Prosim o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

colorado44
Level 1
Level 1
Příspěvky: 51
Registrován: červenec 07
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Prosim o kontrolu logu

Příspěvekod colorado44 » 28 čer 2009 08:20

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:10:54, on 28.6.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Atheros\ACU.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\WINDOWS\system32\oodtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\System Control Manager\MSIService.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\QIP\qip.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [OODefragTray] C:\WINDOWS\system32\oodtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Konfigurační služba Atheros (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: Micro Star SCM - Micro-Star Int'l Co., Ltd. - C:\Program Files\System Control Manager\MSIService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 5352 bytes

Reklama
Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod Damned » 28 čer 2009 08:54

Odinstaluj AskBarDis.


Spusť HJT, vypni prohlížeče, odpoj se od internetu a fixni (zatrhnout políčko před hodnotou zmáčknout
"Fix checked"):

O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe


Poté sem dej znova log z HJT. Nějaký problém, nebo jen kontrola?
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

colorado44
Level 1
Level 1
Příspěvky: 51
Registrován: červenec 07
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod colorado44 » 28 čer 2009 09:09

No vyuziti pc porad tak kolisa a nevim proc. Nekdy jede i na 50%. Posilam znovu log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:58:52, on 28.6.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Atheros\ACU.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\oodtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\System Control Manager\MSIService.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\QIP\qip.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKLM\..\Run: [OODefragTray] C:\WINDOWS\system32\oodtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Konfigurační služba Atheros (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Micro Star SCM - Micro-Star Int'l Co., Ltd. - C:\Program Files\System Control Manager\MSIService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 4493 bytes

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod Damned » 28 čer 2009 09:13

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

colorado44
Level 1
Level 1
Příspěvky: 51
Registrován: červenec 07
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod colorado44 » 28 čer 2009 09:20

Malwarebytes' Anti-Malware 1.38
Verze databáze: 2344
Windows 5.1.2600 Service Pack 2

28.6.2009 9:10:53
mbam-log-2009-06-28 (09-10-53).txt

Typ skenu: Rychlý sken
Objektu skenováno: 88595
Uplynulý cas: 2 minute(s), 18 second(s)

Infikované procesy pameti: 0
Infikované pametové moduly: 0
Infikované klíce registru: 0
Infikované hodnoty registru: 0
Infikované položky dat registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy pameti:
(Žádné zákerné položky nebyly zjišteny)

Infikované pametové moduly:
(Žádné zákerné položky nebyly zjišteny)

Infikované klíce registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované hodnoty registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované položky dat registru:
(Žádné zákerné položky nebyly zjišteny)

Infikované složky:
(Žádné zákerné položky nebyly zjišteny)

Infikované soubory:
(Žádné zákerné položky nebyly zjišteny)

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod Damned » 28 čer 2009 09:24

Vypni rezidentní štít antiviru (pokud máš tak i antispyware).
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

colorado44
Level 1
Level 1
Příspěvky: 51
Registrován: červenec 07
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod colorado44 » 28 čer 2009 09:33

aComboFix 09-06-26.02 - Administrator 28.06.2009 9:21.1 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.3071.2679 [GMT 2:00]
Spuštěný z: c:\documents and settings\Administrator\Plocha\Downloads\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090627-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\Help\agt0405.hlp
c:\windows\Help\agt0408.hlp
c:\windows\Help\agt0415.hlp
c:\windows\Help\agt0419.hlp

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-05-28 do 2009-06-28 )))))))))))))))))))))))))))))))
.

2009-06-28 07:07 . 2009-06-17 09:27 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-28 07:07 . 2009-06-28 07:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-28 07:07 . 2009-06-17 09:27 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-28 06:10 . 2009-06-28 06:10 -------- d-----w- c:\program files\Trend Micro
2009-06-28 05:59 . 2009-06-28 05:59 -------- d-----w- c:\windows\system32\oodag
2009-06-28 05:19 . 2004-05-18 18:16 39936 ----a-w- c:\windows\system32\huffyuv.dll
2009-06-28 05:19 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2009-06-28 05:19 . 2009-05-29 21:37 205824 ----a-w- c:\windows\system32\xvidvfw.dll
2009-06-28 05:19 . 2006-04-02 12:47 630784 ----a-w- c:\windows\system32\vp7vfw.dll
2009-06-28 05:19 . 2004-12-10 08:03 438272 ----a-w- c:\windows\system32\vp6vfw.dll
2009-06-28 05:19 . 2009-05-01 21:02 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-06-28 05:19 . 2009-05-01 21:02 685056 ----a-w- c:\windows\system32\divx.dll
2009-06-28 05:19 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2009-06-28 05:19 . 2009-06-02 16:11 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2009-06-28 05:19 . 2009-06-28 05:20 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-06-28 05:10 . 2009-06-28 05:10 -------- d-----w- c:\program files\GRETECH
2009-06-27 15:24 . 2009-06-27 15:24 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-06-27 15:17 . 2009-06-27 15:17 -------- d-----w- c:\program files\EA Sports
2009-06-27 14:21 . 2009-06-27 14:21 -------- d--h--w- c:\program files\Zero G Registry
2009-06-27 14:21 . 2009-06-27 14:21 -------- d-----w- c:\program files\Sports Interactive
2009-06-27 14:20 . 2009-06-27 14:20 -------- d--h--w- c:\documents and settings\Administrator\InstallAnywhere
2009-06-27 12:33 . 2009-06-27 12:33 -------- d-----w- c:\program files\PowerQuest
2009-06-27 12:16 . 2007-03-19 16:04 247824 ----a-w- c:\windows\system32\prgiso.dll
2009-06-27 12:16 . 2007-03-19 16:05 4245008 ----a-w- c:\windows\system32\qtp-mt334.dll
2009-06-27 12:16 . 2007-03-19 16:05 13840 ----a-w- c:\windows\system32\wnaspi32.dll
2009-06-27 12:10 . 2009-06-27 12:10 -------- d-----w- c:\program files\OO Software
2009-06-27 11:56 . 2001-10-24 09:54 12160 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
2009-06-27 11:56 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2009-06-27 11:56 . 2001-08-17 20:02 9600 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
2009-06-27 11:56 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-06-27 07:54 . 2009-06-27 07:57 -------- d-----w- c:\program files\Microsoft Works
2009-06-27 07:54 . 2009-06-27 07:54 -------- d-----w- c:\program files\MSBuild
2009-06-27 07:51 . 2009-06-27 07:53 -------- d-----w- c:\windows\SHELLNEW
2009-06-27 07:50 . 2009-06-27 07:50 -------- d--h--r- C:\MSOCache
2009-06-27 07:19 . 2009-06-27 07:40 -------- d-----w- c:\program files\StrongDC
2009-06-27 07:14 . 2009-06-28 06:26 -------- d-----w- c:\program files\Lavasoft
2009-06-27 07:11 . 2009-06-27 07:11 -------- d-----w- c:\windows\Logs
2009-06-27 07:05 . 2009-06-27 07:05 -------- d-----w- c:\program files\uTorrent
2009-06-27 06:49 . 2009-06-27 06:49 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2009-06-27 06:49 . 2009-06-27 06:49 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-06-27 06:26 . 2009-06-27 06:26 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-06-27 06:24 . 2009-06-27 06:24 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-06-27 06:08 . 2004-08-03 21:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2009-06-27 04:51 . 2009-06-27 04:51 -------- d-----w- C:\ProgramData
2009-06-27 04:50 . 2009-06-27 04:50 -------- d-----w- c:\program files\CameraRecoder
2009-06-27 04:50 . 2004-08-03 20:58 5504 -c--a-w- c:\windows\system32\dllcache\mstee.sys
2009-06-27 04:50 . 2004-08-03 20:58 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2009-06-27 04:50 . 2004-08-03 21:10 10880 -c--a-w- c:\windows\system32\dllcache\ndisip.sys
2009-06-27 04:50 . 2004-08-03 21:10 10880 ----a-w- c:\windows\system32\drivers\NdisIP.sys
2009-06-27 04:50 . 2004-08-03 21:10 15360 -c--a-w- c:\windows\system32\dllcache\streamip.sys
2009-06-27 04:50 . 2004-08-03 21:10 15360 ----a-w- c:\windows\system32\drivers\StreamIP.sys
2009-06-27 04:50 . 2004-08-03 21:10 11136 -c--a-w- c:\windows\system32\dllcache\slip.sys
2009-06-27 04:50 . 2004-08-03 21:10 11136 ----a-w- c:\windows\system32\drivers\SLIP.sys
2009-06-27 04:49 . 2004-08-03 21:10 19328 -c--a-w- c:\windows\system32\dllcache\wstcodec.sys
2009-06-27 04:49 . 2004-08-03 21:10 19328 ----a-w- c:\windows\system32\drivers\WSTCODEC.SYS
2009-06-27 04:49 . 2004-08-03 21:10 85376 -c--a-w- c:\windows\system32\dllcache\nabtsfec.sys
2009-06-27 04:49 . 2004-08-03 21:10 85376 ----a-w- c:\windows\system32\drivers\NABTSFEC.sys
2009-06-27 04:49 . 2004-08-03 21:10 17024 -c--a-w- c:\windows\system32\dllcache\ccdecode.sys
2009-06-27 04:49 . 2004-08-03 21:10 17024 ----a-w- c:\windows\system32\drivers\CCDECODE.sys
2009-06-27 04:49 . 2004-08-17 13:49 54272 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2009-06-27 04:49 . 2004-08-17 13:49 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2009-06-27 04:49 . 2004-08-03 21:10 78464 -c--a-w- c:\windows\system32\dllcache\usbvideo.sys
2009-06-27 04:49 . 2004-08-03 21:10 78464 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2009-06-27 04:49 . 2004-08-03 21:08 31616 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-06-27 04:49 . 2004-08-03 21:08 31616 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-06-26 23:17 . 2009-02-05 20:06 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-06-26 23:17 . 2009-02-05 20:06 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-06-26 23:17 . 2009-02-05 20:05 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-06-26 23:17 . 2009-02-05 20:07 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-06-26 23:17 . 2009-02-05 20:04 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-06-26 23:17 . 2009-02-05 20:08 93296 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-06-26 23:17 . 2009-02-05 20:08 94032 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-06-26 23:17 . 2009-02-05 20:07 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-06-26 23:17 . 2009-02-05 20:11 1256296 ----a-w- c:\windows\system32\aswBoot.exe
2009-06-26 23:17 . 2003-03-18 19:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-06-26 23:17 . 2003-03-18 18:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-06-26 23:17 . 2003-02-21 02:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-06-26 23:16 . 2009-06-26 23:16 -------- d-----w- c:\program files\Alwil Software
2009-06-26 23:15 . 2009-06-26 23:15 141312 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2009-06-26 23:15 . 2009-06-26 23:16 -------- d-----w- c:\program files\Spyware Terminator
2009-06-26 23:11 . 2009-06-26 23:11 0 ----a-w- c:\windows\nsreg.dat
2009-06-26 23:06 . 2009-06-26 23:06 -------- d-----w- C:\totalcmd
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\UC.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\RAR.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\PKZIP.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\LHA.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\ARJ.PIF
2009-06-26 23:05 . 2009-06-27 04:47 -------- d-----w- c:\program files\QIP
2009-06-26 23:04 . 2009-06-26 23:04 737280 ----a-w- c:\windows\iun6002.exe
2009-06-26 23:04 . 2009-06-27 06:47 -------- d-----w- c:\program files\CCleaner
2009-06-26 23:04 . 2009-06-26 23:04 -------- d-----w- c:\program files\Webteh
2009-06-26 23:03 . 2009-06-26 23:03 -------- d-----w- c:\program files\Common Files\Adobe
2009-06-26 23:01 . 2009-06-26 23:01 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-06-26 23:00 . 2009-06-26 23:00 -------- d-----w- c:\program files\Common Files\Skype
2009-06-26 23:00 . 2009-06-26 23:00 -------- d-----r- c:\program files\Skype
2009-06-26 22:50 . 2009-06-26 22:51 27934 ----a-w- c:\windows\system32\nvModes.dat
2009-06-26 22:49 . 2009-06-26 22:49 -------- d-----w- c:\program files\System Control Manager
2009-06-26 22:49 . 2008-08-25 09:20 4096 ----a-w- c:\windows\system32\msiapcfg.dll
2009-06-26 22:34 . 2009-06-26 22:34 -------- d-----w- c:\windows\nview
2009-06-26 22:34 . 2009-04-30 20:02 457248 ----a-w- c:\windows\system32\nvudisp.exe
2009-06-26 22:34 . 2009-04-26 07:32 457248 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-06-26 22:29 . 2009-06-26 22:29 -------- d-----w- c:\program files\Motorola
2009-06-26 22:26 . 2004-08-17 13:45 14848 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2009-06-26 22:26 . 2004-08-17 13:45 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-06-26 22:26 . 2004-08-17 13:49 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2009-06-26 22:26 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\hidserv.dll
2009-06-26 22:26 . 2009-06-26 22:26 -------- d-----w- c:\program files\DIFX
2009-06-26 22:25 . 2008-04-28 23:56 11264 ----a-w- c:\windows\system32\drivers\enecirhid.sys
2009-06-26 22:25 . 2008-04-28 23:54 54784 ----a-w- c:\windows\system32\drivers\enecir.sys
2009-06-26 22:25 . 2008-04-25 07:16 5632 ----a-w- c:\windows\system32\drivers\enecirhidma.sys
2009-06-26 22:25 . 2006-11-02 06:09 1419232 ----a-w- c:\windows\system32\WdfCoInstaller01005.dll
2009-06-26 22:24 . 2009-06-26 22:24 125 ----a-w- c:\windows\xUninstall.bat
2009-06-26 22:24 . 2009-06-26 22:24 -------- d-----w- c:\windows\JMCR_DIR
2009-06-26 22:24 . 2008-05-14 17:53 110080 ----a-w- c:\windows\system32\JmCrIcon.dll
2009-06-26 22:19 . 2009-06-26 22:19 -------- d-----w- c:\program files\Toshiba
2009-06-26 21:46 . 2009-06-26 21:46 -------- d-s---w- c:\documents and settings\Martin\UserData
2009-06-26 14:02 . 2001-08-17 21:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys
2009-06-26 14:02 . 2004-08-17 15:43 58240 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-06-26 14:02 . 2001-08-17 21:58 9344 ----a-w- c:\windows\system32\drivers\compbatt.sys
2009-06-26 14:02 . 2004-08-03 23:07 14080 ----a-w- c:\windows\system32\drivers\CmBatt.sys
2009-06-26 14:02 . 2001-08-17 21:57 14080 ----a-w- c:\windows\system32\drivers\battc.sys
2009-06-26 14:01 . 2001-08-17 21:46 6400 ----a-w- c:\windows\system32\drivers\enum1394.sys
2009-06-26 14:01 . 2004-08-17 13:49 75264 -c--a-w- c:\windows\system32\dllcache\usbui.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-27 12:33 . 2009-06-26 12:35 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-27 12:33 . 2009-06-26 12:35 -------- d-----w- c:\program files\Common Files\InstallShield
2009-06-27 08:03 . 2001-10-25 15:00 47584 ----a-w- c:\windows\system32\perfc005.dat
2009-06-27 08:03 . 2001-10-25 15:00 313482 ----a-w- c:\windows\system32\perfh005.dat
2009-06-27 05:09 . 2009-06-26 12:31 -------- d-----w- c:\program files\Intel
2009-06-26 23:07 . 2009-06-26 23:07 -------- d-----w- c:\program files\Winamp
2009-06-26 22:37 . 2009-06-26 22:37 -------- d-----w- c:\program files\Atheros
2009-06-26 22:26 . 2009-06-26 22:26 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_enecir_01005.Wdf
2009-06-26 22:26 . 2009-06-26 22:26 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2009-06-26 12:35 . 2009-06-26 12:35 -------- d-----w- c:\program files\Realtek
2009-06-26 12:19 . 2009-06-26 12:19 -------- d-----w- c:\program files\microsoft frontpage
2009-06-26 12:19 . 2009-06-26 12:19 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-06-26 12:19 . 2009-06-26 12:18 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-06-26 12:19 . 2009-06-26 12:18 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-06-26 12:16 . 2009-06-26 12:16 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-05-29 21:31 . 2005-10-14 09:56 881664 ----a-w- c:\windows\system32\xvidcore.dll
2009-04-30 22:30 . 2009-04-30 22:30 1194528 ----a-w- c:\windows\system32\nvcplui.exe
2009-04-30 20:02 . 2009-04-30 20:02 663552 ----a-w- c:\windows\system32\nvcuvid.dll
2009-04-30 20:02 . 2009-04-30 20:02 1579630 ----a-w- c:\windows\system32\nvdata.bin
2009-04-30 20:02 . 2009-04-30 20:02 1314816 ----a-w- c:\windows\system32\nvcuvenc.dll
2009-04-30 20:02 . 2008-09-03 23:24 9994240 ----a-w- c:\windows\system32\nvoglnt.dll
2009-04-30 20:02 . 2008-09-03 23:24 806912 ----a-w- c:\windows\system32\nvapi.dll
2009-04-30 20:02 . 2008-09-03 23:24 8055584 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2009-04-30 20:02 . 2008-09-03 23:24 5896320 ----a-w- c:\windows\system32\nv4_disp.dll
2009-04-30 20:02 . 2008-09-03 23:24 1720320 ----a-w- c:\windows\system32\nvcuda.dll
2009-04-30 20:02 . 2008-09-03 23:24 143360 ----a-w- c:\windows\system32\nvcodins.dll
2009-04-30 20:02 . 2008-09-03 23:24 143360 ----a-w- c:\windows\system32\nvcod.dll
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ACU"="c:\program files\Atheros\ACU.exe" [2008-04-05 450648]
"MGSysCtrl"="c:\program files\System Control Manager\MGSysCtrl.exe" [2008-11-28 691328]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2009-06-26 1783808]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-04-30 13750272]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-04-30 86016]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2008-12-19 83336]
"OODefragTray"="c:\windows\system32\oodtray.exe" [2008-11-03 2540800]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.EXE [2008-11-07 17421824]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0oodbs

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\StrongDC\\StrongDC.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Sports Interactive\\Football Manager 2009\\fm.exe"=

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [27.6.2009 1:17 114768]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [27.6.2009 1:15 141312]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27.6.2009 1:17 20560]
R2 Micro Star SCM;Micro Star SCM;c:\program files\System Control Manager\MSIService.exe [27.6.2009 0:49 159744]
R3 enecir;ENE CIR Receiver;c:\windows\system32\drivers\enecir.sys [27.6.2009 0:25 54784]
R3 enecirhid;ENE CIR HID Receiver;c:\windows\system32\drivers\enecirhid.sys [27.6.2009 0:25 11264]
R3 enecirhidma;ENE CIR HIDmini Filter;c:\windows\system32\drivers\enecirhidma.sys [27.6.2009 0:25 5632]
R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [7.8.2008 17:01 97536]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [6.9.2008 4:20 46752]
R3 WSIMD;wsimd Service;c:\windows\system32\drivers\wsimd.sys [27.6.2009 0:37 57408]
.
Obsah adresáře 'Naplánované úlohy'
.
.
------- Doplňkový sken -------
.
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\h1gyax1k.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-28 09:23
Windows 5.1.2600 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG11.00.00.01WORKSTATION"="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"
.
Celkový čas: 2009-06-28 9:24
ComboFix-quarantined-files.txt 2009-06-28 07:24

Před spuštěním: Volných bajtů: 40 392 253 440
Po spuštění: Volných bajtů: 40 409 731 072

WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

249

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod Damned » 28 čer 2009 10:06

Odinstaluj ještě Daemon Tools Toolbar.

Potom si otevři Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:

File::
c:\windows\iun6002.exe
c:\windows\system32\ezsidmv.dat

Folder::
c:\program files\DAEMON Tools Toolbar
c:\program files\Webteh

DirLook::
c:\windows\JMCR_DIR




Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.


Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.
Obrázek

- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

colorado44
Level 1
Level 1
Příspěvky: 51
Registrován: červenec 07
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod colorado44 » 28 čer 2009 10:48

ComboFix 09-06-26.02 - Administrator 28.06.2009 10:33.2 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.3071.2510 [GMT 2:00]
Spuštěný z: c:\documents and settings\Administrator\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Administrator\Plocha\CFScript.txt
AV: avast! antivirus 4.8.1335 [VPS 090627-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

FILE ::
"c:\windows\iun6002.exe"
"c:\windows\system32\ezsidmv.dat"
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\DAEMON Tools Toolbar
c:\program files\Webteh
c:\program files\Webteh\BSplayer\AC3 Filter\_changes_eng.txt
c:\program files\Webteh\BSplayer\AC3 Filter\_changes_rus.txt
c:\program files\Webteh\BSplayer\AC3 Filter\_readme.txt
c:\program files\Webteh\BSplayer\AC3 Filter\ac3config.exe
c:\program files\Webteh\BSplayer\AC3 Filter\ac3config.exe.manifest
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter.acm
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter.ax
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter.ax.manifest
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter_reg_presets.reg
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter_reg_renderers_win2k.reg
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter_reg_renderers_win9x.reg
c:\program files\Webteh\BSplayer\AC3 Filter\ac3filter_reg_reset.reg
c:\program files\Webteh\BSplayer\AC3 Filter\dialog_patch.exe
c:\program files\Webteh\BSplayer\AC3 Filter\doc\ac3filter_eng.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\doc\ac3filter_rus.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\doc\loudness_eng.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\doc\loudness_rus.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\doc\spdif_eng.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\doc\spdif_rus.pdf
c:\program files\Webteh\BSplayer\AC3 Filter\GPL_eng.txt
c:\program files\Webteh\BSplayer\AC3 Filter\GPL_rus.txt
c:\program files\Webteh\BSplayer\AC3 Filter\iconv.dll
c:\program files\Webteh\BSplayer\AC3 Filter\lang\ac3filter.pot
c:\program files\Webteh\BSplayer\AC3 Filter\lang\fre.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\ger.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\hun.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\ind.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\ita.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\kor.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\pol.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\por.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\rus.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\slo.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\spa.po
c:\program files\Webteh\BSplayer\AC3 Filter\lang\zho.po
c:\program files\Webteh\BSplayer\AC3 Filter\uninstall.exe
c:\program files\Webteh\BSplayer\AC3 Filter\unreg.log
c:\program files\Webteh\BSplayer\bplay.exe
c:\program files\Webteh\BSplayer\bslib\bslib.dll
c:\program files\Webteh\BSplayer\bslib\BSPMLIB.DAT
c:\program files\Webteh\BSplayer\bslib\BSPMLIB2.DAT
c:\program files\Webteh\BSplayer\bslib\pcnt.dat
c:\program files\Webteh\BSplayer\bspcodecdl.exe
c:\program files\Webteh\BSplayer\bspfilters.sam
c:\program files\Webteh\BSplayer\bsplay.exe
c:\program files\Webteh\BSplayer\bsplayer.exe
c:\program files\Webteh\BSplayer\bsplayer.exe.manifest
c:\program files\Webteh\BSplayer\BSplayer.Martin.xml
c:\program files\Webteh\BSplayer\BSplayer.xml
c:\program files\Webteh\BSplayer\bsplist.bsl
c:\program files\Webteh\BSplayer\bsrendv2.dll
c:\program files\Webteh\BSplayer\doc\cmdline.txt
c:\program files\Webteh\BSplayer\doc\ini_files.html
c:\program files\Webteh\BSplayer\EQ.xml
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\andreas_78er.matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\andreas_doppelte_99er.matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\andreas_einfache_99er.matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Bulletproof's Heavy Compression Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Bulletproof's High Quality Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\CG-Animation Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_autogk_sharp.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_avc_hr.cfg
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v1.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v3ehr.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v3hr.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v3lr.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v3uhr_rev2.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\eqm_v3ulr_rev3.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\hvs-best-picture.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\hvs-better-picture.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\hvs-good-picture.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Low Bitrate Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\MPEG.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\pvcd.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\q_matrix.cfg
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\q_matrix_def.cfg
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\q_matrix2.cfg
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Soulhunters V3.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Soulhunters V5.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Standard.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Ultimate Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Ultra Low Bitrate Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\custom matrices\Very Low Bitrate Matrix.xcm
c:\program files\Webteh\BSplayer\FFDShow\ff_kernelDeint.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_liba52.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_libdts.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_libfaad2.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_libmad.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_realaac.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_samplerate.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_theora.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_tremor.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_unrar.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_wmv9.dll
c:\program files\Webteh\BSplayer\FFDShow\ff_x264.dll
c:\program files\Webteh\BSplayer\FFDShow\ffdshow.ax
c:\program files\Webteh\BSplayer\FFDShow\ffdshow.ax.manifest
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1026.bg
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1028.tc
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1029.cz
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1031.de
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1033.en
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1034.es
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1035.fi
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1036.fr
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1038.hu
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1040.it
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1041.ja
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1041.jp
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1045.pl
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1046.br
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1049.ru
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1051.sk
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.1053.se
c:\program files\Webteh\BSplayer\FFDShow\languages\ffdshow.2052.sc
c:\program files\Webteh\BSplayer\FFDShow\libavcodec.dll
c:\program files\Webteh\BSplayer\FFDShow\libmpeg2_ff.dll
c:\program files\Webteh\BSplayer\FFDShow\libmplayer.dll
c:\program files\Webteh\BSplayer\FFDShow\msvcp71.dll
c:\program files\Webteh\BSplayer\FFDShow\msvcr71.dll
c:\program files\Webteh\BSplayer\FFDShow\openIE.js
c:\program files\Webteh\BSplayer\FFDShow\pthreadGC2.dll
c:\program files\Webteh\BSplayer\FFDShow\TomsMoComp_ff.dll
c:\program files\Webteh\BSplayer\FFDShow\unins000.dat
c:\program files\Webteh\BSplayer\FFDShow\unins000.exe
c:\program files\Webteh\BSplayer\FFDShow\unreg.log
c:\program files\Webteh\BSplayer\FFDShow\xvidcore.dll
c:\program files\Webteh\BSplayer\Flash Video (FLV)\FLVSplitter.ax
c:\program files\Webteh\BSplayer\Flash Video (FLV)\unreg.log
c:\program files\Webteh\BSplayer\Haali media splitter\avi.dll
c:\program files\Webteh\BSplayer\Haali media splitter\avs.dll
c:\program files\Webteh\BSplayer\Haali media splitter\avss.dll
c:\program files\Webteh\BSplayer\Haali media splitter\cue2xml.js
c:\program files\Webteh\BSplayer\Haali media splitter\dsmux.exe
c:\program files\Webteh\BSplayer\Haali media splitter\dxr.dll
c:\program files\Webteh\BSplayer\Haali media splitter\gdsmux.exe
c:\program files\Webteh\BSplayer\Haali media splitter\mkunicode.dll
c:\program files\Webteh\BSplayer\Haali media splitter\mkv2vfr.exe
c:\program files\Webteh\BSplayer\Haali media splitter\mkx.dll
c:\program files\Webteh\BSplayer\Haali media splitter\mkzlib.dll
c:\program files\Webteh\BSplayer\Haali media splitter\mmfinfo.dll
c:\program files\Webteh\BSplayer\Haali media splitter\mp4.dll
c:\program files\Webteh\BSplayer\Haali media splitter\ogm.dll
c:\program files\Webteh\BSplayer\Haali media splitter\splitter.ax
c:\program files\Webteh\BSplayer\Haali media splitter\ts.dll
c:\program files\Webteh\BSplayer\Haali media splitter\uninstall.exe
c:\program files\Webteh\BSplayer\Haali media splitter\unreg.log
c:\program files\Webteh\BSplayer\changes.txt
c:\program files\Webteh\BSplayer\insfiles\BSplayer.xml
c:\program files\Webteh\BSplayer\insfiles\BSPMLIB.DAT
c:\program files\Webteh\BSplayer\insfiles\BSPMLIB2.DAT
c:\program files\Webteh\BSplayer\insfiles\EQ.xml
c:\program files\Webteh\BSplayer\lang\Arabic.lng
c:\program files\Webteh\BSplayer\lang\Arabic2.lng
c:\program files\Webteh\BSplayer\lang\Belarusian.lng
c:\program files\Webteh\BSplayer\lang\Bosnian.lng
c:\program files\Webteh\BSplayer\lang\Breton.lng
c:\program files\Webteh\BSplayer\lang\Bulgarian.lng
c:\program files\Webteh\BSplayer\lang\Catalan.lng
c:\program files\Webteh\BSplayer\lang\Croatian.lng
c:\program files\Webteh\BSplayer\lang\Czech.lng
c:\program files\Webteh\BSplayer\lang\Danish.lng
c:\program files\Webteh\BSplayer\lang\Dutch.lng
c:\program files\Webteh\BSplayer\lang\English.lng
c:\program files\Webteh\BSplayer\lang\Esperanto.lng
c:\program files\Webteh\BSplayer\lang\Estonian.lng
c:\program files\Webteh\BSplayer\lang\Finnish.lng
c:\program files\Webteh\BSplayer\lang\French.lng
c:\program files\Webteh\BSplayer\lang\Galician.lng
c:\program files\Webteh\BSplayer\lang\German.lng
c:\program files\Webteh\BSplayer\lang\Greek.lng
c:\program files\Webteh\BSplayer\lang\Hebrew.lng
c:\program files\Webteh\BSplayer\lang\Hungarian.lng
c:\program files\Webteh\BSplayer\lang\Chinese_Simplified.lng
c:\program files\Webteh\BSplayer\lang\Chinese_Traditional.lng
c:\program files\Webteh\BSplayer\lang\Italian.lng
c:\program files\Webteh\BSplayer\lang\lang_changes.txt
c:\program files\Webteh\BSplayer\lang\Latvian.lng
c:\program files\Webteh\BSplayer\lang\Lithuanian.lng
c:\program files\Webteh\BSplayer\lang\Macedonian.lng
c:\program files\Webteh\BSplayer\lang\Norwegian.lng
c:\program files\Webteh\BSplayer\lang\Polish.lng
c:\program files\Webteh\BSplayer\lang\Portuguese.lng
c:\program files\Webteh\BSplayer\lang\Portuguese_Brazilian.lng
c:\program files\Webteh\BSplayer\lang\Romanian.lng
c:\program files\Webteh\BSplayer\lang\Russian.lng
c:\program files\Webteh\BSplayer\lang\Serbian (Cyrillic).lng
c:\program files\Webteh\BSplayer\lang\Serbian (Latin).lng
c:\program files\Webteh\BSplayer\lang\Slovak.lng
c:\program files\Webteh\BSplayer\lang\Slovenian.lng
c:\program files\Webteh\BSplayer\lang\Spanish.lng
c:\program files\Webteh\BSplayer\lang\Swedish.lng
c:\program files\Webteh\BSplayer\lang\Turkish.lng
c:\program files\Webteh\BSplayer\lang\Ukrainian.lng
c:\program files\Webteh\BSplayer\lang\Uzbek.lng
c:\program files\Webteh\BSplayer\lang\Valenciŕ.lng
c:\program files\Webteh\BSplayer\Media\Umek - Posing As Me clip.mp3
c:\program files\Webteh\BSplayer\mmkeybsupp.dll
c:\program files\Webteh\BSplayer\MPEG2 decoder\Mpeg2DecFilter.ax
c:\program files\Webteh\BSplayer\MPEG2 decoder\unreg.log
c:\program files\Webteh\BSplayer\plugins\oldskin.dll
c:\program files\Webteh\BSplayer\RealMedia splitter\RealMediaSplitter.ax
c:\program files\Webteh\BSplayer\RealMedia splitter\unreg.log
c:\program files\Webteh\BSplayer\sdk\bsp.h
c:\program files\Webteh\BSplayer\sdk\bsp.pas
c:\program files\Webteh\BSplayer\sdk\plugins\bspplg.h
c:\program files\Webteh\BSplayer\sdk\plugins\bspplg.pas
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.def
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.dsp
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sample_plugin.dsw
c:\program files\Webteh\BSplayer\sdk\plugins\C\Sample\sampleplugin.c
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_sub.c
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_sub.def
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_subtitles.dsp
c:\program files\Webteh\BSplayer\sdk\plugins\C\sample_subtitles\sample_subtitles.dsw
c:\program files\Webteh\BSplayer\sdk\plugins\Delphi\sample\sample_plugin.dpr
c:\program files\Webteh\BSplayer\sdk\plugins\Delphi\sample_subtitles\sample_sub.dpr
c:\program files\Webteh\BSplayer\Skins\Base\actaspbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\actsubbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\actsubpbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\actvolbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b1u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3a.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4a.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b5a.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b5d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b5n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b5u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b6n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b7n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b8.bmp
c:\program files\Webteh\BSplayer\Skins\Base\b8n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\balbtnn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btn_dn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btn_ln.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btn_rn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btn_un.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btncolorn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btngrp1bg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btnmenun.bmp
c:\program files\Webteh\BSplayer\Skins\Base\btnmenuu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eq.ini
c:\program files\Webteh\BSplayer\Skins\Base\eqbtn1a.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eqbtn1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eqbtn2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eqbtn2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eqbtnn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\eqmain.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn1u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exabtn4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exaudioa.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exaudion.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exaudiou.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn1u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdbtn4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdvda.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdvdn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exdvdu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exitn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exitu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exradioa.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exradion.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exradiou.bmp
c:\program files\Webteh\BSplayer\Skins\Base\extbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\extva.bmp
c:\program files\Webteh\BSplayer\Skins\Base\extvn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\extvu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn1a.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn5n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn5u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn6n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn6u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn7n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn7u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn8n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvbtn8u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvideoa.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvideon.bmp
c:\program files\Webteh\BSplayer\Skins\Base\exvideou.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsactbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb1d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb1n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb1u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb2d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb3d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb3n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb3u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb4d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb4n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb4u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb5d.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb5n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsb5u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsmain.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsn.BMP
c:\program files\Webteh\BSplayer\Skins\Base\fsnextd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsnextn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsnextu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsopend.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsopenn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsopenu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fspaused.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fspausen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fspauseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsplayd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsplayn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsplayu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsprevd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsprevn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsprevu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsseek.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsseeku.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsstopd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsstopn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsstopu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\fsu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\grp2.bmp
c:\program files\Webteh\BSplayer\Skins\Base\main.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\arr2n.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\arr2u.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\arrn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\arru.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\audiosec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\audiosec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\bgmedia.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\bottomsec.ini
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnaddn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnaddpln.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnclosed.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnclosen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btncloseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnmaxd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnmaxn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnmaxu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnmind.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnminn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnminu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnnextd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnnextn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnnextu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnpaused.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnpausen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnpauseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnplayd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnplayn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnplayu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnprevd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnprevn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnprevu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrefresha.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrefreshn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrepa.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrepn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrestd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrestn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnrestu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnshufa.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\btnshufn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\busy.mng
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ctrlsimg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\dvdsec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\dvdsec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\edb.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ede.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\img_bar1.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ltbm.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\main.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\media_tv_sep_top.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_adddn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_adddu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addfln.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addflu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addfn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addfu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addln.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_addlu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_pausen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_pauseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_playn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_playu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_refrn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_refru.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\ml_video_defaultbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\othersec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\pic_place.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\podsec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\podsec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\radiosec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\radiosec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\searchbtn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\seek.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\seekbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\seekbtnd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\seekbtnn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\seekbtnu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\skin.ini
c:\program files\Webteh\BSplayer\Skins\Base\medialib\thumbaudio.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\thumbbg.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\thumbbga.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\tvsec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\tvsec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\videosec.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\videosec_big.bmp
c:\program files\Webteh\BSplayer\Skins\Base\medialib\volume.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimizen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\minimizeu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\mutea.bmp
c:\program files\Webteh\BSplayer\Skins\Base\muted.bmp
c:\program files\Webteh\BSplayer\Skins\Base\muten.bmp
c:\program files\Webteh\BSplayer\Skins\Base\muteu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\nextu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\opend.bmp
c:\program files\Webteh\BSplayer\Skins\Base\openn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\openu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\paused.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pausen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\pauseu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\playu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\plist.ini
c:\program files\Webteh\BSplayer\Skins\Base\prevd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\prevn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\prevu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\rgn.dat
c:\program files\Webteh\BSplayer\Skins\Base\rgnfs.dat
c:\program files\Webteh\BSplayer\Skins\Base\seek.bmp
c:\program files\Webteh\BSplayer\Skins\Base\seeku.bmp
c:\program files\Webteh\BSplayer\Skins\Base\skin.ini
c:\program files\Webteh\BSplayer\Skins\Base\skinfs.ini
c:\program files\Webteh\BSplayer\Skins\Base\sm_closed.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_closen.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_closeu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_maxd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_maxn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_maxu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_mind.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_minn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\sm_minu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\smenud.bmp
c:\program files\Webteh\BSplayer\Skins\Base\smenun.bmp
c:\program files\Webteh\BSplayer\Skins\Base\smenuu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\stopd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\stopn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\stopu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldd.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldn.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voldu.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volud.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volume.bmp
c:\program files\Webteh\BSplayer\Skins\Base\volun.bmp
c:\program files\Webteh\BSplayer\Skins\Base\voluu.bmp
c:\program files\Webteh\BSplayer\Skins\Bat lite.bsz
c:\program files\Webteh\BSplayer\Skins\BSplayer.v1.bsz
c:\program files\Webteh\BSplayer\Skins\mediaBOX v-1.bsz
c:\program files\Webteh\BSplayer\Skins\MediaBOX V-2.bsz
c:\program files\Webteh\BSplayer\uninstall.EXE
c:\windows\iun6002.exe
c:\windows\system32\ezsidmv.dat

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-05-28 do 2009-06-28 )))))))))))))))))))))))))))))))
.

2009-06-28 07:07 . 2009-06-17 09:27 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-28 07:07 . 2009-06-28 07:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-28 07:07 . 2009-06-17 09:27 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-28 06:10 . 2009-06-28 06:10 -------- d-----w- c:\program files\Trend Micro
2009-06-28 05:59 . 2009-06-28 05:59 -------- d-----w- c:\windows\system32\oodag
2009-06-28 05:19 . 2004-05-18 18:16 39936 ----a-w- c:\windows\system32\huffyuv.dll
2009-06-28 05:19 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2009-06-28 05:19 . 2009-05-29 21:37 205824 ----a-w- c:\windows\system32\xvidvfw.dll
2009-06-28 05:19 . 2006-04-02 12:47 630784 ----a-w- c:\windows\system32\vp7vfw.dll
2009-06-28 05:19 . 2004-12-10 08:03 438272 ----a-w- c:\windows\system32\vp6vfw.dll
2009-06-28 05:19 . 2009-05-01 21:02 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-06-28 05:19 . 2009-05-01 21:02 685056 ----a-w- c:\windows\system32\divx.dll
2009-06-28 05:19 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2009-06-28 05:19 . 2009-06-02 16:11 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2009-06-28 05:19 . 2009-06-28 05:20 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-06-28 05:10 . 2009-06-28 05:10 -------- d-----w- c:\program files\GRETECH
2009-06-27 15:24 . 2009-06-27 15:24 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-06-27 15:17 . 2009-06-27 15:17 -------- d-----w- c:\program files\EA Sports
2009-06-27 14:21 . 2009-06-27 14:21 -------- d--h--w- c:\program files\Zero G Registry
2009-06-27 14:21 . 2009-06-27 14:21 -------- d-----w- c:\program files\Sports Interactive
2009-06-27 14:20 . 2009-06-27 14:20 -------- d--h--w- c:\documents and settings\Administrator\InstallAnywhere
2009-06-27 12:33 . 2009-06-27 12:33 -------- d-----w- c:\program files\PowerQuest
2009-06-27 12:16 . 2007-03-19 16:04 247824 ----a-w- c:\windows\system32\prgiso.dll
2009-06-27 12:16 . 2007-03-19 16:05 4245008 ----a-w- c:\windows\system32\qtp-mt334.dll
2009-06-27 12:16 . 2007-03-19 16:05 13840 ----a-w- c:\windows\system32\wnaspi32.dll
2009-06-27 12:10 . 2009-06-27 12:10 -------- d-----w- c:\program files\OO Software
2009-06-27 11:56 . 2001-10-24 09:54 12160 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
2009-06-27 11:56 . 2001-10-24 09:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2009-06-27 11:56 . 2001-08-17 20:02 9600 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
2009-06-27 11:56 . 2001-08-17 20:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-06-27 07:54 . 2009-06-27 07:57 -------- d-----w- c:\program files\Microsoft Works
2009-06-27 07:54 . 2009-06-27 07:54 -------- d-----w- c:\program files\MSBuild
2009-06-27 07:51 . 2009-06-27 07:53 -------- d-----w- c:\windows\SHELLNEW
2009-06-27 07:50 . 2009-06-27 07:50 -------- d--h--r- C:\MSOCache
2009-06-27 07:19 . 2009-06-27 07:40 -------- d-----w- c:\program files\StrongDC
2009-06-27 07:14 . 2009-06-28 06:26 -------- d-----w- c:\program files\Lavasoft
2009-06-27 07:11 . 2009-06-27 07:11 -------- d-----w- c:\windows\Logs
2009-06-27 07:05 . 2009-06-27 07:05 -------- d-----w- c:\program files\uTorrent
2009-06-27 06:26 . 2009-06-27 06:26 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-06-27 06:24 . 2009-06-27 06:24 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-06-27 06:08 . 2004-08-03 21:08 26496 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2009-06-27 04:51 . 2009-06-27 04:51 -------- d-----w- C:\ProgramData
2009-06-27 04:50 . 2009-06-27 04:50 -------- d-----w- c:\program files\CameraRecoder
2009-06-27 04:50 . 2004-08-03 20:58 5504 -c--a-w- c:\windows\system32\dllcache\mstee.sys
2009-06-27 04:50 . 2004-08-03 20:58 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2009-06-27 04:50 . 2004-08-03 21:10 10880 -c--a-w- c:\windows\system32\dllcache\ndisip.sys
2009-06-27 04:50 . 2004-08-03 21:10 10880 ----a-w- c:\windows\system32\drivers\NdisIP.sys
2009-06-27 04:50 . 2004-08-03 21:10 15360 -c--a-w- c:\windows\system32\dllcache\streamip.sys
2009-06-27 04:50 . 2004-08-03 21:10 15360 ----a-w- c:\windows\system32\drivers\StreamIP.sys
2009-06-27 04:50 . 2004-08-03 21:10 11136 -c--a-w- c:\windows\system32\dllcache\slip.sys
2009-06-27 04:50 . 2004-08-03 21:10 11136 ----a-w- c:\windows\system32\drivers\SLIP.sys
2009-06-27 04:49 . 2004-08-03 21:10 19328 -c--a-w- c:\windows\system32\dllcache\wstcodec.sys
2009-06-27 04:49 . 2004-08-03 21:10 19328 ----a-w- c:\windows\system32\drivers\WSTCODEC.SYS
2009-06-27 04:49 . 2004-08-03 21:10 85376 -c--a-w- c:\windows\system32\dllcache\nabtsfec.sys
2009-06-27 04:49 . 2004-08-03 21:10 85376 ----a-w- c:\windows\system32\drivers\NABTSFEC.sys
2009-06-27 04:49 . 2004-08-03 21:10 17024 -c--a-w- c:\windows\system32\dllcache\ccdecode.sys
2009-06-27 04:49 . 2004-08-03 21:10 17024 ----a-w- c:\windows\system32\drivers\CCDECODE.sys
2009-06-27 04:49 . 2004-08-17 13:49 54272 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2009-06-27 04:49 . 2004-08-17 13:49 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2009-06-27 04:49 . 2004-08-03 21:10 78464 -c--a-w- c:\windows\system32\dllcache\usbvideo.sys
2009-06-27 04:49 . 2004-08-03 21:10 78464 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2009-06-27 04:49 . 2004-08-03 21:08 31616 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2009-06-27 04:49 . 2004-08-03 21:08 31616 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2009-06-26 23:17 . 2009-02-05 20:06 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-06-26 23:17 . 2009-02-05 20:06 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-06-26 23:17 . 2009-02-05 20:05 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-06-26 23:17 . 2009-02-05 20:07 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-06-26 23:17 . 2009-02-05 20:04 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-06-26 23:17 . 2009-02-05 20:08 93296 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-06-26 23:17 . 2009-02-05 20:08 94032 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-06-26 23:17 . 2009-02-05 20:07 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-06-26 23:17 . 2009-02-05 20:11 1256296 ----a-w- c:\windows\system32\aswBoot.exe
2009-06-26 23:17 . 2003-03-18 19:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-06-26 23:17 . 2003-03-18 18:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-06-26 23:17 . 2003-02-21 02:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-06-26 23:16 . 2009-06-26 23:16 -------- d-----w- c:\program files\Alwil Software
2009-06-26 23:15 . 2009-06-26 23:15 141312 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2009-06-26 23:15 . 2009-06-26 23:16 -------- d-----w- c:\program files\Spyware Terminator
2009-06-26 23:11 . 2009-06-26 23:11 0 ----a-w- c:\windows\nsreg.dat
2009-06-26 23:06 . 2009-06-26 23:06 -------- d-----w- C:\totalcmd
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\UC.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\RAR.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\PKZIP.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\LHA.PIF
2009-06-26 23:06 . 2008-08-08 05:04 545 ----a-w- c:\windows\ARJ.PIF
2009-06-26 23:05 . 2009-06-27 04:47 -------- d-----w- c:\program files\QIP
2009-06-26 23:04 . 2009-06-27 06:47 -------- d-----w- c:\program files\CCleaner
2009-06-26 23:03 . 2009-06-26 23:03 -------- d-----w- c:\program files\Common Files\Adobe
2009-06-26 23:00 . 2009-06-26 23:00 -------- d-----w- c:\program files\Common Files\Skype
2009-06-26 23:00 . 2009-06-26 23:00 -------- d-----r- c:\program files\Skype
2009-06-26 22:50 . 2009-06-26 22:51 27934 ----a-w- c:\windows\system32\nvModes.dat
2009-06-26 22:49 . 2009-06-26 22:49 -------- d-----w- c:\program files\System Control Manager
2009-06-26 22:49 . 2008-08-25 09:20 4096 ----a-w- c:\windows\system32\msiapcfg.dll
2009-06-26 22:34 . 2009-06-26 22:34 -------- d-----w- c:\windows\nview
2009-06-26 22:34 . 2009-04-30 20:02 457248 ----a-w- c:\windows\system32\nvudisp.exe
2009-06-26 22:34 . 2009-04-26 07:32 457248 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-06-26 22:29 . 2009-06-26 22:29 -------- d-----w- c:\program files\Motorola
2009-06-26 22:26 . 2004-08-17 13:45 14848 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2009-06-26 22:26 . 2004-08-17 13:45 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-06-26 22:26 . 2004-08-17 13:49 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2009-06-26 22:26 . 2004-08-17 13:49 21504 ----a-w- c:\windows\system32\hidserv.dll
2009-06-26 22:26 . 2009-06-26 22:26 -------- d-----w- c:\program files\DIFX
2009-06-26 22:25 . 2008-04-28 23:56 11264 ----a-w- c:\windows\system32\drivers\enecirhid.sys
2009-06-26 22:25 . 2008-04-28 23:54 54784 ----a-w- c:\windows\system32\drivers\enecir.sys
2009-06-26 22:25 . 2008-04-25 07:16 5632 ----a-w- c:\windows\system32\drivers\enecirhidma.sys
2009-06-26 22:25 . 2006-11-02 06:09 1419232 ----a-w- c:\windows\system32\WdfCoInstaller01005.dll
2009-06-26 22:24 . 2009-06-26 22:24 125 ----a-w- c:\windows\xUninstall.bat
2009-06-26 22:24 . 2009-06-26 22:24 -------- d-----w- c:\windows\JMCR_DIR
2009-06-26 22:24 . 2008-05-14 17:53 110080 ----a-w- c:\windows\system32\JmCrIcon.dll
2009-06-26 22:19 . 2009-06-26 22:19 -------- d-----w- c:\program files\Toshiba
2009-06-26 21:46 . 2009-06-26 21:46 -------- d-s---w- c:\documents and settings\Martin\UserData
2009-06-26 14:02 . 2001-08-17 21:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys
2009-06-26 14:02 . 2004-08-17 15:43 58240 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-06-26 14:02 . 2001-08-17 21:58 9344 ----a-w- c:\windows\system32\drivers\compbatt.sys
2009-06-26 14:02 . 2004-08-03 23:07 14080 ----a-w- c:\windows\system32\drivers\CmBatt.sys
2009-06-26 14:02 . 2001-08-17 21:57 14080 ----a-w- c:\windows\system32\drivers\battc.sys
2009-06-26 14:01 . 2001-08-17 21:46 6400 ----a-w- c:\windows\system32\drivers\enum1394.sys
2009-06-26 14:01 . 2004-08-17 13:49 75264 -c--a-w- c:\windows\system32\dllcache\usbui.dll
2009-06-26 14:01 . 2004-08-17 13:49 75264 ----a-w- c:\windows\system32\usbui.dll
2009-06-26 14:01 . 2004-08-03 23:07 8832 ----a-w- c:\windows\system32\drivers\wmiacpi.sys

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-27 12:33 . 2009-06-26 12:35 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-27 12:33 . 2009-06-26 12:35 -------- d-----w- c:\program files\Common Files\InstallShield
2009-06-27 08:03 . 2001-10-25 15:00 47584 ----a-w- c:\windows\system32\perfc005.dat
2009-06-27 08:03 . 2001-10-25 15:00 313482 ----a-w- c:\windows\system32\perfh005.dat
2009-06-27 05:09 . 2009-06-26 12:31 -------- d-----w- c:\program files\Intel
2009-06-26 23:07 . 2009-06-26 23:07 -------- d-----w- c:\program files\Winamp
2009-06-26 22:37 . 2009-06-26 22:37 -------- d-----w- c:\program files\Atheros
2009-06-26 22:26 . 2009-06-26 22:26 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_enecir_01005.Wdf
2009-06-26 22:26 . 2009-06-26 22:26 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2009-06-26 12:35 . 2009-06-26 12:35 -------- d-----w- c:\program files\Realtek
2009-06-26 12:19 . 2009-06-26 12:19 -------- d-----w- c:\program files\microsoft frontpage
2009-06-26 12:19 . 2009-06-26 12:19 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2009-06-26 12:19 . 2009-06-26 12:18 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2009-06-26 12:19 . 2009-06-26 12:18 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-06-26 12:16 . 2009-06-26 12:16 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2009-05-29 21:31 . 2005-10-14 09:56 881664 ----a-w- c:\windows\system32\xvidcore.dll
2009-04-30 22:30 . 2009-04-30 22:30 1194528 ----a-w- c:\windows\system32\nvcplui.exe
2009-04-30 20:02 . 2009-04-30 20:02 663552 ----a-w- c:\windows\system32\nvcuvid.dll
2009-04-30 20:02 . 2009-04-30 20:02 1579630 ----a-w- c:\windows\system32\nvdata.bin
2009-04-30 20:02 . 2009-04-30 20:02 1314816 ----a-w- c:\windows\system32\nvcuvenc.dll
2009-04-30 20:02 . 2008-09-03 23:24 9994240 ----a-w- c:\windows\system32\nvoglnt.dll
2009-04-30 20:02 . 2008-09-03 23:24 806912 ----a-w- c:\windows\system32\nvapi.dll
2009-04-30 20:02 . 2008-09-03 23:24 8055584 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2009-04-30 20:02 . 2008-09-03 23:24 5896320 ----a-w- c:\windows\system32\nv4_disp.dll
2009-04-30 20:02 . 2008-09-03 23:24 1720320 ----a-w- c:\windows\system32\nvcuda.dll
2009-04-30 20:02 . 2008-09-03 23:24 143360 ----a-w- c:\windows\system32\nvcodins.dll
2009-04-30 20:02 . 2008-09-03 23:24 143360 ----a-w- c:\windows\system32\nvcod.dll
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\windows\JMCR_DIR ----

2009-06-26 22:24 . 2005-04-03 21:00 184320 ----a-w- c:\windows\JMCR_DIR\IS\iuser.dll
2009-06-26 22:24 . 2009-06-26 22:24 331908 ----a-w- c:\windows\JMCR_DIR\IS\setup.dll
2009-06-26 22:24 . 2005-04-03 21:01 274432 ----a-w- c:\windows\JMCR_DIR\IS\iscript.dll
2009-06-26 22:24 . 2005-04-03 21:02 753664 ----a-w- c:\windows\JMCR_DIR\IS\iKernel.dll
2009-06-26 22:24 . 2005-04-03 21:02 69714 ----a-w- c:\windows\JMCR_DIR\IS\ctor.dll
2009-06-26 22:24 . 2009-06-26 22:24 200836 ----a-w- c:\windows\JMCR_DIR\IS\iGdi.dll
2009-06-26 22:24 . 2006-02-07 13:39 32768 ----a-w- c:\windows\JMCR_DIR\IS\RunTime\Objectps.dll
2009-06-26 22:24 . 2005-04-03 20:59 38081 ----a-w- c:\windows\JMCR_DIR\IS\RunTime\iKernel.rgs
2009-06-26 22:24 . 2005-11-13 21:18 121032 ----a-w- c:\windows\JMCR_DIR\IS\RunTime\IsProBE.tlb
2009-06-26 22:24 . 2008-08-07 14:52 75447 ----a-w- c:\windows\JMCR_DIR\jmcr_ns.inf
2009-06-26 22:24 . 2008-02-22 13:30 27648 ----a-w- c:\windows\JMCR_DIR\xInsDrv.dll


((((((((((((((((((((((((((((( SnapShot@2009-06-28_07.23.28 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-06-28 07:23 . 2008-10-16 12:09 51224 c:\windows\system32\dllcache\cache\wuauclt.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 82944 c:\windows\system32\dllcache\cache\ws2_32.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 24576 c:\windows\system32\dllcache\cache\userinit.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 14336 c:\windows\system32\dllcache\cache\svchost.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 57856 c:\windows\system32\dllcache\cache\spoolsv.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 17408 c:\windows\system32\dllcache\cache\powrprof.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 13312 c:\windows\system32\dllcache\cache\lsass.exe
+ 2009-06-28 07:23 . 2004-08-17 15:45 24576 c:\windows\system32\dllcache\cache\kbdclass.sys
+ 2009-06-28 07:23 . 2004-08-03 23:00 29056 c:\windows\system32\dllcache\cache\ip6fw.sys
+ 2009-06-28 07:23 . 2004-08-17 15:49 15360 c:\windows\system32\dllcache\cache\ctfmon.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 502272 c:\windows\system32\dllcache\cache\winlogon.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 657408 c:\windows\system32\dllcache\cache\wininet.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 577024 c:\windows\system32\dllcache\cache\user32.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 295936 c:\windows\system32\dllcache\cache\termsrv.dll
+ 2009-06-28 07:23 . 2004-08-03 23:14 359040 c:\windows\system32\dllcache\cache\tcpip.sys
+ 2009-06-28 07:23 . 2004-08-17 15:49 108544 c:\windows\system32\dllcache\cache\services.exe
+ 2009-06-28 07:23 . 2004-08-03 23:14 182912 c:\windows\system32\dllcache\cache\ndis.sys
+ 2009-06-28 07:23 . 2004-08-17 15:49 982016 c:\windows\system32\dllcache\cache\kernel32.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 110080 c:\windows\system32\dllcache\cache\imm32.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 171008 c:\windows\system32\dllcache\cache\appmgmts.dll
+ 2009-06-28 07:23 . 2004-08-17 15:49 1548288 c:\windows\system32\dllcache\cache\sfcfiles.dll
+ 2009-06-28 07:23 . 2004-08-17 15:45 2150400 c:\windows\system32\dllcache\cache\ntoskrnl.exe
+ 2009-06-28 07:23 . 2004-08-17 15:57 2017280 c:\windows\system32\dllcache\cache\ntkrnlpa.exe
+ 2009-06-28 07:23 . 2004-08-17 15:49 1032704 c:\windows\system32\dllcache\cache\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ACU"="c:\program files\Atheros\ACU.exe" [2008-04-05 450648]
"MGSysCtrl"="c:\program files\System Control Manager\MGSysCtrl.exe" [2008-11-28 691328]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2009-06-26 1783808]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-04-30 13750272]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-04-30 86016]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2008-12-19 83336]
"OODefragTray"="c:\windows\system32\oodtray.exe" [2008-11-03 2540800]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.EXE [2008-11-07 17421824]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0oodbs

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\QIP\\qip.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\StrongDC\\StrongDC.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Sports Interactive\\Football Manager 2009\\fm.exe"=

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [27.6.2009 1:17 114768]
R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [27.6.2009 1:15 141312]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [27.6.2009 1:17 20560]
R2 Micro Star SCM;Micro Star SCM;c:\program files\System Control Manager\MSIService.exe [27.6.2009 0:49 159744]
R3 enecir;ENE CIR Receiver;c:\windows\system32\drivers\enecir.sys [27.6.2009 0:25 54784]
R3 enecirhid;ENE CIR HID Receiver;c:\windows\system32\drivers\enecirhid.sys [27.6.2009 0:25 11264]
R3 enecirhidma;ENE CIR HIDmini Filter;c:\windows\system32\drivers\enecirhidma.sys [27.6.2009 0:25 5632]
R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [7.8.2008 17:01 97536]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [6.9.2008 4:20 46752]
R3 WSIMD;wsimd Service;c:\windows\system32\drivers\wsimd.sys [27.6.2009 0:37 57408]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext = hxxp://www.bestofallhub.com/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Administrator\Data aplikací\Mozilla\Firefox\Profiles\h1gyax1k.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-28 10:35
Windows 5.1.2600 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG11.00.00.01WORKSTATION"="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"
.
Celkový čas: 2009-06-28 10:36
ComboFix-quarantined-files.txt 2009-06-28 08:36
ComboFix2.txt 2009-06-28 07:24

Před spuštěním: Volných bajtů: 40 394 260 480
Po spuštění: Volných bajtů: 40 356 954 112

775

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu logu

Příspěvekod Damned » 28 čer 2009 11:12

Nainstaluj si něco jinýho než BSPlayer, zatím snad každá jeho verze obsahovala adware nebo spyware.

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000000




Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.


Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.
Obrázek

- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 78 hostů