Prosím o kontrolu.

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 11:44

Mám pocit že se mě mezi sebou hadají aplikace jako je třeba internetový prohlížeč důsledek je potom zpomalení celého pc neefektivní spad pak na to má ještě dokonce načítaní uvodní obrazovky a antiviry (Spybot) problém bude buď v registrech nebo v nejakým logu děkuji za pomoc .


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:36:28, on 18. 10. 2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\COMODO\Unite\EzVpnSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\AVG Secure Search\vprot.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\lolko\Šablony\mscormmc.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Documents and Settings\lolko\Local Settings\Temp\sbscmp10.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\lolko\Plocha\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
R3 - URLSearchHook: ToolbarURLSearchHook Class - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbhelper.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: Expat Shield Toolbar - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O2 - BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll
O2 - BHO: script helper for ie - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll
O2 - BHO: Ironsource LTD Helper Object - {25927741-5E5B-4D27-8D8B-9188FE64373F} - C:\Program Files\Ironsource\searchya\1.5.13.0\bh\searchya.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\bh\BabylonToolbar.dll
O2 - BHO: Web Assistant Helper - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension32.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Babylon Toolbar by Visicom - {51dd3535-abea-484a-b1cf-06ab7b092c0c} - C:\Program Files\babylon01\babylon01X.dll
O2 - BHO: TheBflix - {62DF549F-63BB-4DA3-8D2F-2D7B1E1AD18C} - C:\Documents and Settings\All Users\Data aplikací\TheBflix\bhoclass.dll
O2 - BHO: SpecialSavings - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Program Files\SpecialSavings\SpecialSavingsSinged.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: BitTorrentBar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit0.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
O2 - BHO: Update Timer - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files\BrowserCompanion\updatebhoWin32.dll
O2 - BHO: Expat Shield - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: BHO_PROJECT - {BA0454C5-FD30-428E-8DB9-3FF87A612F64} - C:\Program Files\OpenApp\bho_project.dll
O2 - BHO: NCH - {c2db4fe6-8409-45ce-8010-189a7b5cce86} - C:\Program Files\NCH\prxtbNCH.dll
O2 - BHO: (no name) - {C90DBB52-46E0-4E65-92BC-799ADEE54C86} - C:\PROGRA~1\Flash2X\FLASHP~1\FLASHP~1.DLL
O2 - BHO: Help the General-Search Project - {CA4520F3-AE13-4FB1-A513-58E23991C86D} - C:\DOCUME~1\lolko\DATAAP~1\MEDIAF~1\EXTENS~1\GENCRA~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
O2 - BHO: TBSB09850 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbcore3.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O3 - Toolbar: NCH Toolbar - {c2db4fe6-8409-45ce-8010-189a7b5cce86} - C:\Program Files\NCH\prxtbNCH.dll
O3 - Toolbar: BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit0.dll
O3 - Toolbar: SearchYa Toolbar - {33AA308B-B565-4376-AC66-59EE9B6AD13E} - C:\Program Files\Ironsource\searchya\1.5.13.0\searchyaTlbr.dll
O3 - Toolbar: DealBulldog Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\DealBulldog Toolbar\tbcore3.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\BabylonToolbarTlbr.dll
O3 - Toolbar: Babylon Toolbar by Visicom - {51dd3535-abea-484a-b1cf-06ab7b092c0c} - C:\Program Files\babylon01\babylon01X.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
O3 - Toolbar: ChatZum Toolbar - {37D48D9C-3F7E-412F-B5BF-611BE7CCFCA1} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbcore3.dll
O3 - Toolbar: Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll
O3 - Toolbar: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
O3 - Toolbar: Expat Shield Toolbar - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WinSys2] C:\WINDOWS\system32\winsys2.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized
O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Media Finder] "C:\Program Files\Media Finder\Media Finder.exe" /opentotray
O4 - HKCU\..\Run: [download beast] "C:\program files\Download Beast\DownloadBeast.exe" -h
O4 - HKCU\..\Run: [Microsoft® Windows® Operating System] C:\Documents and Settings\lolko\Šablony\mscormmc.exe
O4 - S-1-5-18 Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O4 - Global Startup: LOLRecorder.lnk = C:\Program Files\LOLReplay\LOLRecorder.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Download with &Media Finder - C:\Program Files\Media Finder\hook.html
O8 - Extra context menu item: Search the Web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: SpecialSavings - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - C:\Program Files\SpecialSavings\SpecialSavingsSinged.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll
O20 - AppInit_DLLs: c:\progra~1\sprote~1\sprote~1.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVG WatchDog (avgwd) - Unknown owner - C:\Program Files\AVG\AVG2012\avgwdsvc.exe (file missing)
O23 - Service: COMODO Unite MultiLogin Service (EzVpnSvc) - COMODO - C:\Program Files\COMODO\Unite\EzVpnSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - E:\Program Files\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Updater Service (IBUpdaterService) - Unknown owner - C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: vToolbarUpdater11.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe
O23 - Service: Web Assistant Updater - Unknown owner - C:\Program Files\Web Assistant\ExtensionUpdaterService.exe

--
End of file - 14129 bytes
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Reklama
Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod Žbeky » 18 říj 2012 12:23

Problém v logu může být těžko, když log je jen výpis. Taky tam máš 150 tisíc různých blbostí a zbytečností, tak se nediv, když se ti to začne navzájem mlátit

Odinstaluj:
NCH Toolbar
BitTorrentBar Toolbar
SearchYa Toolbar
DealBulldog Toolbar
SweetPacks Toolbar for Internet Explorer
Babylon Toolbar
Babylon Toolbar by Visicom
ChatZum Toolbar
Claro LTD Toolbar
YTD Toolbar
Expat Shield
Spigot


Fixni:

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
R3 - URLSearchHook: ToolbarURLSearchHook Class - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbhelper.dll
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: Expat Shield Toolbar - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O2 - BHO: Claro LTD Helper Object - {000F18F2-09EB-4A59-82B2-5AE4184C39C3} - C:\Program Files\Claro LTD\claro\1.6.4.1\bh\claro.dll
O2 - BHO: script helper for ie - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll
O2 - BHO: Ironsource LTD Helper Object - {25927741-5E5B-4D27-8D8B-9188FE64373F} - C:\Program Files\Ironsource\searchya\1.5.13.0\bh\searchya.dll
O2 - BHO: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\bh\BabylonToolbar.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Babylon Toolbar by Visicom - {51dd3535-abea-484a-b1cf-06ab7b092c0c} - C:\Program Files\babylon01\babylon01X.dll
O2 - BHO: TheBflix - {62DF549F-63BB-4DA3-8D2F-2D7B1E1AD18C} - C:\Documents and Settings\All Users\Data aplikací\TheBflix\bhoclass.dll
O2 - BHO: SpecialSavings - {74F475FA-6C75-43BD-AAB9-ECDA6184F600} - C:\Program Files\SpecialSavings\SpecialSavingsSinged.dll
O2 - BHO: BitTorrentBar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit0.dll
O2 - BHO: Expat Shield - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O2 - BHO: NCH - {c2db4fe6-8409-45ce-8010-189a7b5cce86} - C:\Program Files\NCH\prxtbNCH.dll
O2 - BHO: (no name) - {C90DBB52-46E0-4E65-92BC-799ADEE54C86} - C:\PROGRA~1\Flash2X\FLASHP~1\FLASHP~1.DLL
O2 - BHO: Help the General-Search Project - {CA4520F3-AE13-4FB1-A513-58E23991C86D} - C:\DOCUME~1\lolko\DATAAP~1\MEDIAF~1\EXTENS~1\GENCRA~1.DLL
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
O2 - BHO: TBSB09850 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbcore3.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O3 - Toolbar: NCH Toolbar - {c2db4fe6-8409-45ce-8010-189a7b5cce86} - C:\Program Files\NCH\prxtbNCH.dll
O3 - Toolbar: BitTorrentBar Toolbar - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit0.dll
O3 - Toolbar: SearchYa Toolbar - {33AA308B-B565-4376-AC66-59EE9B6AD13E} - C:\Program Files\Ironsource\searchya\1.5.13.0\searchyaTlbr.dll
O3 - Toolbar: DealBulldog Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\DealBulldog Toolbar\tbcore3.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.4.6\BabylonToolbarTlbr.dll
O3 - Toolbar: Babylon Toolbar by Visicom - {51dd3535-abea-484a-b1cf-06ab7b092c0c} - C:\Program Files\babylon01\babylon01X.dll
O3 - Toolbar: ChatZum Toolbar - {37D48D9C-3F7E-412F-B5BF-611BE7CCFCA1} - C:\Program Files\ChatZum Toolbar\tbunsf308.tmp\tbcore3.dll
O3 - Toolbar: Claro LTD Toolbar - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - C:\Program Files\Claro LTD\claro\1.6.4.1\claroTlbr.dll
O3 - Toolbar: YTD Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YTD Toolbar\IE\6.2\ytdToolbarIE.dll
O3 - Toolbar: Expat Shield Toolbar - {a060276a-53be-45ec-8ebe-b94b1e803179} - C:\Program Files\Expat_Shield\prxtbExpa.dll
O4 - HKLM\..\Run: [WinSys2] C:\WINDOWS\system32\winsys2.exe
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [MP10_EnsureFileVer] C:\WINDOWS\inf\unregmp2.exe /EnsureFileVersions
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Media Finder] "C:\Program Files\Media Finder\Media Finder.exe" /opentotray
O4 - HKCU\..\Run: [download beast] "C:\program files\Download Beast\DownloadBeast.exe" -h
O4 - HKCU\..\Run: [Microsoft® Windows® Operating System] C:\Documents and Settings\lolko\Šablony\mscormmc.exe
O4 - Global Startup: LOLRecorder.lnk = C:\Program Files\LOLReplay\LOLRecorder.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O20 - AppInit_DLLs: c:\progra~1\sprote~1\sprote~1.dll

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 13:10

Spigot nelze najít ani v výsledku hledaní nenalezen.Tudýž mám přejít na fix a potom ATF cleaner a potom Malwarebytes' Anti-Malware ?
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 13:32

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.65.1.1000
www.malwarebytes.org

Verze databáze: v2012.10.18.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
lolko :: DOMA-D0003A38B0 [administrátor]

Ochrana: Zakázána

31. 12. 2001 23:25:32
mbam-log-2001-12-31 (23-35-34).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 220075
Uplynulý čas: 8 minut, 35 sekund

Nalezené procesy v paměti: 3
C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> 1972 -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Local Settings\Temp\sbscmp10.exe (Trojan.MSIL.Gen) -> 3304 -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Šablony\mscormmc.exe (Backdoor.Messa) -> 3940 -> Žádná instrukce nebyla provedena.

Nalezené moduly v paměti: 1
C:\Program Files\BrowserCompanion\updatebhoWin32.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.

Nalezené klíče v registru: 36
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Updater Service (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{B00FE392-639D-4688-976E-A1BFF368CB96} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{830B56CB-FD22-44AA-9887-7898F4F4158D} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\tdataprotocol.CTData.1 (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\tdataprotocol.CTData (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{CA4520F3-AE13-4FB1-A513-58E23991C86D} (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
HKCR\gencrawler_gc.GenCrawler (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D} (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA4520F3-AE13-4FB1-A513-58E23991C86D} (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA4520F3-AE13-4FB1-A513-58E23991C86D} (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{25927741-5E5B-4D27-8D8B-9188FE64373F} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25927741-5E5B-4D27-8D8B-9188FE64373F} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{33AA308B-B565-4376-AC66-59EE9B6AD13E} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{33AA308B-B565-4376-AC66-59EE9B6AD13E} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BrowserCompanion (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{955B782E-CDC8-4CEE-B6F6-AD7D541A8D8A} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{9F0C17EB-EF2C-4278-9136-2D547656BC03} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\BASE64 (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\CHROME (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\PROX (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\Software\DC3_FEXEC (Malware.Trace) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> Žádná instrukce nebyla provedena.

Nalezené hodnoty v registru: 5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\DOCUMENTS AND SETTINGS\LOLKO\DATA APLIKACÍ\MEDIA FINDER\EXTENSIONS\GENCRAWLER_GC.DLL (Trojan.Downloader) -> Data: 1 -> Žádná instrukce nebyla provedena.
HKCR\protocols\Handler\base64|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCR\protocols\Handler\chrome|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCR\protocols\Handler\prox|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Microsoft® Windows® Operating System (Backdoor.Messa) -> Data: C:\Documents and Settings\lolko\Šablony\mscormmc.exe -> Žádná instrukce nebyla provedena.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 5
C:\Documents and Settings\All Users\Data aplikací\TheBflix (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\data (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\TSearch (Adware.TSearch) -> Žádná instrukce nebyla provedena.

Nalezené soubory: 45
C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Local Settings\Temp\sbscmp10.exe (Trojan.MSIL.Gen) -> Žádná instrukce nebyla provedena.
C:\Program Files\OpenApp\bho_project.dll (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\tdataprotocol.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\Media Finder\Extensions\gencrawler_gc.dll (Trojan.Downloader) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\OptimizerPro1\OptimizerPro1.exe (Trojan.Dropper) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Local Settings\Temp\Software\Protected.exe (Trojan.MSIL.Gen) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\background.html (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\bccldkoinakjmmgebambiaggjobhikfg.crx (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\content.js (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\ppjemjejnnojomfekgbpbbnecicblllf.crx (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\settings.ini (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2001-12-31-2.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-13-7.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2002-01-01-3.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-09-28-6.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-09-29-7.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-09-30-1.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-01-2.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-02-3.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-03-4.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-05-6.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-06-7.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-07-1.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-08-2.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-12-6.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-14-1.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-15-2.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-16-3.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-17-4.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Data aplikací\dclogs\2012-10-18-5.dc (Stolen.Data) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\blabbers-ff-full.xpi (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\blabbers-ch.crx (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\logo.ico (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\terms.lnk.url (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\toolbar.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\uninstall.exe (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\updatebhoWin32.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\updater.ini (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\widgetserv.exe (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\lolko\Šablony\mscormmc.exe (Backdoor.Messa) -> Žádná instrukce nebyla provedena.
C:\Program Files\TSearch\easydownload.exe (Adware.TSearch) -> Žádná instrukce nebyla provedena.
C:\Program Files\TSearch\libtorrent.pyd (Adware.TSearch) -> Žádná instrukce nebyla provedena.
C:\Program Files\TSearch\python25.dll (Adware.TSearch) -> Žádná instrukce nebyla provedena.
C:\Program Files\TSearch\results (Adware.TSearch) -> Žádná instrukce nebyla provedena.

(konec)
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod Žbeky » 18 říj 2012 14:55

Znovu spusť MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- ujistit se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Remove Selected
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit

Stáhni si TDSSKiller

Na svojí plochu. Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller.2.2.7.1._(datum)_log.txt , vlož sem prosím celý obsah logu.

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 15:53

Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Verze databáze: v2012.10.18.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
lolko :: DOMA-D0003A38B0 [administrátor]

18. 10. 2012 15:51:36
mbam-log-2012-10-18 (15:51:36).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 218989
Uplynulý čas: 11 minut, 52 sekund

Nalezené procesy v paměti: 1
C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> 940 -> Žádná instrukce nebyla provedena.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 31
HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Updater Service (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0454C5-FD30-428E-8DB9-3FF87A612F64} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{B00FE392-639D-4688-976E-A1BFF368CB96} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4} (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
HKCR\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{830B56CB-FD22-44AA-9887-7898F4F4158D} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\tdataprotocol.CTData.1 (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\tdataprotocol.CTData (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00CBB66B-1D3B-46D3-9577-323A336ACB50} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{25927741-5E5B-4D27-8D8B-9188FE64373F} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25927741-5E5B-4D27-8D8B-9188FE64373F} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{33AA308B-B565-4376-AC66-59EE9B6AD13E} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{33AA308B-B565-4376-AC66-59EE9B6AD13E} (PUP.SearchYa) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{963B125B-8B21-49A2-A3A8-E37092276531} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BrowserCompanion (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\TypeLib\{955B782E-CDC8-4CEE-B6F6-AD7D541A8D8A} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\Interface\{9F0C17EB-EF2C-4278-9136-2D547656BC03} (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\BASE64 (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\CHROME (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKCR\PROTOCOLS\HANDLER\PROX (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> Žádná instrukce nebyla provedena.
HKCR\AppID\{186E19A3-B909-4F48-B687-BB81EB8BC7CE} (Trojan.BHO) -> Umístnění do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 4
HKCR\protocols\Handler\base64|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCR\protocols\Handler\chrome|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCR\protocols\Handler\prox|CLSID (PUP.Blabbers) -> Data: {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} -> Žádná instrukce nebyla provedena.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Microsoft® Windows® Operating System (Backdoor.Messa) -> Data: C:\Documents and Settings\lolko\Šablony\mscormmc.exe -> Umístnění do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 3
C:\Documents and Settings\All Users\Data aplikací\TheBflix (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\data (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion (PUP.Blabbers) -> Žádná instrukce nebyla provedena.

Nalezené soubory: 17
C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe (PUP.BundleInstaller.IB) -> Žádná instrukce nebyla provedena.
C:\Program Files\OpenApp\bho_project.dll (PUP.Adware.Agent) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\tdataprotocol.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\background.html (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\bccldkoinakjmmgebambiaggjobhikfg.crx (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\content.js (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\ppjemjejnnojomfekgbpbbnecicblllf.crx (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Documents and Settings\All Users\Data aplikací\TheBflix\settings.ini (PUP.BFlix) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\blabbers-ff-full.xpi (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\blabbers-ch.crx (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\logo.ico (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\terms.lnk.url (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\toolbar.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\uninstall.exe (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\updatebhoWin32.dll (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\updater.ini (PUP.Blabbers) -> Žádná instrukce nebyla provedena.
C:\Program Files\BrowserCompanion\widgetserv.exe (PUP.Blabbers) -> Žádná instrukce nebyla provedena.

(konec)
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 16:16

23:21:31.0250 3508 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47
23:21:31.0453 3508 ============================================================
23:21:31.0453 3508 Current date / time: 2001/12/31 23:21:31.0453
23:21:31.0453 3508 SystemInfo:
23:21:31.0453 3508
23:21:31.0453 3508 OS Version: 5.1.2600 ServicePack: 3.0
23:21:31.0453 3508 Product type: Workstation
23:21:31.0453 3508 ComputerName: DOMA-D0003A38B0
23:21:31.0453 3508 UserName: lolko
23:21:31.0453 3508 Windows directory: C:\WINDOWS
23:21:31.0453 3508 System windows directory: C:\WINDOWS
23:21:31.0453 3508 Processor architecture: Intel x86
23:21:31.0453 3508 Number of processors: 1
23:21:31.0453 3508 Page size: 0x1000
23:21:31.0453 3508 Boot type: Normal boot
23:21:31.0453 3508 ============================================================
23:21:35.0187 3508 Drive \Device\Harddisk0\DR0 - Size: 0x25432CDE00 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
23:21:35.0203 3508 Drive \Device\Harddisk1\DR1 - Size: 0x12A1E0DE00 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
23:21:35.0203 3508 Drive \Device\Harddisk2\DR3 - Size: 0xE8E0B00000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB00, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
23:21:35.0484 3508 ============================================================
23:21:35.0484 3508 \Device\Harddisk0\DR0:
23:21:35.0484 3508 MBR partitions:
23:21:35.0484 3508 \Device\Harddisk1\DR1:
23:21:35.0484 3508 MBR partitions:
23:21:35.0484 3508 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x950A5C1
23:21:35.0484 3508 \Device\Harddisk2\DR3:
23:21:35.0484 3508 MBR partitions:
23:21:35.0484 3508 \Device\Harddisk2\DR3\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705000
23:21:35.0484 3508 ============================================================
23:21:35.0515 3508 C: <-> \Device\Harddisk1\DR1\Partition1
23:21:35.0640 3508 E: <-> \Device\Harddisk2\DR3\Partition1
23:21:35.0656 3508 ============================================================
23:21:35.0656 3508 Initialize success
23:21:35.0656 3508 ============================================================
23:21:39.0593 3196 ============================================================
23:21:39.0593 3196 Scan started
23:21:39.0593 3196 Mode: Manual;
23:21:39.0593 3196 ============================================================
23:21:43.0109 3196 ================ Scan system memory ========================
23:21:43.0109 3196 System memory - ok
23:21:43.0109 3196 ================ Scan services =============================
23:21:43.0203 3196 Abiosdsk - ok
23:21:43.0218 3196 abp480n5 - ok
23:21:43.0250 3196 [ 4FE34F1F3126B61FCC6B2043AA8112C9 ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys
23:21:43.0265 3196 ACPI - ok
23:21:43.0312 3196 [ AFDFF022A01F0B11C776F0860C3B282F ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys
23:21:43.0312 3196 ACPIEC - ok
23:21:43.0375 3196 [ F9A83BBC92DD647271B6812A7A15F950 ] Adobe LM Service C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
23:21:43.0375 3196 Adobe LM Service - ok
23:21:43.0453 3196 [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
23:21:43.0468 3196 AdobeFlashPlayerUpdateSvc - ok
23:21:43.0484 3196 adpu160m - ok
23:21:43.0500 3196 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys
23:21:43.0500 3196 aec - ok
23:21:43.0546 3196 [ 2F7F3E8DA380325866E566F5D5EC23D5 ] AegisP C:\WINDOWS\system32\DRIVERS\AegisP.sys
23:21:43.0546 3196 AegisP - ok
23:21:43.0593 3196 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys
23:21:43.0609 3196 AFD - ok
23:21:43.0609 3196 Aha154x - ok
23:21:43.0625 3196 aic78u2 - ok
23:21:43.0625 3196 aic78xx - ok
23:21:43.0671 3196 [ E0A6FA244B8624D78FE5FF6F56A33BAE ] Alerter C:\WINDOWS\system32\alrsvc.dll
23:21:43.0671 3196 Alerter - ok
23:21:43.0687 3196 [ 88842DE939A827577BF24243699AC80A ] ALG C:\WINDOWS\System32\alg.exe
23:21:43.0687 3196 ALG - ok
23:21:43.0703 3196 AliIde - ok
23:21:43.0734 3196 [ FCFFA85CFD4BF7A4711012847048DCA3 ] AmdK8 C:\WINDOWS\system32\DRIVERS\AmdK8.sys
23:21:43.0734 3196 AmdK8 - ok
23:21:43.0750 3196 amsint - ok
23:21:43.0750 3196 AppMgmt - ok
23:21:43.0750 3196 asc - ok
23:21:43.0765 3196 asc3350p - ok
23:21:43.0765 3196 asc3550 - ok
23:21:43.0875 3196 [ 776ACEFA0CA9DF0FAA51A5FB2F435705 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
23:21:43.0875 3196 aspnet_state - ok
23:21:43.0906 3196 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys
23:21:43.0906 3196 AsyncMac - ok
23:21:43.0953 3196 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys
23:21:43.0953 3196 atapi - ok
23:21:43.0953 3196 Atdisk - ok
23:21:44.0000 3196 [ 6E996CF8459A2594E0E9609D0E34D41F ] atksgt C:\WINDOWS\system32\DRIVERS\atksgt.sys
23:21:44.0015 3196 atksgt - ok
23:21:44.0046 3196 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys
23:21:44.0046 3196 Atmarpc - ok
23:21:44.0093 3196 [ A8ABF9CA3B8781A69CA5025BCDA42706 ] ATP C:\WINDOWS\system32\DRIVERS\cmdatp.sys
23:21:44.0093 3196 ATP - ok
23:21:44.0125 3196 [ F1BABE0B950BC4E8D8178046C4ACA0FE ] ATWPKT2 C:\WINDOWS\system32\drivers\ATWPKT2.SYS
23:21:44.0125 3196 ATWPKT2 - ok
23:21:44.0203 3196 [ DE31B88962A8645DBA5A37B993E7B0F1 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll
23:21:44.0203 3196 AudioSrv - ok
23:21:44.0250 3196 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys
23:21:44.0250 3196 audstub - ok
23:21:44.0281 3196 [ 69578BC9D43D614C6B3455DB4AF19762 ] AVGIDSEH C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys
23:21:44.0281 3196 AVGIDSEH - ok
23:21:44.0328 3196 [ A6D562B612216D8D02A35EBEB92366BD ] Avgtdix C:\WINDOWS\system32\DRIVERS\avgtdix.sys
23:21:44.0359 3196 Avgtdix - ok
23:21:44.0375 3196 avgwd - ok
23:21:44.0406 3196 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys
23:21:44.0406 3196 Beep - ok
23:21:44.0453 3196 [ 19395D092FD85DDC2D9C7729CF5A2AC8 ] BITS C:\WINDOWS\system32\qmgr.dll
23:21:44.0484 3196 BITS - ok
23:21:44.0531 3196 [ 89E739BBA5F636297EA5B5F811189E06 ] Browser C:\WINDOWS\System32\browser.dll
23:21:44.0531 3196 Browser - ok
23:21:44.0562 3196 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys
23:21:44.0562 3196 cbidf2k - ok
23:21:44.0562 3196 cd20xrnt - ok
23:21:44.0578 3196 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys
23:21:44.0578 3196 Cdaudio - ok
23:21:44.0609 3196 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys
23:21:44.0609 3196 Cdfs - ok
23:21:44.0640 3196 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys
23:21:44.0640 3196 Cdrom - ok
23:21:44.0640 3196 Changer - ok
23:21:44.0656 3196 [ E390DC1D7C461D7D56EC53402F329928 ] CiSvc C:\WINDOWS\system32\cisvc.exe
23:21:44.0656 3196 CiSvc - ok
23:21:44.0671 3196 [ 064507A8DFA8C5C7E2FFDDD3E6F424FA ] ClipSrv C:\WINDOWS\system32\clipsrv.exe
23:21:44.0671 3196 ClipSrv - ok
23:21:44.0718 3196 [ D87ACAED61E417BBA546CED5E7E36D9C ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:21:44.0718 3196 clr_optimization_v2.0.50727_32 - ok
23:21:44.0765 3196 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:21:44.0781 3196 clr_optimization_v4.0.30319_32 - ok
23:21:44.0781 3196 CmdIde - ok
23:21:44.0796 3196 COMSysApp - ok
23:21:44.0796 3196 Cpqarray - ok
23:21:44.0843 3196 [ F3AB0933CBD166D271992F411C27CCAF ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll
23:21:44.0843 3196 CryptSvc - ok
23:21:44.0859 3196 dac2w2k - ok
23:21:44.0859 3196 dac960nt - ok
23:21:44.0906 3196 [ BE27674D1CBC3214AEC84B4336A38BBF ] DcomLaunch C:\WINDOWS\system32\rpcss.dll
23:21:44.0921 3196 DcomLaunch - ok
23:21:44.0968 3196 [ 8C9A53E285AC5E6704844D0459EC85BE ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll
23:21:44.0968 3196 Dhcp - ok
23:21:44.0984 3196 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys
23:21:44.0984 3196 Disk - ok
23:21:45.0000 3196 dmadmin - ok
23:21:45.0062 3196 [ DB5FD2BF5B07DC54BFCB3664FF05BD7C ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys
23:21:45.0109 3196 dmboot - ok
23:21:45.0125 3196 [ FFF1720AF51171F32F1EAD5CF71F2810 ] dmio C:\WINDOWS\system32\drivers\dmio.sys
23:21:45.0125 3196 dmio - ok
23:21:45.0156 3196 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys
23:21:45.0156 3196 dmload - ok
23:21:45.0187 3196 [ 2BFEFE9E865655A76982F050450B9591 ] dmserver C:\WINDOWS\System32\dmserver.dll
23:21:45.0203 3196 dmserver - ok
23:21:45.0218 3196 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys
23:21:45.0218 3196 DMusic - ok
23:21:45.0250 3196 [ DFAA406BF19F4EE806A6F8D4342137F7 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll
23:21:45.0250 3196 Dnscache - ok
23:21:45.0312 3196 [ 4A3E2BD20157A0946751229E92EB8621 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll
23:21:45.0312 3196 Dot3svc - ok
23:21:45.0328 3196 dpti2o - ok
23:21:45.0359 3196 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys
23:21:45.0359 3196 drmkaud - ok
23:21:45.0406 3196 [ 687AF6BB383885FF6A64071B189A7F3E ] dtsoftbus01 C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
23:21:45.0421 3196 dtsoftbus01 - ok
23:21:45.0437 3196 EagleNT - ok
23:21:45.0437 3196 EagleXNt - ok
23:21:45.0484 3196 [ 0887D9C2BE8D940778CAD1E3B85F2A41 ] EapHost C:\WINDOWS\System32\eapsvc.dll
23:21:45.0484 3196 EapHost - ok
23:21:45.0531 3196 [ E6D35F3AA51A65EB35C1F2340154A25E ] eips C:\WINDOWS\system32\drivers\ftmcgm.sys
23:21:45.0531 3196 eips - ok
23:21:45.0546 3196 [ A2A4912798F2BE706ABADD3D30800D16 ] ERSvc C:\WINDOWS\System32\ersvc.dll
23:21:45.0546 3196 ERSvc - ok
23:21:45.0593 3196 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] Eventlog C:\WINDOWS\system32\services.exe
23:21:45.0593 3196 Eventlog - ok
23:21:45.0640 3196 [ A371F11EF07653591C8DE26AFB13CE7F ] EventSystem C:\WINDOWS\system32\es.dll
23:21:45.0640 3196 EventSystem - ok
23:21:45.0734 3196 [ 2D5ED81E5A8A2B77768BA724E3F8E538 ] EzVpnSvc C:\Program Files\COMODO\Unite\EzVpnSvc.exe
23:21:45.0750 3196 EzVpnSvc - ok
23:21:45.0765 3196 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys
23:21:45.0765 3196 Fastfat - ok
23:21:45.0812 3196 [ EE9A2B9EA968A792A053C9D1A86BF870 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
23:21:45.0828 3196 FastUserSwitchingCompatibility - ok
23:21:45.0859 3196 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\DRIVERS\fdc.sys
23:21:45.0859 3196 Fdc - ok
23:21:45.0875 3196 [ AC366695A0796560AA37215AD5762AAF ] Fips C:\WINDOWS\system32\drivers\Fips.sys
23:21:45.0875 3196 Fips - ok
23:21:45.0890 3196 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\DRIVERS\flpydisk.sys
23:21:45.0890 3196 Flpydisk - ok
23:21:45.0921 3196 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys
23:21:45.0937 3196 FltMgr - ok
23:21:46.0031 3196 [ 8BA7C024070F2B7FDD98ED8A4BA41789 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
23:21:46.0046 3196 FontCache3.0.0.0 - ok
23:21:46.0062 3196 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys
23:21:46.0062 3196 Fs_Rec - ok
23:21:46.0062 3196 [ 4E664D8541DB4A66B73A24257E322E1F ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys
23:21:46.0078 3196 Ftdisk - ok
23:21:46.0078 3196 GMSIPCI - ok
23:21:46.0109 3196 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys
23:21:46.0109 3196 Gpc - ok
23:21:46.0203 3196 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files\Google\Update\GoogleUpdate.exe
23:21:46.0203 3196 gupdate - ok
23:21:46.0203 3196 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files\Google\Update\GoogleUpdate.exe
23:21:46.0218 3196 gupdatem - ok
23:21:46.0234 3196 [ 7929A161F9951D173CA9900FE7067391 ] hamachi C:\WINDOWS\system32\DRIVERS\hamachi.sys
23:21:46.0234 3196 hamachi - ok
23:21:46.0281 3196 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
23:21:46.0296 3196 HDAudBus - ok
23:21:46.0343 3196 [ FCFE31FB75F8A6295B6B0AF87A626282 ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
23:21:46.0343 3196 helpsvc - ok
23:21:46.0375 3196 [ 00E25EE90166B3E1BE6E74AEBF858306 ] HidServ C:\WINDOWS\System32\hidserv.dll
23:21:46.0375 3196 HidServ - ok
23:21:46.0421 3196 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys
23:21:46.0421 3196 hidusb - ok
23:21:46.0484 3196 [ 8D1F00F4254C3EF428B715484940427C ] HiPatchService E:\Program Files\Hi-Rez Studios\HiPatchService.exe
23:21:46.0484 3196 HiPatchService - ok
23:21:46.0546 3196 [ 7A6B320928F86BC851530D63C82965D9 ] hkmsvc C:\WINDOWS\System32\kmsvc.dll
23:21:46.0546 3196 hkmsvc - ok
23:21:46.0546 3196 hpn - ok
23:21:46.0609 3196 [ F80A415EF82CD06FFAF0D971528EAD38 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys
23:21:46.0609 3196 HTTP - ok
23:21:46.0640 3196 [ 58FE2F2DA3BC5573F4A35B3760D3125F ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll
23:21:46.0656 3196 HTTPFilter - ok
23:21:46.0656 3196 i2omgmt - ok
23:21:46.0656 3196 i2omp - ok
23:21:46.0687 3196 [ C528E27945367191E7BAE364930B6932 ] i8042prt C:\WINDOWS\system32\DRIVERS\i8042prt.sys
23:21:46.0687 3196 i8042prt - ok
23:21:46.0765 3196 [ 2FA1BEE0891FB9F3A0C2ED31B882F184 ] IBUpdaterService C:\Documents and Settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe
23:21:46.0796 3196 IBUpdaterService - ok
23:21:46.0953 3196 [ C01AC32DC5C03076CFB852CB5DA5229C ] idsvc C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
23:21:47.0015 3196 idsvc - ok
23:21:47.0031 3196 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys
23:21:47.0046 3196 Imapi - ok
23:21:47.0078 3196 [ F7B93AAFAD33B2320954C17E26C8D361 ] ImapiService C:\WINDOWS\system32\imapi.exe
23:21:47.0078 3196 ImapiService - ok
23:21:47.0093 3196 ini910u - ok
23:21:47.0359 3196 [ 8F924588C272FDAA28CF31A9BBC21A72 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
23:21:47.0578 3196 IntcAzAudAddService - ok
23:21:47.0578 3196 IntelIde - ok
23:21:47.0609 3196 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys
23:21:47.0609 3196 Ip6Fw - ok
23:21:47.0625 3196 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
23:21:47.0625 3196 IpFilterDriver - ok
23:21:47.0640 3196 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys
23:21:47.0640 3196 IpInIp - ok
23:21:47.0671 3196 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys
23:21:47.0671 3196 IpNat - ok
23:21:47.0687 3196 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys
23:21:47.0687 3196 IPSec - ok
23:21:47.0703 3196 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys
23:21:47.0703 3196 IRENUM - ok
23:21:47.0718 3196 [ CC9F8A2D60AED1A51A3AC34C59B987AE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys
23:21:47.0718 3196 isapnp - ok
23:21:47.0812 3196 [ A12175F063302CD68F8FC6D572D7E5FD ] JavaQuickStarterService C:\Program Files\Java\jre7\bin\jqs.exe
23:21:47.0828 3196 JavaQuickStarterService - ok
23:21:47.0843 3196 [ 1B6162FE7F66B1A71A4B70F941C4AA9B ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys
23:21:47.0843 3196 Kbdclass - ok
23:21:47.0859 3196 [ 86C8F23616C6C6E5B2776901C17B945B ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys
23:21:47.0859 3196 kbdhid - ok
23:21:47.0875 3196 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys
23:21:47.0875 3196 kmixer - ok
23:21:47.0921 3196 [ B467646C54CC746128904E1654C750C1 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys
23:21:47.0921 3196 KSecDD - ok
23:21:47.0968 3196 [ 3428E8F86F8ADD36B42FB23542C7B3E4 ] lanmanserver C:\WINDOWS\System32\srvsvc.dll
23:21:47.0968 3196 lanmanserver - ok
23:21:48.0015 3196 [ 936C1D110232D23B621CB0196E4F80F0 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
23:21:48.0015 3196 lanmanworkstation - ok
23:21:48.0015 3196 lbrtfdc - ok
23:21:48.0046 3196 [ 975B6CF65F44E95883F3855BAE8CECAF ] lirsgt C:\WINDOWS\system32\DRIVERS\lirsgt.sys
23:21:48.0046 3196 lirsgt - ok
23:21:48.0078 3196 [ 0AB159F536E3E8F7F07113702A07CCA5 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll
23:21:48.0078 3196 LmHosts - ok
23:21:48.0109 3196 [ 500D089CE760D83DA2B6CBA681AA9949 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys
23:21:48.0109 3196 MBAMProtector - ok
23:21:48.0187 3196 [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
23:21:48.0203 3196 MBAMScheduler - ok
23:21:48.0281 3196 [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
23:21:48.0312 3196 MBAMService - ok
23:21:48.0343 3196 [ 221CD1C815B8A6B79389C3F5D1018DE8 ] Messenger C:\WINDOWS\System32\msgsvc.dll
23:21:48.0343 3196 Messenger - ok
23:21:48.0375 3196 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys
23:21:48.0375 3196 mnmdd - ok
23:21:48.0406 3196 [ 9A57D046F88F4B69751B11FD40088A61 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe
23:21:48.0406 3196 mnmsrvc - ok
23:21:48.0453 3196 [ 44032B0C6D9954D3FD26438330B99EE7 ] Modem C:\WINDOWS\system32\drivers\Modem.sys
23:21:48.0453 3196 Modem - ok
23:21:48.0484 3196 [ 4CB582831DBDE63CE43B45D771218374 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys
23:21:48.0484 3196 Mouclass - ok
23:21:48.0515 3196 [ BB269EBA740737AB749B214D568B6812 ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys
23:21:48.0531 3196 mouhid - ok
23:21:48.0531 3196 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys
23:21:48.0546 3196 MountMgr - ok
23:21:48.0593 3196 [ 4D7F2682D29B92A6251B17957AA0B985 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
23:21:48.0593 3196 MozillaMaintenance - ok
23:21:48.0609 3196 mraid35x - ok
23:21:48.0640 3196 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys
23:21:48.0656 3196 MRxDAV - ok
23:21:48.0718 3196 [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0 ] MRxSmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
23:21:48.0734 3196 MRxSmb - ok
23:21:48.0765 3196 [ 6DB4D1521CABA9A5FFAB54ADE0AE867D ] MSDTC C:\WINDOWS\system32\msdtc.exe
23:21:48.0781 3196 MSDTC - ok
23:21:48.0781 3196 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys
23:21:48.0781 3196 Msfs - ok
23:21:48.0796 3196 MSICPL - ok
23:21:48.0796 3196 MSIServer - ok
23:21:48.0812 3196 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys
23:21:48.0812 3196 MSKSSRV - ok
23:21:48.0828 3196 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys
23:21:48.0828 3196 MSPCLOCK - ok
23:21:48.0843 3196 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys
23:21:48.0843 3196 MSPQM - ok
23:21:48.0859 3196 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys
23:21:48.0859 3196 mssmbios - ok
23:21:48.0906 3196 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys
23:21:48.0906 3196 Mup - ok
23:21:48.0968 3196 [ 6EA362E9DB03D44F6B996F4D8BE237E9 ] napagent C:\WINDOWS\System32\qagentrt.dll
23:21:48.0984 3196 napagent - ok
23:21:49.0015 3196 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys
23:21:49.0031 3196 NDIS - ok
23:21:49.0062 3196 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys
23:21:49.0062 3196 NdisTapi - ok
23:21:49.0093 3196 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys
23:21:49.0093 3196 Ndisuio - ok
23:21:49.0125 3196 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys
23:21:49.0125 3196 NdisWan - ok
23:21:49.0187 3196 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys
23:21:49.0187 3196 NDProxy - ok
23:21:49.0218 3196 [ 5D81CF9A2F1A3A756B66CF684911CDF0 ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys
23:21:49.0218 3196 NetBIOS - ok
23:21:49.0234 3196 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys
23:21:49.0234 3196 NetBT - ok
23:21:49.0281 3196 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDE C:\WINDOWS\system32\netdde.exe
23:21:49.0281 3196 NetDDE - ok
23:21:49.0281 3196 [ 933DE774986EC85E48210C44AB431DE6 ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe
23:21:49.0296 3196 NetDDEdsdm - ok
23:21:49.0328 3196 [ ED0A176354487CEED65B80A7148AB739 ] Netlogon C:\WINDOWS\system32\lsass.exe
23:21:49.0328 3196 Netlogon - ok
23:21:49.0359 3196 [ 72E1E9E2977BE08BDEEDB6D8FD9D4D40 ] Netman C:\WINDOWS\System32\netman.dll
23:21:49.0375 3196 Netman - ok
23:21:49.0421 3196 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:21:49.0421 3196 NetTcpPortSharing - ok
23:21:49.0484 3196 [ 1289B7611CCD6CB27596AE92CBF03E35 ] Nla C:\WINDOWS\System32\mswsock.dll
23:21:49.0500 3196 Nla - ok
23:21:49.0546 3196 [ F498C5C3399A60933196FC215EF074F9 ] NPF C:\WINDOWS\system32\drivers\npf.sys
23:21:49.0546 3196 NPF - ok
23:21:49.0578 3196 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys
23:21:49.0578 3196 Npfs - ok
23:21:49.0593 3196 NTACCESS - ok
23:21:49.0625 3196 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys
23:21:49.0656 3196 Ntfs - ok
23:21:49.0671 3196 [ ED0A176354487CEED65B80A7148AB739 ] NtLmSsp C:\WINDOWS\system32\lsass.exe
23:21:49.0671 3196 NtLmSsp - ok
23:21:49.0734 3196 [ 023DD70573D644F3D9C8B1258A7BFD08 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll
23:21:49.0812 3196 NtmsSvc - ok
23:21:49.0828 3196 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys
23:21:49.0828 3196 Null - ok
23:21:50.0187 3196 [ 8E72E452B9CC1E455D19E3C9FA964D37 ] nv C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
23:21:50.0500 3196 nv - ok
23:21:50.0531 3196 [ 934833B3CD462A6F8A96F64D024C8B20 ] NVSvc C:\WINDOWS\system32\nvsvc32.exe
23:21:50.0546 3196 NVSvc - ok
23:21:50.0578 3196 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
23:21:50.0578 3196 NwlnkFlt - ok
23:21:50.0578 3196 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
23:21:50.0578 3196 NwlnkFwd - ok
23:21:50.0625 3196 [ 46F8DB73B4A53E543F8E371DC7C75BAE ] Parport C:\WINDOWS\system32\DRIVERS\parport.sys
23:21:50.0625 3196 Parport - ok
23:21:50.0640 3196 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys
23:21:50.0640 3196 PartMgr - ok
23:21:50.0671 3196 [ 1FAE19D0457176318BBA4A8795656EBC ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys
23:21:50.0671 3196 ParVdm - ok
23:21:50.0687 3196 [ 6CE351D149CB4BEFC702951E471E1730 ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys
23:21:50.0687 3196 PCI - ok
23:21:50.0687 3196 PCIDump - ok
23:21:50.0703 3196 [ 2DA4EC85E0EA7A45C6B2A05820492D5A ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys
23:21:50.0718 3196 PCIIde - ok
23:21:50.0750 3196 [ 4FC31E6C19A5CE5198B1ABFF94CAE758 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys
23:21:50.0750 3196 Pcmcia - ok
23:21:50.0750 3196 PDCOMP - ok
23:21:50.0765 3196 PDFRAME - ok
23:21:50.0765 3196 PDRELI - ok
23:21:50.0781 3196 PDRFRAME - ok
23:21:50.0781 3196 perc2 - ok
23:21:50.0781 3196 perc2hib - ok
23:21:50.0828 3196 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] PlugPlay C:\WINDOWS\system32\services.exe
23:21:50.0828 3196 PlugPlay - ok
23:21:50.0828 3196 [ ED0A176354487CEED65B80A7148AB739 ] PolicyAgent C:\WINDOWS\system32\lsass.exe
23:21:50.0843 3196 PolicyAgent - ok
23:21:50.0875 3196 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys
23:21:50.0875 3196 PptpMiniport - ok
23:21:50.0890 3196 [ 7EB15DCE4EC3A0220BD796A15C18186E ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys
23:21:50.0890 3196 Processor - ok
23:21:50.0906 3196 [ ED0A176354487CEED65B80A7148AB739 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
23:21:50.0906 3196 ProtectedStorage - ok
23:21:50.0906 3196 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys
23:21:50.0906 3196 PSched - ok
23:21:50.0953 3196 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys
23:21:50.0953 3196 Ptilink - ok
23:21:50.0984 3196 [ B572ED0C3E6165643FA116AF20425A54 ] PxHelp20 C:\WINDOWS\system32\DRIVERS\PxHelp20.sys
23:21:51.0000 3196 PxHelp20 - ok
23:21:51.0015 3196 ql1080 - ok
23:21:51.0015 3196 Ql10wnt - ok
23:21:51.0015 3196 ql12160 - ok
23:21:51.0031 3196 ql1240 - ok
23:21:51.0031 3196 ql1280 - ok
23:21:51.0062 3196 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys
23:21:51.0062 3196 RasAcd - ok
23:21:51.0093 3196 [ 2B5E44EA009F2F374B980E1E9A70635D ] RasAuto C:\WINDOWS\System32\rasauto.dll
23:21:51.0109 3196 RasAuto - ok
23:21:51.0125 3196 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
23:21:51.0125 3196 Rasl2tp - ok
23:21:51.0187 3196 [ D57554C664B64604BD1EE13EA2C07E77 ] RasMan C:\WINDOWS\System32\rasmans.dll
23:21:51.0187 3196 RasMan - ok
23:21:51.0203 3196 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys
23:21:51.0203 3196 RasPppoe - ok
23:21:51.0218 3196 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys
23:21:51.0218 3196 Raspti - ok
23:21:51.0250 3196 [ 7AD224AD1A1437FE28D89CF22B17780A ] Rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys
23:21:51.0250 3196 Rdbss - ok
23:21:51.0265 3196 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
23:21:51.0265 3196 RDPCDD - ok
23:21:51.0312 3196 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys
23:21:51.0312 3196 RDPWD - ok
23:21:51.0343 3196 [ C0D9D9711CB74EE9BC66353D8CBDAB0E ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe
23:21:51.0359 3196 RDSessMgr - ok
23:21:51.0390 3196 [ 611BFD220305BE3A85AE876EA47D4AA5 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys
23:21:51.0390 3196 redbook - ok
23:21:51.0437 3196 [ 127C26B5371651043450E52542099ABA ] RemoteAccess C:\WINDOWS\System32\mprdim.dll
23:21:51.0437 3196 RemoteAccess - ok
23:21:51.0468 3196 [ D8B0B4ADE32574B2D9C5CC34DC0DBBE7 ] ROOTMODEM C:\WINDOWS\system32\Drivers\RootMdm.sys
23:21:51.0468 3196 ROOTMODEM - ok
23:21:51.0546 3196 [ 599091EDC1013A4A79CFE171638CF262 ] rpcapd C:\Program Files\WinPcap\rpcapd.exe
23:21:51.0562 3196 rpcapd - ok
23:21:51.0593 3196 [ 718B3BDC0BC3C2F7D065A53D26202AF9 ] RpcLocator C:\WINDOWS\system32\locator.exe
23:21:51.0593 3196 RpcLocator - ok
23:21:51.0640 3196 [ BE27674D1CBC3214AEC84B4336A38BBF ] RpcSs C:\WINDOWS\system32\rpcss.dll
23:21:51.0640 3196 RpcSs - ok
23:21:51.0671 3196 [ 09AB2E71E58B078038E3BFDBA7FFC984 ] RSVP C:\WINDOWS\system32\rsvp.exe
23:21:51.0671 3196 RSVP - ok
23:21:51.0718 3196 [ 581E74880AEB1DBA1CB5AC8E6E6C0A69 ] RT61 C:\WINDOWS\system32\DRIVERS\RT61.sys
23:21:51.0750 3196 RT61 - ok
23:21:51.0781 3196 [ 3400495F5B219D5153C770A95499579C ] RTLE8023xp C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
23:21:51.0796 3196 RTLE8023xp - ok
23:21:51.0812 3196 [ ED0A176354487CEED65B80A7148AB739 ] SamSs C:\WINDOWS\system32\lsass.exe
23:21:51.0812 3196 SamSs - ok
23:21:51.0843 3196 [ 410046E401EB11E1E6749E9DEEA41D4A ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe
23:21:51.0843 3196 SCardSvr - ok
23:21:51.0875 3196 [ 3FF232A7731621B8902D81D42418C93C ] Schedule C:\WINDOWS\system32\schedsvc.dll
23:21:51.0906 3196 Schedule - ok
23:21:51.0953 3196 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys
23:21:51.0953 3196 Secdrv - ok
23:21:51.0984 3196 [ 477E2C3CC5E4A0D635BCB0EA8DCAC3C6 ] seclogon C:\WINDOWS\System32\seclogon.dll
23:21:51.0984 3196 seclogon - ok
23:21:52.0031 3196 [ A530B75C10C23C9AB28FDB6CE719E21F ] SENS C:\WINDOWS\system32\sens.dll
23:21:52.0031 3196 SENS - ok
23:21:52.0031 3196 [ 0F29512CCD6BEAD730039FB4BD2C85CE ] serenum C:\WINDOWS\system32\DRIVERS\serenum.sys
23:21:52.0031 3196 serenum - ok
23:21:52.0078 3196 [ B842729337C9B921615C40D3C1A1AF96 ] Serial C:\WINDOWS\system32\DRIVERS\serial.sys
23:21:52.0078 3196 Serial - ok
23:21:52.0093 3196 SetupNTGLM7X - ok
23:21:52.0109 3196 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys
23:21:52.0109 3196 Sfloppy - ok
23:21:52.0187 3196 [ F58FACA9621D2DB01BD0927D9A0A208E ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll
23:21:52.0203 3196 SharedAccess - ok
23:21:52.0218 3196 [ EE9A2B9EA968A792A053C9D1A86BF870 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
23:21:52.0218 3196 ShellHWDetection - ok
23:21:52.0218 3196 Simbad - ok
23:21:52.0406 3196 [ 753D254205E0A62100A050BD8B458D06 ] Skype C2C Service C:\Documents and Settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe
23:21:52.0578 3196 Skype C2C Service - ok
23:21:52.0640 3196 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe
23:21:52.0656 3196 SkypeUpdate - ok
23:21:52.0671 3196 Sparrow - ok
23:21:52.0687 3196 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys
23:21:52.0687 3196 splitter - ok
23:21:52.0734 3196 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe
23:21:52.0734 3196 Spooler - ok
23:21:52.0781 3196 [ 0022CFFF1A41E5CE3A764050A7DDF22A ] sptd C:\WINDOWS\System32\Drivers\sptd.sys
23:21:52.0812 3196 sptd - ok
23:21:52.0843 3196 [ 94610C8653635E4459316A0050D55CE7 ] sr C:\WINDOWS\system32\DRIVERS\sr.sys
23:21:52.0843 3196 sr - ok
23:21:52.0875 3196 [ 35B91147124F64AC8081A2EDB9EA4DEE ] srservice C:\WINDOWS\system32\srsvc.dll
23:21:52.0875 3196 srservice - ok
23:21:52.0937 3196 [ 47DDFC2F003F7F9F0592C6874962A2E7 ] Srv C:\WINDOWS\system32\DRIVERS\srv.sys
23:21:52.0953 3196 Srv - ok
23:21:52.0984 3196 [ BECD5271DC4E3B7C3D035F790FCBC1E5 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll
23:21:52.0984 3196 SSDPSRV - ok
23:21:53.0000 3196 Steam Client Service - ok
23:21:53.0031 3196 [ C1CDD9275F6A115BB0AE1D55D8D27BA6 ] stisvc C:\WINDOWS\system32\wiaservc.dll
23:21:53.0046 3196 stisvc - ok
23:21:53.0062 3196 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys
23:21:53.0062 3196 swenum - ok
23:21:53.0109 3196 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys
23:21:53.0109 3196 swmidi - ok
23:21:53.0109 3196 SwPrv - ok
23:21:53.0125 3196 symc810 - ok
23:21:53.0125 3196 symc8xx - ok
23:21:53.0140 3196 sym_hi - ok
23:21:53.0156 3196 sym_u3 - ok
23:21:53.0187 3196 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys
23:21:53.0187 3196 sysaudio - ok
23:21:53.0203 3196 [ CE06F01B88ACE199A1BF460CAC29C110 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe
23:21:53.0203 3196 SysmonLog - ok
23:21:53.0234 3196 [ 0C3B2A9C4BD2DD9A6C2E4084314DD719 ] taphss C:\WINDOWS\system32\DRIVERS\taphss.sys
23:21:53.0250 3196 taphss - ok
23:21:53.0281 3196 [ C2546CD7A398476F9DF5614B2AE160E8 ] TapiSrv C:\WINDOWS\System32\tapisrv.dll
23:21:53.0296 3196 TapiSrv - ok
23:21:53.0343 3196 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys
23:21:53.0359 3196 Tcpip - ok
23:21:53.0406 3196 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys
23:21:53.0406 3196 TDPIPE - ok
23:21:53.0437 3196 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys
23:21:53.0437 3196 TDTCP - ok
23:21:53.0453 3196 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\system32\DRIVERS\termdd.sys
23:21:53.0453 3196 TermDD - ok
23:21:53.0515 3196 [ A75DD6FC3DBEE4FFF5EBC9F2C28BB66E ] TermService C:\WINDOWS\System32\termsrv.dll
23:21:53.0515 3196 TermService - ok
23:21:53.0546 3196 [ EE9A2B9EA968A792A053C9D1A86BF870 ] Themes C:\WINDOWS\System32\shsvcs.dll
23:21:53.0546 3196 Themes - ok
23:21:53.0546 3196 TosIde - ok
23:21:53.0578 3196 [ 38853304CCB938D30E0C4CDE8D2C2A8A ] TrkWks C:\WINDOWS\system32\trkwks.dll
23:21:53.0578 3196 TrkWks - ok
23:21:53.0625 3196 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys
23:21:53.0625 3196 Udfs - ok
23:21:53.0640 3196 ultra - ok
23:21:53.0687 3196 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys
23:21:53.0703 3196 Update - ok
23:21:53.0734 3196 [ 651BD90DCEE5B7BDC74A2EB7C9266F9E ] upnphost C:\WINDOWS\System32\upnphost.dll
23:21:53.0750 3196 upnphost - ok
23:21:53.0750 3196 [ 20A0F6A11959E92908717D09E87D670D ] UPS C:\WINDOWS\System32\ups.exe
23:21:53.0765 3196 UPS - ok
23:21:53.0796 3196 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys
23:21:53.0796 3196 usbccgp - ok
23:21:53.0812 3196 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys
23:21:53.0812 3196 usbehci - ok
23:21:53.0828 3196 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys
23:21:53.0828 3196 usbhub - ok
23:21:53.0859 3196 [ 0DAECCE65366EA32B162F85F07C6753B ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys
23:21:53.0859 3196 usbohci - ok
23:21:53.0875 3196 [ A32426D9B14A089EAA1D922E0C5801A9 ] USBSTOR C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
23:21:53.0875 3196 USBSTOR - ok
23:21:53.0921 3196 [ 9085D8F20DDBCFE8C9077B52D84FF222 ] VBoxDrv C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys
23:21:53.0937 3196 VBoxDrv - ok
23:21:53.0968 3196 [ 8E4508C7B571F686129E7C4B89CB673D ] VBoxNetAdp C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys
23:21:53.0984 3196 VBoxNetAdp - ok
23:21:54.0015 3196 [ D570F05D62F9EDAD752107DDAF8E46D5 ] VBoxNetFlt C:\WINDOWS\system32\DRIVERS\VBoxNetFlt.sys
23:21:54.0015 3196 VBoxNetFlt - ok
23:21:54.0046 3196 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys
23:21:54.0046 3196 VgaSave - ok
23:21:54.0062 3196 ViaIde - ok
23:21:54.0078 3196 [ 28A4B296B47782173C346E376CB374D1 ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys
23:21:54.0078 3196 VolSnap - ok
23:21:54.0187 3196 [ D6BA1A63D9E00933F1CD2A885573AFB2 ] VSS C:\WINDOWS\System32\vssvc.exe
23:21:54.0187 3196 VSS - ok
23:21:54.0296 3196 [ 8ED347BAD8D1FB7C40B593BFB01786D2 ] vToolbarUpdater11.2.0 C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe
23:21:54.0375 3196 vToolbarUpdater11.2.0 - ok
23:21:54.0421 3196 [ FA4E1CDBA256787F2149F4AAD07BC91F ] W32Time C:\WINDOWS\system32\w32time.dll
23:21:54.0421 3196 W32Time - ok
23:21:54.0453 3196 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys
23:21:54.0468 3196 Wanarp - ok
23:21:54.0468 3196 wanatw - ok
23:21:54.0484 3196 WDICA - ok
23:21:54.0500 3196 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys
23:21:54.0500 3196 wdmaud - ok
23:21:54.0562 3196 [ FE546ADF53E0AB4C27DC7A49DA0E3ECA ] Web Assistant Updater C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
23:21:54.0562 3196 Web Assistant Updater - ok
23:21:54.0593 3196 [ 47AE51048A82DFA1CD6B51D369F7E169 ] WebClient C:\WINDOWS\System32\webclnt.dll
23:21:54.0593 3196 WebClient - ok
23:21:54.0671 3196 [ E488332126E3B1182D2B8A0C35408EC6 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll
23:21:54.0671 3196 winmgmt - ok
23:21:54.0796 3196 [ 5144AE67D60EC653F97DDF3FEED29E77 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
23:21:54.0859 3196 wlidsvc - ok
23:21:54.0890 3196 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll
23:21:54.0890 3196 WmdmPmSN - ok
23:21:54.0921 3196 [ 23F6F03272F7E5679F1F050AED5ACEE6 ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe
23:21:54.0937 3196 WmiApSrv - ok
23:21:55.0015 3196 [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
23:21:55.0078 3196 WPFFontCache_v0400 - ok
23:21:55.0109 3196 [ 4C86D5FAF78194995AF9CC1075F65DD3 ] wscsvc C:\WINDOWS\system32\wscsvc.dll
23:21:55.0109 3196 wscsvc - ok
23:21:55.0156 3196 [ C1364564800EE9784192145324A23308 ] wuauserv C:\WINDOWS\system32\wuauserv.dll
23:21:55.0156 3196 wuauserv - ok
23:21:55.0203 3196 [ F15FEAFFFBB3644CCC80C5DA584E6311 ] WudfPf C:\WINDOWS\system32\DRIVERS\WudfPf.sys
23:21:55.0203 3196 WudfPf - ok
23:21:55.0218 3196 [ 28B524262BCE6DE1F7EF9F510BA3985B ] WudfRd C:\WINDOWS\system32\DRIVERS\wudfrd.sys
23:21:55.0218 3196 WudfRd - ok
23:21:55.0250 3196 [ 05231C04253C5BC30B26CBAAE680ED89 ] WudfSvc C:\WINDOWS\System32\WUDFSvc.dll
23:21:55.0265 3196 WudfSvc - ok
23:21:55.0312 3196 [ A27D4BA7264C0BF52F32D10405BEA1D4 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll
23:21:55.0343 3196 WZCSVC - ok
23:21:55.0390 3196 [ EAA4BB9EDB3FB10CF8979FE65E63658F ] xmlprov C:\WINDOWS\System32\xmlprov.dll
23:21:55.0390 3196 xmlprov - ok
23:21:55.0406 3196 ================ Scan global ===============================
23:21:55.0453 3196 [ F36278E42C8C5DF03CE17DAC8231C91C ] C:\WINDOWS\system32\basesrv.dll
23:21:55.0515 3196 [ F3FA14A297BC687D0B51289D034033C9 ] C:\WINDOWS\system32\winsrv.dll
23:21:55.0546 3196 [ F3FA14A297BC687D0B51289D034033C9 ] C:\WINDOWS\system32\winsrv.dll
23:21:55.0546 3196 [ 9EF697AF07BB8DD82C3B02CA953A95B7 ] C:\WINDOWS\system32\services.exe
23:21:55.0562 3196 [Global] - ok
23:21:55.0562 3196 ================ Scan MBR ==================================
23:21:55.0562 3196 [ 413FC2A0C716421B3158746D63736515 ] \Device\Harddisk0\DR0
23:21:55.0562 3196 \Device\Harddisk0\DR0 - ok
23:21:55.0578 3196 [ 413FC2A0C716421B3158746D63736515 ] \Device\Harddisk1\DR1
23:21:55.0781 3196 \Device\Harddisk1\DR1 - ok
23:21:55.0781 3196 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk2\DR3
23:21:55.0781 3196 \Device\Harddisk2\DR3 - ok
23:21:55.0781 3196 ================ Scan VBR ==================================
23:21:55.0796 3196 [ 40A9E49BDA947AF200C4A0B6A6A9956F ] \Device\Harddisk1\DR1\Partition1
23:21:55.0796 3196 \Device\Harddisk1\DR1\Partition1 - ok
23:21:55.0796 3196 [ BC8F50932D9C05942C2BD9922FECB6C6 ] \Device\Harddisk2\DR3\Partition1
23:21:55.0796 3196 \Device\Harddisk2\DR3\Partition1 - ok
23:21:55.0812 3196 ============================================================
23:21:55.0812 3196 Scan finished
23:21:55.0812 3196 ============================================================
23:21:55.0812 3888 Detected object count: 0
23:21:55.0812 3888 Actual detected object count: 0
23:23:08.0359 3924 Deinitialize success
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 17:06

ComboFix 12-10-18.03 - lolko . 01. 2002 0:19.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.1.1029.18.1023.402 [GMT 1:00]
Spuštěný z: c:\documents and settings\lolko\Plocha\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\BrowserCompanion
c:\program files\BrowserCompanion\blabbers-ff-full.xpi
c:\program files\BrowserCompanion\blabbers-ch.crx
c:\program files\BrowserCompanion\logo.ico
c:\program files\BrowserCompanion\tdataprotocol.dll
c:\program files\BrowserCompanion\terms.lnk.url
c:\program files\BrowserCompanion\toolbar.dll
c:\program files\BrowserCompanion\uninstall.exe
c:\program files\BrowserCompanion\updatebhoWin32.dll
c:\program files\BrowserCompanion\updater.ini
c:\program files\BrowserCompanion\widgetserv.exe
c:\program files\OpenApp\bhO_project.dll
c:\program files\Web Assistant\ExTEnsion32.dll
c:\program files\WinPCap
c:\program files\WinPCap\daemon_mgm.exe
c:\program files\WinPCap\INSTALL.LOG
c:\program files\WinPCap\npf_mgm.exe
c:\program files\WinPCap\rpcapd.exe
c:\program files\WinPCap\Uninstall.exe
c:\windows\msxml4-KB954430-enu.LOG
c:\windows\msxml4-KB973688-enu.LOG
c:\windows\regopt.log
c:\windows\system\ad2mcmpgdec.dll
c:\windows\system\ad2mpegin.dll
c:\windows\system\winspool.drv
c:\windows\system32\Cache
c:\windows\system32\Cache\272512937d9e61a4.fb
c:\windows\system32\Cache\287204568329e189.fb
c:\windows\system32\Cache\28bc8f716fd76a47.fb
c:\windows\system32\Cache\2c53092c95605355.fb
c:\windows\system32\Cache\31a0997e9a5b5eb3.fb
c:\windows\system32\Cache\32c84fe32bb74d60.fb
c:\windows\system32\Cache\3917078cb68ec657.fb
c:\windows\system32\Cache\590ba23ce359fd0c.fb
c:\windows\system32\Cache\610289e025a3ee9a.fb
c:\windows\system32\Cache\63e06f5aed4596e2.fb
c:\windows\system32\Cache\651c5d3cdbfb8bd1.fb
c:\windows\system32\Cache\6c59ac5e7e7a3ad0.fb
c:\windows\system32\Cache\6d03dad1035885d3.fb
c:\windows\system32\Cache\a8556537add6dfc5.fb
c:\windows\system32\Cache\ad10a52aff5e038d.fb
c:\windows\system32\Cache\c1fa887b03019701.fb
c:\windows\system32\Cache\c4d28dca2e7648be.fb
c:\windows\system32\Cache\d201ef9910cd39de.fb
c:\windows\system32\Cache\d2e94710a5708128.fb
c:\windows\system32\Cache\d79b9dfe81484ec4.fb
c:\windows\system32\Cache\f998975c9cc711ee.fb
c:\windows\system32\Packet.dll
c:\windows\system32\pthreadVC.dll
c:\windows\system32\SET1AB.tmp
c:\windows\system32\SET1AF.tmp
c:\windows\system32\SET1B7.tmp
c:\windows\system32\TZLog.log
c:\windows\system32\wpcap.dll
E:\autorun.inf
.
Nakažená kopie c:\windows\system32\msgsvc.dll byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\ServicePackFiles\i386\msgsvc.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
-------\Legacy_NVSVC
-------\Service_NPF
-------\Service_NVSvc
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2001-11-28 do 2001-12-31 )))))))))))))))))))))))))))))))
.
.
2012-10-18 13:07 . 2012-10-18 13:07 -------- d-----w- C:\RS_Capture
2012-09-27 23:48 . 2012-09-27 23:48 -------- d-----w- C:\Users
2012-09-25 21:03 . 2012-09-27 22:59 -------- d-----w- C:\Minecraft_Backup
2012-08-22 16:27 . 2012-08-22 16:27 10920 ----a-w- C:\aolconnfix.exe
2012-08-20 17:23 . 2012-08-20 17:23 207350 ----a-w- C:\torrent.exe
2012-08-07 12:20 . 2002-01-01 03:05 -------- d-----w- C:\Crash
2012-08-04 08:04 . 2012-10-14 14:45 -------- d-----w- C:\Temp
2012-07-19 18:07 . 2012-07-19 18:07 -------- d-----w- C:\Autodesk
2012-07-19 17:25 . 2012-08-24 04:06 -------- d-----w- C:\tmp
2012-07-10 02:58 . 2012-07-10 02:58 -------- d-----w- C:\$AVG
2012-07-04 03:48 . 2012-07-04 03:48 3861472 ----a-w- C:\chatzum.exe
2012-05-12 13:28 . 2012-05-12 13:28 -------- d-----w- C:\Content
2012-04-06 13:31 . 2012-10-03 00:14 -------- d-----w- C:\League of Legends
2012-01-01 16:40 . 2012-07-13 00:10 -------- d-----w- C:\totalcmd
2006-03-02 12:00 . 2006-03-02 12:00 4952 --sha-r- C:\Bootfont.bin
2002-01-31 02:47 . 2012-08-24 04:28 3529 ----a-w- C:\user.js
2002-01-29 19:57 . 2012-07-23 16:23 -------- d-----w- C:\Fraps
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-01-07 13:39 . 2011-01-07 13:39 36176 ----a-w- c:\windows\system32\mfc100cht.dll
2011-01-07 13:39 . 2011-01-07 13:39 36176 ----a-w- c:\windows\system32\mfc100chs.dll
2010-06-14 14:31 . 2002-01-25 12:11 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2009-11-27 16:09 . 2001-10-24 12:25 8704 ----a-w- c:\windows\system32\tsbyuv.dll
2009-11-21 16:03 . 2006-03-02 12:00 471552 ----a-w- c:\windows\apppatch\aclayers.dll
2009-10-12 13:40 . 2006-03-02 12:00 79872 ----a-w- c:\windows\system32\raschap.dll
2009-03-08 03:34 . 2006-03-02 12:00 236544 ----a-w- c:\windows\system32\webcheck.dll
2008-04-14 07:52 . 2002-01-25 12:11 150528 ----a-w- c:\windows\pchealth\UploadLB\Binaries\uploadm.exe
2008-04-14 07:52 . 2006-03-02 12:00 14336 ----a-w- c:\windows\system32\svchost.exe
2008-04-14 07:52 . 2002-01-25 12:11 171008 ----a-w- c:\windows\pchealth\helpctr\binaries\msconfig.exe
2008-04-14 07:52 . 2002-01-25 12:11 18432 ----a-w- c:\windows\pchealth\helpctr\binaries\hscupd.exe
2008-04-14 07:52 . 2002-01-25 12:11 769024 ----a-w- c:\windows\pchealth\helpctr\binaries\helpctr.exe
2008-04-14 07:52 . 2006-03-02 12:00 601088 ----a-w- c:\windows\system32\autochk.exe
2008-04-14 07:52 . 2006-03-02 12:00 279040 ----a-w- c:\windows\help\tshoot.dll
2008-04-14 07:52 . 2002-01-01 02:59 11325 ------w- c:\windows\system32\drivers\vchnt5.dll
2008-04-14 07:52 . 2006-03-02 12:00 33280 ----a-w- c:\windows\help\sstub.dll
2008-04-14 07:52 . 2002-01-25 12:12 726590 ----a-w- c:\windows\srchasst\srchui.dll
2008-04-14 07:52 . 2002-01-25 12:12 58434 ----a-w- c:\windows\srchasst\srchctls.dll
2008-04-14 07:51 . 2006-03-02 12:00 34816 ----a-w- c:\windows\help\sniffpol.dll
2008-04-14 07:51 . 2002-01-25 12:11 38400 ----a-w- c:\windows\pchealth\helpctr\binaries\pchsvc.dll
2008-04-14 07:51 . 2002-01-25 12:11 102912 ----a-w- c:\windows\pchealth\helpctr\binaries\pchshell.dll
2008-04-14 07:51 . 2002-01-25 12:12 3166208 ----a-w- c:\windows\srchasst\msgr3en.dll
2008-04-14 07:51 . 2002-01-25 12:11 378880 ----a-w- c:\windows\pchealth\helpctr\binaries\msinfo.dll
2008-04-14 07:51 . 2006-03-02 12:00 245248 ----a-w- c:\windows\apppatch\acspecfc.dll
2008-04-14 07:51 . 2006-03-02 12:00 1852928 ----a-w- c:\windows\apppatch\acgenral.dll
2008-04-14 07:51 . 2006-03-02 12:00 141312 ----a-w- c:\windows\apppatch\aclua.dll
2008-04-14 07:51 . 2006-03-02 12:00 116224 ----a-w- c:\windows\apppatch\acxtrnal.dll
2008-04-14 07:51 . 2002-01-01 03:16 39424 ------w- c:\windows\apppatch\acadproc.dll
2008-04-13 23:15 . 2001-08-17 22:03 25728 ----a-w- c:\windows\system32\drivers\usbcamd2.sys
2008-04-13 23:15 . 2001-08-17 22:03 25600 ----a-w- c:\windows\system32\drivers\usbcamd.sys
2007-04-02 17:17 . 2006-03-02 12:00 518944 ----a-w- c:\windows\system32\msexch40.dll
2006-03-02 12:00 . 2006-03-02 12:00 3374640 ----a-w- c:\windows\help\Tours\mmTour\tour.exe
2006-03-02 12:00 . 2006-03-02 12:00 152576 ----a-w- c:\windows\help\bnts.dll
2006-03-02 12:00 . 2002-01-25 12:12 99840 ----a-w- c:\windows\pchealth\helpctr\binaries\HelpHost.exe
2006-03-02 12:00 . 2002-01-25 12:12 35328 ----a-w- c:\windows\pchealth\helpctr\binaries\notiflag.exe
2006-03-02 12:00 . 2002-01-25 12:12 21504 ----a-w- c:\windows\pchealth\helpctr\binaries\brpinfo.dll
2006-03-02 12:00 . 2002-01-25 12:12 7168 ----a-w- c:\windows\pchealth\helpctr\binaries\HCAppRes.dll
2006-03-02 12:00 . 2002-01-25 12:09 35328 ----a-w- c:\windows\system32\winchat.exe
2006-03-02 12:00 . 2001-10-24 12:25 77891 ----a-w- c:\windows\system32\usrmlnka.exe
2006-03-02 12:00 . 2001-10-24 12:25 69700 ----a-w- c:\windows\system32\usrshuta.exe
2006-03-02 12:00 . 2001-10-24 12:25 56320 ----a-w- c:\windows\system32\dvdplay.exe
2006-03-02 12:00 . 2001-10-24 12:25 13824 ----a-w- c:\windows\system32\wowfaxui.dll
2006-03-02 12:00 . 2001-10-24 12:25 86073 ----a-w- c:\windows\system32\usrfaxa.dll
2006-03-02 12:00 . 2001-10-24 12:25 8192 ----a-w- c:\windows\system32\streamci.dll
2006-03-02 12:00 . 2001-10-24 12:25 77890 ----a-w- c:\windows\system32\usrdpa.dll
2006-03-02 12:00 . 2001-10-24 12:25 77883 ----a-w- c:\windows\system32\usrrtosa.dll
2006-03-02 12:00 . 2001-10-24 12:25 72192 ----a-w- c:\windows\system32\sprio800.dll
2006-03-02 12:00 . 2001-10-24 12:25 70656 ----a-w- c:\windows\system32\sprio600.dll
2006-03-02 12:00 . 2001-10-24 12:25 69699 ----a-w- c:\windows\system32\usrcoina.dll
2006-03-02 12:00 . 2001-10-24 12:25 61500 ----a-w- c:\windows\system32\usrcntra.dll
2006-03-02 12:00 . 2001-10-24 12:25 53305 ----a-w- c:\windows\system32\usrlbva.dll
2006-03-02 12:00 . 2001-10-24 12:25 49211 ----a-w- c:\windows\system32\usrvpa.dll
2006-03-02 12:00 . 2001-10-24 12:25 49211 ----a-w- c:\windows\system32\usrsdpia.dll
2006-03-02 12:00 . 2001-10-24 12:25 49209 ----a-w- c:\windows\system32\usrv80a.dll
2006-03-02 12:00 . 2001-10-24 12:25 45116 ----a-w- c:\windows\system32\usrvoica.dll
2006-03-02 12:00 . 2001-10-24 12:25 41019 ----a-w- c:\windows\system32\usrsvpia.dll
2006-03-02 12:00 . 2001-10-24 12:25 323641 ----a-w- c:\windows\system32\usrdtea.dll
2006-03-02 12:00 . 2001-10-24 12:25 102457 ----a-w- c:\windows\system32\usrv42a.dll
2006-03-02 12:00 . 2001-10-24 12:25 69632 ----a-w- c:\windows\system32\spnike.dll
2006-03-02 12:00 . 2001-10-24 12:25 157696 ----a-w- c:\windows\system32\paqsp.dll
2006-03-02 12:00 . 2001-10-24 12:24 147968 ----a-w- c:\windows\system32\mdwmdmsp.dll
2006-03-02 12:00 . 2001-10-24 12:24 3200 ----a-w- c:\windows\system32\wowfax.dll
2006-03-02 12:00 . 2001-10-24 11:55 12160 ----a-w- c:\windows\system32\drivers\fsvga.sys
2006-03-02 12:00 . 2001-10-24 11:54 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2006-03-02 12:00 . 2001-10-24 11:53 262528 ----a-w- c:\windows\system32\drivers\cinemst2.sys
2006-03-02 12:00 . 2001-08-18 06:37 61508 ----a-w- c:\windows\system32\usrprbda.exe
2006-03-02 12:00 . 2001-08-17 22:06 21376 ----a-w- c:\windows\system32\drivers\tsbvcap.sys
2006-03-02 12:00 . 2001-08-17 22:02 58112 ----a-w- c:\windows\system32\drivers\vdmindvd.sys
2006-03-02 12:00 . 2001-08-17 22:01 51712 ----a-w- c:\windows\system32\drivers\tosdvd.sys
2006-03-02 12:00 . 2001-08-17 21:52 18688 ----a-w- c:\windows\system32\drivers\cdaudio.sys
2006-03-02 12:00 . 2001-08-17 21:24 12032 ----a-w- c:\windows\system32\drivers\riodrv.sys
2006-03-02 12:00 . 2001-08-17 21:24 12032 ----a-w- c:\windows\system32\drivers\rio8drv.sys
2006-03-02 12:00 . 2001-08-17 21:24 12032 ----a-w- c:\windows\system32\drivers\nikedrv.sys
2006-03-02 12:00 . 2001-08-17 21:24 11776 ----a-w- c:\windows\system32\drivers\cpqdap01.sys
2012-10-13 02:14 . 2012-10-13 02:13 261600 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2012-07-11 05:45 2074208 ----a-w- c:\program files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll" [2012-07-11 2074208]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG Secure Search.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2012-07-13 17418928]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-03 13529088]
"nwiz"="nwiz.exe" [2008-05-03 1630208]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-03 86016]
"RTHDCPL"="RTHDCPL.EXE" [2007-08-10 16384000]
"vProt"="c:\program files\AVG Secure Search\vprot.exe" [2012-07-11 1107552]
.
c:\documents and settings\lolko\Nabídka Start\Programy\Po spuštění\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2012-10-14 624416]
.
c:\documents and settings\lolko\Nabídka Start\Programy\Po spuštění\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2012-10-14 624416]
.
c:\documents and settings\lolko\Nabídka Start\Programy\Po spuštění\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2012-10-14 624416]
.
c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\
LOLRecorder.lnk - c:\program files\LOLReplay\LOLRecorder.exe [2012-2-25 495104]
.
c:\documents and settings\lolko\Nabídka Start\Programy\Po spuštění\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2012-10-14 624416]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\persistentroutes]
"62.75.206.182,255.255.255.255,192.168.1.167,1"=""
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitTorrent\\BitTorrent.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"e:\\batllefield\\BF2.exe"=
"c:\\Program Files\\ExpressFiles\\expressdl.exe"=
"c:\\Program Files\\ExpressFiles\\ExpressFiles.exe"=
"c:\\Documents and Settings\\lolko\\Dokumenty\\Stažené soubory\\cnet2_setup-jumpwel_exe.exe"=
"c:\\Program Files\\COMODO\\Unite\\Unite.exe"=
"c:\\Program Files\\COMODO\\Unite\\EzVpnSvc.exe"=
"c:\\Program Files\\COMODO\\Unite\\crdphAppShare.exe"=
"c:\\Program Files\\COMODO\\Unite\\crdphService.exe"=
"c:\\Program Files\\COMODO\\Unite\\UniteCAM.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikací\\NexonUS\\NGM\\NGM.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"56383:TCP"= 56383:TCP:Pando Media Booster
"56383:UDP"= 56383:UDP:Pando Media Booster
.
P2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;e:\program files\Hi-Rez Studios\HiPatchService.exe [7. 8. 2012 12:58 8704]
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [11. 7. 2011 0:14 23120]
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [11. 7. 2011 0:14 295248]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [27. 1. 2002 20:48 162544]
R2 EzVpnSvc;COMODO Unite MultiLogin Service;c:\program files\COMODO\Unite\EzVpnSvc.exe [22. 8. 2011 7:48 360752]
R2 IBUpdaterService;Updater Service;c:\documents and settings\All Users\Data aplikací\IBUpdaterService\ibsvc.exe [29. 4. 2012 9:22 397848]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [31. 12. 2001 23:23 676936]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [13. 8. 2012 12:33 3064000]
R2 vToolbarUpdater11.2.0;vToolbarUpdater11.2.0;c:\program files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe [11. 7. 2012 6:45 935008]
R2 Web Assistant Updater;Web Assistant Updater;c:\program files\Web Assistant\ExtensionUpdaterService.exe [20. 8. 2012 5:11 188760]
R3 ATP;Comodo Unite Miniport Driver;c:\windows\system32\drivers\cmdatp.sys [1. 1. 2002 1:04 17816]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [4. 5. 2012 19:39 242240]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [31. 12. 2001 23:23 22856]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [16. 5. 2011 19:01 122224]
S2 avgwd;AVG WatchDog;"c:\program files\AVG\AVG2012\avgwdsvc.exe" --> c:\program files\AVG\AVG2012\avgwdsvc.exe [?]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [14. 10. 2012 18:14 116648]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [13. 7. 2012 12:28 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [13. 4. 2012 12:18 250808]
S3 EagleXNt;EagleXNt;\??\c:\windows\system32\drivers\EagleXNt.sys --> c:\windows\system32\drivers\EagleXNt.sys [?]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [14. 10. 2012 18:14 116648]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [4. 5. 2012 8:33 115168]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\d:\ntglm7x.sys --> d:\NTGLM7X.sys [?]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\drivers\VBoxNetAdp.sys [16. 5. 2011 19:01 111280]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
Obsah adresáře 'Naplánované úlohy'
.
2012-10-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-13 00:59]
.
2012-10-13 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 16:57]
.
2002-02-03 c:\windows\Tasks\debutShakeIcon.job
- c:\program files\NCH Software\Debut\debut.exe [2002-01-31 18:49]
.
2012-09-28 c:\windows\Tasks\doxillionShakeIcon.job
- c:\program files\NCH Software\Doxillion\doxillion.exe [2002-01-01 05:22]
.
2001-12-31 c:\windows\Tasks\Express FilesUpdate.job
- c:\program files\ExpressFiles\EFUpdater.exe [2012-07-29 02:18]
.
2001-12-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-10-14 17:14]
.
2012-10-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-10-14 17:14]
.
2002-01-04 c:\windows\Tasks\WavePadReminder.job
- c:\program files\NCH Software\WavePad\wavepad.exe [2002-01-01 22:24]
.
2002-01-01 c:\windows\Tasks\WavePadSevenDays.job
- c:\program files\NCH Software\WavePad\wavepad.exe [2002-01-01 22:24]
.
.
------- Doplňkový sken -------
.
IE: Download with &Media Finder - c:\program files\Media Finder\hook.html
IE: Search the Web - c:\program files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
IE: {{A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - {A69A551A-1AAE-4B67-8C2E-52F8B8A19504} - c:\program files\SpecialSavings\SpecialSavingsSinged.dll
TCP: DhcpNameServer = 213.211.50.1 213.211.50.2
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll
FF - ProfilePath - c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.gboxapp.com/?q=
FF - prefs.js: browser.search.selectedEngine - Expat Shield Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT25492 ... hSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... ource=2&q=
FF - ExtSQL: 2001-12-31 23:13; fbphotozoom@installdaddy.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\fbphotozoom@installdaddy.com.xpi
FF - ExtSQL: 2001-12-31 23:14; {EEE6C361-6118-11DC-9C72-001320C79847}; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi
FF - ExtSQL: 2009-03-20 11:26; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - ExtSQL: 2012-03-26 18:40; plugin@yontoo.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\plugin@yontoo.com
FF - ExtSQL: 2012-04-16 09:10; 4f874a7ce0e81@4f874a7ce0e82.info; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\4f874a7ce0e81@4f874a7ce0e82.info
FF - ExtSQL: 2012-04-17 13:43; 4f8be913df706@4f8be913df708.info; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\4f8be913df706@4f8be913df708.info
FF - ExtSQL: 2012-04-21 09:44; OneClickDownloader@OneClickDownloader.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\OneClickDownloader@OneClickDownloader.com.xpi
FF - ExtSQL: 2012-04-21 09:50; ffxtlbr@babylon.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\ffxtlbr@babylon.com
FF - ExtSQL: 2012-05-08 13:39; gencrawler@some.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\gencrawler@some.com
FF - ExtSQL: 2012-07-10 04:14; avg@toolbar; c:\documents and settings\All Users\Data aplikací\AVG Secure Search\11.1.0.12
FF - ExtSQL: 2012-08-05 17:06; {5e5ab302-7f65-44cd-8211-c1d4caaccea3}; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
FF - ExtSQL: 2012-08-07 01:00; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; c:\program files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - ExtSQL: 2012-08-20 19:31; plugin@videofiledownload.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\plugin@videofiledownload.com
FF - ExtSQL: 2012-08-24 06:13; bbrs_002@blabbers.com; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\bbrs_002@blabbers.com
FF - ExtSQL: 2012-09-01 22:09; 5042696f48da5@5042696f48dde.info; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\5042696f48da5@5042696f48dde.info
FF - ExtSQL: 2012-10-14 16:07; {a060276a-53be-45ec-8ebe-b94b1e803179}; c:\documents and settings\lolko\Data aplikací\Mozilla\Firefox\Profiles\vsdxw7ay.default\extensions\{a060276a-53be-45ec-8ebe-b94b1e803179}
FF - user.js: extensions.autoDisableScopes - 14
FF - user.js: extentions.y2layers.installId - 80841da0-d438-400c-843a-4c194bb86a74
FF - user.js: extentions.y2layers.defaultEnableAppsList - twittube,ezLooker,pagerage,buzzdock,toprelatedtopics
FF - user.js: extensions.BabylonToolbar_i.id - 747ddb1c000000000000001d926a17c1
FF - user.js: extensions.BabylonToolbar_i.hardId - 747ddb1c000000000000001d926a17c1
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15541
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
FF - user.js: extensions.claro.id - 747ddb1c000000000000001d926a17c1
FF - user.js: extensions.claro.instlDay - 15559
FF - user.js: extensions.claro.vrsn - 1.6.4.1
FF - user.js: extensions.claro.vrsni - 1.6.4.1
FF - user.js: extensions.claro_i.vrsnTs - 1.6.4.117:18
FF - user.js: extensions.claro.prtnrId - claro
FF - user.js: extensions.claro.prdct - claro
FF - user.js: extensions.claro.aflt - babsst
FF - user.js: extensions.claro_i.smplGrp - none
FF - user.js: extensions.claro.tlbrId - iclaro
FF - user.js: extensions.claro.instlRef - sst
FF - user.js: extensions.claro.dfltLng - en
FF - user.js: extensions.claro.excTlbr - false
FF - user.js: extensions.claro.admin - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=112060&tt=3412_7
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://www.google.com/search?babsrc=TB_ggl&q=
FF - user.js: extensions.BabylonToolbar.id - 747ddb1c00000000000000ffb726f725
FF - user.js: extensions.BabylonToolbar.instlDay - 15576
FF - user.js: extensions.BabylonToolbar.vrsn - 1.6.4.6
FF - user.js: extensions.BabylonToolbar.vrsni - 1.6.4.6
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.6.4.66:28
FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar.tlbrId - base
FF - user.js: extensions.BabylonToolbar.instlRef - sst
FF - user.js: extensions.BabylonToolbar.dfltLng - en
FF - user.js: extensions.BabylonToolbar.excTlbr - false
FF - user.js: extensions.BabylonToolbar.admin - false
.
.
------- Asociace souborů -------
.
txtfile="c:\program files\PSPad editor\PSPad.exe" "%1"
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)
WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file)
HKCU-Run-Rainlendar2 - c:\program files\Rainlendar2\Rainlendar2.exe
HKLM-Run-AVG_TRAY - c:\program files\AVG\AVG2012\avgtray.exe
AddRemove-AVG - c:\program files\AVG\AVG2012\avgmfapx.exe
AddRemove-BFlix - c:\program files\BFlix\uninstall.exe
AddRemove-BrowserCompanion - c:\program files\BrowserCompanion\uninstall.exe
AddRemove-Minecraft Cracked - c:\documents and settings\lolko\Data aplikací\.minecraft\Uninstall.exe
AddRemove-Steam App 440 - c:\program files\Steam\steam.exe
AddRemove-WinPcapInst - c:\program files\WinPcap\Uninstall.exe
AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\documents and settings\All Users\Data aplikací\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}\bm_installer.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2002-01-01 00:02
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(1092)
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
c:\windows\system32\nvcpl.dll
c:\windows\system32\NVRSCS.DLL
c:\windows\system32\nvapi.dll
c:\windows\system32\nvshell.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Google\Update\1.3.21.123\GoogleCrashHandler.exe
c:\windows\system32\RUNDLL32.EXE
c:\windows\RTHDCPL.EXE
c:\program files\Java\jre7\bin\jqs.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\program files\COMODO\Unite\crdphService.exe
.
**************************************************************************
.
Celkový čas: 2002-01-01 00:10:52 - počítač byl restartován
ComboFix-quarantined-files.txt 2001-12-31 23:10
.
Před spuštěním: 4 548 325 376
Po spuštění: 4 884 336 640
.
WindowsXP-KB310994-SP2-Home-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect /usepmtimer
.
- - End Of File - - CD9CC7AAC1A99866101D50D25FF057C9
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod Žbeky » 18 říj 2012 18:24

V MbAM jsi nic neodstranil. Dělej to co píšem...
Dej novou kontrolu MbaM, nálezy odstraň a dej sem log MbAM
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 18:26

v MbaM jsem odstranil to co bylo vybrané. pak byl restart pc uložil se log a to bylo vše.
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod Žbeky » 18 říj 2012 18:29

Proč pak MbAM u všeho píše "Žádná instrukce nebyla provedena."...
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
fatalfanatic
Level 3
Level 3
Příspěvky: 635
Registrován: srpen 12
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu.

Příspěvekod fatalfanatic » 18 říj 2012 18:31

zkusím to ještě jednou když to nebude dobře pak je vtom chyba .
[spoiler=Files]Moje tvorba

>> Here <<

Soubory, jsou bezpečné bez virů a ostatní havěti. Pamětní místo se nachazí na DropBox. Otázky,info případně SZ.[/spoiler]


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 6 hostů