kontrola logu HJT - pomalý start NTB

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 14 črc 2011 21:44

tak opět zde :), nejsem si jistej jestli ten script smazal co měl ..... v logu to nevidím

log z comba
ComboFix 11-07-14.05 - tereza 14.07.2011 19:49:01.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3066.2113 [GMT 2:00]
Spuštěný z: c:\users\tereza\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\tereza\Desktop\CFScript.txt
AV: AntiVir Desktop *Disabled/Outdated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Outdated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_ccnkwomw
-------\Service_exejesch
-------\Service_lhxdfvhu
-------\Service_mdqjjgvm
-------\Service_tlmbxgsz
-------\Service_xosdvkqf
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-14 do 2011-07-14 )))))))))))))))))))))))))))))))
.
.
2011-07-14 17:54 . 2011-07-14 19:26 -------- d-----w- c:\users\tereza\AppData\Local\temp
2011-07-14 17:54 . 2011-07-14 17:54 -------- d-----w- c:\users\tereza_2\AppData\Local\temp
2011-07-14 17:54 . 2011-07-14 17:54 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-14 17:32 . 2010-11-10 04:33 6273872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{792D28E3-868F-45F7-B9B2-83DE91307E02}\mpengine.dll
2011-07-09 18:56 . 2011-07-09 15:10 133208 ----a-w- c:\windows\system32\drivers\25515173.sys
2011-07-09 13:56 . 2011-07-09 13:56 -------- d-----w- c:\programdata\Kaspersky Lab
2011-07-09 11:11 . 2011-07-09 11:16 -------- d-----w- c:\users\tereza\AppData\Local\Temp(59)
2011-07-08 23:04 . 2011-07-14 17:46 -------- d-----w- C:\32788R22FWJFW
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\users\tereza\AppData\Roaming\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\programdata\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-08 21:38 . 2011-07-08 21:39 -------- d-----w- C:\rsit
2011-07-08 19:40 . 2011-07-08 19:40 388096 ----a-r- c:\users\tereza\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-08 19:40 . 2011-07-08 21:38 -------- d-----w- c:\program files\Trend Micro
2011-07-08 13:24 . 2011-07-09 13:01 -------- d-----w- c:\program files\CCleaner
2011-07-08 04:04 . 2002-01-05 09:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2011-07-08 04:04 . 2002-01-05 03:40 487424 ----a-w- c:\windows\system32\msvcp70.dll
2011-07-08 04:04 . 2002-01-05 04:48 974848 ----a-w- c:\windows\system32\mfc70.dll
2011-07-08 04:04 . 2000-05-22 14:58 608448 ----a-w- c:\windows\system32\comctl32.ocx
2011-07-08 04:04 . 2011-07-08 04:04 -------- d-----w- c:\program files\AML Products
2011-07-08 03:22 . 2011-07-08 03:22 -------- d-----w- c:\users\tereza\AppData\Roaming\Avira
2011-07-08 03:18 . 2011-07-08 17:10 66616 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-07-08 03:18 . 2011-07-08 17:10 138192 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\programdata\Avira
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\program files\Avira
2011-07-08 01:31 . 2011-07-08 01:31 -------- d-----w- c:\users\tereza\AppData\Local\Microsoft_Corporation
2011-06-29 16:09 . 2011-04-29 15:59 276992 ----a-w- c:\windows\system32\schannel.dll
2011-06-20 18:03 . 2011-06-20 18:03 0 ---ha-w- c:\users\tereza\AppData\Local\BITBD26.tmp
2011-06-16 10:52 . 2011-04-28 16:03 129024 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2011-06-16 10:52 . 2011-04-21 16:04 834048 ----a-w- c:\windows\system32\wininet.dll
2011-06-16 10:52 . 2011-04-21 14:15 389632 ----a-w- c:\windows\system32\html.iec
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-24 17:14 . 2009-10-03 08:10 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-04 02:52 . 2010-05-02 19:51 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-02 39408]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"NokiaPCInternetAccess"="c:\program files\Nokia\PC Internet Access\NPCIA.exe" [2008-08-05 536576]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2008-05-13 6139904]
"FSCRecovery"="c:\program files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe" [2008-05-08 268096]
"OSD"="c:\program files\OEM\OSD_1.16\osd.exe" [2008-06-18 376832]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 49152]
"Skytel"="Skytel.exe" [2007-11-20 1826816]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-09 13543968]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-09 92704]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-09-08 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-09-24 421160]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-08-02 281768]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"fsc-reg"="c:\programdata\fsc-reg\fscreg.exe" [2008-05-29 381200]
.
c:\users\tereza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
_uninst_25515173.lnk - c:\users\tereza\AppData\Local\Temp\_uninst_25515173.bat [N/A]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
R1 MpKsl00661330;MpKsl00661330;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl00661330.sys [x]
R1 MpKsl00ee679e;MpKsl00ee679e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl00ee679e.sys [x]
R1 MpKsl042e5512;MpKsl042e5512;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl042e5512.sys [x]
R1 MpKsl0b8e0a87;MpKsl0b8e0a87;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl0b8e0a87.sys [x]
R1 MpKsl0bbca1c3;MpKsl0bbca1c3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EFE94202-FF07-49DA-B889-A55A3CA3BE50}\MpKsl0bbca1c3.sys [x]
R1 MpKsl0bce7e94;MpKsl0bce7e94;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl0bce7e94.sys [x]
R1 MpKsl0e53511c;MpKsl0e53511c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl0e53511c.sys [x]
R1 MpKsl0f371154;MpKsl0f371154;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl0f371154.sys [x]
R1 MpKsl0ffa4b51;MpKsl0ffa4b51;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl0ffa4b51.sys [x]
R1 MpKsl10f8e693;MpKsl10f8e693;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52430B60-2CF1-4481-B36B-D55D8B11B237}\MpKsl10f8e693.sys [x]
R1 MpKsl1462806a;MpKsl1462806a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl1462806a.sys [x]
R1 MpKsl1727dcdf;MpKsl1727dcdf;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl1727dcdf.sys [x]
R1 MpKsl17893391;MpKsl17893391;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D2D0B4FD-B6C0-46D0-B47A-2C5987328CCB}\MpKsl17893391.sys [x]
R1 MpKsl19394478;MpKsl19394478;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl19394478.sys [x]
R1 MpKsl1b6e0179;MpKsl1b6e0179;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl1b6e0179.sys [x]
R1 MpKsl1c018873;MpKsl1c018873;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKsl1c018873.sys [x]
R1 MpKsl1f5bc180;MpKsl1f5bc180;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52FC3FA7-0BBD-4137-94D1-4FC4CD171E28}\MpKsl1f5bc180.sys [x]
R1 MpKsl2117989e;MpKsl2117989e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl2117989e.sys [x]
R1 MpKsl226c0e87;MpKsl226c0e87;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl226c0e87.sys [x]
R1 MpKsl229fbd5a;MpKsl229fbd5a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl229fbd5a.sys [x]
R1 MpKsl25ddbcce;MpKsl25ddbcce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl25ddbcce.sys [x]
R1 MpKsl268f2a49;MpKsl268f2a49;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsl268f2a49.sys [x]
R1 MpKsl26b29a7c;MpKsl26b29a7c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65C567E3-4E44-4B67-965C-B691F2180524}\MpKsl26b29a7c.sys [x]
R1 MpKsl27e8e0d4;MpKsl27e8e0d4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl27e8e0d4.sys [x]
R1 MpKsl28a56f97;MpKsl28a56f97;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A7A5ED73-0937-4955-BC35-81C92A6103BD}\MpKsl28a56f97.sys [x]
R1 MpKsl28d72cb5;MpKsl28d72cb5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsl28d72cb5.sys [x]
R1 MpKsl2a0931a6;MpKsl2a0931a6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3FD697A8-A8B0-4F98-B9D7-F37CDF09F4E7}\MpKsl2a0931a6.sys [x]
R1 MpKsl2bbd5359;MpKsl2bbd5359;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl2bbd5359.sys [x]
R1 MpKsl2c6b8dd3;MpKsl2c6b8dd3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{609493F4-C4C0-459F-97FF-75B5429EEEE4}\MpKsl2c6b8dd3.sys [x]
R1 MpKsl33bffd0f;MpKsl33bffd0f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl33bffd0f.sys [x]
R1 MpKsl34657df8;MpKsl34657df8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl34657df8.sys [x]
R1 MpKsl353b69e7;MpKsl353b69e7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl353b69e7.sys [x]
R1 MpKsl366d7dd3;MpKsl366d7dd3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl366d7dd3.sys [x]
R1 MpKsl373c4c25;MpKsl373c4c25;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22E32C7D-9793-4581-B129-D3C769232F79}\MpKsl373c4c25.sys [x]
R1 MpKsl3855985d;MpKsl3855985d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl3855985d.sys [x]
R1 MpKsl39d4945d;MpKsl39d4945d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D945E4BE-FF5A-406D-BB41-26F359FFF644}\MpKsl39d4945d.sys [x]
R1 MpKsl3bb6c002;MpKsl3bb6c002;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl3bb6c002.sys [x]
R1 MpKsl3c32d0f4;MpKsl3c32d0f4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{927E159D-94BC-4BE4-970B-D0435E957EE6}\MpKsl3c32d0f4.sys [x]
R1 MpKsl3d8fd7ce;MpKsl3d8fd7ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3d8fd7ce.sys [x]
R1 MpKsl3dbf9f3e;MpKsl3dbf9f3e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3dbf9f3e.sys [x]
R1 MpKsl3e1ec1a4;MpKsl3e1ec1a4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl3e1ec1a4.sys [x]
R1 MpKsl3e455fba;MpKsl3e455fba;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl3e455fba.sys [x]
R1 MpKsl3ef5e2cc;MpKsl3ef5e2cc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3ef5e2cc.sys [x]
R1 MpKsl3f4276ec;MpKsl3f4276ec;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl3f4276ec.sys [x]
R1 MpKsl406c6213;MpKsl406c6213;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CE0AA59C-B8BB-454B-B4AC-F24F587F69A3}\MpKsl406c6213.sys [x]
R1 MpKsl41f6c24d;MpKsl41f6c24d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl41f6c24d.sys [x]
R1 MpKsl42ad10ce;MpKsl42ad10ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7AD78FE8-0387-491F-BC10-1AB612E107CD}\MpKsl42ad10ce.sys [x]
R1 MpKsl42fe9763;MpKsl42fe9763;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKsl42fe9763.sys [x]
R1 MpKsl4395ca23;MpKsl4395ca23;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl4395ca23.sys [x]
R1 MpKsl4421a1d2;MpKsl4421a1d2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9D06CFFD-1057-4B2E-87F2-2242A3337A73}\MpKsl4421a1d2.sys [x]
R1 MpKsl448f080b;MpKsl448f080b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl448f080b.sys [x]
R1 MpKsl44d88e31;MpKsl44d88e31;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsl44d88e31.sys [x]
R1 MpKsl46228957;MpKsl46228957;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C1534429-D993-4688-BDF7-D7DD2E795242}\MpKsl46228957.sys [x]
R1 MpKsl46917562;MpKsl46917562;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl46917562.sys [x]
R1 MpKsl474e1e27;MpKsl474e1e27;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl474e1e27.sys [x]
R1 MpKsl47bed66f;MpKsl47bed66f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3010ADB6-B7F6-4FA0-B6D6-77C3FCBD0B54}\MpKsl47bed66f.sys [x]
R1 MpKsl47ea9343;MpKsl47ea9343;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl47ea9343.sys [x]
R1 MpKsl489d8aef;MpKsl489d8aef;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl489d8aef.sys [x]
R1 MpKsl49dcc843;MpKsl49dcc843;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsl49dcc843.sys [x]
R1 MpKsl4bf28a30;MpKsl4bf28a30;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl4bf28a30.sys [x]
R1 MpKsl4d9d523f;MpKsl4d9d523f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl4d9d523f.sys [x]
R1 MpKsl4ef27b8d;MpKsl4ef27b8d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl4ef27b8d.sys [x]
R1 MpKsl4f910b79;MpKsl4f910b79;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKsl4f910b79.sys [x]
R1 MpKsl4fccc15a;MpKsl4fccc15a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKsl4fccc15a.sys [x]
R1 MpKsl50ad2634;MpKsl50ad2634;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl50ad2634.sys [x]
R1 MpKsl51ed120c;MpKsl51ed120c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl51ed120c.sys [x]
R1 MpKsl51ff3aea;MpKsl51ff3aea;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A7A5ED73-0937-4955-BC35-81C92A6103BD}\MpKsl51ff3aea.sys [x]
R1 MpKsl531a33af;MpKsl531a33af;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{25AF1356-DAAD-4574-965F-CCC683B10FC0}\MpKsl531a33af.sys [x]
R1 MpKsl53703817;MpKsl53703817;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl53703817.sys [x]
R1 MpKsl53710bc7;MpKsl53710bc7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl53710bc7.sys [x]
R1 MpKsl569130c2;MpKsl569130c2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl569130c2.sys [x]
R1 MpKsl56df77aa;MpKsl56df77aa;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl56df77aa.sys [x]
R1 MpKsl57adca47;MpKsl57adca47;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl57adca47.sys [x]
R1 MpKsl57f985a1;MpKsl57f985a1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl57f985a1.sys [x]
R1 MpKsl58667485;MpKsl58667485;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl58667485.sys [x]
R1 MpKsl59214de0;MpKsl59214de0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl59214de0.sys [x]
R1 MpKsl5a66b7b5;MpKsl5a66b7b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl5a66b7b5.sys [x]
R1 MpKsl5cbd194d;MpKsl5cbd194d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKsl5cbd194d.sys [x]
R1 MpKsl5cbe7e34;MpKsl5cbe7e34;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl5cbe7e34.sys [x]
R1 MpKsl5f22b948;MpKsl5f22b948;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl5f22b948.sys [x]
R1 MpKsl5f633c8f;MpKsl5f633c8f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl5f633c8f.sys [x]
R1 MpKsl601a8265;MpKsl601a8265;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C1534429-D993-4688-BDF7-D7DD2E795242}\MpKsl601a8265.sys [x]
R1 MpKsl613bf7b5;MpKsl613bf7b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl613bf7b5.sys [x]
R1 MpKsl644af590;MpKsl644af590;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl644af590.sys [x]
R1 MpKsl64ce169a;MpKsl64ce169a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A4B5B8A6-FFF5-4D3F-9A28-8171C321BD82}\MpKsl64ce169a.sys [x]
R1 MpKsl6769104a;MpKsl6769104a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl6769104a.sys [x]
R1 MpKsl677ccc23;MpKsl677ccc23;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl677ccc23.sys [x]
R1 MpKsl68498b56;MpKsl68498b56;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl68498b56.sys [x]
R1 MpKsl69fee950;MpKsl69fee950;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BDC1C736-0C04-4AFC-879A-DAFEA67B75CC}\MpKsl69fee950.sys [x]
R1 MpKsl6afba45e;MpKsl6afba45e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl6afba45e.sys [x]
R1 MpKsl6b2ce2c8;MpKsl6b2ce2c8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52430B60-2CF1-4481-B36B-D55D8B11B237}\MpKsl6b2ce2c8.sys [x]
R1 MpKsl6c3b1d96;MpKsl6c3b1d96;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl6c3b1d96.sys [x]
R1 MpKsl6d6b3ad6;MpKsl6d6b3ad6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl6d6b3ad6.sys [x]
R1 MpKsl711d3d84;MpKsl711d3d84;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl711d3d84.sys [x]
R1 MpKsl722d3a40;MpKsl722d3a40;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl722d3a40.sys [x]
R1 MpKsl72ac89b4;MpKsl72ac89b4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl72ac89b4.sys [x]
R1 MpKsl72af3fee;MpKsl72af3fee;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl72af3fee.sys [x]
R1 MpKsl74669fc5;MpKsl74669fc5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl74669fc5.sys [x]
R1 MpKsl75f0f28b;MpKsl75f0f28b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl75f0f28b.sys [x]
R1 MpKsl77956e72;MpKsl77956e72;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl77956e72.sys [x]
R1 MpKsl795b72dd;MpKsl795b72dd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl795b72dd.sys [x]
R1 MpKsl7ab093cd;MpKsl7ab093cd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl7ab093cd.sys [x]
R1 MpKsl7c669b6e;MpKsl7c669b6e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKsl7c669b6e.sys [x]
R1 MpKsl7c89e565;MpKsl7c89e565;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl7c89e565.sys [x]
R1 MpKsl7cc8ac8a;MpKsl7cc8ac8a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl7cc8ac8a.sys [x]
R1 MpKsl7dd96d92;MpKsl7dd96d92;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl7dd96d92.sys [x]
R1 MpKsl7fab728b;MpKsl7fab728b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl7fab728b.sys [x]
R1 MpKsl802325dc;MpKsl802325dc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl802325dc.sys [x]
R1 MpKsl809719f1;MpKsl809719f1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl809719f1.sys [x]
R1 MpKsl817c40f0;MpKsl817c40f0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{42975E51-4BB1-452A-95E7-CFDE2E8609DB}\MpKsl817c40f0.sys [x]
R1 MpKsl81a1ce90;MpKsl81a1ce90;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{10A908C2-D027-4015-893F-9FE5ECCE9302}\MpKsl81a1ce90.sys [x]
R1 MpKsl828bfd28;MpKsl828bfd28;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl828bfd28.sys [x]
R1 MpKsl833d56e8;MpKsl833d56e8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl833d56e8.sys [x]
R1 MpKsl83bb4e9f;MpKsl83bb4e9f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl83bb4e9f.sys [x]
R1 MpKsl83cb5344;MpKsl83cb5344;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl83cb5344.sys [x]
R1 MpKsl840eecf9;MpKsl840eecf9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl840eecf9.sys [x]
R1 MpKsl84a972b6;MpKsl84a972b6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl84a972b6.sys [x]
R1 MpKsl84fc220a;MpKsl84fc220a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsl84fc220a.sys [x]
R1 MpKsl854365c8;MpKsl854365c8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsl854365c8.sys [x]
R1 MpKsl86af166a;MpKsl86af166a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C364634F-A730-46B2-82C4-2CCE16DF047F}\MpKsl86af166a.sys [x]
R1 MpKsl87344a00;MpKsl87344a00;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl87344a00.sys [x]
R1 MpKsl891b9792;MpKsl891b9792;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl891b9792.sys [x]
R1 MpKsl8b1394cf;MpKsl8b1394cf;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl8b1394cf.sys [x]
R1 MpKsl8c752809;MpKsl8c752809;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{931B9C56-AE10-45C0-AC3B-6E76348F2049}\MpKsl8c752809.sys [x]
R1 MpKsl91eaa851;MpKsl91eaa851;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl91eaa851.sys [x]
R1 MpKsl92c582c0;MpKsl92c582c0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B70D06D4-9C91-4BBB-AF0F-E6C12FC13431}\MpKsl92c582c0.sys [x]
R1 MpKsl93f17f38;MpKsl93f17f38;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl93f17f38.sys [x]
R1 MpKsl94153848;MpKsl94153848;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl94153848.sys [x]
R1 MpKsl95196493;MpKsl95196493;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl95196493.sys [x]
R1 MpKsl959f5a2f;MpKsl959f5a2f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl959f5a2f.sys [x]
R1 MpKsl96179a00;MpKsl96179a00;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl96179a00.sys [x]
R1 MpKsl974594f0;MpKsl974594f0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl974594f0.sys [x]
R1 MpKsl98d518e2;MpKsl98d518e2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl98d518e2.sys [x]
R1 MpKsl99077615;MpKsl99077615;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl99077615.sys [x]
R1 MpKsl9922169c;MpKsl9922169c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{12380E66-DBF4-4DCF-9407-FA434A12A5A6}\MpKsl9922169c.sys [x]
R1 MpKsl998582c1;MpKsl998582c1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{931B9C56-AE10-45C0-AC3B-6E76348F2049}\MpKsl998582c1.sys [x]
R1 MpKsl9aa5946b;MpKsl9aa5946b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl9aa5946b.sys [x]
R1 MpKsl9b932c9d;MpKsl9b932c9d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl9b932c9d.sys [x]
R1 MpKsl9c0bbe27;MpKsl9c0bbe27;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl9c0bbe27.sys [x]
R1 MpKsl9ce97093;MpKsl9ce97093;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsl9ce97093.sys [x]
R1 MpKsl9d3f0cb7;MpKsl9d3f0cb7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl9d3f0cb7.sys [x]
R1 MpKsl9f64025e;MpKsl9f64025e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E36614DF-C1B0-4840-9A96-CA72146F566C}\MpKsl9f64025e.sys [x]
R1 MpKsla1c2c875;MpKsla1c2c875;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsla1c2c875.sys [x]
R1 MpKsla3c726b8;MpKsla3c726b8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{10A908C2-D027-4015-893F-9FE5ECCE9302}\MpKsla3c726b8.sys [x]
R1 MpKsla4a21c37;MpKsla4a21c37;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsla4a21c37.sys [x]
R1 MpKsla4b0b083;MpKsla4b0b083;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsla4b0b083.sys [x]
R1 MpKsla4be9c08;MpKsla4be9c08;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsla4be9c08.sys [x]
R1 MpKsla4fa09af;MpKsla4fa09af;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsla4fa09af.sys [x]
R1 MpKsla539e858;MpKsla539e858;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsla539e858.sys [x]
R1 MpKsla5fb3aa9;MpKsla5fb3aa9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsla5fb3aa9.sys [x]
R1 MpKsla639272d;MpKsla639272d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B631F05E-7FA1-42E1-8CEA-91A57F0A643E}\MpKsla639272d.sys [x]
R1 MpKsla7176285;MpKsla7176285;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsla7176285.sys [x]
R1 MpKsla9725781;MpKsla9725781;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsla9725781.sys [x]
R1 MpKslac0d4135;MpKslac0d4135;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslac0d4135.sys [x]
R1 MpKslb642e450;MpKslb642e450;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EC8D5160-B0B8-4D0D-BAC8-B3D979ADE808}\MpKslb642e450.sys [x]
R1 MpKslb6db25dd;MpKslb6db25dd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb6db25dd.sys [x]
R1 MpKslb6fa6c57;MpKslb6fa6c57;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb6fa6c57.sys [x]
R1 MpKslb7b47b3c;MpKslb7b47b3c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb7b47b3c.sys [x]
R1 MpKslb853ac9f;MpKslb853ac9f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKslb853ac9f.sys [x]
R1 MpKslb8657819;MpKslb8657819;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKslb8657819.sys [x]
R1 MpKslb9ff1b83;MpKslb9ff1b83;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKslb9ff1b83.sys [x]
R1 MpKslbdcd50b0;MpKslbdcd50b0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKslbdcd50b0.sys [x]
R1 MpKslbdf8119e;MpKslbdf8119e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B631F05E-7FA1-42E1-8CEA-91A57F0A643E}\MpKslbdf8119e.sys [x]
R1 MpKslbe34c1f2;MpKslbe34c1f2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslbe34c1f2.sys [x]
R1 MpKslc02a3112;MpKslc02a3112;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKslc02a3112.sys [x]
R1 MpKslc070d136;MpKslc070d136;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKslc070d136.sys [x]
R1 MpKslc0f99f01;MpKslc0f99f01;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9D06CFFD-1057-4B2E-87F2-2242A3337A73}\MpKslc0f99f01.sys [x]
R1 MpKslc271d012;MpKslc271d012;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EC8D5160-B0B8-4D0D-BAC8-B3D979ADE808}\MpKslc271d012.sys [x]
R1 MpKslc3e785ed;MpKslc3e785ed;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKslc3e785ed.sys [x]
R1 MpKslc52b45e7;MpKslc52b45e7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKslc52b45e7.sys [x]
R1 MpKslc53b9ca6;MpKslc53b9ca6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslc53b9ca6.sys [x]
R1 MpKslc6b772c5;MpKslc6b772c5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslc6b772c5.sys [x]
R1 MpKslc9f7277b;MpKslc9f7277b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslc9f7277b.sys [x]
R1 MpKslca35e457;MpKslca35e457;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslca35e457.sys [x]
R1 MpKslcadf34a3;MpKslcadf34a3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A4B5B8A6-FFF5-4D3F-9A28-8171C321BD82}\MpKslcadf34a3.sys [x]
R1 MpKslcafdb963;MpKslcafdb963;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKslcafdb963.sys [x]
R1 MpKslcbe8f479;MpKslcbe8f479;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKslcbe8f479.sys [x]
R1 MpKslcc166041;MpKslcc166041;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65C567E3-4E44-4B67-965C-B691F2180524}\MpKslcc166041.sys [x]
R1 MpKsld2518466;MpKsld2518466;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsld2518466.sys [x]
R1 MpKsld2cc9022;MpKsld2cc9022;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C364634F-A730-46B2-82C4-2CCE16DF047F}\MpKsld2cc9022.sys [x]
R1 MpKsld314e62a;MpKsld314e62a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsld314e62a.sys [x]
R1 MpKsld3a2dffc;MpKsld3a2dffc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsld3a2dffc.sys [x]
R1 MpKsld74372b5;MpKsld74372b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B70D06D4-9C91-4BBB-AF0F-E6C12FC13431}\MpKsld74372b5.sys [x]
R1 MpKsld744cb9c;MpKsld744cb9c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B2D14FBC-88B7-4B02-ACE9-B4AC151590C7}\MpKsld744cb9c.sys [x]
R1 MpKsld7ebd460;MpKsld7ebd460;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsld7ebd460.sys [x]
R1 MpKsld7ff117d;MpKsld7ff117d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsld7ff117d.sys [x]
R1 MpKslda2dc59f;MpKslda2dc59f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslda2dc59f.sys [x]
R1 MpKslda5d57b8;MpKslda5d57b8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslda5d57b8.sys [x]
R1 MpKsldc02b767;MpKsldc02b767;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsldc02b767.sys [x]
R1 MpKsldc2e566c;MpKsldc2e566c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsldc2e566c.sys [x]
R1 MpKsle140e7ce;MpKsle140e7ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsle140e7ce.sys [x]
R1 MpKsle2fc639f;MpKsle2fc639f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsle2fc639f.sys [x]
R1 MpKsle337cc0a;MpKsle337cc0a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKsle337cc0a.sys [x]
R1 MpKsle358b18d;MpKsle358b18d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsle358b18d.sys [x]
R1 MpKsle450c2fa;MpKsle450c2fa;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsle450c2fa.sys [x]
R1 MpKsle59fe791;MpKsle59fe791;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsle59fe791.sys [x]
R1 MpKslea5a63ba;MpKslea5a63ba;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKslea5a63ba.sys [x]
R1 MpKsleabbb194;MpKsleabbb194;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EA803D43-7C56-4480-94FF-D9DB1E2917F6}\MpKsleabbb194.sys [x]
R1 MpKslead998bc;MpKslead998bc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{47C090CB-0559-40B5-B3D0-3C29ED131441}\MpKslead998bc.sys [x]
R1 MpKsleb49c42c;MpKsleb49c42c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsleb49c42c.sys [x]
R1 MpKsleb9d37d9;MpKsleb9d37d9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsleb9d37d9.sys [x]
R1 MpKslecbabc02;MpKslecbabc02;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKslecbabc02.sys [x]
R1 MpKslee204621;MpKslee204621;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{42975E51-4BB1-452A-95E7-CFDE2E8609DB}\MpKslee204621.sys [x]
R1 MpKslee41f06b;MpKslee41f06b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKslee41f06b.sys [x]
R1 MpKslf149dd9b;MpKslf149dd9b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKslf149dd9b.sys [x]
R1 MpKslf1919b3d;MpKslf1919b3d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7AD78FE8-0387-491F-BC10-1AB612E107CD}\MpKslf1919b3d.sys [x]
R1 MpKslf2875193;MpKslf2875193;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslf2875193.sys [x]
R1 MpKslf2a0a9a0;MpKslf2a0a9a0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKslf2a0a9a0.sys [x]
R1 MpKslf2f72f3c;MpKslf2f72f3c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C711F2E6-5D1F-4230-8CC8-305A85D4B44C}\MpKslf2f72f3c.sys [x]
R1 MpKslf4d9817f;MpKslf4d9817f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslf4d9817f.sys [x]
R1 MpKslf657ccee;MpKslf657ccee;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKslf657ccee.sys [x]
R1 MpKslf73a71f7;MpKslf73a71f7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKslf73a71f7.sys [x]
R1 MpKslfa04d3a5;MpKslfa04d3a5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKslfa04d3a5.sys [x]
R1 MpKslfa3a30b2;MpKslfa3a30b2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKslfa3a30b2.sys [x]
R1 MpKslfb306130;MpKslfb306130;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKslfb306130.sys [x]
R1 MpKslfbea2ec8;MpKslfbea2ec8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKslfbea2ec8.sys [x]
R1 MpKslfcd27abd;MpKslfcd27abd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKslfcd27abd.sys [x]
R1 MpKslfe1dd800;MpKslfe1dd800;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKslfe1dd800.sys [x]
R1 MpKslfe2dc51d;MpKslfe2dc51d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslfe2dc51d.sys [x]
R1 MpKslfea7cdb3;MpKslfea7cdb3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslfea7cdb3.sys [x]
R1 MpKslfeeb715a;MpKslfeeb715a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EFE94202-FF07-49DA-B889-A55A3CA3BE50}\MpKslfeeb715a.sys [x]
R1 MpKslff7be31f;MpKslff7be31f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKslff7be31f.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 GpdDevDPort;GpdDevDPort;c:\windows\system32\directport.sys [2008-06-17 7168]
R3 GpdKbFilter;GpdKbFilter;c:\windows\system32\kbfiltr.sys [2008-03-31 8192]
R3 gupdate1c9f0e247a0afb0;Služba Google Update (gupdate1c9f0e247a0afb0);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2008-10-10 51040]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
R4 OsdService;OSD Service;c:\program files\OEM\OSD_1.16\OsdService.exe [2008-02-22 94208]
S0 25515173;25515173;c:\windows\system32\DRIVERS\25515173.sys [2011-07-09 133208]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2011-07-08 136360]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2007-08-01 16376]
S3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-01 3660800]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-14 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-01-15 17:49]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-14 c:\windows\Tasks\User_Feed_Synchronization-{BFCBACF4-3D38-4CA7-8CF4-64C5B77314B5}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:24]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 213.46.172.36 192.168.1.254
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-14 21:26
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\System32\lpksetup.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\windows\RtHDVCpl.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\ehome\ehmsas.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\iPod\bin\iPodService.exe
c:\windows\system32\consent.exe
.
**************************************************************************
.
Celkový čas: 2011-07-14 21:30:37 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-14 19:30
ComboFix2.txt 2011-07-09 22:56
ComboFix3.txt 2011-07-09 11:11
ComboFix4.txt 2011-07-08 23:16
.
Před spuštěním: Volných bajtů: 54 657 777 664
Po spuštění: Volných bajtů: 54 484 598 784
.
- - End Of File - - DA08833CB7E881AE32B6A11EEE28F3CE

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 14 črc 2011 23:23

Odinstaluj:
Vše od Kaspersky Lab , pokud najdeš , mažu i v CF.

Microsoft\Microsoft Antimalware--to je součást antiviru Microsoft Security Essential , zkus najít a odinstalovat , Avira má vlastní antispywarový štít...

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::
File::
c:\windows\system32\drivers\25515173.sys
c:\users\tereza\AppData\Local\BITBD26.tmp
c:\users\tereza\AppData\Local\Temp\_uninst_25515173.bat
c:\users\tereza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
_uninst_25515173.lnk
c:\windows\Tasks\Google Software Updater.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Folder::
C:\32788R22FWJFW
c:\programdata\Kaspersky Lab

Driver::
25515173

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"=-

RegNull::
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet003\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 15 črc 2011 01:24

ahoj,
snažil jsem se smazat ty antimalwar soubory od MS essential na C: v program datech ale asi se to minulo účinkem :(

log combo
ComboFix 11-07-14.05 - tereza 14.07.2011 23:56:48.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3066.2126 [GMT 2:00]
Spuštěný z: c:\users\tereza\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\tereza\Desktop\CFScript.txt
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\users\tereza\AppData\Local\BITBD26.tmp"
"c:\users\tereza\AppData\Local\Temp\_uninst_25515173.bat"
"c:\users\tereza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\"
"c:\windows\system32\drivers\25515173.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\32788R22FWJFW
c:\users\tereza\AppData\Local\BITBD26.tmp
c:\windows\system32\drivers\25515173.sys
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_25515173
-------\Service_25515173
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-14 do 2011-07-14 )))))))))))))))))))))))))))))))
.
.
2011-07-14 22:02 . 2011-07-14 23:10 -------- d-----w- c:\users\tereza\AppData\Local\temp
2011-07-09 11:11 . 2011-07-09 11:16 -------- d-----w- c:\users\tereza\AppData\Local\Temp(59)
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\users\tereza\AppData\Roaming\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\programdata\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-08 21:38 . 2011-07-08 21:39 -------- d-----w- C:\rsit
2011-07-08 19:40 . 2011-07-08 19:40 388096 ----a-r- c:\users\tereza\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-08 19:40 . 2011-07-08 21:38 -------- d-----w- c:\program files\Trend Micro
2011-07-08 13:24 . 2011-07-09 13:01 -------- d-----w- c:\program files\CCleaner
2011-07-08 04:04 . 2002-01-05 09:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2011-07-08 04:04 . 2002-01-05 03:40 487424 ----a-w- c:\windows\system32\msvcp70.dll
2011-07-08 04:04 . 2002-01-05 04:48 974848 ----a-w- c:\windows\system32\mfc70.dll
2011-07-08 04:04 . 2000-05-22 14:58 608448 ----a-w- c:\windows\system32\comctl32.ocx
2011-07-08 04:04 . 2011-07-08 04:04 -------- d-----w- c:\program files\AML Products
2011-07-08 03:22 . 2011-07-08 03:22 -------- d-----w- c:\users\tereza\AppData\Roaming\Avira
2011-07-08 03:18 . 2011-07-08 17:10 66616 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-07-08 03:18 . 2011-07-08 17:10 138192 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\programdata\Avira
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\program files\Avira
2011-07-08 01:31 . 2011-07-08 01:31 -------- d-----w- c:\users\tereza\AppData\Local\Microsoft_Corporation
2011-06-29 16:09 . 2011-04-29 15:59 276992 ----a-w- c:\windows\system32\schannel.dll
2011-06-16 10:52 . 2011-04-28 16:03 129024 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2011-06-16 10:52 . 2011-04-21 16:04 834048 ----a-w- c:\windows\system32\wininet.dll
2011-06-16 10:52 . 2011-04-21 14:15 389632 ----a-w- c:\windows\system32\html.iec
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-24 17:14 . 2009-10-03 08:10 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-04 02:52 . 2010-05-02 19:51 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-02 39408]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"NokiaPCInternetAccess"="c:\program files\Nokia\PC Internet Access\NPCIA.exe" [2008-08-05 536576]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2008-05-13 6139904]
"FSCRecovery"="c:\program files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe" [2008-05-08 268096]
"OSD"="c:\program files\OEM\OSD_1.16\osd.exe" [2008-06-18 376832]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 49152]
"Skytel"="Skytel.exe" [2007-11-20 1826816]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-09 13543968]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-09 92704]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-09-08 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-09-24 421160]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-08-02 281768]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"fsc-reg"="c:\programdata\fsc-reg\fscreg.exe" [2008-05-29 381200]
.
c:\users\tereza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
_uninst_25515173.lnk - c:\users\tereza\AppData\Local\Temp\_uninst_25515173.bat [N/A]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
.
R1 MpKsl00661330;MpKsl00661330;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl00661330.sys [x]
R1 MpKsl00ee679e;MpKsl00ee679e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl00ee679e.sys [x]
R1 MpKsl042e5512;MpKsl042e5512;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl042e5512.sys [x]
R1 MpKsl0b8e0a87;MpKsl0b8e0a87;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl0b8e0a87.sys [x]
R1 MpKsl0bbca1c3;MpKsl0bbca1c3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EFE94202-FF07-49DA-B889-A55A3CA3BE50}\MpKsl0bbca1c3.sys [x]
R1 MpKsl0bce7e94;MpKsl0bce7e94;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl0bce7e94.sys [x]
R1 MpKsl0e53511c;MpKsl0e53511c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl0e53511c.sys [x]
R1 MpKsl0f371154;MpKsl0f371154;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl0f371154.sys [x]
R1 MpKsl0ffa4b51;MpKsl0ffa4b51;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl0ffa4b51.sys [x]
R1 MpKsl10f8e693;MpKsl10f8e693;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52430B60-2CF1-4481-B36B-D55D8B11B237}\MpKsl10f8e693.sys [x]
R1 MpKsl1462806a;MpKsl1462806a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl1462806a.sys [x]
R1 MpKsl1727dcdf;MpKsl1727dcdf;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl1727dcdf.sys [x]
R1 MpKsl17893391;MpKsl17893391;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D2D0B4FD-B6C0-46D0-B47A-2C5987328CCB}\MpKsl17893391.sys [x]
R1 MpKsl19394478;MpKsl19394478;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl19394478.sys [x]
R1 MpKsl1b6e0179;MpKsl1b6e0179;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl1b6e0179.sys [x]
R1 MpKsl1c018873;MpKsl1c018873;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKsl1c018873.sys [x]
R1 MpKsl1f5bc180;MpKsl1f5bc180;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52FC3FA7-0BBD-4137-94D1-4FC4CD171E28}\MpKsl1f5bc180.sys [x]
R1 MpKsl2117989e;MpKsl2117989e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl2117989e.sys [x]
R1 MpKsl226c0e87;MpKsl226c0e87;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl226c0e87.sys [x]
R1 MpKsl229fbd5a;MpKsl229fbd5a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl229fbd5a.sys [x]
R1 MpKsl25ddbcce;MpKsl25ddbcce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl25ddbcce.sys [x]
R1 MpKsl268f2a49;MpKsl268f2a49;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsl268f2a49.sys [x]
R1 MpKsl26b29a7c;MpKsl26b29a7c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65C567E3-4E44-4B67-965C-B691F2180524}\MpKsl26b29a7c.sys [x]
R1 MpKsl27e8e0d4;MpKsl27e8e0d4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl27e8e0d4.sys [x]
R1 MpKsl28a56f97;MpKsl28a56f97;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A7A5ED73-0937-4955-BC35-81C92A6103BD}\MpKsl28a56f97.sys [x]
R1 MpKsl28d72cb5;MpKsl28d72cb5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsl28d72cb5.sys [x]
R1 MpKsl2a0931a6;MpKsl2a0931a6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3FD697A8-A8B0-4F98-B9D7-F37CDF09F4E7}\MpKsl2a0931a6.sys [x]
R1 MpKsl2bbd5359;MpKsl2bbd5359;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl2bbd5359.sys [x]
R1 MpKsl2c6b8dd3;MpKsl2c6b8dd3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{609493F4-C4C0-459F-97FF-75B5429EEEE4}\MpKsl2c6b8dd3.sys [x]
R1 MpKsl33bffd0f;MpKsl33bffd0f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl33bffd0f.sys [x]
R1 MpKsl34657df8;MpKsl34657df8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl34657df8.sys [x]
R1 MpKsl353b69e7;MpKsl353b69e7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl353b69e7.sys [x]
R1 MpKsl366d7dd3;MpKsl366d7dd3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl366d7dd3.sys [x]
R1 MpKsl373c4c25;MpKsl373c4c25;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22E32C7D-9793-4581-B129-D3C769232F79}\MpKsl373c4c25.sys [x]
R1 MpKsl3855985d;MpKsl3855985d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl3855985d.sys [x]
R1 MpKsl39d4945d;MpKsl39d4945d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{D945E4BE-FF5A-406D-BB41-26F359FFF644}\MpKsl39d4945d.sys [x]
R1 MpKsl3bb6c002;MpKsl3bb6c002;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl3bb6c002.sys [x]
R1 MpKsl3c32d0f4;MpKsl3c32d0f4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{927E159D-94BC-4BE4-970B-D0435E957EE6}\MpKsl3c32d0f4.sys [x]
R1 MpKsl3d8fd7ce;MpKsl3d8fd7ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3d8fd7ce.sys [x]
R1 MpKsl3dbf9f3e;MpKsl3dbf9f3e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3dbf9f3e.sys [x]
R1 MpKsl3e1ec1a4;MpKsl3e1ec1a4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl3e1ec1a4.sys [x]
R1 MpKsl3e455fba;MpKsl3e455fba;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl3e455fba.sys [x]
R1 MpKsl3ef5e2cc;MpKsl3ef5e2cc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl3ef5e2cc.sys [x]
R1 MpKsl3f4276ec;MpKsl3f4276ec;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl3f4276ec.sys [x]
R1 MpKsl406c6213;MpKsl406c6213;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CE0AA59C-B8BB-454B-B4AC-F24F587F69A3}\MpKsl406c6213.sys [x]
R1 MpKsl41f6c24d;MpKsl41f6c24d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl41f6c24d.sys [x]
R1 MpKsl42ad10ce;MpKsl42ad10ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7AD78FE8-0387-491F-BC10-1AB612E107CD}\MpKsl42ad10ce.sys [x]
R1 MpKsl42fe9763;MpKsl42fe9763;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKsl42fe9763.sys [x]
R1 MpKsl4395ca23;MpKsl4395ca23;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl4395ca23.sys [x]
R1 MpKsl4421a1d2;MpKsl4421a1d2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9D06CFFD-1057-4B2E-87F2-2242A3337A73}\MpKsl4421a1d2.sys [x]
R1 MpKsl448f080b;MpKsl448f080b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl448f080b.sys [x]
R1 MpKsl44d88e31;MpKsl44d88e31;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsl44d88e31.sys [x]
R1 MpKsl46228957;MpKsl46228957;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C1534429-D993-4688-BDF7-D7DD2E795242}\MpKsl46228957.sys [x]
R1 MpKsl46917562;MpKsl46917562;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl46917562.sys [x]
R1 MpKsl474e1e27;MpKsl474e1e27;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl474e1e27.sys [x]
R1 MpKsl47bed66f;MpKsl47bed66f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3010ADB6-B7F6-4FA0-B6D6-77C3FCBD0B54}\MpKsl47bed66f.sys [x]
R1 MpKsl47ea9343;MpKsl47ea9343;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl47ea9343.sys [x]
R1 MpKsl489d8aef;MpKsl489d8aef;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl489d8aef.sys [x]
R1 MpKsl49dcc843;MpKsl49dcc843;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsl49dcc843.sys [x]
R1 MpKsl4bf28a30;MpKsl4bf28a30;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl4bf28a30.sys [x]
R1 MpKsl4d9d523f;MpKsl4d9d523f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl4d9d523f.sys [x]
R1 MpKsl4ef27b8d;MpKsl4ef27b8d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl4ef27b8d.sys [x]
R1 MpKsl4f910b79;MpKsl4f910b79;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKsl4f910b79.sys [x]
R1 MpKsl4fccc15a;MpKsl4fccc15a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKsl4fccc15a.sys [x]
R1 MpKsl50ad2634;MpKsl50ad2634;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl50ad2634.sys [x]
R1 MpKsl51ed120c;MpKsl51ed120c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl51ed120c.sys [x]
R1 MpKsl51ff3aea;MpKsl51ff3aea;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A7A5ED73-0937-4955-BC35-81C92A6103BD}\MpKsl51ff3aea.sys [x]
R1 MpKsl531a33af;MpKsl531a33af;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{25AF1356-DAAD-4574-965F-CCC683B10FC0}\MpKsl531a33af.sys [x]
R1 MpKsl53703817;MpKsl53703817;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl53703817.sys [x]
R1 MpKsl53710bc7;MpKsl53710bc7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl53710bc7.sys [x]
R1 MpKsl569130c2;MpKsl569130c2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl569130c2.sys [x]
R1 MpKsl56df77aa;MpKsl56df77aa;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl56df77aa.sys [x]
R1 MpKsl57adca47;MpKsl57adca47;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl57adca47.sys [x]
R1 MpKsl57f985a1;MpKsl57f985a1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsl57f985a1.sys [x]
R1 MpKsl58667485;MpKsl58667485;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl58667485.sys [x]
R1 MpKsl59214de0;MpKsl59214de0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl59214de0.sys [x]
R1 MpKsl5a66b7b5;MpKsl5a66b7b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl5a66b7b5.sys [x]
R1 MpKsl5cbd194d;MpKsl5cbd194d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKsl5cbd194d.sys [x]
R1 MpKsl5cbe7e34;MpKsl5cbe7e34;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{72522CF9-F811-45B5-80D2-781574A323B7}\MpKsl5cbe7e34.sys [x]
R1 MpKsl5f22b948;MpKsl5f22b948;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl5f22b948.sys [x]
R1 MpKsl5f633c8f;MpKsl5f633c8f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl5f633c8f.sys [x]
R1 MpKsl601a8265;MpKsl601a8265;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C1534429-D993-4688-BDF7-D7DD2E795242}\MpKsl601a8265.sys [x]
R1 MpKsl613bf7b5;MpKsl613bf7b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl613bf7b5.sys [x]
R1 MpKsl644af590;MpKsl644af590;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl644af590.sys [x]
R1 MpKsl64ce169a;MpKsl64ce169a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A4B5B8A6-FFF5-4D3F-9A28-8171C321BD82}\MpKsl64ce169a.sys [x]
R1 MpKsl6769104a;MpKsl6769104a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl6769104a.sys [x]
R1 MpKsl677ccc23;MpKsl677ccc23;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsl677ccc23.sys [x]
R1 MpKsl68498b56;MpKsl68498b56;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl68498b56.sys [x]
R1 MpKsl69fee950;MpKsl69fee950;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BDC1C736-0C04-4AFC-879A-DAFEA67B75CC}\MpKsl69fee950.sys [x]
R1 MpKsl6afba45e;MpKsl6afba45e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKsl6afba45e.sys [x]
R1 MpKsl6b2ce2c8;MpKsl6b2ce2c8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{52430B60-2CF1-4481-B36B-D55D8B11B237}\MpKsl6b2ce2c8.sys [x]
R1 MpKsl6c3b1d96;MpKsl6c3b1d96;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl6c3b1d96.sys [x]
R1 MpKsl6d6b3ad6;MpKsl6d6b3ad6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl6d6b3ad6.sys [x]
R1 MpKsl711d3d84;MpKsl711d3d84;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl711d3d84.sys [x]
R1 MpKsl722d3a40;MpKsl722d3a40;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl722d3a40.sys [x]
R1 MpKsl72ac89b4;MpKsl72ac89b4;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl72ac89b4.sys [x]
R1 MpKsl72af3fee;MpKsl72af3fee;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl72af3fee.sys [x]
R1 MpKsl74669fc5;MpKsl74669fc5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl74669fc5.sys [x]
R1 MpKsl75f0f28b;MpKsl75f0f28b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl75f0f28b.sys [x]
R1 MpKsl77956e72;MpKsl77956e72;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl77956e72.sys [x]
R1 MpKsl795b72dd;MpKsl795b72dd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl795b72dd.sys [x]
R1 MpKsl7ab093cd;MpKsl7ab093cd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsl7ab093cd.sys [x]
R1 MpKsl7c669b6e;MpKsl7c669b6e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKsl7c669b6e.sys [x]
R1 MpKsl7c89e565;MpKsl7c89e565;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl7c89e565.sys [x]
R1 MpKsl7cc8ac8a;MpKsl7cc8ac8a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKsl7cc8ac8a.sys [x]
R1 MpKsl7dd96d92;MpKsl7dd96d92;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl7dd96d92.sys [x]
R1 MpKsl7fab728b;MpKsl7fab728b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl7fab728b.sys [x]
R1 MpKsl802325dc;MpKsl802325dc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl802325dc.sys [x]
R1 MpKsl809719f1;MpKsl809719f1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKsl809719f1.sys [x]
R1 MpKsl817c40f0;MpKsl817c40f0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{42975E51-4BB1-452A-95E7-CFDE2E8609DB}\MpKsl817c40f0.sys [x]
R1 MpKsl81a1ce90;MpKsl81a1ce90;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{10A908C2-D027-4015-893F-9FE5ECCE9302}\MpKsl81a1ce90.sys [x]
R1 MpKsl828bfd28;MpKsl828bfd28;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl828bfd28.sys [x]
R1 MpKsl833d56e8;MpKsl833d56e8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsl833d56e8.sys [x]
R1 MpKsl83bb4e9f;MpKsl83bb4e9f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsl83bb4e9f.sys [x]
R1 MpKsl83cb5344;MpKsl83cb5344;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl83cb5344.sys [x]
R1 MpKsl840eecf9;MpKsl840eecf9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKsl840eecf9.sys [x]
R1 MpKsl84a972b6;MpKsl84a972b6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl84a972b6.sys [x]
R1 MpKsl84fc220a;MpKsl84fc220a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsl84fc220a.sys [x]
R1 MpKsl854365c8;MpKsl854365c8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsl854365c8.sys [x]
R1 MpKsl86af166a;MpKsl86af166a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C364634F-A730-46B2-82C4-2CCE16DF047F}\MpKsl86af166a.sys [x]
R1 MpKsl87344a00;MpKsl87344a00;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKsl87344a00.sys [x]
R1 MpKsl891b9792;MpKsl891b9792;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl891b9792.sys [x]
R1 MpKsl8b1394cf;MpKsl8b1394cf;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl8b1394cf.sys [x]
R1 MpKsl8c752809;MpKsl8c752809;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{931B9C56-AE10-45C0-AC3B-6E76348F2049}\MpKsl8c752809.sys [x]
R1 MpKsl91eaa851;MpKsl91eaa851;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsl91eaa851.sys [x]
R1 MpKsl92c582c0;MpKsl92c582c0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B70D06D4-9C91-4BBB-AF0F-E6C12FC13431}\MpKsl92c582c0.sys [x]
R1 MpKsl93f17f38;MpKsl93f17f38;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKsl93f17f38.sys [x]
R1 MpKsl94153848;MpKsl94153848;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsl94153848.sys [x]
R1 MpKsl95196493;MpKsl95196493;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsl95196493.sys [x]
R1 MpKsl959f5a2f;MpKsl959f5a2f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl959f5a2f.sys [x]
R1 MpKsl96179a00;MpKsl96179a00;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E17C006-F2D1-485B-A4A9-686490887450}\MpKsl96179a00.sys [x]
R1 MpKsl974594f0;MpKsl974594f0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKsl974594f0.sys [x]
R1 MpKsl98d518e2;MpKsl98d518e2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl98d518e2.sys [x]
R1 MpKsl99077615;MpKsl99077615;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsl99077615.sys [x]
R1 MpKsl9922169c;MpKsl9922169c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{12380E66-DBF4-4DCF-9407-FA434A12A5A6}\MpKsl9922169c.sys [x]
R1 MpKsl998582c1;MpKsl998582c1;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{931B9C56-AE10-45C0-AC3B-6E76348F2049}\MpKsl998582c1.sys [x]
R1 MpKsl9aa5946b;MpKsl9aa5946b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl9aa5946b.sys [x]
R1 MpKsl9b932c9d;MpKsl9b932c9d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6BB7257F-77AE-4909-9672-C6A8F6190033}\MpKsl9b932c9d.sys [x]
R1 MpKsl9c0bbe27;MpKsl9c0bbe27;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsl9c0bbe27.sys [x]
R1 MpKsl9ce97093;MpKsl9ce97093;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsl9ce97093.sys [x]
R1 MpKsl9d3f0cb7;MpKsl9d3f0cb7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKsl9d3f0cb7.sys [x]
R1 MpKsl9f64025e;MpKsl9f64025e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E36614DF-C1B0-4840-9A96-CA72146F566C}\MpKsl9f64025e.sys [x]
R1 MpKsla1c2c875;MpKsla1c2c875;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsla1c2c875.sys [x]
R1 MpKsla3c726b8;MpKsla3c726b8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{10A908C2-D027-4015-893F-9FE5ECCE9302}\MpKsla3c726b8.sys [x]
R1 MpKsla4a21c37;MpKsla4a21c37;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsla4a21c37.sys [x]
R1 MpKsla4b0b083;MpKsla4b0b083;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsla4b0b083.sys [x]
R1 MpKsla4be9c08;MpKsla4be9c08;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKsla4be9c08.sys [x]
R1 MpKsla4fa09af;MpKsla4fa09af;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKsla4fa09af.sys [x]
R1 MpKsla539e858;MpKsla539e858;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsla539e858.sys [x]
R1 MpKsla5fb3aa9;MpKsla5fb3aa9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKsla5fb3aa9.sys [x]
R1 MpKsla639272d;MpKsla639272d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B631F05E-7FA1-42E1-8CEA-91A57F0A643E}\MpKsla639272d.sys [x]
R1 MpKsla7176285;MpKsla7176285;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsla7176285.sys [x]
R1 MpKsla9725781;MpKsla9725781;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsla9725781.sys [x]
R1 MpKslac0d4135;MpKslac0d4135;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslac0d4135.sys [x]
R1 MpKslb642e450;MpKslb642e450;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EC8D5160-B0B8-4D0D-BAC8-B3D979ADE808}\MpKslb642e450.sys [x]
R1 MpKslb6db25dd;MpKslb6db25dd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb6db25dd.sys [x]
R1 MpKslb6fa6c57;MpKslb6fa6c57;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb6fa6c57.sys [x]
R1 MpKslb7b47b3c;MpKslb7b47b3c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslb7b47b3c.sys [x]
R1 MpKslb853ac9f;MpKslb853ac9f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKslb853ac9f.sys [x]
R1 MpKslb8657819;MpKslb8657819;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C7F1BFB8-30C8-4AB8-BEEB-F1E3FD7D5C53}\MpKslb8657819.sys [x]
R1 MpKslb9ff1b83;MpKslb9ff1b83;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKslb9ff1b83.sys [x]
R1 MpKslbdcd50b0;MpKslbdcd50b0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8A82BE1C-93FD-4C1C-9CEA-B558107103BD}\MpKslbdcd50b0.sys [x]
R1 MpKslbdf8119e;MpKslbdf8119e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B631F05E-7FA1-42E1-8CEA-91A57F0A643E}\MpKslbdf8119e.sys [x]
R1 MpKslbe34c1f2;MpKslbe34c1f2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslbe34c1f2.sys [x]
R1 MpKslc02a3112;MpKslc02a3112;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FEE23885-22E7-4785-BA57-7A562D8C091E}\MpKslc02a3112.sys [x]
R1 MpKslc070d136;MpKslc070d136;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKslc070d136.sys [x]
R1 MpKslc0f99f01;MpKslc0f99f01;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9D06CFFD-1057-4B2E-87F2-2242A3337A73}\MpKslc0f99f01.sys [x]
R1 MpKslc271d012;MpKslc271d012;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EC8D5160-B0B8-4D0D-BAC8-B3D979ADE808}\MpKslc271d012.sys [x]
R1 MpKslc3e785ed;MpKslc3e785ed;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{8CFC53F7-8517-4E61-A8B3-5B905795A1C3}\MpKslc3e785ed.sys [x]
R1 MpKslc52b45e7;MpKslc52b45e7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKslc52b45e7.sys [x]
R1 MpKslc53b9ca6;MpKslc53b9ca6;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslc53b9ca6.sys [x]
R1 MpKslc6b772c5;MpKslc6b772c5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslc6b772c5.sys [x]
R1 MpKslc9f7277b;MpKslc9f7277b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslc9f7277b.sys [x]
R1 MpKslca35e457;MpKslca35e457;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslca35e457.sys [x]
R1 MpKslcadf34a3;MpKslcadf34a3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A4B5B8A6-FFF5-4D3F-9A28-8171C321BD82}\MpKslcadf34a3.sys [x]
R1 MpKslcafdb963;MpKslcafdb963;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKslcafdb963.sys [x]
R1 MpKslcbe8f479;MpKslcbe8f479;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKslcbe8f479.sys [x]
R1 MpKslcc166041;MpKslcc166041;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65C567E3-4E44-4B67-965C-B691F2180524}\MpKslcc166041.sys [x]
R1 MpKsld2518466;MpKsld2518466;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKsld2518466.sys [x]
R1 MpKsld2cc9022;MpKsld2cc9022;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C364634F-A730-46B2-82C4-2CCE16DF047F}\MpKsld2cc9022.sys [x]
R1 MpKsld314e62a;MpKsld314e62a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsld314e62a.sys [x]
R1 MpKsld3a2dffc;MpKsld3a2dffc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F34D7955-3C6F-49BB-9027-ABF53BD9AEA6}\MpKsld3a2dffc.sys [x]
R1 MpKsld74372b5;MpKsld74372b5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B70D06D4-9C91-4BBB-AF0F-E6C12FC13431}\MpKsld74372b5.sys [x]
R1 MpKsld744cb9c;MpKsld744cb9c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B2D14FBC-88B7-4B02-ACE9-B4AC151590C7}\MpKsld744cb9c.sys [x]
R1 MpKsld7ebd460;MpKsld7ebd460;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsld7ebd460.sys [x]
R1 MpKsld7ff117d;MpKsld7ff117d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsld7ff117d.sys [x]
R1 MpKslda2dc59f;MpKslda2dc59f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslda2dc59f.sys [x]
R1 MpKslda5d57b8;MpKslda5d57b8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CD77B736-B26B-48E3-9CE7-81B1D8899F38}\MpKslda5d57b8.sys [x]
R1 MpKsldc02b767;MpKsldc02b767;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B535EB8E-9FD7-4993-A520-A5AB7F465227}\MpKsldc02b767.sys [x]
R1 MpKsldc2e566c;MpKsldc2e566c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{A177C744-DD76-4D80-9229-D16EEC1CC256}\MpKsldc2e566c.sys [x]
R1 MpKsle140e7ce;MpKsle140e7ce;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F04C8098-B5EA-4268-B612-1F5F08584AE8}\MpKsle140e7ce.sys [x]
R1 MpKsle2fc639f;MpKsle2fc639f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKsle2fc639f.sys [x]
R1 MpKsle337cc0a;MpKsle337cc0a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKsle337cc0a.sys [x]
R1 MpKsle358b18d;MpKsle358b18d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKsle358b18d.sys [x]
R1 MpKsle450c2fa;MpKsle450c2fa;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{22F65E04-3CED-402E-8D3B-BB406E295320}\MpKsle450c2fa.sys [x]
R1 MpKsle59fe791;MpKsle59fe791;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E66564B3-2DA4-4AD6-8B64-36E7D41267D2}\MpKsle59fe791.sys [x]
R1 MpKslea5a63ba;MpKslea5a63ba;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{54916130-63C1-4669-906A-76B97FC07C6D}\MpKslea5a63ba.sys [x]
R1 MpKsleabbb194;MpKsleabbb194;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EA803D43-7C56-4480-94FF-D9DB1E2917F6}\MpKsleabbb194.sys [x]
R1 MpKslead998bc;MpKslead998bc;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{47C090CB-0559-40B5-B3D0-3C29ED131441}\MpKslead998bc.sys [x]
R1 MpKsleb49c42c;MpKsleb49c42c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKsleb49c42c.sys [x]
R1 MpKsleb9d37d9;MpKsleb9d37d9;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{18E47B2F-0F70-4F0D-84D2-37DED08C50C0}\MpKsleb9d37d9.sys [x]
R1 MpKslecbabc02;MpKslecbabc02;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKslecbabc02.sys [x]
R1 MpKslee204621;MpKslee204621;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{42975E51-4BB1-452A-95E7-CFDE2E8609DB}\MpKslee204621.sys [x]
R1 MpKslee41f06b;MpKslee41f06b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKslee41f06b.sys [x]
R1 MpKslf149dd9b;MpKslf149dd9b;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{23BA3640-B3F8-4F86-8414-525697F3F732}\MpKslf149dd9b.sys [x]
R1 MpKslf1919b3d;MpKslf1919b3d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7AD78FE8-0387-491F-BC10-1AB612E107CD}\MpKslf1919b3d.sys [x]
R1 MpKslf2875193;MpKslf2875193;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslf2875193.sys [x]
R1 MpKslf2a0a9a0;MpKslf2a0a9a0;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E12122BB-2CC9-402B-B150-FF229C92AB0C}\MpKslf2a0a9a0.sys [x]
R1 MpKslf2f72f3c;MpKslf2f72f3c;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{C711F2E6-5D1F-4230-8CC8-305A85D4B44C}\MpKslf2f72f3c.sys [x]
R1 MpKslf4d9817f;MpKslf4d9817f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{BC644583-D50D-47FE-9A59-C415585C9DF9}\MpKslf4d9817f.sys [x]
R1 MpKslf657ccee;MpKslf657ccee;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9F607A6B-A42D-4BAE-A64B-7644C506DE1A}\MpKslf657ccee.sys [x]
R1 MpKslf73a71f7;MpKslf73a71f7;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKslf73a71f7.sys [x]
R1 MpKslfa04d3a5;MpKslfa04d3a5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{65F20C53-0D1E-42AD-8CC9-5FFF43508AC6}\MpKslfa04d3a5.sys [x]
R1 MpKslfa3a30b2;MpKslfa3a30b2;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7E822272-DF30-40DF-BF5B-47D2DC4FE75A}\MpKslfa3a30b2.sys [x]
R1 MpKslfb306130;MpKslfb306130;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1E6257F-736B-4DA1-B686-7D2BCDF94B73}\MpKslfb306130.sys [x]
R1 MpKslfbea2ec8;MpKslfbea2ec8;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{06B049FC-5887-49FA-9B8A-A1DBECCBA990}\MpKslfbea2ec8.sys [x]
R1 MpKslfcd27abd;MpKslfcd27abd;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{CC1F60FC-D221-47F1-833A-D0FCE50D4838}\MpKslfcd27abd.sys [x]
R1 MpKslfe1dd800;MpKslfe1dd800;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B1C4C60F-DAD8-4031-A629-734FC83F6530}\MpKslfe1dd800.sys [x]
R1 MpKslfe2dc51d;MpKslfe2dc51d;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E2489977-5628-41DA-87A1-7950F11F26CD}\MpKslfe2dc51d.sys [x]
R1 MpKslfea7cdb3;MpKslfea7cdb3;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F5E53789-CDC0-4F4C-A6E9-5EAC3FA5725D}\MpKslfea7cdb3.sys [x]
R1 MpKslfeeb715a;MpKslfeeb715a;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{EFE94202-FF07-49DA-B889-A55A3CA3BE50}\MpKslfeeb715a.sys [x]
R1 MpKslff7be31f;MpKslff7be31f;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{349DCBB8-A946-41B7-92E4-02491AA3B0F8}\MpKslff7be31f.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 GpdDevDPort;GpdDevDPort;c:\windows\system32\directport.sys [2008-06-17 7168]
R3 GpdKbFilter;GpdKbFilter;c:\windows\system32\kbfiltr.sys [2008-03-31 8192]
R3 gupdate1c9f0e247a0afb0;Služba Google Update (gupdate1c9f0e247a0afb0);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2008-10-10 51040]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
R4 OsdService;OSD Service;c:\program files\OEM\OSD_1.16\OsdService.exe [2008-02-22 94208]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2011-07-08 136360]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2007-08-01 16376]
S3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-01 3660800]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-14 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-01-15 17:49]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-14 c:\windows\Tasks\User_Feed_Synchronization-{BFCBACF4-3D38-4CA7-8CF4-64C5B77314B5}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:24]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 213.46.172.36 192.168.1.254
.
.
**************************************************************************
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory:
.
**************************************************************************
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\System32\lpksetup.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conime.exe
c:\windows\RtHDVCpl.exe
c:\windows\System32\rundll32.exe
c:\windows\ehome\ehmsas.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Celkový čas: 2011-07-15 01:15:36 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-14 23:15
ComboFix2.txt 2011-07-14 19:30
ComboFix3.txt 2011-07-09 22:56
ComboFix4.txt 2011-07-09 11:11
ComboFix5.txt 2011-07-14 21:53
.
Před spuštěním: Volných bajtů: 54 148 587 520
Po spuštění: Volných bajtů: 53 808 852 992
.
- - End Of File - - C1CDFEB29AA25F50F0CB2D18B14E9125

log HJT
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:18:56, on 15.7.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\conime.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\PC Internet Access\NPCIA.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Windows\system32\taskeng.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\Explorer.exe
C:\Windows\system32\notepad.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [FSCRecovery] c:\Program Files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe
O4 - HKLM\..\Run: [OSD] C:\Program Files\OEM\OSD_1.16\osd.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [NokiaPCInternetAccess] "C:\Program Files\Nokia\PC Internet Access\NPCIA.exe" /b
O4 - HKUS\S-1-5-18\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'Default user')
O4 - Startup: _uninst_25515173.lnk = C:\Users\tereza\AppData\Local\Temp\_uninst_25515173.bat
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Users\tereza\Desktop\PartyPoker.lnk
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Users\tereza\Desktop\PartyPoker.lnk
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate1c9f0e247a0afb0) (gupdate1c9f0e247a0afb0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Fujitsu Diagnostic Testhandler (TestHandler) - Fujitsu Technology Solutions - C:\Program Files\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe

--
End of file - 7311 bytes

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 15 črc 2011 09:52

ahoj,
snažil jsem se smazat ty antimalwar soubory od MS essential na C: v program datech ale asi se to minulo účinkem :(

Nenašel si v přidat/odebrat programy Microsoft Secure Essentials?

Ani Microsoft Antimalware?

Zkus tohle:
http://support.microsoft.com/kb/2435760

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O4 - Startup: _uninst_25515173.lnk = C:\Users\tereza\AppData\Local\Temp\_uninst_25515173.bat
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab


Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

KillAll::
File::
C:\Users\tereza\AppData\Local\Temp\_uninst_25515173.bat

Folder::
c:\programdata\Microsoft\Microsoft Antimalware

Driver::
MpKsl00661330
MpKsl00ee679e
MpKsl042e5512
MpKsl0b8e0a87
MpKsl0bbca1c3
MpKsl0bce7e94
MpKsl0e53511c
MpKsl0f371154
MpKsl0ffa4b51
MpKsl10f8e693
MpKsl1462806a
MpKsl1727dcdf
MpKsl17893391
MpKsl19394478
MpKsl1b6e0179
MpKsl1c018873
MpKsl1f5bc180
MpKsl2117989e
MpKsl226c0e87
MpKsl229fbd5a
MpKsl25ddbcce
MpKsl268f2a49
MpKsl26b29a7c
MpKsl27e8e0d4
MpKsl28a56f97
MpKsl28d72cb5
MpKsl2a0931a6
MpKsl2bbd5359
MpKsl2c6b8dd3
MpKsl33bffd0f
MpKsl34657df8
MpKsl353b69e7
MpKsl366d7dd3
MpKsl373c4c25
MpKsl3855985d
MpKsl39d4945d
MpKsl3bb6c002
MpKsl3c32d0f4
MpKsl3d8fd7ce
MpKsl3dbf9f3e
MpKsl3e1ec1a4
MpKsl3e455fba
MpKsl3ef5e2cc
MpKsl3f4276ec
MpKsl406c6213
MpKsl41f6c24d
MpKsl42ad10ce
MpKsl42fe9763
MpKsl4395ca23
MpKsl4421a1d2
MpKsl448f080b
MpKsl44d88e31
MpKsl46228957
MpKsl46917562
MpKsl474e1e27
MpKsl47bed66f
MpKsl47ea9343
MpKsl489d8aef
MpKsl49dcc843
MpKsl4bf28a30
MpKsl4d9d523f
MpKsl4ef27b8d
MpKsl4f910b79
MpKsl4fccc15a
MpKsl50ad2634
MpKsl51ed120c
MpKsl51ff3aea
MpKsl531a33af
MpKsl53703817
MpKsl53710bc7
MpKsl569130c2
MpKsl56df77aa
MpKsl57adca47
MpKsl57f985a1
MpKsl58667485
MpKsl59214de0
MpKsl5a66b7b5
MpKsl5cbd194d
MpKsl5cbe7e34
MpKsl5f22b948
MpKsl5f633c8f
MpKsl601a8265
MpKsl613bf7b5
MpKsl644af590
MpKsl64ce169a
MpKsl6769104a
MpKsl677ccc23
MpKsl68498b56
MpKsl69fee950
MpKsl6afba45e
MpKsl6b2ce2c8
MpKsl6c3b1d96
MpKsl6d6b3ad6
MpKsl711d3d84
MpKsl722d3a40
MpKsl72ac89b4
MpKsl72af3fee
MpKsl74669fc5
MpKsl75f0f28b
MpKsl77956e72
MpKsl795b72dd
MpKsl7ab093cd
MpKsl7c669b6e
MpKsl7c89e565
MpKsl7cc8ac8a
MpKsl7dd96d92
MpKsl7fab728b
MpKsl802325dc
MpKsl809719f1
MpKsl817c40f0
MpKsl81a1ce90
MpKsl828bfd28
MpKsl833d56e8
MpKsl83bb4e9f
MpKsl83cb5344
MpKsl840eecf9
MpKsl84a972b6
MpKsl84fc220a
MpKsl854365c8
MpKsl86af166a
MpKsl87344a00
MpKsl891b9792
MpKsl8b1394cf
MpKsl8c752809
MpKsl91eaa851
MpKsl92c582c0
MpKsl93f17f38
MpKsl94153848
MpKsl95196493
MpKsl959f5a2f
MpKsl96179a00
MpKsl974594f0
MpKsl98d518e2
MpKsl99077615
MpKsl9922169c
MpKsl998582c1
MpKsl9aa5946b
MpKsl9b932c9d
MpKsl9c0bbe27
MpKsl9ce97093
MpKsl9d3f0cb7
MpKsl9f64025e
MpKsla1c2c875
MpKsla3c726b8
MpKsla4a21c37
MpKsla4b0b083
MpKsla4be9c08
MpKsla4fa09af
MpKsla539e858
MpKsla5fb3aa9
MpKsla639272d
MpKsla7176285
MpKsla9725781
MpKslac0d4135
MpKslb642e450
MpKslb6db25dd
MpKslb6fa6c57
MpKslb7b47b3c
MpKslb853ac9f
MpKslb8657819
MpKslb9ff1b83
MpKslbdcd50b0
MpKslbdf8119e
MpKslbe34c1f2
MpKslc02a3112
MpKslc070d136
MpKslc0f99f01
MpKslc271d012
MpKslc3e785ed
MpKslc52b45e7
MpKslc53b9ca6
MpKslc6b772c5
MpKslc9f7277b
MpKslca35e457
MpKslcadf34a3
MpKslcafdb963
MpKslcbe8f479
MpKslcc166041
MpKsld2518466
MpKsld2cc9022
MpKsld314e62a
MpKsld3a2dffc
MpKsld74372b5
MpKsld744cb9c
MpKsld7ebd460
MpKsld7ff117d
MpKslda2dc59f
MpKslda5d57b8
MpKsldc02b767
MpKsldc2e566c
MpKsle140e7ce
MpKsle2fc639f
MpKsle337cc0a
MpKsle358b18d
MpKsle450c2fa
MpKsle59fe791
MpKslea5a63ba
MpKsleabbb194
MpKslead998bc
MpKsleb49c42c
MpKsleb9d37d9
MpKslecbabc02
MpKslee204621
MpKslee41f06b
MpKslf149dd9b
MpKslf1919b3d
MpKslf2875193
MpKslf2a0a9a0
MpKslf2f72f3c
MpKslf4d9817f
MpKslf657ccee
MpKslf73a71f7
MpKslfa04d3a5
MpKslfa3a30b2
MpKslfb306130
MpKslfbea2ec8
MpKslfcd27abd
MpKslfe1dd800
MpKslfe2dc51d
MpKslfea7cdb3
MpKslfeeb715a
MpKslff7be31f


Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 15 črc 2011 13:20

log combo
ComboFix 11-07-14.05 - tereza 15.07.2011 12:52:08.5.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3066.2143 [GMT 2:00]
Spuštěný z: C:\Users\tereza\Desktop\ComboFix.exe
Použité ovládací přepínače :: C:\Users\tereza\Desktop\CFScript.txt
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

FILE ::
"C:\Users\tereza\AppData\Local\Temp\_uninst_25515173.bat"


((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))



((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_MPKSL00661330
-------\Legacy_MPKSL00EE679E
-------\Legacy_MPKSL042E5512
-------\Legacy_MPKSL0B8E0A87
-------\Legacy_MPKSL0BBCA1C3
-------\Legacy_MPKSL0BCE7E94
-------\Legacy_MPKSL0E53511C
-------\Legacy_MPKSL0F371154
-------\Legacy_MPKSL0FFA4B51
-------\Legacy_MPKSL10F8E693
-------\Legacy_MPKSL1462806A
-------\Legacy_MPKSL1727DCDF
-------\Legacy_MPKSL19394478
-------\Legacy_MPKSL1B6E0179
-------\Legacy_MPKSL1C018873
-------\Legacy_MPKSL1F5BC180
-------\Legacy_MPKSL2117989E
-------\Legacy_MPKSL226C0E87
-------\Legacy_MPKSL229FBD5A
-------\Legacy_MPKSL25DDBCCE
-------\Legacy_MPKSL26B29A7C
-------\Legacy_MPKSL27E8E0D4
-------\Legacy_MPKSL28A56F97
-------\Legacy_MPKSL28D72CB5
-------\Legacy_MPKSL2A0931A6
-------\Legacy_MPKSL2BBD5359
-------\Legacy_MPKSL2C6B8DD3
-------\Legacy_MPKSL33BFFD0F
-------\Legacy_MPKSL34657DF8
-------\Legacy_MPKSL353B69E7
-------\Legacy_MPKSL366D7DD3
-------\Legacy_MPKSL373C4C25
-------\Legacy_MPKSL3855985D
-------\Legacy_MPKSL39D4945D
-------\Legacy_MPKSL3BB6C002
-------\Legacy_MPKSL3D8FD7CE
-------\Legacy_MPKSL3DBF9F3E
-------\Legacy_MPKSL3E1EC1A4
-------\Legacy_MPKSL3EF5E2CC
-------\Legacy_MPKSL3F4276EC
-------\Legacy_MPKSL406C6213
-------\Legacy_MPKSL41F6C24D
-------\Legacy_MPKSL42AD10CE
-------\Legacy_MPKSL42FE9763
-------\Legacy_MPKSL4395CA23
-------\Legacy_MPKSL4421A1D2
-------\Legacy_MPKSL448F080B
-------\Legacy_MPKSL44D88E31
-------\Legacy_MPKSL46228957
-------\Legacy_MPKSL46917562
-------\Legacy_MPKSL474E1E27
-------\Legacy_MPKSL47BED66F
-------\Legacy_MPKSL47EA9343
-------\Legacy_MPKSL489D8AEF
-------\Legacy_MPKSL49DCC843
-------\Legacy_MPKSL4BF28A30
-------\Legacy_MPKSL4D9D523F
-------\Legacy_MPKSL4EF27B8D
-------\Legacy_MPKSL4FCCC15A
-------\Legacy_MPKSL50AD2634
-------\Legacy_MPKSL51ED120C
-------\Legacy_MPKSL51FF3AEA
-------\Legacy_MPKSL531A33AF
-------\Legacy_MPKSL53710BC7
-------\Legacy_MPKSL569130C2
-------\Legacy_MPKSL56DF77AA
-------\Legacy_MPKSL57ADCA47
-------\Legacy_MPKSL57F985A1
-------\Legacy_MPKSL58667485
-------\Legacy_MPKSL59214DE0
-------\Legacy_MPKSL5A66B7B5
-------\Legacy_MPKSL5CBE7E34
-------\Legacy_MPKSL5F22B948
-------\Legacy_MPKSL5F633C8F
-------\Legacy_MPKSL601A8265
-------\Legacy_MPKSL613BF7B5
-------\Legacy_MPKSL644AF590
-------\Legacy_MPKSL64CE169A
-------\Legacy_MPKSL6769104A
-------\Legacy_MPKSL677CCC23
-------\Legacy_MPKSL68498B56
-------\Legacy_MPKSL69FEE950
-------\Legacy_MPKSL6B2CE2C8
-------\Legacy_MPKSL6C3B1D96
-------\Legacy_MPKSL6D6B3AD6
-------\Legacy_MPKSL711D3D84
-------\Legacy_MPKSL722D3A40
-------\Legacy_MPKSL72AC89B4
-------\Legacy_MPKSL72AF3FEE
-------\Legacy_MPKSL74669FC5
-------\Legacy_MPKSL77956E72
-------\Legacy_MPKSL795B72DD
-------\Legacy_MPKSL7AB093CD
-------\Legacy_MPKSL7C669B6E
-------\Legacy_MPKSL7C89E565
-------\Legacy_MPKSL7CC8AC8A
-------\Legacy_MPKSL7DD96D92
-------\Legacy_MPKSL7FAB728B
-------\Legacy_MPKSL802325DC
-------\Legacy_MPKSL809719F1
-------\Legacy_MPKSL817C40F0
-------\Legacy_MPKSL81A1CE90
-------\Legacy_MPKSL828BFD28
-------\Legacy_MPKSL833D56E8
-------\Legacy_MPKSL83BB4E9F
-------\Legacy_MPKSL83CB5344
-------\Legacy_MPKSL840EECF9
-------\Legacy_MPKSL84A972B6
-------\Legacy_MPKSL84FC220A
-------\Legacy_MPKSL854365C8
-------\Legacy_MPKSL86AF166A
-------\Legacy_MPKSL87344A00
-------\Legacy_MPKSL891B9792
-------\Legacy_MPKSL8B1394CF
-------\Legacy_MPKSL8C752809
-------\Legacy_MPKSL91EAA851
-------\Legacy_MPKSL93F17F38
-------\Legacy_MPKSL94153848
-------\Legacy_MPKSL95196493
-------\Legacy_MPKSL96179A00
-------\Legacy_MPKSL974594F0
-------\Legacy_MPKSL98D518E2
-------\Legacy_MPKSL99077615
-------\Legacy_MPKSL9922169C
-------\Legacy_MPKSL998582C1
-------\Legacy_MPKSL9AA5946B
-------\Legacy_MPKSL9B932C9D
-------\Legacy_MPKSL9C0BBE27
-------\Legacy_MPKSL9CE97093
-------\Legacy_MPKSL9D3F0CB7
-------\Legacy_MPKSL9F64025E
-------\Legacy_MPKSLA1C2C875
-------\Legacy_MPKSLA3C726B8
-------\Legacy_MPKSLA4A21C37
-------\Legacy_MPKSLA4B0B083
-------\Legacy_MPKSLA4BE9C08
-------\Legacy_MPKSLA4FA09AF
-------\Legacy_MPKSLA539E858
-------\Legacy_MPKSLA5FB3AA9
-------\Legacy_MPKSLA639272D
-------\Legacy_MPKSLA7176285
-------\Legacy_MPKSLA9725781
-------\Legacy_MPKSLAC0D4135
-------\Legacy_MPKSLB642E450
-------\Legacy_MPKSLB6DB25DD
-------\Legacy_MPKSLB7B47B3C
-------\Legacy_MPKSLB853AC9F
-------\Legacy_MPKSLB8657819
-------\Legacy_MPKSLB9FF1B83
-------\Legacy_MPKSLBDCD50B0
-------\Legacy_MPKSLBDF8119E
-------\Legacy_MPKSLBE34C1F2
-------\Legacy_MPKSLC02A3112
-------\Legacy_MPKSLC0F99F01
-------\Legacy_MPKSLC271D012
-------\Legacy_MPKSLC3E785ED
-------\Legacy_MPKSLC52B45E7
-------\Legacy_MPKSLC53B9CA6
-------\Legacy_MPKSLC6B772C5
-------\Legacy_MPKSLC9F7277B
-------\Legacy_MPKSLCA35E457
-------\Legacy_MPKSLCADF34A3
-------\Legacy_MPKSLCAFDB963
-------\Legacy_MPKSLCBE8F479
-------\Legacy_MPKSLCC166041
-------\Legacy_MPKSLD2518466
-------\Legacy_MPKSLD2CC9022
-------\Legacy_MPKSLD314E62A
-------\Legacy_MPKSLD3A2DFFC
-------\Legacy_MPKSLD744CB9C
-------\Legacy_MPKSLD7EBD460
-------\Legacy_MPKSLD7FF117D
-------\Legacy_MPKSLDA2DC59F
-------\Legacy_MPKSLDA5D57B8
-------\Legacy_MPKSLDC02B767
-------\Legacy_MPKSLDC2E566C
-------\Legacy_MPKSLE140E7CE
-------\Legacy_MPKSLE2FC639F
-------\Legacy_MPKSLE337CC0A
-------\Legacy_MPKSLE358B18D
-------\Legacy_MPKSLE450C2FA
-------\Legacy_MPKSLE59FE791
-------\Legacy_MPKSLEA5A63BA
-------\Legacy_MPKSLEABBB194
-------\Legacy_MPKSLEAD998BC
-------\Legacy_MPKSLEB9D37D9
-------\Legacy_MPKSLEE204621
-------\Legacy_MPKSLEE41F06B
-------\Legacy_MPKSLF149DD9B
-------\Legacy_MPKSLF2875193
-------\Legacy_MPKSLF2A0A9A0
-------\Legacy_MPKSLF2F72F3C
-------\Legacy_MPKSLF4D9817F
-------\Legacy_MPKSLF657CCEE
-------\Legacy_MPKSLF73A71F7
-------\Legacy_MPKSLFA3A30B2
-------\Legacy_MPKSLFB306130
-------\Legacy_MPKSLFCD27ABD
-------\Legacy_MPKSLFE1DD800
-------\Legacy_MPKSLFE2DC51D
-------\Legacy_MPKSLFEA7CDB3
-------\Legacy_MPKSLFEEB715A
-------\Legacy_MPKSLFF7BE31F
-------\Service_MpKsl00661330
-------\Service_MpKsl00ee679e
-------\Service_MpKsl042e5512
-------\Service_MpKsl0b8e0a87
-------\Service_MpKsl0bbca1c3
-------\Service_MpKsl0bce7e94
-------\Service_MpKsl0e53511c
-------\Service_MpKsl0f371154
-------\Service_MpKsl0ffa4b51
-------\Service_MpKsl10f8e693
-------\Service_MpKsl1462806a
-------\Service_MpKsl1727dcdf
-------\Service_MpKsl17893391
-------\Service_MpKsl19394478
-------\Service_MpKsl1b6e0179
-------\Service_MpKsl1c018873
-------\Service_MpKsl1f5bc180
-------\Service_MpKsl2117989e
-------\Service_MpKsl226c0e87
-------\Service_MpKsl229fbd5a
-------\Service_MpKsl25ddbcce
-------\Service_MpKsl268f2a49
-------\Service_MpKsl26b29a7c
-------\Service_MpKsl27e8e0d4
-------\Service_MpKsl28a56f97
-------\Service_MpKsl28d72cb5
-------\Service_MpKsl2a0931a6
-------\Service_MpKsl2bbd5359
-------\Service_MpKsl2c6b8dd3
-------\Service_MpKsl33bffd0f
-------\Service_MpKsl34657df8
-------\Service_MpKsl353b69e7
-------\Service_MpKsl366d7dd3
-------\Service_MpKsl373c4c25
-------\Service_MpKsl3855985d
-------\Service_MpKsl39d4945d
-------\Service_MpKsl3bb6c002
-------\Service_MpKsl3c32d0f4
-------\Service_MpKsl3d8fd7ce
-------\Service_MpKsl3dbf9f3e
-------\Service_MpKsl3e1ec1a4
-------\Service_MpKsl3e455fba
-------\Service_MpKsl3ef5e2cc
-------\Service_MpKsl3f4276ec
-------\Service_MpKsl406c6213
-------\Service_MpKsl41f6c24d
-------\Service_MpKsl42ad10ce
-------\Service_MpKsl42fe9763
-------\Service_MpKsl4395ca23
-------\Service_MpKsl4421a1d2
-------\Service_MpKsl448f080b
-------\Service_MpKsl44d88e31
-------\Service_MpKsl46228957
-------\Service_MpKsl46917562
-------\Service_MpKsl474e1e27
-------\Service_MpKsl47bed66f
-------\Service_MpKsl47ea9343
-------\Service_MpKsl489d8aef
-------\Service_MpKsl49dcc843
-------\Service_MpKsl4bf28a30
-------\Service_MpKsl4d9d523f
-------\Service_MpKsl4ef27b8d
-------\Service_MpKsl4f910b79
-------\Service_MpKsl4fccc15a
-------\Service_MpKsl50ad2634
-------\Service_MpKsl51ed120c
-------\Service_MpKsl51ff3aea
-------\Service_MpKsl531a33af
-------\Service_MpKsl53703817
-------\Service_MpKsl53710bc7
-------\Service_MpKsl569130c2
-------\Service_MpKsl56df77aa
-------\Service_MpKsl57adca47
-------\Service_MpKsl57f985a1
-------\Service_MpKsl58667485
-------\Service_MpKsl59214de0
-------\Service_MpKsl5a66b7b5
-------\Service_MpKsl5cbd194d
-------\Service_MpKsl5cbe7e34
-------\Service_MpKsl5f22b948
-------\Service_MpKsl5f633c8f
-------\Service_MpKsl601a8265
-------\Service_MpKsl613bf7b5
-------\Service_MpKsl644af590
-------\Service_MpKsl64ce169a
-------\Service_MpKsl6769104a
-------\Service_MpKsl677ccc23
-------\Service_MpKsl68498b56
-------\Service_MpKsl69fee950
-------\Service_MpKsl6afba45e
-------\Service_MpKsl6b2ce2c8
-------\Service_MpKsl6c3b1d96
-------\Service_MpKsl6d6b3ad6
-------\Service_MpKsl711d3d84
-------\Service_MpKsl722d3a40
-------\Service_MpKsl72ac89b4
-------\Service_MpKsl72af3fee
-------\Service_MpKsl74669fc5
-------\Service_MpKsl75f0f28b
-------\Service_MpKsl77956e72
-------\Service_MpKsl795b72dd
-------\Service_MpKsl7ab093cd
-------\Service_MpKsl7c669b6e
-------\Service_MpKsl7c89e565
-------\Service_MpKsl7cc8ac8a
-------\Service_MpKsl7dd96d92
-------\Service_MpKsl7fab728b
-------\Service_MpKsl802325dc
-------\Service_MpKsl809719f1
-------\Service_MpKsl817c40f0
-------\Service_MpKsl81a1ce90
-------\Service_MpKsl828bfd28
-------\Service_MpKsl833d56e8
-------\Service_MpKsl83bb4e9f
-------\Service_MpKsl83cb5344
-------\Service_MpKsl840eecf9
-------\Service_MpKsl84a972b6
-------\Service_MpKsl84fc220a
-------\Service_MpKsl854365c8
-------\Service_MpKsl86af166a
-------\Service_MpKsl87344a00
-------\Service_MpKsl891b9792
-------\Service_MpKsl8b1394cf
-------\Service_MpKsl8c752809
-------\Service_MpKsl91eaa851
-------\Service_MpKsl92c582c0
-------\Service_MpKsl93f17f38
-------\Service_MpKsl94153848
-------\Service_MpKsl95196493
-------\Service_MpKsl959f5a2f
-------\Service_MpKsl96179a00
-------\Service_MpKsl974594f0
-------\Service_MpKsl98d518e2
-------\Service_MpKsl99077615
-------\Service_MpKsl9922169c
-------\Service_MpKsl998582c1
-------\Service_MpKsl9aa5946b
-------\Service_MpKsl9b932c9d
-------\Service_MpKsl9c0bbe27
-------\Service_MpKsl9ce97093
-------\Service_MpKsl9d3f0cb7
-------\Service_MpKsl9f64025e
-------\Service_MpKsla1c2c875
-------\Service_MpKsla3c726b8
-------\Service_MpKsla4a21c37
-------\Service_MpKsla4b0b083
-------\Service_MpKsla4be9c08
-------\Service_MpKsla4fa09af
-------\Service_MpKsla539e858
-------\Service_MpKsla5fb3aa9
-------\Service_MpKsla639272d
-------\Service_MpKsla7176285
-------\Service_MpKsla9725781
-------\Service_MpKslac0d4135
-------\Service_MpKslb642e450
-------\Service_MpKslb6db25dd
-------\Service_MpKslb6fa6c57
-------\Service_MpKslb7b47b3c
-------\Service_MpKslb853ac9f
-------\Service_MpKslb8657819
-------\Service_MpKslb9ff1b83
-------\Service_MpKslbdcd50b0
-------\Service_MpKslbdf8119e
-------\Service_MpKslbe34c1f2
-------\Service_MpKslc02a3112
-------\Service_MpKslc070d136
-------\Service_MpKslc0f99f01
-------\Service_MpKslc271d012
-------\Service_MpKslc3e785ed
-------\Service_MpKslc52b45e7
-------\Service_MpKslc53b9ca6
-------\Service_MpKslc6b772c5
-------\Service_MpKslc9f7277b
-------\Service_MpKslca35e457
-------\Service_MpKslcadf34a3
-------\Service_MpKslcafdb963
-------\Service_MpKslcbe8f479
-------\Service_MpKslcc166041
-------\Service_MpKsld2518466
-------\Service_MpKsld2cc9022
-------\Service_MpKsld314e62a
-------\Service_MpKsld3a2dffc
-------\Service_MpKsld74372b5
-------\Service_MpKsld744cb9c
-------\Service_MpKsld7ebd460
-------\Service_MpKsld7ff117d
-------\Service_MpKslda2dc59f
-------\Service_MpKslda5d57b8
-------\Service_MpKsldc02b767
-------\Service_MpKsldc2e566c
-------\Service_MpKsle140e7ce
-------\Service_MpKsle2fc639f
-------\Service_MpKsle337cc0a
-------\Service_MpKsle358b18d
-------\Service_MpKsle450c2fa
-------\Service_MpKsle59fe791
-------\Service_MpKslea5a63ba
-------\Service_MpKsleabbb194
-------\Service_MpKslead998bc
-------\Service_MpKsleb49c42c
-------\Service_MpKsleb9d37d9
-------\Service_MpKslecbabc02
-------\Service_MpKslee204621
-------\Service_MpKslee41f06b
-------\Service_MpKslf149dd9b
-------\Service_MpKslf1919b3d
-------\Service_MpKslf2875193
-------\Service_MpKslf2a0a9a0
-------\Service_MpKslf2f72f3c
-------\Service_MpKslf4d9817f
-------\Service_MpKslf657ccee
-------\Service_MpKslf73a71f7
-------\Service_MpKslfa04d3a5
-------\Service_MpKslfa3a30b2
-------\Service_MpKslfb306130
-------\Service_MpKslfbea2ec8
-------\Service_MpKslfcd27abd
-------\Service_MpKslfe1dd800
-------\Service_MpKslfe2dc51d
-------\Service_MpKslfea7cdb3
-------\Service_MpKslfeeb715a
-------\Service_MpKslff7be31f


((((((((((((((((((((((((( Soubory vytvořené od 2011-06-15 do 2011-07-15 )))))))))))))))))))))))))))))))


HJT log
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:13:43, on 15.7.2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\OEM\OSD_1.16\osd.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\PC Internet Access\NPCIA.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [FSCRecovery] c:\Program Files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe
O4 - HKLM\..\Run: [OSD] C:\Program Files\OEM\OSD_1.16\osd.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [NokiaPCInternetAccess] "C:\Program Files\Nokia\PC Internet Access\NPCIA.exe" /b
O4 - HKUS\S-1-5-18\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Kniha klipů HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Chytrý výběr - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Users\tereza\Desktop\PartyPoker.lnk
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Users\tereza\Desktop\PartyPoker.lnk
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate1c9f0e247a0afb0) (gupdate1c9f0e247a0afb0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Fujitsu Diagnostic Testhandler (TestHandler) - Fujitsu Technology Solutions - C:\Program Files\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe

--
End of file - 6875 bytes

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 15 črc 2011 14:56

Ten log z CF (Combofixu) není celý , je tam jen začátek!

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 15 črc 2011 15:06

ok mám ten log z combofixu udělat unova?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 15 črc 2011 15:12

Stačí když ho najdeš pod názvem v C:\Combofix(číslo nejvyšší).txt , celý zkopíruj a vlož sem.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 15 črc 2011 16:02

ComboFix 11-07-14.05 - tereza 15.07.2011 15:32:04.6.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3066.2213 [GMT 2:00]
Spuštěný z: c:\users\tereza\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_MPKSL00661330
-------\Legacy_MPKSL00EE679E
-------\Legacy_MPKSL042E5512
-------\Legacy_MPKSL0B8E0A87
-------\Legacy_MPKSL0BBCA1C3
-------\Legacy_MPKSL0BCE7E94
-------\Legacy_MPKSL0E53511C
-------\Legacy_MPKSL0F371154
-------\Legacy_MPKSL0FFA4B51
-------\Legacy_MPKSL10F8E693
-------\Legacy_MPKSL1462806A
-------\Legacy_MPKSL1727DCDF
-------\Legacy_MPKSL19394478
-------\Legacy_MPKSL1B6E0179
-------\Legacy_MPKSL1C018873
-------\Legacy_MPKSL1F5BC180
-------\Legacy_MPKSL2117989E
-------\Legacy_MPKSL226C0E87
-------\Legacy_MPKSL229FBD5A
-------\Legacy_MPKSL25DDBCCE
-------\Legacy_MPKSL26B29A7C
-------\Legacy_MPKSL27E8E0D4
-------\Legacy_MPKSL28A56F97
-------\Legacy_MPKSL28D72CB5
-------\Legacy_MPKSL2A0931A6
-------\Legacy_MPKSL2BBD5359
-------\Legacy_MPKSL2C6B8DD3
-------\Legacy_MPKSL33BFFD0F
-------\Legacy_MPKSL34657DF8
-------\Legacy_MPKSL353B69E7
-------\Legacy_MPKSL366D7DD3
-------\Legacy_MPKSL373C4C25
-------\Legacy_MPKSL3855985D
-------\Legacy_MPKSL39D4945D
-------\Legacy_MPKSL3BB6C002
-------\Legacy_MPKSL3D8FD7CE
-------\Legacy_MPKSL3DBF9F3E
-------\Legacy_MPKSL3E1EC1A4
-------\Legacy_MPKSL3EF5E2CC
-------\Legacy_MPKSL3F4276EC
-------\Legacy_MPKSL406C6213
-------\Legacy_MPKSL41F6C24D
-------\Legacy_MPKSL42AD10CE
-------\Legacy_MPKSL42FE9763
-------\Legacy_MPKSL4395CA23
-------\Legacy_MPKSL4421A1D2
-------\Legacy_MPKSL448F080B
-------\Legacy_MPKSL44D88E31
-------\Legacy_MPKSL46228957
-------\Legacy_MPKSL46917562
-------\Legacy_MPKSL474E1E27
-------\Legacy_MPKSL47BED66F
-------\Legacy_MPKSL47EA9343
-------\Legacy_MPKSL489D8AEF
-------\Legacy_MPKSL49DCC843
-------\Legacy_MPKSL4BF28A30
-------\Legacy_MPKSL4D9D523F
-------\Legacy_MPKSL4EF27B8D
-------\Legacy_MPKSL4FCCC15A
-------\Legacy_MPKSL50AD2634
-------\Legacy_MPKSL51ED120C
-------\Legacy_MPKSL51FF3AEA
-------\Legacy_MPKSL531A33AF
-------\Legacy_MPKSL53710BC7
-------\Legacy_MPKSL569130C2
-------\Legacy_MPKSL56DF77AA
-------\Legacy_MPKSL57ADCA47
-------\Legacy_MPKSL57F985A1
-------\Legacy_MPKSL58667485
-------\Legacy_MPKSL59214DE0
-------\Legacy_MPKSL5A66B7B5
-------\Legacy_MPKSL5CBE7E34
-------\Legacy_MPKSL5F22B948
-------\Legacy_MPKSL5F633C8F
-------\Legacy_MPKSL601A8265
-------\Legacy_MPKSL613BF7B5
-------\Legacy_MPKSL644AF590
-------\Legacy_MPKSL64CE169A
-------\Legacy_MPKSL6769104A
-------\Legacy_MPKSL677CCC23
-------\Legacy_MPKSL68498B56
-------\Legacy_MPKSL69FEE950
-------\Legacy_MPKSL6B2CE2C8
-------\Legacy_MPKSL6C3B1D96
-------\Legacy_MPKSL6D6B3AD6
-------\Legacy_MPKSL711D3D84
-------\Legacy_MPKSL722D3A40
-------\Legacy_MPKSL72AC89B4
-------\Legacy_MPKSL72AF3FEE
-------\Legacy_MPKSL74669FC5
-------\Legacy_MPKSL77956E72
-------\Legacy_MPKSL795B72DD
-------\Legacy_MPKSL7AB093CD
-------\Legacy_MPKSL7C669B6E
-------\Legacy_MPKSL7C89E565
-------\Legacy_MPKSL7CC8AC8A
-------\Legacy_MPKSL7DD96D92
-------\Legacy_MPKSL7FAB728B
-------\Legacy_MPKSL802325DC
-------\Legacy_MPKSL809719F1
-------\Legacy_MPKSL817C40F0
-------\Legacy_MPKSL81A1CE90
-------\Legacy_MPKSL828BFD28
-------\Legacy_MPKSL833D56E8
-------\Legacy_MPKSL83BB4E9F
-------\Legacy_MPKSL83CB5344
-------\Legacy_MPKSL840EECF9
-------\Legacy_MPKSL84A972B6
-------\Legacy_MPKSL84FC220A
-------\Legacy_MPKSL854365C8
-------\Legacy_MPKSL86AF166A
-------\Legacy_MPKSL87344A00
-------\Legacy_MPKSL891B9792
-------\Legacy_MPKSL8B1394CF
-------\Legacy_MPKSL8C752809
-------\Legacy_MPKSL91EAA851
-------\Legacy_MPKSL93F17F38
-------\Legacy_MPKSL94153848
-------\Legacy_MPKSL95196493
-------\Legacy_MPKSL96179A00
-------\Legacy_MPKSL974594F0
-------\Legacy_MPKSL98D518E2
-------\Legacy_MPKSL99077615
-------\Legacy_MPKSL9922169C
-------\Legacy_MPKSL998582C1
-------\Legacy_MPKSL9AA5946B
-------\Legacy_MPKSL9B932C9D
-------\Legacy_MPKSL9C0BBE27
-------\Legacy_MPKSL9CE97093
-------\Legacy_MPKSL9D3F0CB7
-------\Legacy_MPKSL9F64025E
-------\Legacy_MPKSLA1C2C875
-------\Legacy_MPKSLA3C726B8
-------\Legacy_MPKSLA4A21C37
-------\Legacy_MPKSLA4B0B083
-------\Legacy_MPKSLA4BE9C08
-------\Legacy_MPKSLA4FA09AF
-------\Legacy_MPKSLA539E858
-------\Legacy_MPKSLA5FB3AA9
-------\Legacy_MPKSLA639272D
-------\Legacy_MPKSLA7176285
-------\Legacy_MPKSLA9725781
-------\Legacy_MPKSLAC0D4135
-------\Legacy_MPKSLB642E450
-------\Legacy_MPKSLB6DB25DD
-------\Legacy_MPKSLB7B47B3C
-------\Legacy_MPKSLB853AC9F
-------\Legacy_MPKSLB8657819
-------\Legacy_MPKSLB9FF1B83
-------\Legacy_MPKSLBDCD50B0
-------\Legacy_MPKSLBDF8119E
-------\Legacy_MPKSLBE34C1F2
-------\Legacy_MPKSLC02A3112
-------\Legacy_MPKSLC0F99F01
-------\Legacy_MPKSLC271D012
-------\Legacy_MPKSLC3E785ED
-------\Legacy_MPKSLC52B45E7
-------\Legacy_MPKSLC53B9CA6
-------\Legacy_MPKSLC6B772C5
-------\Legacy_MPKSLC9F7277B
-------\Legacy_MPKSLCA35E457
-------\Legacy_MPKSLCADF34A3
-------\Legacy_MPKSLCAFDB963
-------\Legacy_MPKSLCBE8F479
-------\Legacy_MPKSLCC166041
-------\Legacy_MPKSLD2518466
-------\Legacy_MPKSLD2CC9022
-------\Legacy_MPKSLD314E62A
-------\Legacy_MPKSLD3A2DFFC
-------\Legacy_MPKSLD744CB9C
-------\Legacy_MPKSLD7EBD460
-------\Legacy_MPKSLD7FF117D
-------\Legacy_MPKSLDA2DC59F
-------\Legacy_MPKSLDA5D57B8
-------\Legacy_MPKSLDC02B767
-------\Legacy_MPKSLDC2E566C
-------\Legacy_MPKSLE140E7CE
-------\Legacy_MPKSLE2FC639F
-------\Legacy_MPKSLE337CC0A
-------\Legacy_MPKSLE358B18D
-------\Legacy_MPKSLE450C2FA
-------\Legacy_MPKSLE59FE791
-------\Legacy_MPKSLEA5A63BA
-------\Legacy_MPKSLEABBB194
-------\Legacy_MPKSLEAD998BC
-------\Legacy_MPKSLEB9D37D9
-------\Legacy_MPKSLEE204621
-------\Legacy_MPKSLEE41F06B
-------\Legacy_MPKSLF149DD9B
-------\Legacy_MPKSLF2875193
-------\Legacy_MPKSLF2A0A9A0
-------\Legacy_MPKSLF2F72F3C
-------\Legacy_MPKSLF4D9817F
-------\Legacy_MPKSLF657CCEE
-------\Legacy_MPKSLF73A71F7
-------\Legacy_MPKSLFA3A30B2
-------\Legacy_MPKSLFB306130
-------\Legacy_MPKSLFCD27ABD
-------\Legacy_MPKSLFE1DD800
-------\Legacy_MPKSLFE2DC51D
-------\Legacy_MPKSLFEA7CDB3
-------\Legacy_MPKSLFEEB715A
-------\Legacy_MPKSLFF7BE31F
-------\Service_MpKsl00661330
-------\Service_MpKsl00ee679e
-------\Service_MpKsl042e5512
-------\Service_MpKsl0b8e0a87
-------\Service_MpKsl0bbca1c3
-------\Service_MpKsl0bce7e94
-------\Service_MpKsl0e53511c
-------\Service_MpKsl0f371154
-------\Service_MpKsl0ffa4b51
-------\Service_MpKsl10f8e693
-------\Service_MpKsl1462806a
-------\Service_MpKsl1727dcdf
-------\Service_MpKsl17893391
-------\Service_MpKsl19394478
-------\Service_MpKsl1b6e0179
-------\Service_MpKsl1c018873
-------\Service_MpKsl1f5bc180
-------\Service_MpKsl2117989e
-------\Service_MpKsl226c0e87
-------\Service_MpKsl229fbd5a
-------\Service_MpKsl25ddbcce
-------\Service_MpKsl268f2a49
-------\Service_MpKsl26b29a7c
-------\Service_MpKsl27e8e0d4
-------\Service_MpKsl28a56f97
-------\Service_MpKsl28d72cb5
-------\Service_MpKsl2a0931a6
-------\Service_MpKsl2bbd5359
-------\Service_MpKsl2c6b8dd3
-------\Service_MpKsl33bffd0f
-------\Service_MpKsl34657df8
-------\Service_MpKsl353b69e7
-------\Service_MpKsl366d7dd3
-------\Service_MpKsl373c4c25
-------\Service_MpKsl3855985d
-------\Service_MpKsl39d4945d
-------\Service_MpKsl3bb6c002
-------\Service_MpKsl3c32d0f4
-------\Service_MpKsl3d8fd7ce
-------\Service_MpKsl3dbf9f3e
-------\Service_MpKsl3e1ec1a4
-------\Service_MpKsl3e455fba
-------\Service_MpKsl3ef5e2cc
-------\Service_MpKsl3f4276ec
-------\Service_MpKsl406c6213
-------\Service_MpKsl41f6c24d
-------\Service_MpKsl42ad10ce
-------\Service_MpKsl42fe9763
-------\Service_MpKsl4395ca23
-------\Service_MpKsl4421a1d2
-------\Service_MpKsl448f080b
-------\Service_MpKsl44d88e31
-------\Service_MpKsl46228957
-------\Service_MpKsl46917562
-------\Service_MpKsl474e1e27
-------\Service_MpKsl47bed66f
-------\Service_MpKsl47ea9343
-------\Service_MpKsl489d8aef
-------\Service_MpKsl49dcc843
-------\Service_MpKsl4bf28a30
-------\Service_MpKsl4d9d523f
-------\Service_MpKsl4ef27b8d
-------\Service_MpKsl4f910b79
-------\Service_MpKsl4fccc15a
-------\Service_MpKsl50ad2634
-------\Service_MpKsl51ed120c
-------\Service_MpKsl51ff3aea
-------\Service_MpKsl531a33af
-------\Service_MpKsl53703817
-------\Service_MpKsl53710bc7
-------\Service_MpKsl569130c2
-------\Service_MpKsl56df77aa
-------\Service_MpKsl57adca47
-------\Service_MpKsl57f985a1
-------\Service_MpKsl58667485
-------\Service_MpKsl59214de0
-------\Service_MpKsl5a66b7b5
-------\Service_MpKsl5cbd194d
-------\Service_MpKsl5cbe7e34
-------\Service_MpKsl5f22b948
-------\Service_MpKsl5f633c8f
-------\Service_MpKsl601a8265
-------\Service_MpKsl613bf7b5
-------\Service_MpKsl644af590
-------\Service_MpKsl64ce169a
-------\Service_MpKsl6769104a
-------\Service_MpKsl677ccc23
-------\Service_MpKsl68498b56
-------\Service_MpKsl69fee950
-------\Service_MpKsl6afba45e
-------\Service_MpKsl6b2ce2c8
-------\Service_MpKsl6c3b1d96
-------\Service_MpKsl6d6b3ad6
-------\Service_MpKsl711d3d84
-------\Service_MpKsl722d3a40
-------\Service_MpKsl72ac89b4
-------\Service_MpKsl72af3fee
-------\Service_MpKsl74669fc5
-------\Service_MpKsl75f0f28b
-------\Service_MpKsl77956e72
-------\Service_MpKsl795b72dd
-------\Service_MpKsl7ab093cd
-------\Service_MpKsl7c669b6e
-------\Service_MpKsl7c89e565
-------\Service_MpKsl7cc8ac8a
-------\Service_MpKsl7dd96d92
-------\Service_MpKsl7fab728b
-------\Service_MpKsl802325dc
-------\Service_MpKsl809719f1
-------\Service_MpKsl817c40f0
-------\Service_MpKsl81a1ce90
-------\Service_MpKsl828bfd28
-------\Service_MpKsl833d56e8
-------\Service_MpKsl83bb4e9f
-------\Service_MpKsl83cb5344
-------\Service_MpKsl840eecf9
-------\Service_MpKsl84a972b6
-------\Service_MpKsl84fc220a
-------\Service_MpKsl854365c8
-------\Service_MpKsl86af166a
-------\Service_MpKsl87344a00
-------\Service_MpKsl891b9792
-------\Service_MpKsl8b1394cf
-------\Service_MpKsl8c752809
-------\Service_MpKsl91eaa851
-------\Service_MpKsl92c582c0
-------\Service_MpKsl93f17f38
-------\Service_MpKsl94153848
-------\Service_MpKsl95196493
-------\Service_MpKsl959f5a2f
-------\Service_MpKsl96179a00
-------\Service_MpKsl974594f0
-------\Service_MpKsl98d518e2
-------\Service_MpKsl99077615
-------\Service_MpKsl9922169c
-------\Service_MpKsl998582c1
-------\Service_MpKsl9aa5946b
-------\Service_MpKsl9b932c9d
-------\Service_MpKsl9c0bbe27
-------\Service_MpKsl9ce97093
-------\Service_MpKsl9d3f0cb7
-------\Service_MpKsl9f64025e
-------\Service_MpKsla1c2c875
-------\Service_MpKsla3c726b8
-------\Service_MpKsla4a21c37
-------\Service_MpKsla4b0b083
-------\Service_MpKsla4be9c08
-------\Service_MpKsla4fa09af
-------\Service_MpKsla539e858
-------\Service_MpKsla5fb3aa9
-------\Service_MpKsla639272d
-------\Service_MpKsla7176285
-------\Service_MpKsla9725781
-------\Service_MpKslac0d4135
-------\Service_MpKslb642e450
-------\Service_MpKslb6db25dd
-------\Service_MpKslb6fa6c57
-------\Service_MpKslb7b47b3c
-------\Service_MpKslb853ac9f
-------\Service_MpKslb8657819
-------\Service_MpKslb9ff1b83
-------\Service_MpKslbdcd50b0
-------\Service_MpKslbdf8119e
-------\Service_MpKslbe34c1f2
-------\Service_MpKslc02a3112
-------\Service_MpKslc070d136
-------\Service_MpKslc0f99f01
-------\Service_MpKslc271d012
-------\Service_MpKslc3e785ed
-------\Service_MpKslc52b45e7
-------\Service_MpKslc53b9ca6
-------\Service_MpKslc6b772c5
-------\Service_MpKslc9f7277b
-------\Service_MpKslca35e457
-------\Service_MpKslcadf34a3
-------\Service_MpKslcafdb963
-------\Service_MpKslcbe8f479
-------\Service_MpKslcc166041
-------\Service_MpKsld2518466
-------\Service_MpKsld2cc9022
-------\Service_MpKsld314e62a
-------\Service_MpKsld3a2dffc
-------\Service_MpKsld74372b5
-------\Service_MpKsld744cb9c
-------\Service_MpKsld7ebd460
-------\Service_MpKsld7ff117d
-------\Service_MpKslda2dc59f
-------\Service_MpKslda5d57b8
-------\Service_MpKsldc02b767
-------\Service_MpKsldc2e566c
-------\Service_MpKsle140e7ce
-------\Service_MpKsle2fc639f
-------\Service_MpKsle337cc0a
-------\Service_MpKsle358b18d
-------\Service_MpKsle450c2fa
-------\Service_MpKsle59fe791
-------\Service_MpKslea5a63ba
-------\Service_MpKsleabbb194
-------\Service_MpKslead998bc
-------\Service_MpKsleb49c42c
-------\Service_MpKsleb9d37d9
-------\Service_MpKslecbabc02
-------\Service_MpKslee204621
-------\Service_MpKslee41f06b
-------\Service_MpKslf149dd9b
-------\Service_MpKslf1919b3d
-------\Service_MpKslf2875193
-------\Service_MpKslf2a0a9a0
-------\Service_MpKslf2f72f3c
-------\Service_MpKslf4d9817f
-------\Service_MpKslf657ccee
-------\Service_MpKslf73a71f7
-------\Service_MpKslfa04d3a5
-------\Service_MpKslfa3a30b2
-------\Service_MpKslfb306130
-------\Service_MpKslfbea2ec8
-------\Service_MpKslfcd27abd
-------\Service_MpKslfe1dd800
-------\Service_MpKslfe2dc51d
-------\Service_MpKslfea7cdb3
-------\Service_MpKslfeeb715a
-------\Service_MpKslff7be31f
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-15 do 2011-07-15 )))))))))))))))))))))))))))))))
.
.
2011-07-15 13:36 . 2011-07-15 13:36 -------- d-----w- c:\users\tereza\AppData\Local\temp
2011-07-15 13:36 . 2011-07-15 13:36 -------- d-----w- c:\users\tereza_2\AppData\Local\temp
2011-07-15 13:36 . 2011-07-15 13:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-15 09:22 . 2011-07-15 13:30 -------- d-----w- C:\32788R22FWJFW
2011-07-14 17:32 . 2010-11-10 04:33 6273872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{792D28E3-868F-45F7-B9B2-83DE91307E02}\mpengine.dll
2011-07-09 11:11 . 2011-07-09 11:16 -------- d-----w- c:\users\tereza\AppData\Local\Temp(59)
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\users\tereza\AppData\Roaming\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\programdata\Malwarebytes
2011-07-08 21:45 . 2011-07-08 21:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-08 21:38 . 2011-07-08 21:39 -------- d-----w- C:\rsit
2011-07-08 19:40 . 2011-07-08 19:40 388096 ----a-r- c:\users\tereza\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-08 19:40 . 2011-07-08 21:38 -------- d-----w- c:\program files\Trend Micro
2011-07-08 13:24 . 2011-07-09 13:01 -------- d-----w- c:\program files\CCleaner
2011-07-08 04:04 . 2002-01-05 09:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2011-07-08 04:04 . 2002-01-05 03:40 487424 ----a-w- c:\windows\system32\msvcp70.dll
2011-07-08 04:04 . 2002-01-05 04:48 974848 ----a-w- c:\windows\system32\mfc70.dll
2011-07-08 04:04 . 2000-05-22 14:58 608448 ----a-w- c:\windows\system32\comctl32.ocx
2011-07-08 04:04 . 2011-07-08 04:04 -------- d-----w- c:\program files\AML Products
2011-07-08 03:22 . 2011-07-08 03:22 -------- d-----w- c:\users\tereza\AppData\Roaming\Avira
2011-07-08 03:18 . 2011-07-08 17:10 66616 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-07-08 03:18 . 2011-07-08 17:10 138192 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\programdata\Avira
2011-07-08 03:18 . 2011-07-08 03:18 -------- d-----w- c:\program files\Avira
2011-07-08 01:31 . 2011-07-08 01:31 -------- d-----w- c:\users\tereza\AppData\Local\Microsoft_Corporation
2011-06-29 16:09 . 2011-04-29 15:59 276992 ----a-w- c:\windows\system32\schannel.dll
2011-06-16 10:52 . 2011-04-28 16:03 129024 ----a-w- c:\program files\Internet Explorer\sqmapi.dll
2011-06-16 10:52 . 2011-04-21 16:04 834048 ----a-w- c:\windows\system32\wininet.dll
2011-06-16 10:52 . 2011-04-21 14:15 389632 ----a-w- c:\windows\system32\html.iec
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-24 17:14 . 2009-10-03 08:10 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-05-04 02:52 . 2010-05-02 19:51 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-02 39408]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"NokiaPCInternetAccess"="c:\program files\Nokia\PC Internet Access\NPCIA.exe" [2008-08-05 536576]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2008-05-13 6139904]
"FSCRecovery"="c:\program files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe" [2008-05-08 268096]
"OSD"="c:\program files\OEM\OSD_1.16\osd.exe" [2008-06-18 376832]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 49152]
"Skytel"="Skytel.exe" [2007-11-20 1826816]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-09 13543968]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-09 92704]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 81920]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [BU]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-08-02 281768]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"fsc-reg"="c:\programdata\fsc-reg\fscreg.exe" [2008-05-29 381200]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 GpdDevDPort;GpdDevDPort;c:\windows\system32\directport.sys [2008-06-17 7168]
R3 GpdKbFilter;GpdKbFilter;c:\windows\system32\kbfiltr.sys [2008-03-31 8192]
R3 gupdate1c9f0e247a0afb0;Služba Google Update (gupdate1c9f0e247a0afb0);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 133104]
R3 IpwP;IPWireless 3G Network Adapter;c:\windows\system32\DRIVERS\ipw3gnet.sys [2008-10-10 51040]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
R4 OsdService;OSD Service;c:\program files\OEM\OSD_1.16\OsdService.exe [2008-02-22 94208]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2011-07-08 136360]
S2 Ethpdrv;Ethernet Packet Driver;c:\windows\system32\DRIVERS\ethpdrv.sys [2007-08-01 16376]
S3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-05-01 3660800]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-14 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-01-15 17:49]
.
2011-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-06-19 13:31]
.
2011-07-15 c:\windows\Tasks\User_Feed_Synchronization-{BFCBACF4-3D38-4CA7-8CF4-64C5B77314B5}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:24]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 213.46.172.36 192.168.1.254
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-15 15:36
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
Celkový čas: 2011-07-15 15:38:31
ComboFix-quarantined-files.txt 2011-07-15 13:38
ComboFix2.txt 2011-07-14 23:15
ComboFix3.txt 2011-07-14 19:30
ComboFix4.txt 2011-07-09 22:56
ComboFix5.txt 2011-07-15 09:22
.
Před spuštěním: Volných bajtů: 54 144 471 040
Po spuštění: Volných bajtů: 54 102 474 752
.
- - End Of File - - 1483CDA71EC584BE11E251BE3B6BF9F7

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 15 črc 2011 16:37

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

a použij i T-Cleaner

http://www.edisk.cz/stahni/29485/T-Clea ... 8.5KB.html

smaže vše po Combu,MWAVu atd.-stáhneš>spustíš

pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj antivir a antispyware ,následně T-Cleaner smaž a zapni si znovu antivir a antispyware.


Jak to vypadá s tou pomalostí?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

jbgio
nováček
Příspěvky: 26
Registrován: červenec 11
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jbgio » 15 črc 2011 18:45

combo odinstalováno vše vyčištěno dle postupu
NTB pořád pomalu nabíhá - zkoušeno 4x. všechny starty v rozmezí od 10 do 20 min. Ze začátku vypadá vše ok Visty začnou nabíhat pak naskočí Počkejte prosím a to tam je třeba těch 20 min, když už to nevydržím a vypnu NTB tak podruhé Visty naběhnou hned ale objeví se černá obrazovka kde je vidět jen myš. Když potom NTB naběhne tak běží paradně - vše se zrychlilo. Zajímavé je, že nikdy Visty nezačnou nabíhat standartně, ale vždy z obrazovky obnovení /NTB začne bootovat vyskočí okno obnovení windows - nouzový stav, nouzový stav s příkaztovým řádkem, standartní spuštění windows/.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu HJT - pomalý start NTB

Příspěvekod jaro3 » 15 črc 2011 22:36

Stáhni si a nainstaluj WhoCrashed

otevři ho a klikni na Analyze.
Program vytvoří zprávu , zkopíruj celou a vlož prosím sem.

+
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.

+
Stáhni si Memtest:


Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.

+
Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 11 hostů