Vyléčení následků viru Vyřešeno

Sekce věnovaná virům a jiným škodlivým kódům, rovněž ale nástrojům, kterým se lze proti nim bránit…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod Damned » 25 zář 2009 19:16

No jo.

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:

File::
c:\windows\system32\eEmpty.exe

Folder::
c:\program files\Common Files\Symantec Shared
c:\windows\VDLL.DLL
c:\windows\RUNDL132.EXE
c:\windows\logo_1.exe
c:\program files\NortonInstaller
c:\program files\Alwil Software
c:\documents and settings\Marek\temp
c:\program files\Crawler
c:\program files\McAfee UnInstaller 6.5 Demo English

FileLook::
c:\documents and settings\Marek\USERDATA.DAT

DirLook::
c:\program files\Warp




Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.


Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.
Obrázek

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Reklama
Uživatelský avatar
MaxDamageCZ
Level 2.5
Level 2.5
Příspěvky: 355
Registrován: červenec 09
Bydliště: Ostrava
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod MaxDamageCZ » 25 zář 2009 19:43

ComboFix 09-09-24.01 - Marek 25.09.2009 19:25.16.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.1023.407 [GMT 2:00]
Spuštěný z: c:\documents and settings\Marek\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Marek\Plocha\CFScript.txt
AV: F-Secure Profi Antivirus 8.01 *On-access scanning disabled* (Updated) {E7512ED5-4245-4B4D-AF3A-382D3F313F15}
FW: F-Secure Profi Antivirus 8.01 *disabled* {D4747503-0346-49EB-9262-997542F79BF4}
* Vytvořen nový Bod Obnovení

FILE ::
"c:\windows\system32\eEmpty.exe"
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Marek\temp
c:\documents and settings\Marek\temp\TeamViewer\Version4\Teamviewer_Resource.dll
c:\program files\Alwil Software
c:\program files\Common Files\Symantec Shared
c:\program files\Crawler
c:\program files\Crawler\Toolbar\adrkeys.dat
c:\program files\Crawler\Toolbar\COMMON_FF.dat
c:\program files\Crawler\Toolbar\confirm.dat
c:\program files\Crawler\Toolbar\ctbcomm.dll
c:\program files\Crawler\Toolbar\CTConf.dat
c:\program files\Crawler\Toolbar\CTipsDef.dll
c:\program files\Crawler\Toolbar\CToolbar.exe
c:\program files\Crawler\Toolbar\CUpdate.exe
c:\program files\Crawler\Toolbar\firefox\components\xcomm.dll
c:\program files\Crawler\Toolbar\firefox\components\xplugin.xpt
c:\program files\Crawler\Toolbar\firefox\components\xshared.dll
c:\program files\Crawler\Toolbar\firefox\components\xshared.xpt
c:\program files\Crawler\Toolbar\firefox\components\xsupport.dll
c:\program files\Crawler\Toolbar\firefox\components\xsupport.xpt
c:\program files\Crawler\Toolbar\firefox\components\xwsg.dll
c:\program files\Crawler\Toolbar\firefox\chrome.manifest
c:\program files\Crawler\Toolbar\firefox\chrome\common.jar
c:\program files\Crawler\Toolbar\firefox\chrome\stwsg.jar
c:\program files\Crawler\Toolbar\firefox\install.ini
c:\program files\Crawler\Toolbar\firefox\install.rdf
c:\program files\Crawler\Toolbar\firefox\stwsg_ff.ini
c:\program files\Crawler\Toolbar\Languages\STWSG_CS.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_DE.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_EN.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_ES.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_FF.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_FR.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_IT.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_NL.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_PT-BR.cab
c:\program files\Crawler\Toolbar\Languages\STWSG_PT.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_CS.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_DE.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_EN.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_ES.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_FR.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_IT.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_NL.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_PL.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_PT-BR.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_PT.cab
c:\program files\Crawler\Toolbar\Languages\TBR5_RU.cab
c:\program files\Crawler\Toolbar\lookfor.dat
c:\program files\Crawler\Toolbar\majorse.dat
c:\program files\Crawler\Toolbar\rootmenu.dat
c:\program files\Crawler\Toolbar\services.dat
c:\program files\Crawler\Toolbar\STWSG_FF.dat
c:\program files\Crawler\Toolbar\STWSGLanguageAct\info.ini
c:\program files\Crawler\Toolbar\STWSGLanguageAct\language.ini
c:\program files\Crawler\Toolbar\TBR5LanguageAct\info.ini
c:\program files\Crawler\Toolbar\TBR5LanguageAct\language.ini
c:\program files\Crawler\Toolbar\Update\domains.cab
c:\program files\Crawler\Toolbar\WebSecurityGuard.dll
c:\program files\Crawler\Toolbar\WSGData\domains\domains_000.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_000_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_001.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_001_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_002.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_002_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_003.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_003_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_004.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_004_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_005.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_005_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_006.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_006_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_007.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_007_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_008.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_008_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_009.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_009_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_010.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_010_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_011.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_011_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_012.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_012_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_013.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_013_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_014.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_014_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_015.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_015_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_016.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_016_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_017.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_017_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_018.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_018_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_019.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_019_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_020.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_020_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_021.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_021_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_022.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_022_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_023.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_023_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_024.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_024_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_025.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_025_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_026.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_026_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_027.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_027_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_028.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_028_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_029.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_029_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_030.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_030_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_031.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_031_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_032.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_032_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_033.dat
c:\program files\Crawler\Toolbar\WSGData\domains\domains_033_diff.dat
c:\program files\Crawler\Toolbar\WSGData\domains\index.dat
c:\program files\Crawler\Toolbar\WSGData\g_S-1-5-21-1409082233-220523388-1801674531-1004.dat
c:\program files\Crawler\Toolbar\WSGData\g_S-1-5-21-1409082233-220523388-1801674531-1006.dat
c:\program files\Crawler\Toolbar\WSGData\g_S-1-5-21-1409082233-220523388-1801674531-1007.dat
c:\program files\Crawler\Toolbar\WSGData\ud_S-1-5-21-1409082233-220523388-1801674531-1004.dat
c:\program files\Crawler\Toolbar\WSGData\w_S-1-5-21-1409082233-220523388-1801674531-1004.dat
c:\program files\Crawler\Toolbar\WSGData\w_S-1-5-21-1409082233-220523388-1801674531-1006.dat
c:\program files\Crawler\Toolbar\WSGData\wfilter.dat
c:\program files\McAfee UnInstaller 6.5 Demo English
c:\program files\McAfee UnInstaller 6.5 Demo English\Contact.Txt
c:\program files\McAfee UnInstaller 6.5 Demo English\extra.cab
c:\program files\McAfee UnInstaller 6.5 Demo English\instmsia.exe
c:\program files\McAfee UnInstaller 6.5 Demo English\instmsiw.exe
c:\program files\McAfee UnInstaller 6.5 Demo English\Readme.txt
c:\program files\McAfee UnInstaller 6.5 Demo English\setup.exe
c:\program files\McAfee UnInstaller 6.5 Demo English\setup.ini
c:\program files\McAfee UnInstaller 6.5 Demo English\UNI.msi
c:\program files\McAfee UnInstaller 6.5 Demo English\UNI.pdf
c:\program files\NortonInstaller
c:\windows\logo_1.exe
c:\windows\RUNDL132.EXE
c:\windows\system32\eEmpty.exe
c:\windows\VDLL.DLL

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-08-25 do 2009-09-25 )))))))))))))))))))))))))))))))
.

2009-09-25 12:11 . 2009-09-10 12:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-25 12:11 . 2009-09-25 12:11 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-09-25 12:11 . 2009-09-10 12:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-23 14:23 . 2009-09-25 12:35 -------- d-----w- c:\windows\system32\Adobe
2009-09-23 14:02 . 2009-09-23 14:02 -------- d-----w- c:\program files\Warp
2009-09-21 16:34 . 2009-09-22 17:00 -------- d-----w- c:\program files\Call of Juarez SP Demo
2009-09-21 15:15 . 2009-07-03 14:49 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-09-20 13:28 . 2009-09-21 15:01 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-09-19 18:02 . 2009-09-19 18:18 33920 ----a-w- c:\windows\system32\drivers\fsbts.sys
2009-09-19 18:02 . 2008-12-04 13:57 79872 ----a-w- c:\windows\system32\drivers\fsdfw.sys
2009-09-19 18:00 . 2009-09-25 11:25 -------- d-----w- c:\program files\F-Secure
2009-09-19 15:30 . 2009-09-19 15:31 -------- d-----w- c:\program files\Security Task Manager
2009-09-19 09:33 . 2009-09-19 17:45 -------- d-----w- c:\program files\ESET
2009-09-18 17:23 . 2009-09-18 17:23 12 ----a-w- c:\documents and settings\Marek\USERDATA.DAT
2009-09-12 15:56 . 2009-09-12 16:03 -------- d-----w- c:\program files\ICQ6.5
2009-09-10 15:29 . 2009-06-21 21:48 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-09-01 16:41 . 2009-09-01 16:43 -------- d-----w- c:\program files\Common Files\Jasc Software Inc
2009-09-01 16:40 . 2009-09-01 16:41 -------- d-----w- c:\program files\Jasc Software Inc
2009-09-01 16:33 . 2009-09-01 16:33 -------- d-----w- c:\program files\Bonjour
2009-09-01 16:05 . 2009-09-01 16:05 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2009-09-01 14:34 . 2009-09-01 14:34 160285 ----a-w- c:\windows\Sqirlz Morph Uninstaller.exe
2009-09-01 14:34 . 2009-09-01 14:34 -------- d-----w- c:\program files\Sqirlz Morph

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-21 15:11 . 2007-01-20 12:48 -------- d-----w- c:\program files\Lavasoft
2009-09-19 18:02 . 2004-08-18 12:00 95722 ----a-w- c:\windows\system32\perfc005.dat
2009-09-19 18:02 . 2004-08-18 12:00 467428 ----a-w- c:\windows\system32\perfh005.dat
2009-09-19 13:09 . 2009-07-28 08:44 -------- d-----w- c:\program files\Trend Micro
2009-09-12 15:57 . 2008-05-29 15:58 -------- d-----w- c:\program files\ICQ6
2009-09-05 16:41 . 2006-07-04 06:24 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-09-02 09:26 . 2008-11-06 15:38 -------- d-----w- c:\program files\NextUp Talker
2009-09-01 16:54 . 2006-07-10 07:04 -------- d-----w- c:\program files\Common Files\Adobe
2009-08-31 14:44 . 2008-02-03 17:51 -------- d-----w- c:\program files\Toribash-3.1
2009-08-31 13:59 . 2009-08-09 10:20 -------- d-----w- c:\program files\Passware
2009-08-31 13:54 . 2009-04-13 16:45 -------- d-----w- c:\program files\Free Power Word to Pdf Converter
2009-08-31 13:54 . 2009-04-13 16:34 -------- d-----w- c:\program files\Free PDF to Word Doc Converter
2009-08-31 13:41 . 2008-06-02 12:40 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-08-31 13:39 . 2006-08-25 09:21 -------- d-----w- c:\program files\Sony Ericsson
2009-08-31 13:39 . 2006-08-25 09:21 -------- d-----w- c:\program files\Common Files\Teleca Shared
2009-08-31 13:37 . 2008-11-05 19:11 -------- d-----w- c:\program files\Text to Speech Maker
2009-08-31 13:23 . 2009-06-30 11:44 -------- d-----w- c:\program files\MumboJumbo
2009-08-31 13:23 . 2009-02-24 13:08 -------- d-----w- c:\program files\Wanadoo Edition
2009-08-31 13:13 . 2009-08-03 15:13 -------- d-----w- c:\program files\Actual Drawing
2009-08-31 13:13 . 2009-05-06 16:55 -------- d-----w- c:\program files\Acoustica Mixcraft
2009-08-22 18:03 . 2007-05-07 10:42 -------- d-----w- c:\program files\Rockstar Games
2009-08-13 13:33 . 2006-09-09 18:51 -------- d-----w- c:\program files\Java
2009-08-09 11:54 . 2006-09-09 18:52 -------- d-----w- c:\program files\Google
2009-08-08 09:53 . 2009-08-08 09:51 -------- d-----w- c:\program files\Canon
2009-08-08 09:50 . 2009-08-08 09:50 -------- d-----w- c:\program files\Common Files\Canon
2009-08-05 09:01 . 2004-08-18 12:00 205312 ----a-w- c:\windows\system32\mswebdvd.dll
2009-08-01 16:38 . 2008-08-02 17:50 -------- d-----w- c:\program files\Windows Desktop Search
2009-08-01 15:00 . 2009-07-30 11:56 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-07-28 17:50 . 2009-07-28 17:50 -------- d-----w- c:\program files\PetrLite
2009-07-28 15:36 . 2009-07-28 15:36 -------- d-----w- c:\program files\CCleaner
2009-07-28 15:30 . 2009-07-28 15:30 118842 ------r- c:\windows\bwUnin-6.3.2.116-7681197L.exe
2009-07-28 15:25 . 2009-07-28 15:16 -------- d-----w- c:\program files\RegCleaner
2009-07-28 13:59 . 2009-07-28 13:58 -------- d-----w- c:\program files\Smarty Uninstaller Pro
2009-07-28 13:57 . 2009-07-28 13:57 -------- d-----w- c:\program files\VS Revo Group
2009-07-27 15:10 . 2006-07-05 17:26 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-07-25 03:23 . 2009-08-04 11:37 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-07-17 19:04 . 2004-08-18 12:00 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-13 21:43 . 2004-08-18 12:00 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-07-03 16:59 . 2004-08-18 12:00 915456 ------w- c:\windows\system32\wininet.dll
2004-08-23 21:38 . 2004-08-23 21:38 3371 ----a-w- c:\program files\!!!readme.txt
2004-08-23 19:08 . 2004-08-23 19:08 83968 -c--a-w- c:\program files\NB_NB_2_12_37.xls
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.

--- c:\documents and settings\Marek\USERDATA.DAT ---
Company: ------
File Description: ------
File Version: ------
Product Name: ------
Copyright: ------
Original Filename: ------
File size: 12
Created time: 2009-09-18 17:23
Modified time: 2009-09-18 17:23
MD5: EC2D55B17F9393FD22C2D812C7A64CF8
SHA1: 25EF6234207358BB87E080718CFE8BC5F8681F12

---- Directory of c:\program files\Warp ----

2007-03-11 18:15 . 2007-03-11 18:15 843776 ----a-w- c:\program files\Warp\Warp.exe
2005-11-09 10:36 . 2005-11-09 10:36 9511 ----a-w- c:\program files\Warp\dubya.jpg
2005-11-09 10:36 . 2005-11-09 10:36 1712128 ----a-w- c:\program files\Warp\GdiPlus.dll


(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NVIDIA nTune"="c:\program files\NVIDIA Corporation\nTune\nTuneCmd.exe" [2007-09-04 81920]
"Google Update"="c:\documents and settings\Marek\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-06-20 133104]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-10-07 13574144]
"F-Secure Manager"="c:\program files\F-Secure\Common\FSM32.EXE" [2008-12-04 182936]
"F-Secure TNB"="c:\program files\F-Secure\FSGUI\TNBUtil.exe" [2008-12-04 957024]
"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 1312080]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"PnkBstrB"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Kodak\\KODAK Software Updater\\7288971\\Program\\backWeb-7288971.exe"=
"c:\\Program Files\\Electronic Arts\\Need For Speed III\\nfs3.exe"=
"c:\\Program Files\\Sierra\\SWAT 4\\Content\\System\\Swat4.exe"=
"c:\\WINDOWS\\system32\\dpnsvr.exe"=
"c:\\Program Files\\Illusion Softworks\\Hidden & Dangerous 2\\hd2.exe"=
"c:\\WINDOWS\\system32\\dplaysvr.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"c:\\Sierra\\CoolPool\\coolpool.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Codemasters\\Worms 4 Totalni narez\\Worms 4 Mayhem.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\World of Warcraft\\BackgroundDownloader.exe"=
"c:\\Program Files\\Hamachi\\hamachi.exe"=
"c:\\Program Files\\Electronic Arts\\Medal of Honor Airborne\\UnrealEngine3\\Binaries\\MOHA.exe"=
"c:\\Program Files\\Sony Ericsson\\Update Service\\Update Service.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Documents and Settings\\Marek\\Local Settings\\Data aplikací\\Dyyno Receiver\\DPPM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\keyclone\\keyclone.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\World of Warcraft\\Launcher.exe"=
"c:\\Program Files\\World of Warcraft\\WoW-3.0.1-to-3.0.2-enGB-Win-Update-downloader.exe"=
"c:\\Documents and Settings\\Marek\\Local Settings\\Data aplikací\\Google\\Google Talk Plugin\\googletalkplugin.dll"=
"c:\\Documents and Settings\\Marek\\Local Settings\\Data aplikací\\Google\\Google Talk Plugin\\googletalkplugin.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"2869:TCP"= 2869:TCP:@xpsp2res.dll,-22008
"11001:TCP"= 11001:TCP:H&D2 port 11001
"11001:UDP"= 11001:UDP:H&D2 port 11001
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724
"12001:UDP"= 12001:UDP:SMART WebServer Handshake Multicast Port
"6112:TCP"= 6112:TCP:Blizzard Downloader

R0 fsbts;fsbts;c:\windows\system32\drivers\fsbts.sys [19.9.2009 20:02 33920]
R0 FSFW;F-Secure Firewall Driver;c:\windows\system32\drivers\fsdfw.sys [19.9.2009 20:02 79872]
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [21.9.2009 17:15 64160]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [5.7.2006 14:46 63352]
R1 F-Secure HIPS;F-Secure HIPS Driver;c:\program files\F-Secure\HIPS\drivers\fshs.sys [19.9.2009 20:01 67808]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [3.7.2009 16:49 1028432]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;c:\program files\F-Secure\Anti-Virus\minifilter\fsgk.sys [19.9.2009 20:01 99960]
R3 FSORSPClient;F-Secure ORSP Client;c:\program files\F-Secure\ORSP Client\fsorsp.exe [19.9.2009 20:01 55904]
S2 gupdate1ca18e6298cdd6;Google Update Service (gupdate1ca18e6298cdd6);c:\program files\Google\Update\GoogleUpdate.exe [9.8.2009 13:39 133104]
S3 axskbus;axskbus;c:\windows\system32\DRIVERS\axskbus.sys --> c:\windows\system32\DRIVERS\axskbus.sys [?]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [20.2.2008 20:49 13352]
S3 M1000Srv;M5603C USB2.0 Camera Driver;c:\windows\system32\Drivers\M1000KNT.sys --> c:\windows\system32\Drivers\M1000KNT.sys [?]
S4 BackWeb Plug-in - 7681197;F-Secure Automatic Update;c:\progra~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE --> c:\progra~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE [?]
S4 F-Secure Filter;F-Secure File System Filter;c:\program files\F-Secure\Anti-Virus\win2k\fsfilter.sys [19.9.2009 20:01 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer;c:\program files\F-Secure\Anti-Virus\win2k\fsrec.sys [19.9.2009 20:01 25184]
S4 SMART Web Server;SMART Web Server;c:\program files\SMART Technologies Inc\SMART Board Software\WebServer.exe [19.4.2007 7:42 759312]

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Obsah adresáře 'Naplánované úlohy'

2009-09-21 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03 15:14]

2009-06-30 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2007-06-03 11:42]

2009-09-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-09 11:38]

2009-09-25 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-08-09 11:38]

2009-09-25 c:\windows\Tasks\User_Feed_Synchronization-{CB8F93AA-F0A1-41BE-9268-229B640A54CD}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]

2009-09-25 c:\windows\Tasks\User_Feed_Synchronization-{D8C6849B-BD9A-4B92-970F-E7635BC45510}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 02:31]
.
.
------- Doplňkový sken -------
.
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
LSP: c:\program files\F-Secure\FSPS\program\FSLSP.DLL
FF - ProfilePath - c:\documents and settings\Marek\Data aplikací\Mozilla\Firefox\Profiles\j2ggv3xx.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-CToolbar_UNINSTALL - c:\progra~1\Crawler\Toolbar\CToolbar.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-09-25 19:39
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1409082233-220523388-1801674531-1004\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:df,62,2c,55,b4,92,8c,81,8f,81,d7,2e,f6,2f,99,2a,af,76,f8,bb,39,8e,53,
3b,98,84,f3,a1,74,26,e8,39,f4,22,d8,75,d3,12,9d,76,c2,c3,f8,38,95,43,4a,2c,\
"??"=hex:a9,1b,d4,2d,84,8a,c8,cc,72,9b,3f,aa,56,b9,ca,9f
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'lsass.exe'(840)
c:\program files\F-Secure\FSPS\program\FSLSP.DLL
.
Celkový čas: 2009-09-25 19:42
ComboFix-quarantined-files.txt 2009-09-25 17:41
ComboFix2.txt 2009-09-25 16:43

Před spuštěním: Volných bajtů: 135 070 240 768
Po spuštění: Volných bajtů: 135 015 960 576

389 --- E O F --- 2009-09-10 19:27
AMD Athlon II X4 640 3.00Ghz Ram 4 GB, Win 7 64 bit, Grafika ATI Radeon HD 4600 series 1GB, HDD 600GB


Iphone 3g 16gb černý

Uživatelský avatar
MaxDamageCZ
Level 2.5
Level 2.5
Příspěvky: 355
Registrován: červenec 09
Bydliště: Ostrava
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod MaxDamageCZ » 25 zář 2009 19:45

Tak jsem vše udělal, ale bohužel vše při starém :-(
AMD Athlon II X4 640 3.00Ghz Ram 4 GB, Win 7 64 bit, Grafika ATI Radeon HD 4600 series 1GB, HDD 600GB


Iphone 3g 16gb černý

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod Damned » 25 zář 2009 20:30

Červený soubor zkontroluj na Virustotalu a vlož sem odkaz na výsledek.
Pokud ho nenajdeš, dej si zobrazit skryté a systémové soubory. Pokud ti nabídne, že soubor už kontroloval,
nech ho zkontrolovat znovu, a počkej až se objeví "Dokončeno" a výsledek.Potom sem zkopíruj adresní řádek.

c:\program files\Warp\Warp.exe
c:\program files\Warp\GdiPlus.dll
*****************************************************************************************************************************************
Stáhni si :Dr. Web CureIt
dej update , po aktualizaci dej úplný sken.
Tlačítky dole můzeš soubor léčit, smazat, přesunout nebo přejmenovat. Nejdříve léčit. pak mazat.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
MaxDamageCZ
Level 2.5
Level 2.5
Příspěvky: 355
Registrován: červenec 09
Bydliště: Ostrava
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod MaxDamageCZ » 26 zář 2009 12:16

TO JE TEN PRVNÍ

Soubor Warp.exe přijatý 2009.09.26 10:15:08 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.26 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2442 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.855 2009.09.26 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.52.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 843776 bytes
MD5...: d7b36179c33173768e444a9cc15fb9bb
SHA1..: b3fd54cf54cf24420715b8ad8117bb61adb358d1
SHA256: cede7dec5c327e59056310042840ce7bb6cd6abf943421d23d361029cbb67edf
ssdeep: 12288:WtWH8Yhc/YikiSEuZ2jf1c/BwSbTLfUNknviTHurtvSQLrRghJwHa4:WtY
GxIBwkfUNk8HuroQLObqa
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x10708
timedatestamp.....: 0x45f4635b (Sun Mar 11 20:15:23 2007)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1025a 0x11000 6.27 08beb28d26d906d9033d369e9f55a17d
.rdata 0x12000 0x2b36 0x3000 4.98 be13403daacc4a65c8c1b7d0e24c4b64
.data 0x15000 0x21e4 0x2000 4.42 e1e5fe810df11cf3bab45aaeda799a86
.rsrc 0x18000 0xb65f8 0xb7000 6.33 5d0eb9d4df33c9432bb53108a68d54c5

( 12 imports )
> OPENGL32.dll: glClear, glPushName, glPushMatrix, glVertex3f, glLineStipple, glBegin, glColor3f, glEnd, glDisable, glTranslatef, glInitNames, glBlendFunc, glTexCoord2f, glLoadName, glPointSize, glPopName, glPopMatrix, wglCreateContext, glSelectBuffer, glGetIntegerv, glColor4f, glRenderMode, glTexParameteri, glBindTexture, glPixelStorei, glGenTextures, glTexEnvi, glReadPixels, glFlush, wglSwapLayerBuffers, glEnable, glOrtho, glClearColor, glViewport, glMatrixMode, glLoadIdentity, wglMakeCurrent
> GLU32.dll: gluBeginSurface, gluNurbsSurface, gluEndSurface, gluNewNurbsRenderer, gluNurbsProperty, gluBuild2DMipmaps, gluPickMatrix
> MSVCRT.dll: _controlfp, _iob, _except_handler3, __set_app_type, __p__fmode, __p__commode, _adjust_fdiv, __setusermatherr, _initterm, __getmainargs, _acmdln, _XcptFilter, _exit, _onexit, __dllonexit, getenv, sscanf, fprintf, exit, atoi, wcscmp, _ftol, fwrite, longjmp, _setjmp3, fopen, fread, fclose, malloc, free, sprintf, __3@YAXPAX@Z, __CxxFrameHandler, __2@YAPAXI@Z, _stricmp, _wcsset, _setmbcp
> MFC42.DLL: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> KERNEL32.dll: GetModuleHandleA, GetVolumeInformationA, MultiByteToWideChar, GetStartupInfoA
> USER32.dll: SetCapture, InvalidateRect, GetActiveWindow, ReleaseCapture, LoadImageA, SetTimer, LoadBitmapA, GetCapture, GetClientRect, ReleaseDC, GetDC, EnableWindow, UpdateWindow, LoadCursorA
> GDI32.dll: CreateDIBSection, ChoosePixelFormat, SetPixelFormat, CreateCompatibleDC, BitBlt, GetObjectA, DeleteObject
> ADVAPI32.dll: RegQueryValueExA, RegOpenKeyExA, RegCreateKeyExA, RegCloseKey, RegSetValueExA
> SHELL32.dll: ShellExecuteA
> ole32.dll: CreateStreamOnHGlobal
> gdiplus.dll: GdipSaveImageToStream, GdipLoadImageFromFile, GdipFree, GdipAlloc, GdipCloneImage, GdipDisposeImage, GdipGetImageEncodersSize, GdiplusStartup, GdipGetImageEncoders
> NETAPI32.dll: Netbios

( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable MS Visual C++ (generic) (75.0%)
Win32 Executable Generic (16.9%)
Generic Win/DOS Executable (3.9%)
DOS Executable Generic (3.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
sigcheck:
publisher....:
copyright....: Copyright (C) 2007
product......: Warp Application
description..: Warp MFC Application
original name: Warp.EXE
internal name: Warp
file version.: 2, 0, 0, 2
comments.....:
signers......: -
signing date.: -
verified.....: Unsigned
AMD Athlon II X4 640 3.00Ghz Ram 4 GB, Win 7 64 bit, Grafika ATI Radeon HD 4600 series 1GB, HDD 600GB


Iphone 3g 16gb černý

Uživatelský avatar
MaxDamageCZ
Level 2.5
Level 2.5
Příspěvky: 355
Registrován: červenec 09
Bydliště: Ostrava
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod MaxDamageCZ » 26 zář 2009 12:19

Soubor GdiPlus.dll přijatý 2009.09.26 10:17:57 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0%)
Formátované
Vytisknout výsledky
Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.26 -
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 -
Antiy-AVL 2.0.3.7 2009.09.25 -
Authentium 5.1.2.4 2009.09.25 -
Avast 4.8.1351.0 2009.09.26 -
AVG 8.5.0.412 2009.09.26 -
BitDefender 7.2 2009.09.26 -
CAT-QuickHeal 10.00 2009.09.26 -
ClamAV 0.94.1 2009.09.26 -
Comodo 2442 2009.09.26 -
DrWeb 5.0.0.12182 2009.09.26 -
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6761 2009.09.25 -
F-Prot 4.5.1.85 2009.09.25 -
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.26 -
GData 19 2009.09.26 -
Ikarus T3.1.1.72.0 2009.09.26 -
Jiangmin 11.0.800 2009.09.26 -
K7AntiVirus 7.10.855 2009.09.26 -
Kaspersky 7.0.0.125 2009.09.26 -
McAfee 5752 2009.09.25 -
McAfee+Artemis 5752 2009.09.25 -
McAfee-GW-Edition 6.8.5 2009.09.26 -
Microsoft 1.5005 2009.09.23 -
NOD32 4458 2009.09.25 -
Norman 6.01.09 2009.09.25 -
nProtect 2009.1.8.0 2009.09.26 -
Panda 10.0.2.2 2009.09.25 -
PCTools 4.4.2.0 2009.09.25 -
Prevx 3.0 2009.09.26 -
Rising 21.48.52.00 2009.09.26 -
Sophos 4.45.0 2009.09.26 -
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.26 -
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.25 -
Rozšiřující informace
File size: 1712128 bytes
MD5...: 78bdc89c5d9e206209bec5a5a73f91f7
SHA1..: 5f6eb616b854cc698451f96bbe9cf5049f25245e
SHA256: ddbcc667f1adeeaa2c3f3f9e9a0c163d624cf8168462710f939854ec13901ce4
ssdeep: 24576:6s2rkB+WyM887ZhRfQ3KO82GnGoMNrpajFbOr1Byp3+bo8pYKn:6dUyM8A
q3KxJn09ApO/bWK
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0xedfb5
timedatestamp.....: 0x4110968b (Wed Aug 04 07:55:55 2004)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1788f3 0x179000 6.70 4c6f9248798a2a49d6a169e783eca3a0
.data 0x17a000 0xcdd8 0xc000 4.94 fb34dcd73f22763346a0b1cf0b26f6a8
Shared 0x187000 0xdc8 0x1000 2.44 3237f20954680d5b09e277883a0ec64e
.rsrc 0x188000 0x119c8 0x12000 6.59 e558bbc0f6c4cfaecb1150a032a02932
.reloc 0x19a000 0x8a04 0x9000 6.20 b83df45f3fbff61d9c673a09b3a5e0c3

( 5 imports )
> KERNEL32.dll: CreateSemaphoreA, InterlockedDecrement, EnterCriticalSection, LeaveCriticalSection, HeapAlloc, InterlockedExchange, GetCurrentThreadId, InitializeCriticalSection, DeleteCriticalSection, DisableThreadLibraryCalls, QueryPerformanceCounter, GetTickCount, RaiseException, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, Sleep, CloseHandle, WriteFile, CreateFileA, WaitForSingleObject, SetEvent, lstrcmpiA, CreateThread, CreateEventA, WideCharToMultiByte, MultiByteToWideChar, VirtualProtect, GetLocaleInfoA, GetStringTypeW, GetStringTypeA, LCMapStringW, LCMapStringA, GetCPInfo, VirtualQuery, RtlUnwind, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, GetStdHandle, SetHandleCount, ExitProcess, GetCommandLineA, GetSystemInfo, HeapReAlloc, HeapFree, VirtualAlloc, IsValidLocale, ConvertDefaultLocale, GetLocaleInfoW, GetModuleFileNameW, GetModuleFileNameA, FindResourceA, LoadResource, LockResource, GetProfileIntA, GetProfileStringA, lstrcmpiW, IsDBCSLeadByteEx, LocalReAlloc, MulDiv, SetLastError, LocalAlloc, LocalFree, GetFileTime, SearchPathW, SearchPathA, GetOEMCP, InterlockedIncrement, LoadLibraryW, GetSystemDirectoryA, CreateFileMappingW, ReleaseSemaphore, GetProfileSectionA, CreateFileW, SetEndOfFile, SetFilePointer, ReadFile, UnlockFile, GetFileInformationByHandle, LockFile, FlushFileBuffers, GetLastError, VirtualFree, GlobalAlloc, GetFileSize, CreateFileMappingA, MapViewOfFile, UnmapViewOfFile, GlobalLock, GlobalSize, GlobalUnlock, GlobalFree, HeapCreate, GetModuleHandleA, GetSystemDirectoryW, GetWindowsDirectoryA, FreeLibrary, HeapDestroy, LoadLibraryA, GetVersionExA, GetACP, GetModuleHandleW, GetProcAddress, GetSystemDefaultLCID
> USER32.dll: MsgWaitForMultipleObjects, LoadBitmapW, LoadBitmapA, wsprintfW, ReleaseDC, GetDC, wsprintfA, GetSysColor, UnregisterClassA, DestroyWindow, GetSystemMetrics, DefWindowProcA, CreateWindowExA, RegisterWindowMessageA, RegisterClassA, DispatchMessageA, TranslateMessage, PeekMessageA, GetClientRect, GetDesktopWindow, GetWindowRect, WindowFromDC, ClientToScreen, wvsprintfA, CreateIconIndirect, GetIconInfo, GetDCEx, GetWindowLongA, GetClassLongA, SystemParametersInfoA
> GDI32.dll: GetDIBColorTable, FillRgn, SetMiterLimit, CreateSolidBrush, StrokePath, GetGraphicsMode, SetPolyFillMode, FillPath, StrokeAndFillPath, PolyPolyline, GetNearestPaletteIndex, ExtTextOutA, GetTextCharsetInfo, TranslateCharsetInfo, PolylineTo, Polyline, LineTo, GetCurrentPositionEx, ArcTo, SetArcDirection, SelectClipPath, GetPath, CloseFigure, AbortPath, FlattenPath, WidenPath, BeginPath, Ellipse, AngleArc, PolyBezierTo, PolyBezier, RoundRect, PolyDraw, Pie, Chord, Arc, EndPath, OffsetClipRgn, GetRgnBox, CombineRgn, SetPaletteEntries, ResizePalette, ExcludeClipRect, MoveToEx, PlayEnhMetaFile, GetWinMetaFileBits, PlgBlt, BitBlt, OffsetViewportOrgEx, StretchBlt, ScaleViewportExtEx, ScaleWindowExtEx, CombineTransform, SetMapperFlags, CreatePen, CreateDIBitmap, CreatePatternBrush, ExtSelectClipRgn, GetBkMode, GetTextAlign, ModifyWorldTransform, ExtCreateRegion, CreateCompatibleBitmap, GetNearestColor, SetStretchBltMode, StretchDIBits, SetTextAlign, SetTextJustification, PolyPolygon, PlayMetaFileRecord, ExtCreatePen, GetWorldTransform, GetROP2, SetROP2, Rectangle, Polygon, IntersectClipRect, SetBrushOrgEx, GetClipRgn, SelectClipRgn, GetBkColor, GetTextColor, CreatePenIndirect, GetObjectW, DPtoLP, CreateDIBPatternBrushPt, ExtTextOutW, SetBitmapBits, SetDIBColorTable, CreateEnhMetaFileW, GdiComment, GetMetaFileW, GetMetaFileA, SaveDC, SetWindowOrgEx, SetViewportOrgEx, SetGraphicsMode, SetWorldTransform, GetEnhMetaFileW, GetEnhMetaFileA, GetEnhMetaFileBits, CopyEnhMetaFileA, CopyMetaFileA, DeleteMetaFile, GetEnhMetaFileHeader, SetMetaFileBitsEx, SetEnhMetaFileBits, CreateEnhMetaFileA, SetMapMode, SetViewportExtEx, SetWindowExtEx, PlayMetaFile, CloseEnhMetaFile, DeleteEnhMetaFile, SetMetaRgn, GetMetaFileBitsEx, EnumMetaFile, EnumEnhMetaFile, PlayEnhMetaFileRecord, RestoreDC, GetStockObject, CreateBitmap, SetTextColor, SetBkColor, SetBkMode, CreatePalette, GetSystemPaletteEntries, GetSystemPaletteUse, GetDeviceCaps, ExtEscape, GetObjectType, GetPixel, DeleteObject, SelectPalette, GetTextFaceA, GetTextMetricsA, GetTextFaceW, GetTextMetricsW, EnumFontFamiliesExA, EnumFontFamiliesExW, SelectObject, CreateFontIndirectW, CreateFontIndirectA, GetRegionData, DeleteDC, CreateDCA, CreateICA, CreateRectRgn, GetRandomRgn, LPtoDP, GetWindowExtEx, GetViewportExtEx, GetWindowOrgEx, GetViewportOrgEx, GetMapMode, SetICMMode, Escape, GetDCOrgEx, GetObjectA, GetCurrentObject, GetDIBits, CreateCompatibleDC, CreateDIBSection, RealizePalette, GetPaletteEntries, GdiFlush, PatBlt, CreateBrushIndirect, SetDIBits
> ole32.dll: CoTaskMemAlloc, CoTaskMemFree, CreateStreamOnHGlobal
> ADVAPI32.dll: RegOpenKeyW, RegOpenKeyA, RegCloseKey, RegEnumValueW, RegQueryInfoKeyA, RegOpenKeyExA, RegOpenKeyExW, RegQueryInfoKeyW, RegQueryValueExA, RegQueryValueExW, RegEnumKeyExA, RegEnumKeyExW, RegCreateKeyExA, RegSetValueExW, RegSetValueExA, RegDeleteKeyW, RegDeleteKeyA, RegCreateKeyExW, RegEnumValueA

( 609 exports )
GdipAddPathArc, GdipAddPathArcI, GdipAddPathBezier, GdipAddPathBezierI, GdipAddPathBeziers, GdipAddPathBeziersI, GdipAddPathClosedCurve, GdipAddPathClosedCurve2, GdipAddPathClosedCurve2I, GdipAddPathClosedCurveI, GdipAddPathCurve, GdipAddPathCurve2, GdipAddPathCurve2I, GdipAddPathCurve3, GdipAddPathCurve3I, GdipAddPathCurveI, GdipAddPathEllipse, GdipAddPathEllipseI, GdipAddPathLine, GdipAddPathLine2, GdipAddPathLine2I, GdipAddPathLineI, GdipAddPathPath, GdipAddPathPie, GdipAddPathPieI, GdipAddPathPolygon, GdipAddPathPolygonI, GdipAddPathRectangle, GdipAddPathRectangleI, GdipAddPathRectangles, GdipAddPathRectanglesI, GdipAddPathString, GdipAddPathStringI, GdipAlloc, GdipBeginContainer, GdipBeginContainer2, GdipBeginContainerI, GdipBitmapGetPixel, GdipBitmapLockBits, GdipBitmapSetPixel, GdipBitmapSetResolution, GdipBitmapUnlockBits, GdipClearPathMarkers, GdipCloneBitmapArea, GdipCloneBitmapAreaI, GdipCloneBrush, GdipCloneCustomLineCap, GdipCloneFont, GdipCloneFontFamily, GdipCloneImage, GdipCloneImageAttributes, GdipCloneMatrix, GdipClonePath, GdipClonePen, GdipCloneRegion, GdipCloneStringFormat, GdipClosePathFigure, GdipClosePathFigures, GdipCombineRegionPath, GdipCombineRegionRect, GdipCombineRegionRectI, GdipCombineRegionRegion, GdipComment, GdipCreateAdjustableArrowCap, GdipCreateBitmapFromDirectDrawSurface, GdipCreateBitmapFromFile, GdipCreateBitmapFromFileICM, GdipCreateBitmapFromGdiDib, GdipCreateBitmapFromGraphics, GdipCreateBitmapFromHBITMAP, GdipCreateBitmapFromHICON, GdipCreateBitmapFromResource, GdipCreateBitmapFromScan0, GdipCreateBitmapFromStream, GdipCreateBitmapFromStreamICM, GdipCreateCachedBitmap, GdipCreateCustomLineCap, GdipCreateFont, GdipCreateFontFamilyFromName, GdipCreateFontFromDC, GdipCreateFontFromLogfontA, GdipCreateFontFromLogfontW, GdipCreateFromHDC, GdipCreateFromHDC2, GdipCreateFromHWND, GdipCreateFromHWNDICM, GdipCreateHBITMAPFromBitmap, GdipCreateHICONFromBitmap, GdipCreateHalftonePalette, GdipCreateHatchBrush, GdipCreateImageAttributes, GdipCreateLineBrush, GdipCreateLineBrushFromRect, GdipCreateLineBrushFromRectI, GdipCreateLineBrushFromRectWithAngle, GdipCreateLineBrushFromRectWithAngleI, GdipCreateLineBrushI, GdipCreateMatrix, GdipCreateMatrix2, GdipCreateMatrix3, GdipCreateMatrix3I, GdipCreateMetafileFromEmf, GdipCreateMetafileFromFile, GdipCreateMetafileFromStream, GdipCreateMetafileFromWmf, GdipCreateMetafileFromWmfFile, GdipCreatePath, GdipCreatePath2, GdipCreatePath2I, GdipCreatePathGradient, GdipCreatePathGradientFromPath, GdipCreatePathGradientI, GdipCreatePathIter, GdipCreatePen1, GdipCreatePen2, GdipCreateRegion, GdipCreateRegionHrgn, GdipCreateRegionPath, GdipCreateRegionRect, GdipCreateRegionRectI, GdipCreateRegionRgnData, GdipCreateSolidFill, GdipCreateStreamOnFile, GdipCreateStringFormat, GdipCreateTexture, GdipCreateTexture2, GdipCreateTexture2I, GdipCreateTextureIA, GdipCreateTextureIAI, GdipDeleteBrush, GdipDeleteCachedBitmap, GdipDeleteCustomLineCap, GdipDeleteFont, GdipDeleteFontFamily, GdipDeleteGraphics, GdipDeleteMatrix, GdipDeletePath, GdipDeletePathIter, GdipDeletePen, GdipDeletePrivateFontCollection, GdipDeleteRegion, GdipDeleteStringFormat, GdipDisposeImage, GdipDisposeImageAttributes, GdipDrawArc, GdipDrawArcI, GdipDrawBezier, GdipDrawBezierI, GdipDrawBeziers, GdipDrawBeziersI, GdipDrawCachedBitmap, GdipDrawClosedCurve, GdipDrawClosedCurve2, GdipDrawClosedCurve2I, GdipDrawClosedCurveI, GdipDrawCurve, GdipDrawCurve2, GdipDrawCurve2I, GdipDrawCurve3, GdipDrawCurve3I, GdipDrawCurveI, GdipDrawDriverString, GdipDrawEllipse, GdipDrawEllipseI, GdipDrawImage, GdipDrawImageI, GdipDrawImagePointRect, GdipDrawImagePointRectI, GdipDrawImagePoints, GdipDrawImagePointsI, GdipDrawImagePointsRect, GdipDrawImagePointsRectI, GdipDrawImageRect, GdipDrawImageRectI, GdipDrawImageRectRect, GdipDrawImageRectRectI, GdipDrawLine, GdipDrawLineI, GdipDrawLines, GdipDrawLinesI, GdipDrawPath, GdipDrawPie, GdipDrawPieI, GdipDrawPolygon, GdipDrawPolygonI, GdipDrawRectangle, GdipDrawRectangleI, GdipDrawRectangles, GdipDrawRectanglesI, GdipDrawString, GdipEmfToWmfBits, GdipEndContainer, GdipEnumerateMetafileDestPoint, GdipEnumerateMetafileDestPointI, GdipEnumerateMetafileDestPoints, GdipEnumerateMetafileDestPointsI, GdipEnumerateMetafileDestRect, GdipEnumerateMetafileDestRectI, GdipEnumerateMetafileSrcRectDestPoint, GdipEnumerateMetafileSrcRectDestPointI, GdipEnumerateMetafileSrcRectDestPoints, GdipEnumerateMetafileSrcRectDestPointsI, GdipEnumerateMetafileSrcRectDestRect, GdipEnumerateMetafileSrcRectDestRectI, GdipFillClosedCurve, GdipFillClosedCurve2, GdipFillClosedCurve2I, GdipFillClosedCurveI, GdipFillEllipse, GdipFillEllipseI, GdipFillPath, GdipFillPie, GdipFillPieI, GdipFillPolygon, GdipFillPolygon2, GdipFillPolygon2I, GdipFillPolygonI, GdipFillRectangle, GdipFillRectangleI, GdipFillRectangles, GdipFillRectanglesI, GdipFillRegion, GdipFlattenPath, GdipFlush, GdipFree, GdipGetAdjustableArrowCapFillState, GdipGetAdjustableArrowCapHeight, GdipGetAdjustableArrowCapMiddleInset, GdipGetAdjustableArrowCapWidth, GdipGetAllPropertyItems, GdipGetBrushType, GdipGetCellAscent, GdipGetCellDescent, GdipGetClip, GdipGetClipBounds, GdipGetClipBoundsI, GdipGetCompositingMode, GdipGetCompositingQuality, GdipGetCustomLineCapBaseCap, GdipGetCustomLineCapBaseInset, GdipGetCustomLineCapStrokeCaps, GdipGetCustomLineCapStrokeJoin, GdipGetCustomLineCapType, GdipGetCustomLineCapWidthScale, GdipGetDC, GdipGetDpiX, GdipGetDpiY, GdipGetEmHeight, GdipGetEncoderParameterList, GdipGetEncoderParameterListSize, GdipGetFamily, GdipGetFamilyName, GdipGetFontCollectionFamilyCount, GdipGetFontCollectionFamilyList, GdipGetFontHeight, GdipGetFontHeightGivenDPI, GdipGetFontSize, GdipGetFontStyle, GdipGetFontUnit, GdipGetGenericFontFamilyMonospace, GdipGetGenericFontFamilySansSerif, GdipGetGenericFontFamilySerif, GdipGetHatchBackgroundColor, GdipGetHatchForegroundColor, GdipGetHatchStyle, GdipGetHemfFromMetafile, GdipGetImageAttributesAdjustedPalette, GdipGetImageBounds, GdipGetImageDecoders, GdipGetImageDecodersSize, GdipGetImageDimension, GdipGetImageEncoders, GdipGetImageEncodersSize, GdipGetImageFlags, GdipGetImageGraphicsContext, GdipGetImageHeight, GdipGetImageHorizontalResolution, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImagePixelFormat, GdipGetImageRawFormat, GdipGetImageThumbnail, GdipGetImageType, GdipGetImageVerticalResolution, GdipGetImageWidth, GdipGetInterpolationMode, GdipGetLineBlend, GdipGetLineBlendCount, GdipGetLineColors, GdipGetLineGammaCorrection, GdipGetLinePresetBlend, GdipGetLinePresetBlendCount, GdipGetLineRect, GdipGetLineRectI, GdipGetLineSpacing, GdipGetLineTransform, GdipGetLineWrapMode, GdipGetLogFontA, GdipGetLogFontW, GdipGetMatrixElements, GdipGetMetafileDownLevelRasterizationLimit, GdipGetMetafileHeaderFromEmf, GdipGetMetafileHeaderFromFile, GdipGetMetafileHeaderFromMetafile, GdipGetMetafileHeaderFromStream, GdipGetMetafileHeaderFromWmf, GdipGetNearestColor, GdipGetPageScale, GdipGetPageUnit, GdipGetPathData, GdipGetPathFillMode, GdipGetPathGradientBlend, GdipGetPathGradientBlendCount, GdipGetPathGradientCenterColor, GdipGetPathGradientCenterPoint, GdipGetPathGradientCenterPointI, GdipGetPathGradientFocusScales, GdipGetPathGradientGammaCorrection, GdipGetPathGradientPath, GdipGetPathGradientPointCount, GdipGetPathGradientPresetBlend, GdipGetPathGradientPresetBlendCount, GdipGetPathGradientRect, GdipGetPathGradientRectI, GdipGetPathGradientSurroundColorCount, GdipGetPathGradientSurroundColorsWithCount, GdipGetPathGradientTransform, GdipGetPathGradientWrapMode, GdipGetPathLastPoint, GdipGetPathPoints, GdipGetPathPointsI, GdipGetPathTypes, GdipGetPathWorldBounds, GdipGetPathWorldBoundsI, GdipGetPenBrushFill, GdipGetPenColor, GdipGetPenCompoundArray, GdipGetPenCompoundCount, GdipGetPenCustomEndCap, GdipGetPenCustomStartCap, GdipGetPenDashArray, GdipGetPenDashCap197819, GdipGetPenDashCount, GdipGetPenDashOffset, GdipGetPenDashStyle, GdipGetPenEndCap, GdipGetPenFillType, GdipGetPenLineJoin, GdipGetPenMiterLimit, GdipGetPenMode, GdipGetPenStartCap, GdipGetPenTransform, GdipGetPenUnit, GdipGetPenWidth, GdipGetPixelOffsetMode, GdipGetPointCount, GdipGetPropertyCount, GdipGetPropertyIdList, GdipGetPropertyItem, GdipGetPropertyItemSize, GdipGetPropertySize, GdipGetRegionBounds, GdipGetRegionBoundsI, GdipGetRegionData, GdipGetRegionDataSize, GdipGetRegionHRgn, GdipGetRegionScans, GdipGetRegionScansCount, GdipGetRegionScansI, GdipGetRenderingOrigin, GdipGetSmoothingMode, GdipGetSolidFillColor, GdipGetStringFormatAlign, GdipGetStringFormatDigitSubstitution, GdipGetStringFormatFlags, GdipGetStringFormatHotkeyPrefix, GdipGetStringFormatLineAlign, GdipGetStringFormatMeasurableCharacterRangeCount, GdipGetStringFormatTabStopCount, GdipGetStringFormatTabStops, GdipGetStringFormatTrimming, GdipGetTextContrast, GdipGetTextRenderingHint, GdipGetTextureImage, GdipGetTextureTransform, GdipGetTextureWrapMode, GdipGetVisibleClipBounds, GdipGetVisibleClipBoundsI, GdipGetWorldTransform, GdipGraphicsClear, GdipImageForceValidation, GdipImageGetFrameCount, GdipImageGetFrameDimensionsCount, GdipImageGetFrameDimensionsList, GdipImageRotateFlip, GdipImageSelectActiveFrame, GdipInvertMatrix, GdipIsClipEmpty, GdipIsEmptyRegion, GdipIsEqualRegion, GdipIsInfiniteRegion, GdipIsMatrixEqual, GdipIsMatrixIdentity, GdipIsMatrixInvertible, GdipIsOutlineVisiblePathPoint, GdipIsOutlineVisiblePathPointI, GdipIsStyleAvailable, GdipIsVisibleClipEmpty, GdipIsVisiblePathPoint, GdipIsVisiblePathPointI, GdipIsVisiblePoint, GdipIsVisiblePointI, GdipIsVisibleRect, GdipIsVisibleRectI, GdipIsVisibleRegionPoint, GdipIsVisibleRegionPointI, GdipIsVisibleRegionRect, GdipIsVisibleRegionRectI, GdipLoadImageFromFile, GdipLoadImageFromFileICM, GdipLoadImageFromStream, GdipLoadImageFromStreamICM, GdipMeasureCharacterRanges, GdipMeasureDriverString, GdipMeasureString, GdipMultiplyLineTransform, GdipMultiplyMatrix, GdipMultiplyPathGradientTransform, GdipMultiplyPenTransform, GdipMultiplyTextureTransform, GdipMultiplyWorldTransform, GdipNewInstalledFontCollection, GdipNewPrivateFontCollection, GdipPathIterCopyData, GdipPathIterEnumerate, GdipPathIterGetCount, GdipPathIterGetSubpathCount, GdipPathIterHasCurve, GdipPathIterIsValid, GdipPathIterNextMarker, GdipPathIterNextMarkerPath, GdipPathIterNextPathType, GdipPathIterNextSubpath, GdipPathIterNextSubpathPath, GdipPathIterRewind, GdipPlayMetafileRecord, GdipPrivateAddFontFile, GdipPrivateAddMemoryFont, GdipRecordMetafile, GdipRecordMetafileFileName, GdipRecordMetafileFileNameI, GdipRecordMetafileI, GdipRecordMetafileStream, GdipRecordMetafileStreamI, GdipReleaseDC, GdipRemovePropertyItem, GdipResetClip, GdipResetImageAttributes, GdipResetLineTransform, GdipResetPageTransform, GdipResetPath, GdipResetPathGradientTransform, GdipResetPenTransform, GdipResetTextureTransform, GdipResetWorldTransform, GdipRestoreGraphics, GdipReversePath, GdipRotateLineTransform, GdipRotateMatrix, GdipRotatePathGradientTransform, GdipRotatePenTransform, GdipRotateTextureTransform, GdipRotateWorldTransform, GdipSaveAdd, GdipSaveAddImage, GdipSaveGraphics, GdipSaveImageToFile, GdipSaveImageToStream, GdipScaleLineTransform, GdipScaleMatrix, GdipScalePathGradientTransform, GdipScalePenTransform, GdipScaleTextureTransform, GdipScaleWorldTransform, GdipSetAdjustableArrowCapFillState, GdipSetAdjustableArrowCapHeight, GdipSetAdjustableArrowCapMiddleInset, GdipSetAdjustableArrowCapWidth, GdipSetClipGraphics, GdipSetClipHrgn, GdipSetClipPath, GdipSetClipRect, GdipSetClipRectI, GdipSetClipRegion, GdipSetCompositingMode, GdipSetCompositingQuality, GdipSetCustomLineCapBaseCap, GdipSetCustomLineCapBaseInset, GdipSetCustomLineCapStrokeCaps, GdipSetCustomLineCapStrokeJoin, GdipSetCustomLineCapWidthScale, GdipSetEmpty, GdipSetImageAttributesCachedBackground, GdipSetImageAttributesColorKeys, GdipSetImageAttributesColorMatrix, GdipSetImageAttributesGamma, GdipSetImageAttributesNoOp, GdipSetImageAttributesOutputChannel, GdipSetImageAttributesOutputChannelColorProfile, GdipSetImageAttributesRemapTable, GdipSetImageAttributesThreshold, GdipSetImageAttributesToIdentity, GdipSetImageAttributesWrapMode, GdipSetImagePalette, GdipSetInfinite, GdipSetInterpolationMode, GdipSetLineBlend, GdipSetLineColors, GdipSetLineGammaCorrection, GdipSetLineLinearBlend, GdipSetLinePresetBlend, GdipSetLineSigmaBlend, GdipSetLineTransform, GdipSetLineWrapMode, GdipSetMatrixElements, GdipSetMetafileDownLevelRasterizationLimit, GdipSetPageScale, GdipSetPageUnit, GdipSetPathFillMode, GdipSetPathGradientBlend, GdipSetPathGradientCenterColor, GdipSetPathGradientCenterPoint, GdipSetPathGradientCenterPointI, GdipSetPathGradientFocusScales, GdipSetPathGradientGammaCorrection, GdipSetPathGradientLinearBlend, GdipSetPathGradientPath, GdipSetPathGradientPresetBlend, GdipSetPathGradientSigmaBlend, GdipSetPathGradientSurroundColorsWithCount, GdipSetPathGradientTransform, GdipSetPathGradientWrapMode, GdipSetPathMarker, GdipSetPenBrushFill, GdipSetPenColor, GdipSetPenCompoundArray, GdipSetPenCustomEndCap, GdipSetPenCustomStartCap, GdipSetPenDashArray, GdipSetPenDashCap197819, GdipSetPenDashOffset, GdipSetPenDashStyle, GdipSetPenEndCap, GdipSetPenLineCap197819, GdipSetPenLineJoin, GdipSetPenMiterLimit, GdipSetPenMode, GdipSetPenStartCap, GdipSetPenTransform, GdipSetPenUnit, GdipSetPenWidth, GdipSetPixelOffsetMode, GdipSetPropertyItem, GdipSetRenderingOrigin, GdipSetSmoothingMode, GdipSetSolidFillColor, GdipSetStringFormatAlign, GdipSetStringFormatDigitSubstitution, GdipSetStringFormatFlags, GdipSetStringFormatHotkeyPrefix, GdipSetStringFormatLineAlign, GdipSetStringFormatMeasurableCharacterRanges, GdipSetStringFormatTabStops, GdipSetStringFormatTrimming, GdipSetTextContrast, GdipSetTextRenderingHint, GdipSetTextureTransform, GdipSetTextureWrapMode, GdipSetWorldTransform, GdipShearMatrix, GdipStartPathFigure, GdipStringFormatGetGenericDefault, GdipStringFormatGetGenericTypographic, GdipTestControl, GdipTransformMatrixPoints, GdipTransformMatrixPointsI, GdipTransformPath, GdipTransformPoints, GdipTransformPointsI, GdipTransformRegion, GdipTranslateClip, GdipTranslateClipI, GdipTranslateLineTransform, GdipTranslateMatrix, GdipTranslatePathGradientTransform, GdipTranslatePenTransform, GdipTranslateRegion, GdipTranslateRegionI, GdipTranslateTextureTransform, GdipTranslateWorldTransform, GdipVectorTransformMatrixPoints, GdipVectorTransformMatrixPointsI, GdipWarpPath, GdipWidenPath, GdipWindingModeOutline, GdiplusNotificationHook, GdiplusNotificationUnhook, GdiplusShutdown, GdiplusStartup
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win64 Executable Generic (59.6%)
Win32 Executable MS Visual C++ (generic) (26.2%)
Win32 Executable Generic (5.9%)
Win32 Dynamic Link Library (generic) (5.2%)
Generic Win/DOS Executable (1.3%)
sigcheck:
publisher....: Microsoft Corporation
copyright....: (c) Microsoft Corporation. All rights reserved.
product......: Microsoft_ Windows_ Operating System
description..: Microsoft GDI_
original name: gdiplus
internal name: gdiplus
file version.: 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
AMD Athlon II X4 640 3.00Ghz Ram 4 GB, Win 7 64 bit, Grafika ATI Radeon HD 4600 series 1GB, HDD 600GB


Iphone 3g 16gb černý

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Vyléčení následků viru

Příspěvekod Damned » 26 zář 2009 14:38

Tak toho Dr. Weba
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner


Zpět na “Viry, antiviry, firewally…”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 9 hostů