Kontrola logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Widlajz
Level 4
Level 4
Příspěvky: 1082
Registrován: prosinec 12
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu  Vyřešeno

Příspěvekod Widlajz » 05 úno 2013 18:55

ComboFix 13-02-03.03 - Jindra 05.02.2013 18:46:45.2.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.4094.2971 [GMT 1:00]
Spuštěný z: c:\users\Jindra\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Jindra\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jindra\AppData\Local\Temp\sfamcc00001.dll
c:\users\Jindra\AppData\Local\Temp\sfareca00001.dll
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-01-05 do 2013-02-05 )))))))))))))))))))))))))))))))
.
.
2013-02-05 17:50 . 2013-02-05 17:50 8782 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\BUTTON.JS
2013-02-05 17:50 . 2013-02-05 17:50 7271 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\CHECKBOX.JS
2013-02-05 17:50 . 2013-02-05 17:50 51852 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\EXTERNALWRAPPER.JS
2013-02-05 17:50 . 2013-02-05 17:50 23327 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\COMBOBOX.JS
2013-02-05 17:50 . 2013-02-05 17:50 20719 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\DIVWRAPPER.JS
2013-02-05 17:50 . 2013-02-05 17:50 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-02-04 19:36 . 2013-02-04 19:36 -------- d-----w- c:\programdata\Kaspersky Lab
2013-02-03 20:48 . 2013-01-08 05:32 9161176 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F973B81A-CCF6-4761-B618-43E0300ACFDB}\mpengine.dll
2013-02-03 20:38 . 2013-02-04 20:28 -------- d-----w- c:\programdata\Avira
2013-01-29 20:09 . 2013-01-29 20:09 -------- d-----w- c:\program files (x86)\Common Files\Steam
2013-01-29 20:09 . 2013-01-31 17:45 -------- d-----w- c:\program files (x86)\Steam
2013-01-29 18:01 . 2013-01-29 18:01 -------- d-----w- c:\program files (x86)\Webteh
2013-01-27 19:40 . 2013-01-27 19:40 -------- d-----w- c:\program files (x86)\uTorrent
2013-01-27 19:32 . 2013-01-27 19:32 -------- d-----w- c:\programdata\Malwarebytes
2013-01-21 13:59 . 2013-01-21 13:59 -------- d-----w- c:\programdata\RELOADED
2013-01-20 18:52 . 2013-01-20 18:52 -------- d-----w- c:\program files\Microsoft Silverlight
2013-01-20 18:52 . 2013-01-20 18:52 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2013-01-20 11:00 . 2013-01-20 11:00 -------- d-sh--w- c:\programdata\SecuROM
2013-01-19 12:50 . 2013-01-19 12:50 74248 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-01-19 12:50 . 2013-01-19 12:50 697864 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-01-19 12:50 . 2013-01-19 12:50 -------- d-----w- c:\windows\SysWow64\Macromed
2013-01-19 12:50 . 2013-01-19 12:50 -------- d-----w- c:\windows\system32\Macromed
2013-01-16 21:08 . 2004-04-12 16:27 1081616 ----a-w- c:\windows\SysWow64\mscomctl.ocx
2013-01-15 17:04 . 2013-02-01 11:24 -------- d-----w- C:\Fraps
2013-01-15 17:03 . 2013-01-15 17:16 -------- d-----w- c:\program files\WinRAR
2013-01-14 13:45 . 2012-08-24 18:13 154480 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2013-01-14 13:42 . 2011-01-17 11:09 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2013-01-14 13:42 . 2011-01-17 05:47 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2013-01-13 20:25 . 2013-01-13 20:25 -------- d-----w- c:\program files (x86)\Spirent Communications
2013-01-13 20:25 . 2013-01-13 20:26 -------- d-----w- c:\program files (x86)\HTC
2013-01-13 20:25 . 2013-01-13 20:25 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2013-01-13 15:48 . 2013-01-13 15:48 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll
2013-01-13 15:42 . 2013-01-20 10:47 -------- d-----w- c:\program files (x86)\Microsoft Games for Windows - LIVE
2013-01-13 15:42 . 2013-01-13 15:42 -------- d-----w- c:\windows\SysWow64\xlive
2013-01-13 15:26 . 2013-01-13 15:27 -------- d-----w- c:\program files (x86)\Rockstar Games
2013-01-13 15:05 . 2013-02-05 17:51 -------- d-----w- c:\program files (x86)\SpeedFan
2013-01-13 13:07 . 2013-01-13 13:07 -------- d-----w- c:\windows\system32\SPReview
2013-01-13 13:06 . 2013-01-13 13:06 -------- d-----w- c:\windows\system32\EventProviders
2013-01-13 13:03 . 2010-11-20 13:27 1441280 ----a-w- c:\windows\system32\wlanpref.dll
2013-01-13 13:02 . 2010-11-20 13:27 145920 ----a-w- c:\windows\system32\sppc.dll
2013-01-13 13:01 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2013-01-13 13:01 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2013-01-13 13:01 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2013-01-13 12:36 . 2013-01-13 12:36 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2013-01-13 12:32 . 2013-01-13 20:24 -------- d-----w- c:\program files (x86)\MSXML 4.0
2013-01-13 12:22 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2013-01-13 12:22 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-01-13 12:22 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-01-13 12:22 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-01-13 12:20 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2013-01-13 12:20 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-01-13 12:20 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2013-01-13 12:20 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-01-13 12:20 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-01-13 12:20 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-01-13 12:20 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-01-13 12:18 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll
2013-01-13 12:18 . 2012-01-04 08:58 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2013-01-13 12:18 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2013-01-13 12:18 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe
2013-01-13 12:16 . 2012-04-07 12:31 3216384 ----a-w- c:\windows\system32\msi.dll
2013-01-13 12:16 . 2012-04-07 11:26 2342400 ----a-w- c:\windows\SysWow64\msi.dll
2013-01-13 12:13 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
2013-01-13 12:13 . 2012-05-05 07:46 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2013-01-13 12:13 . 2010-11-20 13:25 296960 ----a-w- c:\windows\system32\rstrui.exe
2013-01-13 12:13 . 2011-02-18 10:51 31232 ----a-w- c:\windows\system32\prevhost.exe
2013-01-13 12:13 . 2011-02-18 05:39 31232 ----a-w- c:\windows\SysWow64\prevhost.exe
2013-01-13 12:11 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe
2013-01-13 12:11 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe
2013-01-13 11:32 . 2012-12-16 16:31 67599240 ----a-w- c:\windows\system32\MRT.exe
2013-01-13 11:17 . 2012-12-16 17:11 46080 ----a-w- c:\windows\system32\atmlib.dll
2013-01-13 11:17 . 2012-12-16 14:45 367616 ----a-w- c:\windows\system32\atmfd.dll
2013-01-13 11:17 . 2012-12-16 14:13 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2013-01-13 11:17 . 2012-12-16 14:13 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2013-01-13 11:17 . 2010-09-30 10:41 100864 ----a-w- c:\windows\system32\fontsub.dll
2013-01-13 11:17 . 2010-09-30 06:47 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2013-01-13 11:14 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2013-01-13 11:14 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2013-01-13 11:14 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2013-01-13 11:14 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2013-01-13 11:14 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2013-01-13 11:10 . 2012-04-28 03:55 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2013-01-13 11:09 . 2012-07-04 22:16 73216 ----a-w- c:\windows\system32\netapi32.dll
2013-01-13 11:09 . 2012-07-04 22:13 59392 ----a-w- c:\windows\system32\browcli.dll
2013-01-13 11:09 . 2012-07-04 22:13 136704 ----a-w- c:\windows\system32\browser.dll
2013-01-13 11:09 . 2012-07-04 21:14 41984 ----a-w- c:\windows\SysWow64\browcli.dll
2013-01-13 11:07 . 2012-06-09 05:43 14172672 ----a-w- c:\windows\system32\shell32.dll
2013-01-13 11:03 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2013-01-13 11:03 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2013-01-13 11:03 . 2012-03-31 05:42 1732096 ----a-w- c:\program files\Windows Journal\NBDoc.DLL
2013-01-13 11:03 . 2012-03-31 05:40 1402880 ----a-w- c:\program files\Windows Journal\JNWDRV.dll
2013-01-13 11:03 . 2012-03-31 05:40 1367552 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll
2013-01-13 11:03 . 2012-03-31 05:40 1393664 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll
2013-01-13 11:03 . 2012-03-31 04:29 936960 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2013-01-13 11:03 . 2010-11-20 13:24 2164224 ----a-w- c:\program files\Windows Journal\Journal.exe
2013-01-13 11:01 . 2011-05-03 05:29 976896 ----a-w- c:\windows\system32\inetcomm.dll
2013-01-13 11:01 . 2011-05-03 04:30 741376 ----a-w- c:\windows\SysWow64\inetcomm.dll
2013-01-13 06:32 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll
2013-01-13 06:32 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe
2013-01-13 06:32 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll
2013-01-13 06:32 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll
2013-01-13 06:32 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll
2013-01-13 06:32 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll
2013-01-13 06:32 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll
2013-01-13 06:32 . 2012-06-02 14:19 186752 ----a-w- c:\windows\system32\wuwebv.dll
2013-01-13 06:32 . 2012-06-02 14:15 36864 ----a-w- c:\windows\system32\wuapp.exe
2013-01-12 21:07 . 2013-02-04 20:43 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2013-01-12 21:07 . 2013-01-12 21:07 -------- d-----w- c:\program files (x86)\Battlelog Web Plugins
2013-01-12 21:05 . 2009-04-16 13:08 248320 ----a-w- c:\windows\system32\Spool\prtprocs\x64\hpfpp70v.dll
2013-01-12 21:04 . 2013-01-12 21:04 -------- d-----w- c:\program files (x86)\Common Files\HP
2013-01-12 21:04 . 2013-01-12 21:04 -------- d-----w- c:\program files (x86)\Common Files\Hewlett-Packard
2013-01-12 21:04 . 2009-04-16 13:08 136704 ----a-w- c:\windows\system32\hpf3l70v.dll
2013-01-12 21:04 . 2013-01-12 21:04 -------- d-----w- c:\program files (x86)\HP
2013-01-12 21:03 . 2013-01-12 21:03 -------- d-----w- c:\programdata\HP
2013-01-12 21:03 . 2009-04-16 11:53 642360 ----a-w- c:\windows\system32\hpzids40.dll
2013-01-12 21:03 . 2009-02-11 11:03 880640 ----a-w- c:\windows\system32\hposwia_d02c.dll
2013-01-12 21:03 . 2009-02-11 11:03 748544 ----a-w- c:\windows\system32\hpost_d02c.dll
2013-01-12 21:03 . 2009-02-11 11:03 515072 ----a-w- c:\windows\system32\hposc_d02a.dll
2013-01-12 21:03 . 2008-10-29 00:27 551424 ----a-w- c:\windows\system32\hppldcoi.dll
2013-01-12 20:53 . 2013-01-29 19:11 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2013-01-12 20:52 . 2013-02-04 20:43 281520 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2013-01-12 20:52 . 2013-02-04 20:43 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2013-01-12 20:52 . 2013-01-12 21:08 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2013-01-12 20:50 . 2013-01-12 20:50 -------- d-----w- c:\programdata\EA Core
2013-01-12 20:49 . 2013-01-12 20:50 -------- d-----w- c:\programdata\EA Logs
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-01-20 17:04 . 2009-08-18 11:49 564632 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2013-01-20 17:04 . 2009-08-18 10:24 19696 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-01-13 19:54 . 2010-06-11 10:32 708168 ----a-w- c:\windows\system32\WinUSBCoInstaller.dll
2013-01-13 14:14 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-01-13 14:14 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-01-13 11:22 . 2013-01-13 11:22 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2013-01-13 11:22 . 2013-01-13 11:22 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-12-29 01:54 . 2012-12-29 01:54 550328 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2012-12-07 17:27 . 2012-12-07 17:27 36928 ----a-w- c:\windows\system32\drivers\htcnprot.sys
2012-11-30 04:45 . 2013-01-13 12:17 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2012-11-08 10:29 . 2012-11-08 10:29 1402312 ----a-w- c:\windows\SysWow64\msxml4.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files (x86)\PROGRAMY\DAEMON Tools Lite\DTLite.exe" [2013-01-08 3674320]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-01-22 106496]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-01-19 43632]
.
c:\users\Jindra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
SpeedFan.lnk - c:\program files (x86)\SpeedFan\speedfan.exe [2012-9-12 4679672]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer3"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 HTCAND64;HTC Device Driver;c:\windows\system32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
R3 htcnprot;HTC NDIS Protocol Driver;c:\windows\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2013-01-12 283200]
S2 PassThru Service;Internet Pass-Through Service;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-12-29 383416]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-01-22 77824]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-01-22 180224]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2010-03-02 1301504]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-01-31 17:01 1607120 ----a-w- c:\program files (x86)\Google\Chrome\Application\24.0.1312.57\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 10.1.0.2 10.1.0.20 10.1.0.1
TCP: Interfaces\{1E68A696-95D5-4625-A8FC-67B4DD87EE70}: DhcpNameServer = 10.1.0.2 10.1.0.20 10.1.0.1
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-2240110519-4113365930-3009255128-1000\Software\SecuROM\License information*]
"datasecu"=hex:ff,76,36,d4,bf,67,3c,fa,df,6a,c4,12,bb,2c,38,46,25,5c,ef,b9,14,
ef,22,44,48,bc,13,c0,d4,bc,49,af,d2,e2,5a,2c,03,9e,d1,15,e1,05,2c,65,c5,c7,\
"rkeysecu"=hex:91,32,e3,c2,41,a5,43,ba,52,c2,3e,15,9c,0e,13,a6
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_146_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_146_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\windows\DAODx.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\windows\SysWOW64\PnkBstrA.exe
.
**************************************************************************
.
Celkový čas: 2013-02-05 18:54:03 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-02-05 17:54
.
Před spuštěním: Volných bajtů: 76 560 793 600
Po spuštění: Volných bajtů: 76 388 024 320
.
- - End Of File - - 19ABB33A0EA1159F053C7037883F911C
AMD Ryzen 5 5600x
MSI B450-A PRO
16GB DDR4 3200MHz
XFX AMD RADEON RX 6700 XT
EVGA GQ 750

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod memphisto » 05 úno 2013 21:13

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

vyčisti systém CCleanerem

a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš

pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials

+ Nový log z HJT

Jak se chová PC?
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Google Adsense [Bot] a 90 hostů