48
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimestreaming.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeStreaming.qtx
|_ MD5: 255A059C7F197820FF992A7625813BD8
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimeinternetextras.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeInternetExtras.qtx
|_ MD5: F7BC9AFE6F05A4F6C43520D376A12686
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimeauthoring.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeAuthoring.qtx
|_ MD5: 0040DE40FAA1D30A85FC41E40B699B0E
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimecapture.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeCapture.qtx
|_ MD5: F2B596CF8DC270117211A592B8C0F68F
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimeeffects.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeEffects.qtx
|_ MD5: 3B7C05C591B19E15760FFBD33B022991
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimeimage.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeImage.qtx
|_ MD5: 6CD236001CEF0F4DF35027B061A129F3
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimemusic.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeMusic.qtx
|_ MD5: 1850B6621523E527D346DB00BB50ED52
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimempeg.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeMPEG.qtx
|_ MD5: 9AE7B0BBE6F5BBB243B5504C10C18BA7
|_ Výrobce: Apple Computer, Inc
|_ Procesy
|_ qttask.exe (872)
[?] quicktimeessentials.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeEssentials.qtx
|_ MD5: 55847F5DB7D5D3ABB8520C54F7FD1085
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimempeg4.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeMPEG4.qtx
|_ MD5: E0B019199FE9AA12C8B1804EBBC41BF0
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimempeg4authoring.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeMPEG4Authoring.qtx
|_ MD5: 42A81A3AE978ADAC447385CAB7ABB191
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktime3gpp.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTime3GPP.qtx
|_ MD5: E157951D0FF4CA883B1C18981A0ECF9A
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimestreamingauthoring.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeStreamingAuthoring.qtx
|_ MD5: EB7D3A7C4DC38C43ACB651FCEDA82DCF
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] quicktimestreamingextras.qtx
|_ Cesta: C:\WINDOWS\system32\QuickTime\QuickTimeStreamingExtras.qtx
|_ MD5: F7A88671741007D077B09CD7C1BB5597
|_ Výrobce: Apple Computer, Inc.
|_ Procesy
|_ qttask.exe (872)
[?] lkdynam.dll
|_ Cesta: C:\WINDOWS\system32\lkdynam.dll
|_ MD5: 0C412FD4FAECF433F311BCEFD9627428
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
[?] lksock.dll
|_ Cesta: C:\WINDOWS\system32\lksock.dll
|_ MD5: 83BA97175CCEC8C71901EBCE902BD94B
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
[?] lksec.dll
|_ Cesta: C:\WINDOWS\system32\lksec.dll
|_ MD5: 01681FCBEB20183F82EB9DE5FC261D47
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
[?] lkobenv.dll
|_ Cesta: C:\WINDOWS\system32\lkobenv.dll
|_ MD5: 00969C945E3C3D1B79EC439E41497B9D
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
[?] nidscmem.dll
|_ Cesta: C:\WINDOWS\system32\nidscmem.dll
|_ MD5: D05F2707B1BCCC04BCDEFA54950DBEAB
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
[?] nidm_client_thinauth.dll
|_ Cesta: C:\Program Files\National Instruments\Shared\Security\nidm_client_thinauth.dll
|_ MD5: 177EF218DC200E7DBCC698B3215AC263
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lkcitdl.exe (344)
|_ lkads.exe (372)
|_ lktsrv.exe (400)
|_ nidmsrv.exe (2092)
[?] lkstime.dll
|_ Cesta: C:\WINDOWS\system32\lkstime.dll
|_ MD5: 36947199576AE50593D79C60C5D4F8AA
|_ Výrobce: National Instruments, Inc.
|_ Procesy
|_ lktsrv.exe (400)
[?] nisvcloc.dll
|_ Cesta: C:\WINDOWS\system32\nisvcloc.dll
|_ MD5: F05AA192CD61C4099E478E8622681ECC
|_ Výrobce: National Instruments Corp.
|_ Procesy
|_ nisvcloc.exe (2108)
[?] ps_upd.dll
|_ Cesta: D:\Programy\Eset\ps_upd.dll
|_ MD5: 9FDD94CD4890593FF21D4174E9FE71A6
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (2184)
[?] ps_amon.dll
|_ Cesta: D:\Programy\Eset\ps_amon.dll
|_ MD5: 9DB0C3764C1281C05812B7B5870CBC3A
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (2184)
[?] ps_nod32.dll
|_ Cesta: D:\Programy\Eset\ps_nod32.dll
|_ MD5: 78C713A53C0590048AF5375DC81259E7
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (2184)
[?] ps_dmon.dll
|_ Cesta: D:\Programy\Eset\ps_dmon.dll
|_ MD5: C158665C00A4AD50EDD37E2A622EDE6A
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (2184)
[?] ps_emon.dll
|_ Cesta: D:\Programy\Eset\ps_emon.dll
|_ MD5: 1F12E0BB0BAB484FE7B7D88C8009C4B3
|_ Výrobce: Eset
|_ Procesy
|_ nod32krn.exe (2184)
[?] softokn3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\softokn3.dll
|_ MD5: 4BEAC266AFF1D2F1ED20E8E9372A4078
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (2908)
[?] freebl3.dll
|_ Cesta: C:\Program Files\Mozilla Firefox\freebl3.dll
|_ MD5: 0822B1E65F049909715E7BDC75A8C36A
|_ Výrobce: Mozilla Foundation
|_ Procesy
|_ firefox.exe (2908)
[?] png.w5s
|_ Cesta: C:\Program Files\Winamp\System\png.w5s
|_ MD5: 90B66D5BB21D80AB993B605822B50008
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] primo.w5s
|_ Cesta: C:\Program Files\Winamp\System\primo.w5s
|_ MD5: D4D5817755E2392C82E6892F458FA510
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_flac.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_flac.dll
|_ MD5: EB5611E7DCA201C4720A98A736E02BF0
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_flv.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_flv.dll
|_ MD5: B30D4B5201068DAE19C39D60453752DF
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_swf.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_swf.dll
|_ MD5: 7F3A128B48CE011FA3375621458695BA
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] libsndfile.dll
|_ Cesta: C:\Program Files\Winamp\libsndfile.dll
|_ MD5: 794B2DF99BB9A7B5A7EF1911FFCB06C0
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] out_ds.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\out_ds.dll
|_ MD5: 09A8490A42622701FFEEA3760D4E7E14
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] out_wave.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\out_wave.dll
|_ MD5: 5E4CC6B420FEF97135710B21B086AB85
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_dropbox.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_dropbox.dll
|_ MD5: 52E6CE3791567578409B64DFE5D0FF3B
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] tataki.dll
|_ Cesta: C:\Program Files\Winamp\tataki.dll
|_ MD5: 9EB76E259FD8AC36A81855593D765944
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_jumpex.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_jumpex.dll
|_ MD5: 3DE869CD140E2D9AF05DC1340805AE0D
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] pmp_ipod.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\pmp_ipod.dll
|_ MD5: F853C622E980031CCCE2AC6989C19AF1
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] pmp_njb.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\pmp_njb.dll
|_ MD5: 3DF490948F9CAD27F9F113B8CA3C2D8D
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] pmp_p4s.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\pmp_p4s.dll
|_ MD5: 6FC13E2333345AE78A5CED32F03A5056
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] pmp_usb.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\pmp_usb.dll
|_ MD5: 5A4313603805D1E41AB8429E827B7AFA
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] ml_plg.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\ml_plg.dll
|_ MD5: 017129CD268FB2AFA5E2E23E6976CE75
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] ml_nowplaying.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\ml_nowplaying.dll
|_ MD5: D3939EC633B50F9F629BE9823630BDF6
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] nde.dll
|_ Cesta: C:\Program Files\Winamp\nde.dll
|_ MD5: 0E4CEB91041F2F216BC57F83C9BFFA9C
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] ml_online.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\ml_online.dll
|_ MD5: 9261C4A7A61B759E369B1D27E5443AA4
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] dlmgr.w5s
|_ Cesta: C:\Program Files\Winamp\System\dlmgr.w5s
|_ MD5: E15F60F8BA2A4A823C234C3268E36D89
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_ff.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_ff.dll
|_ MD5: 03003A596E984D19FE80D6A5EDB61046
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_hotkeys.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_hotkeys.dll
|_ MD5: 4ACA06D791ED65C4A5F2CDDD1E1E75AB
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_ml.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_ml.dll
|_ MD5: 4773311D87FEB59C2BC459D4BE33F992
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] gen_tray.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\gen_tray.dll
|_ MD5: 83A9769B6E996DD775C3757DDE13C378
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_cdda.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_cdda.dll
|_ MD5: DCA2D58AF7EAE168DBE94DB9A8D2FBAB
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_dshow.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_dshow.dll
|_ MD5: E4C9A51F03D6688DD61F3920E24A8932
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_linein.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_linein.dll
|_ MD5: C960A7EBAC64B0356CA3BD38AB7EE5AF
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_midi.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_midi.dll
|_ MD5: C7E50AD1E565582FEE2B9DFEC95B5A19
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_mod.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_mod.dll
|_ MD5: E2F6829136AED01B24CE87C7D8999B5A
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_mp3.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_mp3.dll
|_ MD5: B990663B3216551776265C9C55FB3CFB
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_mp4.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_mp4.dll
|_ MD5: DA564CA3F11AD0AE67CC6377013416B3
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_nsv.dll
|_ Cesta: C:\Program Files\Winamp\Plugins\in_nsv.dll
|_ MD5: D4E2A90DA50F2CDF002C70E85708F1FB
|_ Výrobce:
|_ Procesy
|_ winamp.exe (3764)
[?] in_vorbis.dll
|_ Cesta: C:\Program Files\Winamp\Plugin
|