Prosím o kontrolu logu HJT (svchost.exe) Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

O.n.d.r.4
nováček
Příspěvky: 21
Registrován: prosinec 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod O.n.d.r.4 » 30 črc 2010 17:43

ComboFix 10-07-29.04 - Majitel 30.07.2010 17:11:36.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.2046.1452 [GMT 2:00]
Spuštěný z: c:\documents and settings\Majitel\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Majitel\Plocha\CFScript.txt.txt
AV: ESET Smart Security 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Rezidentní štít AV je zapnutý


FILE ::
"c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Aktualizovat ESET licenci.lnk"
"c:\program files\ESET\MiNODLogin\MiNODLogin.exe"

file zipped: c:\windows\unvise32.exe
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\Aktualizovat ESET licenci.lnk
c:\program files\ESET\MiNODLogin\MiNODLogin.exe
c:\windows\unvise32.exe

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-28 do 2010-07-30 )))))))))))))))))))))))))))))))
.

2010-07-30 12:14 . 2010-07-30 12:15 -------- d-----w- c:\program files\Common Files\HP
2010-07-30 12:12 . 2010-07-30 12:12 -------- d-----w- c:\program files\Hewlett-Packard
2010-07-30 12:12 . 2010-07-30 12:12 -------- d-----w- c:\program files\Common Files\Hewlett-Packard
2010-07-30 12:09 . 2006-03-03 19:03 282680 ----a-w- c:\windows\system32\HPZidr12.dll
2010-07-30 12:09 . 2006-03-03 19:03 65536 ----a-w- c:\windows\system32\HPZinw12.exe
2010-07-30 12:09 . 2006-03-03 19:03 69632 ----a-w- c:\windows\system32\HPZipm12.exe
2010-07-30 12:09 . 2006-03-03 19:02 204800 ----a-w- c:\windows\system32\HPZipr12.dll
2010-07-30 12:09 . 2006-03-03 19:02 94208 ----a-w- c:\windows\system32\HPZipt12.dll
2010-07-30 12:09 . 2006-03-03 19:02 57344 ----a-w- c:\windows\system32\HPZisn12.dll
2010-07-30 12:09 . 2010-07-30 12:15 -------- d-----w- c:\program files\HP
2010-07-30 12:09 . 2008-04-13 22:17 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-07-30 12:09 . 2008-04-13 22:17 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-07-30 12:09 . 2008-04-13 22:15 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2010-07-30 12:09 . 2008-04-13 22:15 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2010-07-30 12:06 . 2010-07-30 12:15 126824 ----a-w- c:\windows\hpoins11.dat
2010-07-30 12:05 . 2005-07-19 01:38 98304 ----a-w- c:\windows\system32\hpzjsn01.dll
2010-07-30 12:04 . 2006-05-05 23:48 11634 ----a-w- c:\windows\hpomdl11.dat
2010-07-27 23:38 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-27 23:38 . 2010-07-27 23:38 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-27 23:38 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-27 23:26 . 2010-07-27 23:26 -------- d-----w- C:\rsit
2010-07-27 23:11 . 2010-07-27 23:11 -------- d-----w- c:\program files\CCleaner
2010-07-27 20:15 . 2010-07-27 23:26 -------- d-----w- c:\program files\Trend Micro
2010-07-26 18:43 . 2010-07-26 18:43 -------- d-----w- c:\program files\Bohemia Interactive
2010-07-26 11:01 . 2010-05-06 10:35 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-24 20:24 . 2010-07-24 21:12 -------- d-----w- c:\program files\The Guild 2
2010-07-16 15:19 . 2010-07-16 15:19 -------- d-----w- c:\program files\Teamspeak2_RC2
2010-07-13 21:09 . 2010-07-21 19:48 -------- d-----w- c:\program files\Counter-Strike 1.6 NEO Warcraft3 FT
2010-07-05 20:32 . 2010-07-05 20:32 -------- d-----w- c:\program files\EA Sports
2010-07-05 11:19 . 1994-09-20 23:00 12800 ----a-w- c:\windows\system32\WING32.DLL
2010-07-05 11:18 . 2010-07-05 11:19 -------- d-----w- c:\program files\Heroes2
2010-07-05 11:18 . 1996-10-15 16:01 298496 ----a-w- c:\windows\uninst.exe
2010-07-03 17:51 . 2010-07-03 17:51 -------- d-sh--w- c:\windows\ftpcache
2010-07-03 17:50 . 2010-07-08 13:54 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-07-03 17:49 . 2010-07-08 13:54 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-07-03 17:49 . 2010-07-08 13:54 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-07-03 15:41 . 2010-07-03 15:41 1 ----a-w- c:\windows\system32\SI.bin

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-30 15:05 . 2010-02-10 19:59 -------- d-----w- c:\program files\Steam
2010-07-27 00:09 . 2006-03-02 11:00 90588 ----a-w- c:\windows\system32\perfc005.dat
2010-07-27 00:09 . 2006-03-02 11:00 491130 ----a-w- c:\windows\system32\perfh005.dat
2010-07-15 18:01 . 2010-06-15 15:48 -------- d-----w- c:\program files\Valve
2010-07-13 19:28 . 2010-02-10 07:33 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-13 19:17 . 2010-02-12 20:15 -------- d-----w- c:\program files\EA GAMES
2010-07-13 11:27 . 2010-02-28 12:32 -------- d-----w- c:\program files\Ubisoft
2010-07-05 16:48 . 2010-02-10 20:52 -------- d-----w- c:\program files\Electronic Arts
2010-07-05 16:34 . 2010-03-14 11:13 -------- d-----w- c:\program files\Atari
2010-07-03 17:32 . 2010-06-27 16:01 -------- d-----w- c:\program files\Activision
2010-06-27 16:18 . 2010-06-27 16:18 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-27 16:18 . 2010-02-10 07:46 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-06-16 15:58 . 2010-02-10 19:27 -------- d-----w- c:\program files\ICQ6.5
2010-06-14 14:31 . 2010-02-10 06:56 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-05-06 10:35 . 2008-04-14 06:52 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 08:09 . 2008-04-14 05:45 1851264 ----a-w- c:\windows\system32\win32k.sys
.

------- Sigcheck -------

[-] 2010-01-03 . 959B66A9B529BA5C4B1B973F1FCD98EE . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-07-28_12.38.22 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-07-30 15:04 . 2010-07-30 15:04 16384 c:\windows\Temp\Perflib_Perfdata_100.dat
+ 2003-03-18 18:44 . 2003-03-18 18:44 49152 c:\windows\system32\MFC71KOR.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 49152 c:\windows\system32\MFC71JPN.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 61440 c:\windows\system32\MFC71ITA.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 45056 c:\windows\system32\MFC71CHT.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 40960 c:\windows\system32\MFC71CHS.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 61440 c:\windows\system32\MFC71FRA.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 61440 c:\windows\system32\MFC71ESP.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 57344 c:\windows\system32\MFC71ENU.DLL
+ 2003-03-18 18:44 . 2003-03-18 18:44 65536 c:\windows\system32\MFC71DEU.DLL
+ 2004-01-27 06:56 . 2004-01-27 06:56 28672 c:\windows\system32\hpzjfw01.dll
+ 2003-03-18 17:05 . 2003-03-18 17:05 89088 c:\windows\system32\atl71.dll
+ 2010-07-30 12:13 . 2010-07-30 12:13 65536 c:\windows\Installer\{DBC20735-34E6-4E97-A9E5-2066B66B243D}\NewShortcut1.A6CC6977_F7B4_4C0B_9510_BCD847D4BDB2.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 65536 c:\windows\Installer\{BB85ED9C-AFC9-43BD-B8DC-258C3C7DF72E}\ARPPRODUCTICON.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 65536 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut27.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 65536 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut25.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 65536 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut15_1.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:15 . 2010-07-30 12:15 65536 c:\windows\Installer\{6994491D-D491-48F1-AE1F-E179C1FFFC2F}\NewShortcut7_856D48883B484D0C99D439AA7CF9DB2E.exe
+ 2010-07-30 12:15 . 2010-07-30 12:15 65536 c:\windows\Installer\{6994491D-D491-48F1-AE1F-E179C1FFFC2F}\NewShortcut3_D7CAE58E26DE49B7A75DEAEDF76726BE_3.exe
+ 2010-07-30 12:15 . 2010-07-30 12:15 65536 c:\windows\Installer\{6994491D-D491-48F1-AE1F-E179C1FFFC2F}\NewShortcut2_D7CAE58E26DE49B7A75DEAEDF76726BE.exe
+ 2010-07-30 12:15 . 2010-07-30 12:15 65536 c:\windows\Installer\{6994491D-D491-48F1-AE1F-E179C1FFFC2F}\ARPPRODUCTICON.exe
+ 2010-07-30 12:05 . 2006-01-23 13:18 320927 c:\windows\system32\spool\drivers\w32x86\3\hpaiofax.dll
+ 2006-01-26 13:06 . 2006-01-26 13:06 139264 c:\windows\system32\hpzjrd01.dll
+ 2005-12-23 11:14 . 2005-12-23 11:14 233472 c:\windows\system32\HPTcpMUI.dll
+ 2005-12-23 11:12 . 2005-12-23 11:12 155648 c:\windows\system32\HPTcpMon.dll
+ 2005-12-23 11:11 . 2005-12-23 11:11 102400 c:\windows\system32\HPTcpMib.dll
+ 2004-05-27 13:00 . 2004-05-27 13:00 118784 c:\windows\system32\HPODXPAT.DLL
+ 2010-03-19 12:50 . 1998-10-29 14:45 306688 c:\windows\IsUninst.exe
+ 2010-07-30 12:14 . 2010-07-30 12:14 291328 c:\windows\Installer\240a69.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 121344 c:\windows\Installer\240a5f.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 477696 c:\windows\Installer\240a59.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 121344 c:\windows\Installer\240a4f.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 344064 c:\windows\Installer\240a49.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 338944 c:\windows\Installer\240a43.msi
+ 2010-07-30 12:14 . 2010-07-30 12:14 557056 c:\windows\Installer\240a3d.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 325632 c:\windows\Installer\240a33.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 316416 c:\windows\Installer\240a2d.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 467456 c:\windows\Installer\240a27.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 488448 c:\windows\Installer\240a20.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 537088 c:\windows\Installer\240a19.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 121344 c:\windows\Installer\240a04.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 489472 c:\windows\Installer\2409fe.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 667136 c:\windows\Installer\2409f7.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 492032 c:\windows\Installer\2409f0.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 121344 c:\windows\Installer\2409e9.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 183296 c:\windows\Installer\2409e0.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 425984 c:\windows\Installer\2409d6.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 437248 c:\windows\Installer\2409d0.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 202240 c:\windows\Installer\2409c9.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 795136 c:\windows\Installer\2409c3.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 543232 c:\windows\Installer\2409bd.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 637952 c:\windows\Installer\2409b6.msi
+ 2010-07-30 12:12 . 2010-07-30 12:12 334848 c:\windows\Installer\2409b0.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 643072 c:\windows\Installer\{BB85ED9C-AFC9-43BD-B8DC-258C3C7DF72E}\HPSUShortcut_BB85ED9CAFC943BDB8DC258C3C7DF72E.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut9.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut8.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut7.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut6.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut24.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut23.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut22.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut21.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut20.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut2.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut19.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut18.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut17.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut16.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut14.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut13.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut12.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut11.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut10.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:13 . 2010-07-30 12:13 110592 c:\windows\Installer\{8CE4E6E9-9D55-43FB-9DDB-688C976BFC05}\NewShortcut1.DE9B046B_865A_4DEC_B555_7F4B3C92BD42.exe
+ 2010-07-30 12:12 . 2010-07-30 12:12 1230336 c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.1.0.0_x-ww_b319d8da\msxml4.dll
+ 2010-07-30 12:05 . 2006-01-23 13:18 1662976 c:\windows\system32\spool\drivers\w32x86\3\hpzuifax.dll
+ 2003-03-18 19:12 . 2003-03-18 19:12 1047552 c:\windows\system32\mfc71u.dll
+ 2005-12-09 11:47 . 2005-12-09 11:47 1645320 c:\windows\system32\gdiplus.dll
+ 2010-07-30 12:15 . 2010-07-30 12:15 1332224 c:\windows\Installer\240a70.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 3155456 c:\windows\Installer\240a12.msi
+ 2010-07-30 12:13 . 2010-07-30 12:13 1241600 c:\windows\Installer\2409e3.msi
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{ef468e5b-5b30-4136-a833-7f2e3a31afdf}"= "c:\program files\2Shared\tb2Sh1.dll" [2010-05-01 2515552]

[HKEY_CLASSES_ROOT\clsid\{ef468e5b-5b30-4136-a833-7f2e3a31afdf}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{ef468e5b-5b30-4136-a833-7f2e3a31afdf}]
2010-05-01 18:26 2515552 ----a-w- c:\program files\2Shared\tb2Sh1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{ef468e5b-5b30-4136-a833-7f2e3a31afdf}"= "c:\program files\2Shared\tb2Sh1.dll" [2010-05-01 2515552]

[HKEY_CLASSES_ROOT\clsid\{ef468e5b-5b30-4136-a833-7f2e3a31afdf}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{EF468E5B-5B30-4136-A833-7F2E3A31AFDF}"= "c:\program files\2Shared\tb2Sh1.dll" [2010-05-01 2515552]

[HKEY_CLASSES_ROOT\clsid\{ef468e5b-5b30-4136-a833-7f2e3a31afdf}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-01 153136]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"Steam"="c:\program files\steam\steam.exe" [2010-05-07 1238352]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-03-09 26100520]
"RGSC"="c:\program files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2008-11-14 305064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2009-12-08 18789920]
"nwiz"="nwiz.exe" [2009-06-10 1657376]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-06-10 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-06-10 13758464]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2010-03-13 149280]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-11-16 2054360]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-03-05 1135912]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 49152]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2006-2-19 288472]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Firefly Studios\\Stronghold 2\\Stronghold2.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedIIGame.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\AssassinsCreedII.exe"=
"c:\\Program Files\\Ubisoft\\Assassin's Creed II\\UPlayBrowser.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"c:\\Program Files\\Activision\\Transformers - War for Cybertron\\Binaries\\TWFC.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Steam\\steamapps\\o_n_d_r_4\\counter-strike\\hl.exe"=
"c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\GTAIV.exe"=
"c:\\Program Files\\Counter-Strike 1.6 NEO Warcraft3 FT\\hl.exe"=
"c:\\Program Files\\Bohemia Interactive\\ArmA 2 Operation Arrowhead\\arma2OA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [16.11.2009 10:03 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [16.11.2009 10:04 735960]
S1 abdb;abdb;\??\c:\windows\system32\abdb.sys --> c:\windows\system32\abdb.sys [?]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [21.4.2010 23:08 136176]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [10.2.2010 9:33 1691480]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [10.2.2010 21:25 691696]

--- Ostatní služby/ovladače v paměti ---

*NewlyCreated* - PML_DRIVER_HPZ12

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2007-07-18 16:53 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'

2010-07-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-21 21:08]

2010-07-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-04-21 21:08]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Majitel\Data aplikací\Mozilla\Firefox\Profiles\fv6sardm.default\
FF - prefs.js: browser.search.selectedEngine - Seznam
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.seznam.cz/?sourceid=FF_5&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-07-30 17:17
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_USERS\S-1-5-21-1644491937-1417001333-682003330-1004\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
Celkový čas: 2010-07-30 17:18:54
ComboFix-quarantined-files.txt 2010-07-30 15:18
ComboFix2.txt 2010-07-28 12:44

Před spuštěním: 8 937 955 328
Po spuštění: Volných bajtů: 10 539 909 120

- - End Of File - - DD209ABFD91F907274BEC9BE1BFEEF04
Nahr nˇ probŘhlo ŁspŘçnŘ

Reklama
Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod bledulka » 30 črc 2010 20:52

Vyměn ten nelegální NOD za nějaký free antivir, Avast nebo Aviru, případně MSE



Odinstaluj combofix přes
Start >> Spustit zkopíruj do okénka:
ComboFix /Uninstall

stiskni Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


Stáhni T-Cleaner

http://sweb.cz/Marinus/T-Cleaner.exe

-Spusť,pro potvrzení volby mačkej klávesu A, Enter
-po použití prográmek vymaž.Pozor,antiviry ho mohou falešně označit za vir


Vlož nový log z HJT

O.n.d.r.4
nováček
Příspěvky: 21
Registrován: prosinec 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod O.n.d.r.4 » 31 črc 2010 15:08

Dik, ale ja si radci stahnu zkusebni verzi NODa
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:07:24, on 31.7.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\program files\steam\steam.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: 2Shared Toolbar - {ef468e5b-5b30-4136-a833-7f2e3a31afdf} - C:\Program Files\2Shared\tb2Sh1.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: 2Shared Toolbar - {ef468e5b-5b30-4136-a833-7f2e3a31afdf} - C:\Program Files\2Shared\tb2Sh1.dll
O3 - Toolbar: 2Shared Toolbar - {ef468e5b-5b30-4136-a833-7f2e3a31afdf} - C:\Program Files\2Shared\tb2Sh1.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 8120 bytes

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod bledulka » 31 črc 2010 19:07

Pokud u Tebe ještě jednou uvidím nelegální antivir, už Ti nepomůžu. A upřímně - já raději legální Avast než nelegální NOD, on není tak skvělý, jak si všichni myslí.

Pokud nejsou problémy, máme hotovo a můžeš dát vyřešeno , zelenou fajfku.

O.n.d.r.4
nováček
Příspěvky: 21
Registrován: prosinec 09
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod O.n.d.r.4 » 01 srp 2010 01:06

Vzdyt to neni nelegalni...staci si kazdych 30 dni nainstalovat zkusebni verzi.... A je docela dobrej a snadno se s nim ovlada. Jinak myslim ze je vse OK, ale nevim proc se mi misto chybove hlasky neodesilat stala anglicka dont send?
Diky za pomoc a mozna si i antivira koupim

Uživatelský avatar
bledulka
Level 5
Level 5
Příspěvky: 2242
Registrován: srpen 09
Pohlaví: Žena
Stav:
Offline

Re: Prosím o kontrolu logu HJT (svchost.exe)

Příspěvekod bledulka » 01 srp 2010 10:46

To nevím, kde máš na mysli tu hlášku neodesílat?
A není zač.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 122 hostů