ComboFix 15-09-21.01 - Petr . 09. 2015 14:14:24.2.4 - x64
Microsoft Windows 8 Pro 6.2.9200.0.1250.420.1029.18.4096.2622 [GMT 2:00]
Spuštěný z: c:\users\Petr\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Petr\Desktop\CFScript.txt
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateComRegisterShell64.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.28.15\GoogleUpdateWebPlugin.exe
c:\program files (x86)\Google\Update\1.3.28.15\goopdate.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.28.15\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.28.15\psmachine.dll
c:\program files (x86)\Google\Update\1.3.28.15\psmachine_64.dll
c:\program files (x86)\Google\Update\1.3.28.15\psuser.dll
c:\program files (x86)\Google\Update\1.3.28.15\psuser_64.dll
c:\program files (x86)\Google\Update\Download\{3C122445-AECE-4309-90B7-85A6AEF42AC0}\1.24.9931.5480\gsync.msi
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.28.15\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\45.0.2454.93\45.0.2454.93_45.0.2454.85_chrome_updater.exe
c:\program files (x86)\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\7.1.5.1557\GoogleEarth-Win-Bundle-7.1.5.1557.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Google\Update\Install\{07A55EBE-21A5-4F33-A5D6-0289201DA05E}\45.0.2454.85_44.0.2403.157_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{1D500ABA-7DBB-4180-9768-3E665FE165FB}\42.0.2311.135_42.0.2311.90_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{2CDF19B3-ED35-465A-85CC-3BD76C24E6B9}\44.0.2403.130_44.0.2403.125_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{32FD59E0-9F77-41EE-BD9C-5DE5D2D308D2}\42.0.2311.152_42.0.2311.135_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{3461F1D8-3AF5-4679-99B0-F4A0184D8E81}\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Install\{4D7634DF-9BA2-449C-B5EE-7BD960800157}\42.0.2311.90_41.0.2272.118_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{4EC204FB-6080-43A3-9117-549F36094B80}\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Install\{530B0725-544E-45D0-AFF4-329EF890EED3}\gsync.msi
c:\program files (x86)\Google\Update\Install\{530B0725-544E-45D0-AFF4-329EF890EED3}\gsync.msi.log
c:\program files (x86)\Google\Update\Install\{57F615B0-DA88-4559-8CDC-D225835DA268}\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Install\{5D58A309-E559-4D4F-8628-F9A5EA3959CF}\43.0.2357.81_43.0.2357.65_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{6BD246FA-C9BF-45CA-AC6A-0A30BD2B16A9}\gsync.msi
c:\program files (x86)\Google\Update\Install\{6BD246FA-C9BF-45CA-AC6A-0A30BD2B16A9}\gsync.msi.log
c:\program files (x86)\Google\Update\Install\{742B1FF7-D930-4D35-B51B-88A89A079AE6}\gsync.msi
c:\program files (x86)\Google\Update\Install\{742B1FF7-D930-4D35-B51B-88A89A079AE6}\gsync.msi.log
c:\program files (x86)\Google\Update\Install\{769E0BF5-D298-4CFD-A258-0D21E3C14B9F}\41.0.2272.89_40.0.2214.115_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{7AB1B10E-5CD2-4959-9366-CB5B832C2CBF}\44.0.2403.125_44.0.2403.107_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{7BAC9984-E4DB-4326-9D29-846C35C1F7CF}\GoogleEarth-Win-Bundle-7.1.5.1557.exe
c:\program files (x86)\Google\Update\Install\{7CDA4DBD-E883-4280-AB32-D66C8AF385CD}\40.0.2214.111_40.0.2214.94_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{7FF7C746-C0B8-46BC-ABC2-3022BBB7AC83}\gsync.msi
c:\program files (x86)\Google\Update\Install\{7FF7C746-C0B8-46BC-ABC2-3022BBB7AC83}\gsync.msi.log
c:\program files (x86)\Google\Update\Install\{810B57B3-534F-4C6C-BDD7-642F7AD010B1}\43.0.2357.124_43.0.2357.81_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{85B4CFEC-D1DB-4995-B758-7FCE8F12C1AC}\45.0.2454.93_45.0.2454.85_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{931FC795-4D2A-4B56-AA0E-9594D791700C}\43.0.2357.65_42.0.2311.152_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{9B276D8E-A3BF-405B-B11F-0BA533F182B5}\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Install\{9F69C0C0-F6B8-469C-9074-71F9F831F841}\44.0.2403.157_44.0.2403.155_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{A47396A5-DFE4-4E76-94DE-07EDC1207040}\40.0.2214.115_40.0.2214.111_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{AA1DF54A-26F8-4B62-87F5-C30C80D7DFAB}\44.0.2403.89_43.0.2357.134_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{B7CFECB5-23E1-4CF3-809B-CE20A88E550C}\43.0.2357.130_43.0.2357.124_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{BCE2D6C8-F6EF-457E-99D9-A4B3A4B9935B}\43.0.2357.134_43.0.2357.132_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{CB424DDE-7897-4EFE-8A2B-D1D9CC90B555}\41.0.2272.101_41.0.2272.89_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{D2580438-D416-45DB-B73A-1F5A154B611D}\41.0.2272.118_41.0.2272.101_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{D56FDF3B-6256-4B0B-981B-DAE3B1684A01}\44.0.2403.155_44.0.2403.130_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{DB920281-99AF-4472-9B42-ECD7D50A10CB}\gsync.msi
c:\program files (x86)\Google\Update\Install\{DB920281-99AF-4472-9B42-ECD7D50A10CB}\gsync.msi.log
c:\program files (x86)\Google\Update\Install\{E6A178E0-8279-4444-9093-1AB9FBBDF3CB}\43.0.2357.132_43.0.2357.130_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{EBE1580F-00F2-4991-B374-9638BDE6F134}\44.0.2403.107_44.0.2403.89_chrome_updater.exe
c:\program files (x86)\Google\Update\Install\{F3103F9F-ACEB-4577-848A-6BD7FCFF497E}\GoogleUpdateSetup.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\Petr\AppData\Local\Temp\_MEI50242\_ctypes.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_elementtree.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_hashlib.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_multiprocessing.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_psutil_windows.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_socket.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_ssl.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\_yappi.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\common.time34.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\hashobjs_ext.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\pyexpat.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\pysqlite2._sqlite.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\python27.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\pythoncom27.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\PyWinTypes27.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\select.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\unicodedata.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\usb_ext.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32api.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32com.shell.shell.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32crypt.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32event.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32file.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32gui.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32inet.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32pdh.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32pipe.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32process.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32profile.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32security.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\win32ts.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\windows._lib_cacheinvalidation.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._animate.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._controls_.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._core_.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._gdi_.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._html2.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._misc_.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._windows_.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wx._wizard.pyd
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxbase30u_net_vc90.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxbase30u_vc90.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxmsw30u_adv_vc90.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxmsw30u_core_vc90.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxmsw30u_html_vc90.dll
c:\users\Petr\AppData\Local\Temp\_MEI50242\wxmsw30u_webview_vc90.dll
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Legacy_gupdate
-------\Legacy_gupdatem
-------\Legacy_gupdate
-------\Legacy_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-08-21 do 2015-09-21 )))))))))))))))))))))))))))))))
.
.
2015-09-21 12:32 . 2015-09-21 12:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-09-21 08:58 . 2015-09-21 08:39 24064 ----a-w- c:\windows\zoek-delete.exe
2015-09-21 08:58 . 2015-09-21 14:29 -------- d-----w- c:\users\Petr\AppData\Local\Temp
2015-09-21 08:45 . 2015-09-21 08:45 -------- d-----w- c:\users\Petr\AppData\Local\CrashDumps
2015-09-21 08:39 . 2015-09-21 08:57 -------- d-----w- C:\zoek_backup
2015-09-20 21:44 . 2015-09-21 08:10 37624 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2015-09-20 21:44 . 2015-09-20 22:16 -------- d-----w- c:\programdata\RogueKiller
2015-09-20 21:33 . 2015-09-20 21:33 79064 ----a-w- c:\windows\system32\drivers\nrpnpjic.sys
2015-09-20 19:48 . 2015-09-20 20:59 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-09-20 19:48 . 2015-09-20 19:48 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-09-20 19:48 . 2015-09-20 19:48 -------- d-----w- c:\programdata\Malwarebytes
2015-09-20 19:48 . 2015-06-18 06:42 64216 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-09-20 19:48 . 2015-06-18 06:41 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-09-20 19:48 . 2015-06-18 06:41 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-09-20 19:44 . 2015-09-20 20:52 -------- d-----w- C:\AdwCleaner
2015-09-20 19:21 . 2015-09-21 11:56 -------- d-----w- c:\program files (x86)\Feed Notifier
2015-09-19 21:39 . 2015-09-19 21:39 5224982 ----a-w- c:\program files\Common Files\ymkxc4vf.exe
2015-09-19 21:24 . 2015-09-19 21:24 -------- d-----w- c:\program files\Common Files\cphtz5xw
2015-09-19 20:35 . 2015-09-19 21:06 -------- d-----w- c:\users\Petr\temp
2015-09-19 20:34 . 2015-09-19 21:01 -------- d-----w- c:\users\Petr\AppData\Local\Pinnacle
2015-09-19 20:17 . 2015-09-19 20:17 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2015-09-19 20:15 . 2015-09-19 20:21 -------- d-----w- c:\program files (x86)\Opera
2015-09-19 20:14 . 2015-09-19 20:37 -------- d-----w- c:\users\Petr\AppData\Roaming\Seznam.cz
2015-09-19 19:54 . 2015-09-19 19:54 -------- d-----w- C:\Objects
2015-09-19 19:54 . 2015-09-19 19:54 -------- d-----w- C:\logs
2015-09-19 19:52 . 2015-09-20 17:58 -------- d-----w- c:\program files (x86)\AirMovie
2015-09-19 19:52 . 2015-09-21 12:34 -------- d-----w- c:\program files (x86)\RemoteX
2015-09-19 18:39 . 2015-09-19 20:01 -------- d-----w- c:\users\Petr\AppData\Local\Sony
2015-09-19 18:39 . 2015-09-19 20:00 -------- d-----w- c:\program files (x86)\Sony
2015-09-19 18:39 . 2015-09-19 18:39 -------- d-----w- c:\program files\Sony
2015-09-19 18:29 . 2015-09-19 18:29 -------- d-----w- c:\program files (x86)\Common Files\Pegasus Imaging
2015-09-19 18:26 . 2015-09-19 18:32 -------- d-----w- c:\program files (x86)\Pinnacle
2015-09-19 18:16 . 2015-09-19 18:26 -------- d-----w- c:\programdata\Pinnacle
2015-09-17 19:33 . 2015-09-17 19:33 -------- d-----w- c:\program files\iPod
2015-09-17 19:33 . 2015-09-17 19:34 -------- d-----w- c:\program files\iTunes
2015-09-17 19:33 . 2015-09-17 19:34 -------- d-----w- c:\program files (x86)\iTunes
2015-09-17 19:31 . 2015-09-17 19:31 -------- d-----w- c:\program files\Bonjour
2015-09-17 19:31 . 2015-09-17 19:31 -------- d-----w- c:\program files (x86)\Bonjour
2015-09-17 19:30 . 2015-09-17 19:30 -------- d-----w- c:\program files (x86)\Apple Software Update
2015-09-17 19:29 . 2015-09-17 19:29 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll
2015-09-17 19:29 . 2015-09-17 19:29 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll
2015-09-17 19:29 . 2015-09-17 19:29 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll
2015-09-17 19:29 . 2015-09-17 19:29 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll
2015-09-17 19:29 . 2015-09-17 19:29 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll
2015-09-17 19:29 . 2015-09-17 19:29 -------- d-----w- c:\program files (x86)\QuickTime
2015-08-27 11:46 . 2015-08-27 11:46 -------- d-----w- c:\users\Petr\AppData\Local\NVIDIA Corporation
2015-08-26 11:22 . 2015-08-18 08:48 1756424 ----a-w- c:\windows\system32\nvspbridge64.dll
2015-08-26 11:22 . 2015-08-18 08:48 1514528 ----a-w- c:\windows\system32\nvspcap64.dll
2015-08-26 11:22 . 2015-08-18 08:48 1316184 ----a-w- c:\windows\SysWow64\nvspbridge.dll
2015-08-26 11:22 . 2015-08-18 08:48 1278920 ----a-w- c:\windows\SysWow64\nvspcap.dll
2015-08-26 11:21 . 2015-08-17 21:43 608048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2015-08-26 11:19 . 2015-08-26 11:20 -------- d-----w- c:\windows\LastGood.Tmp
2015-08-26 11:15 . 2015-08-26 11:15 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-09-06 04:32 . 2015-08-02 14:12 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin
2015-08-18 08:48 . 2014-11-17 15:45 72880 ----a-w- c:\windows\system32\OpenCL.dll
2015-08-18 08:48 . 2014-11-17 15:45 60720 ----a-w- c:\windows\SysWow64\OpenCL.dll
2015-08-18 08:48 . 2014-08-19 21:14 14497760 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2015-08-18 08:48 . 2014-08-19 21:14 3209736 ----a-w- c:\windows\system32\nvapi64.dll
2015-08-18 08:48 . 2014-08-19 21:13 2824176 ----a-w- c:\windows\SysWow64\nvapi.dll
2015-08-18 08:48 . 2012-07-25 20:22 18634264 ----a-w- c:\windows\system32\nvwgf2umx.dll
2015-08-18 08:48 . 2012-07-25 20:22 16128576 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2015-08-18 00:07 . 2014-11-17 15:45 6783280 ----a-w- c:\windows\system32\nvcpl.dll
2015-08-18 00:07 . 2014-11-17 15:45 3522168 ----a-w- c:\windows\system32\nvsvc64.dll
2015-08-18 00:07 . 2014-11-17 15:45 933168 ----a-w- c:\windows\system32\nvvsvc.exe
2015-08-18 00:07 . 2014-11-17 15:45 62768 ----a-w- c:\windows\system32\nvshext.dll
2015-08-18 00:07 . 2014-11-17 15:45 385144 ----a-w- c:\windows\system32\nvmctray.dll
2015-08-18 00:07 . 2014-11-17 15:45 2558768 ----a-w- c:\windows\system32\nvsvcr.dll
2015-08-18 00:06 . 2014-11-17 15:45 5147024 ----a-w- c:\windows\system32\nvcoproc.bin
2015-08-12 14:03 . 2015-08-12 14:03 96528 ----a-w- c:\windows\system32\dns-sd.exe
2015-08-12 14:03 . 2015-08-12 14:03 86288 ----a-w- c:\windows\system32\dnssd.dll
2015-08-12 14:03 . 2015-08-12 14:03 61712 ----a-w- c:\windows\system32\jdns_sd.dll
2015-08-12 14:03 . 2015-08-12 14:03 213264 ----a-w- c:\windows\system32\dnssdX.dll
2015-08-12 14:03 . 2015-08-12 14:03 84240 ----a-w- c:\windows\SysWow64\dns-sd.exe
2015-08-12 14:03 . 2015-08-12 14:03 72976 ----a-w- c:\windows\SysWow64\dnssd.dll
2015-08-12 14:03 . 2015-08-12 14:03 50960 ----a-w- c:\windows\SysWow64\jdns_sd.dll
2015-08-12 14:03 . 2015-08-12 14:03 178960 ----a-w- c:\windows\SysWow64\dnssdX.dll
2015-08-06 09:43 . 2015-08-06 09:43 94208 ----a-w- c:\windows\SysWow64\QuickTimeVR.qtx
2015-08-06 09:43 . 2015-08-06 09:43 69632 ----a-w- c:\windows\SysWow64\QuickTime.qts
2015-07-27 14:45 . 2015-07-27 14:45 381608 ----a-w- c:\windows\system32\drivers\sptd.sys
2015-07-27 13:39 . 2015-07-27 13:39 30264 ----a-w- c:\windows\system32\drivers\dtlitescsibus.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ShareOverlay]
@="{594D4122-1F87-41E2-96C7-825FB4796516}"
[HKEY_CLASSES_ROOT\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516}]
2014-04-20 09:17 683200 ----a-w- c:\program files\Classic Shell\ClassicExplorer32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2015-07-29 22344224]
"HP Deskjet 3050A J611 series (NET)"="c:\program files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe" [2012-10-17 2573416]
"iCloudServices"="c:\program files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" [2015-04-26 43816]
"iCloudDrive"="c:\program files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe" [2015-04-26 43816]
"TiVme Agent"="c:\program files (x86)\GIGABYTE\vivoTV\ScheduleAgent.exe" [2012-07-10 137728]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2015-08-19 2899136]
"DAEMON Tools Lite Automount"="c:\program files\DAEMON Tools Lite\DTAgent.exe" [2015-06-18 4468056]
"GoogleChromeAutoLaunch_795A6C1EC44E0A41F3030B5EF87A210A"="c:\program files (x86)\Google\Chrome\Application\chrome.exe" [2015-09-12 815944]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2013-05-30 96056]
"Hornet"="c:\program files (x86)\Yenkee\Gaming Mouse Driver\Monitor.exe" [2014-05-22 434176]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2015-08-06 421888]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2015-09-15 157456]
"RemoteX"="c:\program files (x86)\RemoteX\RemoteXUser.exe" [2011-02-14 185344]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux3"=wdmaud.drv
.
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl64.sys;c:\windows\SYSNATIVE\DRIVERS\netaapl64.sys [x]
R3 RTL2832UBDA;REALTEK 2832U BDA Driver;c:\windows\system32\drivers\RTL2832UBDA.sys;c:\windows\SYSNATIVE\drivers\RTL2832UBDA.sys [x]
R3 RTL2832UUSB;REALTEK 2832U USB Driver;c:\windows\System32\Drivers\RTL2832UUSB.sys;c:\windows\SYSNATIVE\Drivers\RTL2832UUSB.sys [x]
R3 RtlWlanu;Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\rtwlanu.sys;c:\windows\SYSNATIVE\DRIVERS\rtwlanu.sys [x]
R3 sthid;Splashtop Virtual Hid;c:\windows\System32\drivers\sthid.sys;c:\windows\SYSNATIVE\drivers\sthid.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\System32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 vmicheartbeat;Služba prezenčního signálu technologie Hyper-V;c:\windows\system32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
R3 WUDFWpdMtp;WUDFWpdMtp;c:\windows\system32\DRIVERS\WUDFRd.sys;c:\windows\SYSNATIVE\DRIVERS\WUDFRd.sys [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S2 __RemoteX__;RemoteX Server;c:\program files (x86)\RemoteX\RemoteX.exe;c:\program files (x86)\RemoteX\RemoteX.exe [x]
S2 __XSERVER__;AirMovie Server Service;c:\program files (x86)\AirMovie\\xserver.exe;c:\program files (x86)\AirMovie\\xserver.exe [x]
S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files\DAEMON Tools Lite\DiscSoftBusService.exe;c:\program files\DAEMON Tools Lite\DiscSoftBusService.exe [x]
S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\System32\drivers\dtlitescsibus.sys;c:\windows\SYSNATIVE\drivers\dtlitescsibus.sys [x]
S3 GM312Fltr;Gaming Mouse 312;c:\windows\system32\drivers\GM312Fltr.sys;c:\windows\SYSNATIVE\drivers\GM312Fltr.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
.
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveBlacklisted]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2015-07-29 07:23 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSynced]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2015-07-29 07:23 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ GoogleDriveSyncing]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2015-07-29 07:23 775496 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ShareOverlay]
@="{594D4122-1F87-41E2-96C7-825FB4796516}"
[HKEY_CLASSES_ROOT\CLSID\{594D4122-1F87-41E2-96C7-825FB4796516}]
2014-04-20 09:17 803520 ----a-w- c:\program files\Classic Shell\ClassicExplorer64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2015-08-18 2585744]
"Classic Start Menu"="c:\program files\Classic Shell\ClassicStartMenu.exe" [2014-04-20 161984]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2015-08-18 1514528]
"AirMovie Server Service"="c:\program files (x86)\AirMovie\xtray.exe" [2014-03-31 79432]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page =
www.google.commLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.211.45.3 212.96.160.7
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
AddRemove-{ce085a78-074e-4823-8dc1-8a721b94b76d} - c:\programdata\Package Cache\{ce085a78-074e-4823-8dc1-8a721b94b76d}\vcredist_x86.exe
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\windows\slsvc.exe
c:\program files (x86)\AirMovie\xserver.exe
c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
c:\program files (x86)\Steam\bin\steamwebhelper.exe
c:\program files (x86)\Common Files\Steam\SteamService.exe
.
**************************************************************************
.
Celkový čas: 2015-09-21 16:53:02 - počítač byl restartován
ComboFix-quarantined-files.txt 2015-09-21 14:52
ComboFix2.txt 2015-09-21 10:45
.
Před spuštěním: 185 174 863 872 bytes free
Po spuštění: 184 662 831 104 bytes free
.
- - End Of File - - 31B30054D8426CCB08A0807CD0753A67
A36C5E4F47E84449FF07ED3517B43A31